IOC Report
https://www.aia.com.au/en/financial-wellbeing/get-in-touch/initial-chat?id=afgstaff

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 00:15:02 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 00:15:02 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 00:15:02 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 00:15:02 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 00:15:02 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 127
ASCII text
downloaded
Chrome Cache Entry: 128
ASCII text, with very long lines (351), with CRLF line terminators
dropped
Chrome Cache Entry: 129
PNG image data, 40 x 40, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 131
ASCII text, with very long lines (561)
dropped
Chrome Cache Entry: 132
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 133
ASCII text, with very long lines (18298)
dropped
Chrome Cache Entry: 140
ASCII text, with very long lines (5552)
downloaded
Chrome Cache Entry: 142
TrueType Font data, 17 tables, 1st "GDEF", 15 names, Microsoft, language 0x409, Digitized data copyright \251 2011, Google Corporation.Open Sans SemiBoldRegular1.10;1ASC;OpenSa
downloaded
Chrome Cache Entry: 143
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 144
ASCII text
dropped
Chrome Cache Entry: 145
ASCII text, with very long lines (1572)
downloaded
Chrome Cache Entry: 146
ASCII text
downloaded
Chrome Cache Entry: 147
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
downloaded
Chrome Cache Entry: 148
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 149
ASCII text
dropped
Chrome Cache Entry: 151
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 322x544, components 3
dropped
Chrome Cache Entry: 152
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 155
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 157
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 160
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 161
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 163
Unicode text, UTF-8 text, with very long lines (65441), with CRLF line terminators
downloaded
Chrome Cache Entry: 164
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 165
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 166
HTML document, Unicode text, UTF-8 text, with very long lines (6899), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 168
Unicode text, UTF-8 text, with very long lines (64006)
dropped
Chrome Cache Entry: 169
ASCII text, with very long lines (1468), with no line terminators
dropped
Chrome Cache Entry: 170
ASCII text, with very long lines (32731)
dropped
Chrome Cache Entry: 173
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 175
ASCII text, with very long lines (11524), with no line terminators
dropped
Chrome Cache Entry: 176
ASCII text
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (7134)
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (347)
downloaded
Chrome Cache Entry: 179
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 180
PNG image data, 68 x 68, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 181
ASCII text
dropped
Chrome Cache Entry: 183
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 184
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 185
ASCII text, with very long lines (31685), with no line terminators
dropped
Chrome Cache Entry: 186
ASCII text, with very long lines (14372), with no line terminators
dropped
Chrome Cache Entry: 187
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 190
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 192
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 193
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 194
ASCII text, with very long lines (52360)
dropped
Chrome Cache Entry: 197
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (649)
dropped
Chrome Cache Entry: 199
TrueType Font data, 17 tables, 1st "GDEF", 13 names, Microsoft, language 0x409, Digitized data copyright \251 2010-2011, Google Corporation.Open SansBold1.10;1ASC;OpenSans-Bold
downloaded
Chrome Cache Entry: 200
TrueType Font data, 17 tables, 1st "GDEF", 13 names, Microsoft, language 0x409, Digitized data copyright \251 2010-2011, Google Corporation.Open SansRegular1.10;1ASC;OpenSans-R
downloaded
Chrome Cache Entry: 204
Unicode text, UTF-8 text, with very long lines (51384), with no line terminators
dropped
Chrome Cache Entry: 207
ASCII text
downloaded
Chrome Cache Entry: 209
ASCII text, with very long lines (665)
downloaded
Chrome Cache Entry: 211
ASCII text, with very long lines (501)
downloaded
Chrome Cache Entry: 216
Unicode text, UTF-8 text, with very long lines (65278)
downloaded
Chrome Cache Entry: 219
Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
downloaded
Chrome Cache Entry: 222
ASCII text, with very long lines (701)
downloaded
Chrome Cache Entry: 226
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 227
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 228
Web Open Font Format (Version 2), TrueType, length 29288, version 1.0
downloaded
Chrome Cache Entry: 229
ASCII text, with very long lines (9217)
dropped
Chrome Cache Entry: 230
ASCII text, with very long lines (26205)
downloaded
Chrome Cache Entry: 231
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 234
ASCII text, with very long lines (12276), with no line terminators
downloaded
Chrome Cache Entry: 235
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 236
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 237
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 238
ASCII text, with very long lines (26244), with no line terminators
downloaded
There are 64 hidden files, click here to show them.

URLs

Name
IP
Malicious
https://www.aia.com.au/en/financial-wellbeing/get-in-touch/initial-chat?id=afgstaff
https://www.aia.com.au/en/financial-wellbeing/get-in-touch/initial-chat?id=afgstaff

Domains

Name
IP
Malicious
star-mini.c10r.facebook.com
157.240.251.35
s-part-0017.t-0009.t-msedge.net
13.107.246.45
d-ams1.turn.com
46.228.164.13
ax-0001.ax-msedge.net
150.171.27.10
adobetarget.data.adobedc.net
66.235.152.225
scontent.xx.fbcdn.net
157.240.0.6
youtube-ui.l.google.com
142.250.185.142
sync.crwdcntrl.net
79.125.104.96
cm.g.doubleclick.net
142.250.186.98
www.google.com
172.217.18.4
demdex.net.ssl.sc.omtrdc.net
63.140.62.17
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
34.241.251.121
aia-fw.convincely.io
76.76.21.61
s-part-0032.t-0009.t-msedge.net
13.107.246.60
s7ap1.scene7.com
unknown
www.facebook.com
unknown
assets.adobedtm.com
unknown
www.clarity.ms
unknown
www.aia.com.au
unknown
aiagroup.demdex.net
unknown
cdn25.lemnisk.co
unknown
connect.facebook.net
unknown
americaninternationa.tt.omtrdc.net
unknown
au-pl.lemnisk.co
unknown
cdn8.lemnisk.co
unknown
d.turn.com
unknown
s.clarity.ms
unknown
cdn12.lemnisk.co
unknown
au-ax.lemnisk.co
unknown
analytics.tiktok.com
unknown
adobedc.demdex.net
unknown
www.youtube.com
unknown
c.clarity.ms
unknown
dpm.demdex.net
unknown
There are 24 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
2.18.64.26
unknown
European Union
13.107.246.45
s-part-0017.t-0009.t-msedge.net
United States
66.235.152.225
adobetarget.data.adobedc.net
United States
63.140.62.222
unknown
United States
142.250.185.142
youtube-ui.l.google.com
United States
76.76.21.61
aia-fw.convincely.io
United States
204.79.197.237
unknown
United States
142.250.184.195
unknown
United States
1.1.1.1
unknown
Australia
2.18.64.15
unknown
European Union
172.217.18.4
www.google.com
United States
74.125.71.84
unknown
United States
172.217.18.3
unknown
United States
104.102.61.242
unknown
United States
63.140.62.17
demdex.net.ssl.sc.omtrdc.net
United States
79.125.104.96
sync.crwdcntrl.net
Ireland
239.255.255.250
unknown
Reserved
66.235.152.156
unknown
United States
142.250.185.195
unknown
United States
172.217.16.196
unknown
United States
172.217.16.195
unknown
United States
142.250.186.46
unknown
United States
172.217.18.14
unknown
United States
184.28.89.29
unknown
United States
192.168.2.16
unknown
unknown
34.241.251.121
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
United States
13.107.246.60
s-part-0032.t-0009.t-msedge.net
United States
216.58.206.36
unknown
United States
157.240.0.6
scontent.xx.fbcdn.net
United States
216.58.206.35
unknown
United States
46.228.164.13
d-ams1.turn.com
United Kingdom
142.250.185.164
unknown
United States
150.171.28.10
unknown
United States
13.74.129.1
unknown
United States
34.249.23.253
unknown
United States
142.250.184.206
unknown
United States
104.102.61.94
unknown
United States
142.250.74.195
unknown
United States
142.250.186.98
cm.g.doubleclick.net
United States
142.250.186.138
unknown
United States
172.217.16.202
unknown
United States
23.96.124.68
unknown
United States
76.76.21.123
unknown
United States
52.49.181.118
unknown
United States
150.171.27.10
ax-0001.ax-msedge.net
United States
54.216.198.28
unknown
United States
2.16.241.14
unknown
European Union
2.16.168.7
unknown
European Union
157.240.251.35
star-mini.c10r.facebook.com
United States
There are 39 hidden IPs, click here to show them.