IOC Report
https://teams.microsoft.com/l/message/19:18dde9a4-b4c9-44fb-9aa2-8147c57c8de0_cdda4d2a-493d-4c4a-8a39-f1e653d1c107@unq.gbl.spaces/1732033513651?context=%7B%22contextType%22%3A%22chat%22%7D

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 48
ASCII text, with very long lines (65449)
dropped
Chrome Cache Entry: 49
ASCII text, with very long lines (4212)
downloaded
Chrome Cache Entry: 50
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 51
JSON data
dropped
Chrome Cache Entry: 52
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 53
JSON data
dropped
Chrome Cache Entry: 54
ASCII text, with very long lines (65449)
downloaded
Chrome Cache Entry: 55
JSON data
dropped
Chrome Cache Entry: 56
JSON data
dropped
Chrome Cache Entry: 57
MS Windows icon resource - 8 icons, 256x256 with PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced, 32 bits/pixel, 256x256 with PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced, 32 bits/pixel
dropped
Chrome Cache Entry: 58
JSON data
dropped
Chrome Cache Entry: 59
JSON data
dropped
Chrome Cache Entry: 60
JSON data
dropped
Chrome Cache Entry: 61
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 62
HTML document, Unicode text, UTF-8 text, with very long lines (17932), with no line terminators
downloaded
Chrome Cache Entry: 63
JSON data
dropped
Chrome Cache Entry: 64
MS Windows icon resource - 8 icons, 256x256 with PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced, 32 bits/pixel, 256x256 with PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced, 32 bits/pixel
downloaded
Chrome Cache Entry: 65
JSON data
dropped
Chrome Cache Entry: 66
JSON data
dropped
Chrome Cache Entry: 67
SVG Scalable Vector Graphics image
downloaded
There are 11 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1060 --field-trial-handle=2008,i,4229769164203327956,2612833967768037690,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://teams.microsoft.com/l/message/19:18dde9a4-b4c9-44fb-9aa2-8147c57c8de0_cdda4d2a-493d-4c4a-8a39-f1e653d1c107@unq.gbl.spaces/1732033513651?context=%7B%22contextType%22%3A%22chat%22%7D"

Domains

Name
IP
Malicious
www.google.com
142.250.186.164
s-0005.dual-s-msedge.net
52.123.128.14

IPs

IP
Domain
Country
Malicious
192.168.2.4
unknown
unknown
52.123.128.14
s-0005.dual-s-msedge.net
United States
239.255.255.250
unknown
Reserved
142.250.186.164
www.google.com
United States

DOM / HTML

URL
Malicious
https://teams.microsoft.com/dl/launcher/launcher.html?url=%2F_%23%2Fl%2Fmessage%2F19%3A18dde9a4-b4c9-44fb-9aa2-8147c57c8de0_cdda4d2a-493d-4c4a-8a39-f1e653d1c107%40unq.gbl.spaces%2F1732033513651%3Fcontext%3D%257B%2522contextType%2522%253A%2522chat%2522%257D&type=message&deeplinkId=9c9ca11a-0b19-40b5-a427-e5b38099b39b&directDl=true&msLaunch=true&enableMobilePage=true&suppressPrompt=true
https://teams.microsoft.com/dl/launcher/launcher.html?url=%2F_%23%2Fl%2Fmessage%2F19%3A18dde9a4-b4c9-44fb-9aa2-8147c57c8de0_cdda4d2a-493d-4c4a-8a39-f1e653d1c107%40unq.gbl.spaces%2F1732033513651%3Fcontext%3D%257B%2522contextType%2522%253A%2522chat%2522%257D&type=message&deeplinkId=9c9ca11a-0b19-40b5-a427-e5b38099b39b&directDl=true&msLaunch=true&enableMobilePage=true&suppressPrompt=true#