IOC Report
https://file.privacy-shield.cc/prvcy/PrivacyShield.Msix

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\Downloads\89913904-cd67-4aeb-bd1f-1b7b24d39404.tmp
Zip archive data, at least v4.5 to extract, compression method=store
dropped
C:\Users\user\Downloads\Unconfirmed 59712.crdownload
Zip archive data, at least v4.5 to extract, compression method=store
dropped

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2092 --field-trial-handle=2004,i,10600604948691717322,12840706920262592925,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://file.privacy-shield.cc/prvcy/PrivacyShield.Msix"

IPs

IP
Domain
Country
Malicious
13.32.121.78
unknown
United States
1.1.1.1
unknown
Australia
239.255.255.250
unknown
Reserved
74.125.133.84
unknown
United States
142.250.185.131
unknown
United States
142.250.186.142
unknown
United States
172.217.18.4
unknown
United States
172.217.18.3
unknown
United States
192.168.2.16
unknown
unknown
192.168.2.4
unknown
unknown