Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Local\Microsoft\Office\Features\1-7FeatureCache.txt (copy)
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\599B631D.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 16:58:15 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 16:58:15 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:54:41 2023, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 16:58:15 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 16:58:15 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 16:58:15 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://grandeoryalesinc.us/dg.PDF
|
|||
https://meeb.ubszzspy.ru/s6pTqt/
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
dual-spov-0006.spov-msedge.net
|
13.107.139.11
|
||
a.nel.cloudflare.com
|
35.190.80.1
|
||
grandeoryalesinc.us
|
188.114.97.3
|
||
code.jquery.com
|
151.101.194.137
|
||
pwerqcq5pbpaywn7vzu8525khscodijonvisnb15kkibzyaktenm45c1bk.wceescty.ru
|
188.114.97.3
|
||
cdnjs.cloudflare.com
|
104.17.25.14
|
||
challenges.cloudflare.com
|
104.18.95.41
|
||
s-part-0017.t-0009.t-msedge.net
|
13.107.246.45
|
||
www.google.com
|
142.250.185.228
|
||
meeb.ubszzspy.ru
|
188.114.96.3
|
||
www.onedrive.com
|
unknown
|
||
assets.onestore.ms
|
unknown
|
||
ajax.aspnetcdn.com
|
unknown
|
||
c.s-microsoft.com
|
unknown
|
||
onedrive.live.com
|
unknown
|
There are 5 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
142.250.185.228
|
www.google.com
|
United States
|
||
152.199.19.160
|
unknown
|
United States
|
||
13.107.246.45
|
s-part-0017.t-0009.t-msedge.net
|
United States
|
||
104.102.41.166
|
unknown
|
United States
|
||
192.168.2.17
|
unknown
|
unknown
|
||
104.18.94.41
|
unknown
|
United States
|
||
20.189.173.10
|
unknown
|
United States
|
||
184.28.89.233
|
unknown
|
United States
|
||
88.221.110.176
|
unknown
|
European Union
|
||
51.105.104.217
|
unknown
|
United Kingdom
|
||
151.101.66.137
|
unknown
|
United States
|
||
151.101.194.137
|
code.jquery.com
|
United States
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
88.221.110.177
|
unknown
|
European Union
|
||
13.107.139.11
|
dual-spov-0006.spov-msedge.net
|
United States
|
||
52.113.194.132
|
unknown
|
United States
|
||
142.250.186.78
|
unknown
|
United States
|
||
104.17.24.14
|
unknown
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
88.221.110.208
|
unknown
|
European Union
|
||
142.251.5.84
|
unknown
|
United States
|
||
104.18.95.41
|
challenges.cloudflare.com
|
United States
|
||
88.221.169.152
|
unknown
|
European Union
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
188.114.97.3
|
grandeoryalesinc.us
|
European Union
|
||
142.250.185.131
|
unknown
|
United States
|
||
188.114.96.3
|
meeb.ubszzspy.ru
|
European Union
|
||
184.28.90.27
|
unknown
|
United States
|
||
2.18.64.217
|
unknown
|
European Union
|
||
172.217.16.195
|
unknown
|
United States
|
||
52.109.76.240
|
unknown
|
United States
|
||
104.17.25.14
|
cdnjs.cloudflare.com
|
United States
|
There are 22 hidden IPs, click here to show them.