IOC Report
https://ib.adnxs.com/getuid?https://dis.criteo.com/dis/rtb/appnexus/cookiematch.aspx?appnxsid=$UID

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 40
MS Windows icon resource - 1 icon, 16x16
downloaded
Chrome Cache Entry: 41
MS Windows icon resource - 1 icon, 16x16
dropped
Chrome Cache Entry: 42
GIF image data, version 89a, 1 x 1
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2156 --field-trial-handle=2028,i,7827939660576792006,6226119586176521499,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://ib.adnxs.com/getuid?https://dis.criteo.com/dis/rtb/appnexus/cookiematch.aspx?appnxsid=$UID"

URLs

Name
IP
Malicious
https://ib.adnxs.com/getuid?https://dis.criteo.com/dis/rtb/appnexus/cookiematch.aspx?appnxsid=$UID
https://ib.adnxs.com/bounce?%2Fgetuid%3Fhttps%3A%2F%2Fdis.criteo.com%2Fdis%2Frtb%2Fappnexus%2Fcookiematch.aspx%3Fappnxsid%3D%24UID
37.252.171.52
https://widget.us.criteo.com/favicon.ico
74.119.117.16
https://widget.us.criteo.com/dis/rtb/appnexus/cookiematch.aspx?appnxsid=7888404678500780472
https://ib.adnxs.com/getuid?https://dis.criteo.com/dis/rtb/appnexus/cookiematch.aspx?appnxsid=$UID
37.252.171.52
https://dis.criteo.com/dis/rtb/appnexus/cookiematch.aspx?appnxsid=7888404678500780472
178.250.1.9

Domains

Name
IP
Malicious
widget.nl3.vip.prod.criteo.com
178.250.1.9
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.186.36
ib.anycast.adnxs.com
37.252.171.52
widget.us5.vip.prod.criteo.com
74.119.117.16
fp2e7a.wpc.phicdn.net
192.229.221.95
dis.criteo.com
unknown
ib.adnxs.com
unknown
widget.us.criteo.com
unknown

IPs

IP
Domain
Country
Malicious
178.250.1.9
widget.nl3.vip.prod.criteo.com
France
142.250.186.36
www.google.com
United States
239.255.255.250
unknown
Reserved
74.119.117.16
widget.us5.vip.prod.criteo.com
United States
192.168.2.4
unknown
unknown
37.252.171.52
ib.anycast.adnxs.com
European Union

DOM / HTML

URL
Malicious
https://widget.us.criteo.com/dis/rtb/appnexus/cookiematch.aspx?appnxsid=7888404678500780472