IOC Report
https://files.constantcontact.com/b68ec2bc601/71fae93c-8fd5-4f19-99c3-6669e1d87934.png?rdr=true

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 43
PNG image data, 74 x 25, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 44
XML 1.0 document, ASCII text
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2252 --field-trial-handle=2188,i,7815101925424919649,4791692279173797684,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://files.constantcontact.com/b68ec2bc601/71fae93c-8fd5-4f19-99c3-6669e1d87934.png?rdr=true"

URLs

Name
IP
Malicious
https://files.constantcontact.com/b68ec2bc601/71fae93c-8fd5-4f19-99c3-6669e1d87934.png?rdr=true
https://files.constantcontact.com/favicon.ico
65.9.112.62
https://files.constantcontact.com/b68ec2bc601/71fae93c-8fd5-4f19-99c3-6669e1d87934.png?rdr=true

Domains

Name
IP
Malicious
d6j37cnssol7h.cloudfront.net
65.9.112.62
www.google.com
142.250.181.68
files.constantcontact.com
unknown

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
142.250.181.68
www.google.com
United States
65.9.112.62
d6j37cnssol7h.cloudfront.net
United States
192.168.2.4
unknown
unknown

DOM / HTML

URL
Malicious
https://files.constantcontact.com/b68ec2bc601/71fae93c-8fd5-4f19-99c3-6669e1d87934.png?rdr=true