IOC Report
https://iqzvfstfgkhjbcqj.pretest.com.br/fnjsagvklebfioyedsh/nfsavlkwhjvfedklhdf/fadkhvgqeuklhteiupog/sj.kim5@hdel.co.kr

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 41
HTML document, ASCII text
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2164 --field-trial-handle=1932,i,1268793181333793414,13281594498367312046,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://iqzvfstfgkhjbcqj.pretest.com.br/fnjsagvklebfioyedsh/nfsavlkwhjvfedklhdf/fadkhvgqeuklhteiupog/sj.kim5@hdel.co.kr"

URLs

Name
IP
Malicious
https://iqzvfstfgkhjbcqj.pretest.com.br/fnjsagvklebfioyedsh/nfsavlkwhjvfedklhdf/fadkhvgqeuklhteiupog/sj.kim5@hdel.co.kr
malicious
https://iqzvfstfgkhjbcqj.pretest.com.br/fnjsagvklebfioyedsh/nfsavlkwhjvfedklhdf/fadkhvgqeuklhteiupog/sj.kim5@hdel.co.kr
192.185.214.229
https://a.nel.cloudflare.com/report/v4?s=w48pkwmxigNng7XHPoWu8BqNzPwCSb%2B%2FDVW%2FjhHolVfEqtbkyd2ggtJfcEP7VL3ewcUs76zaCPGc3h%2FBjLQhaBLnKcS4MJWd7QQtPEIbMdHiGQ3g93XlDejEHQfqnzEork2CtLO6B%2FVxy3c%2BLo3XgA%3D%3D
35.190.80.1
https://online.telecommunication.best/impressions.html/?tech=c2oua2ltNUBoZGVsLmNvLmty
172.67.161.254
https://a.nel.cloudflare.com/report/v4?s=%2BDt2z%2FiBYvGyxDgdqLTD%2FmnhZSYLp0c1J7u2BPKmnAqe%2Fk4hcpkpR9owl8p2Oz51s50daDbUnW%2FIyug1guTiDjwHGBTF%2BAvXGaE11uhDuN%2FntgU3U4HCv8XFCYj9CSSveb2izTkCL%2BKlko07aSmaBg%3D%3D
35.190.80.1

Domains

Name
IP
Malicious
a.nel.cloudflare.com
35.190.80.1
online.telecommunication.best
172.67.161.254
iqzvfstfgkhjbcqj.pretest.com.br
192.185.214.229
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.186.68
fp2e7a.wpc.phicdn.net
192.229.221.95
s-part-0032.t-0009.t-msedge.net
13.107.246.60

IPs

IP
Domain
Country
Malicious
142.250.186.68
www.google.com
United States
239.255.255.250
unknown
Reserved
35.190.80.1
a.nel.cloudflare.com
United States
192.168.2.4
unknown
unknown
192.185.214.229
iqzvfstfgkhjbcqj.pretest.com.br
United States
172.67.161.254
online.telecommunication.best
United States