IOC Report
https://u7990385.ct.sendgrid.net/ls/click?upn=u001.oZ6GXC16Ztdw1ob-2F3C5yow-2FsK2YC4S8s269h9OLgp-2FGcQesCtXDXKgCEAF90Sa3OQINpMsGnptfyWHax5nVOtMIVqC-2F8evbj9lZePb3GoWyxJODFZYO-2BP5aLLWG2Kx2A-2BtoAOfeOBXubPnIrwGfx6NyiqorFpwd4yNcU9-2BTLFKpEav1PXbe-2B2gjMoJAp-2FAhoUBn5rsEZLMV8ts5LPJU-2BkEdBlR67HRvbJusJ3

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 41
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 42
HTML document, ASCII text, with no line terminators
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2020 --field-trial-handle=1984,i,9406349951362356741,3689044413684246570,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://u7990385.ct.sendgrid.net/ls/click?upn=u001.oZ6GXC16Ztdw1ob-2F3C5yow-2FsK2YC4S8s269h9OLgp-2FGcQesCtXDXKgCEAF90Sa3OQINpMsGnptfyWHax5nVOtMIVqC-2F8evbj9lZePb3GoWyxJODFZYO-2BP5aLLWG2Kx2A-2BtoAOfeOBXubPnIrwGfx6NyiqorFpwd4yNcU9-2BTLFKpEav1PXbe-2B2gjMoJAp-2FAhoUBn5rsEZLMV8ts5LPJU-2BkEdBlR67HRvbJusJ3gkWosWVN6hbNvBBPolAcaWzCtEBnP4m_0T32ClFdYnPySZLQz4syRv4NrLn7hEzf9XOHya3KN8KgFk2GDNtBLcOsynXmj2su4Q2o4kHdNWAGV0gMmA-2FBuXvE0kejdCZwrFzTk0AyBiOwTvVGCpt7s6qA9BYMa-2Bv6t72pZeOnjrPrjPJErZlLVhc5EPEMCjDuqq-2FF5o6Lpym9-2Fn12tZP7vfN1aS5VUnbpzbFjluOg1Qs2kFXWFgQK4GBJdmP6jj9QfWzAgukSongxedoUrnvfZl7pjnFCQi4fWCrV1A3DuAT2ZLy-2BQ8BITGg2de6CTLIaCCtjDKhBjhHHdlVa2ZGZLqRTXt-2Bth5h4zR8AEInYM7uVfJNKEtaxGyFTZ3kjr-2FYMRp8QoU9XqFfhYZjQ3OoYmSqhsT2NVT6vKbsrdYITogQp2qnGlHhiGb-2BUEG5w9VqeIggSh3uGwxhx8zSzxhepzToQ5ZYEvvcJwJgUxTg0ThMfdJGVHiYhHRd8S1nshj0dhKx937CaltamgqBQwr6zfjhsRSIJ-2FqpXZpwgQuwg2efkcfehaH2ceWAuCeJ6uC26Mm-2BlD-2FH3SiifgxELbztVXaBCCHp-2FU6FYfa8T2-2F89EpP3mK9nTg-2FlxqVpjmlrGDFsSmU2paI6eLtd4i7P3ZRw4j9ZvQcBrYOsLTqDpR819vkS05xD-2Foj-2BsMWmi3Wp0A6F-2ByaBgazVb-2BOmYV1WV-2BMZSEWuiZXEwKAwIRnvwdmq1nGXhlp2Nq8AvuwPNwnqRKA9UTpkN8-2FFVKxosEhf9Zk9a0KV-2FQ-2BEBKW2219iEGtlgQn30ayl0RfWILzyAleORSAjuwIvMf6-2BILNfW6o5JwVLjtvRADxCasPgpzzFCb7-2FaiixiURSBj1Ng6Pw4PB5e4SMJH4HXRR-2FnmL9vgnwyRFnHUK7ch3163H-2Fm-2Bur2AT4EpIg6LDmY165yQNiwBNcENAyvZccvRT5Ea6SzQgcSohEfbhiwNnqOF3uj-2BAM2SY0hPmy00dDAmCCwg-3D-3D__;!!DBRq3IFYHOmqRdv5!YUaokwic__Rnmdg3RF1lALp1vPqCGmRN-wLWoJZ3JBHatqzotbbZ1gLTvM59cQWMDL9v-MPS5wkP-sqbPalGoMbV8aukgw$"

URLs

Name
IP
Malicious
https://u7990385.ct.sendgrid.net/ls/click?upn=u001.oZ6GXC16Ztdw1ob-2F3C5yow-2FsK2YC4S8s269h9OLgp-2FGcQesCtXDXKgCEAF90Sa3OQINpMsGnptfyWHax5nVOtMIVqC-2F8evbj9lZePb3GoWyxJODFZYO-2BP5aLLWG2Kx2A-2BtoAOfeOBXubPnIrwGfx6NyiqorFpwd4yNcU9-2BTLFKpEav1PXbe-2B2gjMoJAp-2FAhoUBn5rsEZLMV8ts5LPJU-2BkEdBlR67HRvbJusJ3gkWosWVN6hbNvBBPolAcaWzCtEBnP4m_0T32ClFdYnPySZLQz4syRv4NrLn7hEzf9XOHya3KN8KgFk2GDNtBLcOsynXmj2su4Q2o4kHdNWAGV0gMmA-2FBuXvE0kejdCZwrFzTk0AyBiOwTvVGCpt7s6qA9BYMa-2Bv6t72pZeOnjrPrjPJErZlLVhc5EPEMCjDuqq-2FF5o6Lpym9-2Fn12tZP7vfN1aS5VUnbpzbFjluOg1Qs2kFXWFgQK4GBJdmP6jj9QfWzAgukSongxedoUrnvfZl7pjnFCQi4fWCrV1A3DuAT2ZLy-2BQ8BITGg2de6CTLIaCCtjDKhBjhHHdlVa2ZGZLqRTXt-2Bth5h4zR8AEInYM7uVfJNKEtaxGyFTZ3kjr-2FYMRp8QoU9XqFfhYZjQ3OoYmSqhsT2NVT6vKbsrdYITogQp2qnGlHhiGb-2BUEG5w9VqeIggSh3uGwxhx8zSzxhepzToQ5ZYEvvcJwJgUxTg0ThMfdJGVHiYhHRd8S1nshj0dhKx937CaltamgqBQwr6zfjhsRSIJ-2FqpXZpwgQuwg2efkcfehaH2ceWAuCeJ6uC26Mm-2BlD-2FH3SiifgxELbztVXaBCCHp-2FU6FYfa8T2-2F89EpP3mK9nTg-2FlxqVpjmlrGDFsSmU2paI6eLtd4i7P3ZRw4j9ZvQcBrYOsLTqDpR819vkS05xD-2Foj-2BsMWmi3Wp0A6F-2ByaBgazVb-2BOmYV1WV-2BMZSEWuiZXEwKAwIRnvwdmq1nGXhlp2Nq8AvuwPNwnqRKA9UTpkN8-2FFVKxosEhf9Zk9a0KV-2FQ-2BEBKW2219iEGtlgQn30ayl0RfWILzyAleORSAjuwIvMf6-2BILNfW6o5JwVLjtvRADxCasPgpzzFCb7-2FaiixiURSBj1Ng6Pw4PB5e4SMJH4HXRR-2FnmL9vgnwyRFnHUK7ch3163H-2Fm-2Bur2AT4EpIg6LDmY165yQNiwBNcENAyvZccvRT5Ea6SzQgcSohEfbhiwNnqOF3uj-2BAM2SY0hPmy00dDAmCCwg-3D-3D__;!!DBRq3IFYHOmqRdv5!YUaokwic__Rnmdg3RF1lALp1vPqCGmRN-wLWoJZ3JBHatqzotbbZ1gLTvM59cQWMDL9v-MPS5wkP-sqbPalGoMbV8aukgw$
https://u7990385.ct.sendgrid.net/ls/click?upn=u001.oZ6GXC16Ztdw1ob-2F3C5yow-2FsK2YC4S8s269h9OLgp-2FGcQesCtXDXKgCEAF90Sa3OQINpMsGnptfyWHax5nVOtMIVqC-2F8evbj9lZePb3GoWyxJODFZYO-2BP5aLLWG2Kx2A-2BtoAOfeOBXubPnIrwGfx6NyiqorFpwd4yNcU9-2BTLFKpEav1PXbe-2B2gjMoJAp-2FAhoUBn5rsEZLMV8ts5LPJU-2BkEdBlR67HRvbJusJ3gkWosWVN6hbNvBBPolAcaWzCtEBnP4m_0T32ClFdYnPySZLQz4syRv4NrLn7hEzf9XOHya3KN8KgFk2GDNtBLcOsynXmj2su4Q2o4kHdNWAGV0gMmA-2FBuXvE0kejdCZwrFzTk0AyBiOwTvVGCpt7s6qA9BYMa-2Bv6t72pZeOnjrPrjPJErZlLVhc5EPEMCjDuqq-2FF5o6Lpym9-2Fn12tZP7vfN1aS5VUnbpzbFjluOg1Qs2kFXWFgQK4GBJdmP6jj9QfWzAgukSongxedoUrnvfZl7pjnFCQi4fWCrV1A3DuAT2ZLy-2BQ8BITGg2de6CTLIaCCtjDKhBjhHHdlVa2ZGZLqRTXt-2Bth5h4zR8AEInYM7uVfJNKEtaxGyFTZ3kjr-2FYMRp8QoU9XqFfhYZjQ3OoYmSqhsT2NVT6vKbsrdYITogQp2qnGlHhiGb-2BUEG5w9VqeIggSh3uGwxhx8zSzxhepzToQ5ZYEvvcJwJgUxTg0ThMfdJGVHiYhHRd8S1nshj0dhKx937CaltamgqBQwr6zfjhsRSIJ-2FqpXZpwgQuwg2efkcfehaH2ceWAuCeJ6uC26Mm-2BlD-2FH3SiifgxELbztVXaBCCHp-2FU6FYfa8T2-2F89EpP3mK9nTg-2FlxqVpjmlrGDFsSmU2paI6eLtd4i7P3ZRw4j9ZvQcBrYOsLTqDpR819vkS05xD-2Foj-2BsMWmi3Wp0A6F-2ByaBgazVb-2BOmYV1WV-2BMZSEWuiZXEwKAwIRnvwdmq1nGXhlp2Nq8AvuwPNwnqRKA9UTpkN8-2FFVKxosEhf9Zk9a0KV-2FQ-2BEBKW2219iEGtlgQn30ayl0RfWILzyAleORSAjuwIvMf6-2BILNfW6o5JwVLjtvRADxCasPgpzzFCb7-2FaiixiURSBj1Ng6Pw4PB5e4SMJH4HXRR-2FnmL9vgnwyRFnHUK7ch3163H-2Fm-2Bur2AT4EpIg6LDmY165yQNiwBNcENAyvZccvRT5Ea6SzQgcSohEfbhiwNnqOF3uj-2BAM2SY0hPmy00dDAmCCwg-3D-3D__;!!DBRq3IFYHOmqRdv5!YUaokwic__Rnmdg3RF1lALp1vPqCGmRN-wLWoJZ3JBHatqzotbbZ1gLTvM59cQWMDL9v-MPS5wkP-sqbPalGoMbV8aukgw$
https://u7990385.ct.sendgrid.net/favicon.ico
167.89.115.35

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
www.google.com
142.250.186.100
u7990385.ct.sendgrid.net
167.89.115.35

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
167.89.115.35
u7990385.ct.sendgrid.net
United States
192.168.2.7
unknown
unknown
142.250.186.100
www.google.com
United States

DOM / HTML

URL
Malicious
https://u7990385.ct.sendgrid.net/ls/click?upn=u001.oZ6GXC16Ztdw1ob-2F3C5yow-2FsK2YC4S8s269h9OLgp-2FGcQesCtXDXKgCEAF90Sa3OQINpMsGnptfyWHax5nVOtMIVqC-2F8evbj9lZePb3GoWyxJODFZYO-2BP5aLLWG2Kx2A-2BtoAOfeOBXubPnIrwGfx6NyiqorFpwd4yNcU9-2BTLFKpEav1PXbe-2B2gjMoJAp-2FAhoUBn5rsEZLMV8ts5LPJU-2BkEdBlR67HRvbJusJ3gkWosWVN6hbNvBBPolAcaWzCtEBnP4m_0T32ClFdYnPySZLQz4syRv4NrLn7hEzf9XOHya3KN8KgFk2GDNtBLcOsynXmj2su4Q2o4kHdNWAGV0gMmA-2FBuXvE0kejdCZwrFzTk0AyBiOwTvVGCpt7s6qA9BYMa-2Bv6t72pZeOnjrPrjPJErZlLVhc5EPEMCjDuqq-2FF5o6Lpym9-2Fn12tZP7vfN1aS5VUnbpzbFjluOg1Qs2kFXWFgQK4GBJdmP6jj9QfWzAgukSongxedoUrnvfZl7pjnFCQi4fWCrV1A3DuAT2ZLy-2BQ8BITGg2de6CTLIaCCtjDKhBjhHHdlVa2ZGZLqRTXt-2Bth5h4zR8AEInYM7uVfJNKEtaxGyFTZ3kjr-2FYMRp8QoU9XqFfhYZjQ3OoYmSqhsT2NVT6vKbsrdYITogQp2qnGlHhiGb-2BUEG5w9VqeIggSh3uGwxhx8zSzxhepzToQ5ZYEvvcJwJgUxTg0ThMfdJGVHiYhHRd8S1nshj0dhKx937CaltamgqBQwr6zfjhsRSIJ-2FqpXZpwgQuwg2efkcfehaH2ceWAuCeJ6uC26Mm-2BlD-2FH3SiifgxELbztVXaBCCHp-2FU6FYfa8T2-2F89EpP3mK9nTg-2FlxqVpjmlrGDFsSmU2paI6eLtd4i7P3ZRw4j9ZvQcBrYOsLTqDpR819vkS05xD-2Foj-2B