Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 18:46:05 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 18:46:05 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 18:46:05 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 18:46:05 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Nov 19 18:46:05 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 67
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 68
|
ASCII text, with very long lines (505)
|
downloaded
|
||
Chrome Cache Entry: 71
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 72
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 73
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 74
|
MS Windows icon resource - 4 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 75
|
ASCII text, with very long lines (706)
|
downloaded
|
There are 4 hidden files, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://u8411862.ct.sendgrid.net/ls/click?upn=u001.L4PK-2B0-2BuGt9pUFq-2FA3Op7Q-2F-2F9qb88t-2BRGAR6VDZa-2FLvCRsA1Ac7AajOPJIbQO7IP307a6xjNpvY8ZU7zRp9oyg-3D-3DE1Fg_CPebASiKsSpOAa3SLW44RsJxX9ZLglP0y4de2rxHefrHjZqY5SRIy9wKYZ9ERHf3zKK6o7ixiO4r4HIIwwj5RfSWrFWq-2FUbkZI-2FrBFl28oYsoQhEIuqeOt-2BjCiFlWuLC4rDomVqHzNhdvSab-2F-2Fw8d5IAtmQQI0BdCul9u12mfWcV4mFdLlsTdv9empaAUbuFjvZWnyaUm8GOERw44MojSA-3D-3D
|
|||
https://imsoidc.bentley.com/connect/authorize?client_id=user-management&redirect_uri=https%3A%2F%2Fusermanagement.bentley.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20email%20user-management%20bentley-admin-api%20notification-service-20%20entitlement-search-service-2576%20ulas-product-information-2727%20agreements-2354&response_mode=form_post&nonce=638676423667396039.NzBlOWM4OTktOTFhYi00YmJkLTllNzYtMzZhZDhmYzUwMjAyOGMzOTFjZWQtZWViNC00ZTY5LWJmYzAtZGY1MjI5MDQ1YWUx&state=CfDJ8MKYeJ71b-9CueOVG07N9iuuFB_F8DYbFtOXu-nqWIKfVwrRunsryiib8HbqolyrqXBrmvhgbkw7frWWlLhwmjMt7bgN3FangX4Dz1SztrjK7cGoabkyPWoklfgcxi9A8bzWMxF61RuLoLSs53aCNfETg918YY7i_6rXM3441WSupl62Ng9vJSY-0XdEVq3ZLsvkErC1clObAEcdYx-PWnoL9bcMmhx8kBo_heWPKoCJLwhq_k8f-_kBzYS4bixJ8M2jsAbGeQJLYAFIfCPvfKY7bpEC5dBrWXy7SD5wLICnRVZ1eHhlrfua00aSIKyFHg&x-client-SKU=ID_NETSTANDARD2_0&x-client-ver=5.6.0.0
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
prod.ims.bentley.proofidcloud.com
|
52.59.10.51
|
||
www.google.com
|
172.217.16.196
|
||
u8411862.ct.sendgrid.net
|
167.89.115.58
|
||
sni1gl.wpc.nucdn.net
|
152.199.21.175
|
||
imsoidc.bentley.com
|
unknown
|
||
connect-cdn.bentley.com
|
unknown
|
||
usermanagement.bentley.com
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
142.250.185.99
|
unknown
|
United States
|
||
142.250.185.206
|
unknown
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
142.250.186.163
|
unknown
|
United States
|
||
142.250.186.174
|
unknown
|
United States
|
||
167.89.115.58
|
u8411862.ct.sendgrid.net
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
192.168.2.5
|
unknown
|
unknown
|
||
20.105.232.11
|
unknown
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
52.59.10.51
|
prod.ims.bentley.proofidcloud.com
|
United States
|
||
172.217.18.106
|
unknown
|
United States
|
||
152.199.21.175
|
sni1gl.wpc.nucdn.net
|
United States
|
||
64.233.184.84
|
unknown
|
United States
|
||
172.217.16.196
|
www.google.com
|
United States
|
There are 5 hidden IPs, click here to show them.