Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://erp.broadcom.net

Overview

General Information

Sample URL:https://erp.broadcom.net
Analysis ID:1544008
Infos:
Errors
  • URL not reachable

Detection

Score:0
Range:0 - 100
Whitelisted:false
Confidence:60%

Signatures

No high impact signatures.

Classification

  • System is w10x64
  • chrome.exe (PID: 3260 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 4548 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2388 --field-trial-handle=2356,i,18080192190026170710,6504826081959743266,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • chrome.exe (PID: 6312 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://erp.broadcom.net" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 2.19.126.137
Source: unknownTCP traffic detected without corresponding DNS query: 2.19.126.137
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficDNS traffic detected: DNS query: erp.broadcom.net
Source: global trafficDNS traffic detected: DNS query: google.com
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: classification engineClassification label: unknown0.win@20/0@19/3
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2388 --field-trial-handle=2356,i,18080192190026170710,6504826081959743266,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://erp.broadcom.net"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2388 --field-trial-handle=2356,i,18080192190026170710,6504826081959743266,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Process Injection
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive2
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
bg.microsoft.map.fastly.net
199.232.214.172
truefalse
    unknown
    google.com
    142.250.184.238
    truefalse
      unknown
      www.google.com
      172.217.18.4
      truefalse
        unknown
        fp2e7a.wpc.phicdn.net
        192.229.221.95
        truefalse
          unknown
          erp.broadcom.net
          unknown
          unknownfalse
            unknown
            • No. of IPs < 25%
            • 25% < No. of IPs < 50%
            • 50% < No. of IPs < 75%
            • 75% < No. of IPs
            IPDomainCountryFlagASNASN NameMalicious
            239.255.255.250
            unknownReserved
            unknownunknownfalse
            172.217.18.4
            www.google.comUnited States
            15169GOOGLEUSfalse
            IP
            192.168.2.4
            Joe Sandbox version:41.0.0 Charoite
            Analysis ID:1544008
            Start date and time:2024-10-28 17:55:31 +01:00
            Joe Sandbox product:CloudBasic
            Overall analysis duration:0h 2m 5s
            Hypervisor based Inspection enabled:false
            Report type:full
            Cookbook file name:browseurl.jbs
            Sample URL:https://erp.broadcom.net
            Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
            Number of analysed new started processes analysed:7
            Number of new started drivers analysed:0
            Number of existing processes analysed:0
            Number of existing drivers analysed:0
            Number of injected processes analysed:0
            Technologies:
            • HCA enabled
            • EGA enabled
            • AMSI enabled
            Analysis Mode:default
            Analysis stop reason:Timeout
            Detection:UNKNOWN
            Classification:unknown0.win@20/0@19/3
            EGA Information:Failed
            HCA Information:
            • Successful, ratio: 100%
            • Number of executed functions: 0
            • Number of non-executed functions: 0
            Cookbook Comments:
            • URL browsing timeout or error
            • URL not reachable
            • Exclude process from analysis (whitelisted): MpCmdRun.exe, SIHClient.exe, conhost.exe, svchost.exe
            • Excluded IPs from analysis (whitelisted): 74.125.133.84, 142.250.181.238, 142.250.186.35, 34.104.35.123, 184.28.90.27, 4.245.163.56, 199.232.214.172, 52.165.164.15, 192.229.221.95
            • Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, fs-wildcard.microsoft.com.edgekey.net, fs-wildcard.microsoft.com.edgekey.net.globalredir.akadns.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, e16604.g.akamaiedge.net, glb.cws.prod.dcat.dsp.trafficmanager.net, ocsp.edge.digicert.com, sls.update.microsoft.com, clients.l.google.com, prod.fs.microsoft.com.akadns.net, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
            • Not all processes where analyzed, report is missing behavior information
            • Report size getting too big, too many NtSetInformationFile calls found.
            • VT rate limit hit for: https://erp.broadcom.net
            No simulations
            No context
            No context
            No context
            No context
            No context
            No created / dropped files found
            No static file info
            TimestampSource PortDest PortSource IPDest IP
            Oct 28, 2024 17:56:33.166026115 CET49675443192.168.2.4173.222.162.32
            Oct 28, 2024 17:56:38.374368906 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:38.374403954 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:38.379108906 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:38.379462004 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:38.379472971 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:39.243597984 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:39.243786097 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:39.243802071 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:39.244812965 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:39.244869947 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:39.627588987 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:39.627768993 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:39.682038069 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:39.682049036 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:39.728916883 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:47.953641891 CET4972380192.168.2.42.19.126.137
            Oct 28, 2024 17:56:47.959568024 CET80497232.19.126.137192.168.2.4
            Oct 28, 2024 17:56:47.959629059 CET4972380192.168.2.42.19.126.137
            Oct 28, 2024 17:56:49.237377882 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:49.237435102 CET44349737172.217.18.4192.168.2.4
            Oct 28, 2024 17:56:49.237485886 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:51.265572071 CET49737443192.168.2.4172.217.18.4
            Oct 28, 2024 17:56:51.265598059 CET44349737172.217.18.4192.168.2.4
            TimestampSource PortDest PortSource IPDest IP
            Oct 28, 2024 17:56:35.079901934 CET53581391.1.1.1192.168.2.4
            Oct 28, 2024 17:56:35.079941988 CET53533691.1.1.1192.168.2.4
            Oct 28, 2024 17:56:35.885384083 CET5554553192.168.2.41.1.1.1
            Oct 28, 2024 17:56:35.885941982 CET5242153192.168.2.41.1.1.1
            Oct 28, 2024 17:56:35.894515038 CET53555451.1.1.1192.168.2.4
            Oct 28, 2024 17:56:35.897208929 CET53524211.1.1.1192.168.2.4
            Oct 28, 2024 17:56:35.898128033 CET6174253192.168.2.41.1.1.1
            Oct 28, 2024 17:56:35.908204079 CET53617421.1.1.1192.168.2.4
            Oct 28, 2024 17:56:35.985507011 CET6515353192.168.2.48.8.8.8
            Oct 28, 2024 17:56:35.986187935 CET5905353192.168.2.41.1.1.1
            Oct 28, 2024 17:56:35.993189096 CET53651538.8.8.8192.168.2.4
            Oct 28, 2024 17:56:35.994930983 CET53590531.1.1.1192.168.2.4
            Oct 28, 2024 17:56:36.336925983 CET53625291.1.1.1192.168.2.4
            Oct 28, 2024 17:56:36.990351915 CET5734253192.168.2.41.1.1.1
            Oct 28, 2024 17:56:36.991491079 CET6324153192.168.2.41.1.1.1
            Oct 28, 2024 17:56:36.999597073 CET53573421.1.1.1192.168.2.4
            Oct 28, 2024 17:56:37.001313925 CET53632411.1.1.1192.168.2.4
            Oct 28, 2024 17:56:37.107709885 CET5084453192.168.2.41.1.1.1
            Oct 28, 2024 17:56:37.108165979 CET5778153192.168.2.41.1.1.1
            Oct 28, 2024 17:56:37.116401911 CET53508441.1.1.1192.168.2.4
            Oct 28, 2024 17:56:37.118534088 CET53577811.1.1.1192.168.2.4
            Oct 28, 2024 17:56:38.359622002 CET5838253192.168.2.41.1.1.1
            Oct 28, 2024 17:56:38.359855890 CET6157153192.168.2.41.1.1.1
            Oct 28, 2024 17:56:38.368452072 CET53583821.1.1.1192.168.2.4
            Oct 28, 2024 17:56:38.369093895 CET53615711.1.1.1192.168.2.4
            Oct 28, 2024 17:56:42.211559057 CET6017453192.168.2.41.1.1.1
            Oct 28, 2024 17:56:42.211903095 CET6343853192.168.2.41.1.1.1
            Oct 28, 2024 17:56:42.220484018 CET53601741.1.1.1192.168.2.4
            Oct 28, 2024 17:56:42.220521927 CET53634381.1.1.1192.168.2.4
            Oct 28, 2024 17:56:42.221451044 CET4920953192.168.2.41.1.1.1
            Oct 28, 2024 17:56:42.231029987 CET53492091.1.1.1192.168.2.4
            Oct 28, 2024 17:56:44.517369986 CET138138192.168.2.4192.168.2.255
            Oct 28, 2024 17:56:47.991856098 CET5825053192.168.2.41.1.1.1
            Oct 28, 2024 17:56:47.991976976 CET5455053192.168.2.41.1.1.1
            Oct 28, 2024 17:56:48.000096083 CET53582501.1.1.1192.168.2.4
            Oct 28, 2024 17:56:48.002393961 CET53545501.1.1.1192.168.2.4
            Oct 28, 2024 17:56:48.003050089 CET5539453192.168.2.41.1.1.1
            Oct 28, 2024 17:56:48.010999918 CET53553941.1.1.1192.168.2.4
            Oct 28, 2024 17:56:48.021600962 CET5197953192.168.2.41.1.1.1
            Oct 28, 2024 17:56:48.022053003 CET5388353192.168.2.48.8.8.8
            Oct 28, 2024 17:56:48.028853893 CET53538838.8.8.8192.168.2.4
            Oct 28, 2024 17:56:48.029349089 CET53519791.1.1.1192.168.2.4
            Oct 28, 2024 17:56:53.320269108 CET53567761.1.1.1192.168.2.4
            TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
            Oct 28, 2024 17:56:35.885384083 CET192.168.2.41.1.1.10x7da6Standard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:35.885941982 CET192.168.2.41.1.1.10x5130Standard query (0)erp.broadcom.net65IN (0x0001)false
            Oct 28, 2024 17:56:35.898128033 CET192.168.2.41.1.1.10x1097Standard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:35.985507011 CET192.168.2.48.8.8.80x9b7Standard query (0)google.comA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:35.986187935 CET192.168.2.41.1.1.10xcc40Standard query (0)google.comA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:36.990351915 CET192.168.2.41.1.1.10xaefaStandard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:36.991491079 CET192.168.2.41.1.1.10x5879Standard query (0)erp.broadcom.net65IN (0x0001)false
            Oct 28, 2024 17:56:37.107709885 CET192.168.2.41.1.1.10x5c26Standard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:37.108165979 CET192.168.2.41.1.1.10xe692Standard query (0)erp.broadcom.net65IN (0x0001)false
            Oct 28, 2024 17:56:38.359622002 CET192.168.2.41.1.1.10x1f55Standard query (0)www.google.comA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:38.359855890 CET192.168.2.41.1.1.10x961cStandard query (0)www.google.com65IN (0x0001)false
            Oct 28, 2024 17:56:42.211559057 CET192.168.2.41.1.1.10xca1bStandard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:42.211903095 CET192.168.2.41.1.1.10x5616Standard query (0)erp.broadcom.net65IN (0x0001)false
            Oct 28, 2024 17:56:42.221451044 CET192.168.2.41.1.1.10xa338Standard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:47.991856098 CET192.168.2.41.1.1.10xece9Standard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:47.991976976 CET192.168.2.41.1.1.10x1fa7Standard query (0)erp.broadcom.net65IN (0x0001)false
            Oct 28, 2024 17:56:48.003050089 CET192.168.2.41.1.1.10x37f9Standard query (0)erp.broadcom.netA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:48.021600962 CET192.168.2.41.1.1.10xbb2bStandard query (0)google.comA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:48.022053003 CET192.168.2.48.8.8.80x644aStandard query (0)google.comA (IP address)IN (0x0001)false
            TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
            Oct 28, 2024 17:56:35.894515038 CET1.1.1.1192.168.2.40x7da6Name error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:35.897208929 CET1.1.1.1192.168.2.40x5130Name error (3)erp.broadcom.netnonenone65IN (0x0001)false
            Oct 28, 2024 17:56:35.908204079 CET1.1.1.1192.168.2.40x1097Name error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:35.993189096 CET8.8.8.8192.168.2.40x9b7No error (0)google.com142.250.184.238A (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:35.994930983 CET1.1.1.1192.168.2.40xcc40No error (0)google.com142.250.185.142A (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:36.999597073 CET1.1.1.1192.168.2.40xaefaName error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:37.001313925 CET1.1.1.1192.168.2.40x5879Name error (3)erp.broadcom.netnonenone65IN (0x0001)false
            Oct 28, 2024 17:56:37.116401911 CET1.1.1.1192.168.2.40x5c26Name error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:37.118534088 CET1.1.1.1192.168.2.40xe692Name error (3)erp.broadcom.netnonenone65IN (0x0001)false
            Oct 28, 2024 17:56:38.368452072 CET1.1.1.1192.168.2.40x1f55No error (0)www.google.com172.217.18.4A (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:38.369093895 CET1.1.1.1192.168.2.40x961cNo error (0)www.google.com65IN (0x0001)false
            Oct 28, 2024 17:56:42.220484018 CET1.1.1.1192.168.2.40xca1bName error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:42.220521927 CET1.1.1.1192.168.2.40x5616Name error (3)erp.broadcom.netnonenone65IN (0x0001)false
            Oct 28, 2024 17:56:42.231029987 CET1.1.1.1192.168.2.40xa338Name error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:47.332205057 CET1.1.1.1192.168.2.40xa5abNo error (0)bg.microsoft.map.fastly.net199.232.214.172A (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:47.332205057 CET1.1.1.1192.168.2.40xa5abNo error (0)bg.microsoft.map.fastly.net199.232.210.172A (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:48.000096083 CET1.1.1.1192.168.2.40xece9Name error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:48.002393961 CET1.1.1.1192.168.2.40x1fa7Name error (3)erp.broadcom.netnonenone65IN (0x0001)false
            Oct 28, 2024 17:56:48.010999918 CET1.1.1.1192.168.2.40x37f9Name error (3)erp.broadcom.netnonenoneA (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:48.028853893 CET8.8.8.8192.168.2.40x644aNo error (0)google.com142.250.184.238A (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:48.029349089 CET1.1.1.1192.168.2.40xbb2bNo error (0)google.com142.250.185.110A (IP address)IN (0x0001)false
            Oct 28, 2024 17:56:49.296077013 CET1.1.1.1192.168.2.40x7b49No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
            Oct 28, 2024 17:56:49.296077013 CET1.1.1.1192.168.2.40x7b49No error (0)fp2e7a.wpc.phicdn.net192.229.221.95A (IP address)IN (0x0001)false

            Click to jump to process

            Click to jump to process

            Click to jump to process

            Target ID:0
            Start time:12:56:28
            Start date:28/10/2024
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
            Imagebase:0x7ff76e190000
            File size:3'242'272 bytes
            MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:false

            Target ID:2
            Start time:12:56:32
            Start date:28/10/2024
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2388 --field-trial-handle=2356,i,18080192190026170710,6504826081959743266,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
            Imagebase:0x7ff76e190000
            File size:3'242'272 bytes
            MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:false

            Target ID:3
            Start time:12:56:35
            Start date:28/10/2024
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://erp.broadcom.net"
            Imagebase:0x7ff76e190000
            File size:3'242'272 bytes
            MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:true

            No disassembly