Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 11:45:49 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 11:45:49 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 09:23:19 2023, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 11:45:49 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 11:45:49 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 11:45:49 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 68
|
HTML document, ASCII text, with CRLF line terminators
|
downloaded
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://url7700.sugarwish.com/wf/open?upn=u001.etcngukW2f9Wo-2BWRMt0HZnd-2FHGgITZ8lP0HZ8reAMFt8j2H9KP92FtQV5MQUzLemtgXKcF3SnVC28uLQ7lQlFLBZnIC9b6LjBr-2FtWwqd5Vm23VCXFQdaDGwOUctZvf3d-2Bj005iM5kPphcS4y9scjiGF76BFGooohygAWWPr7v-2F8oOkNppTuVCCv5VqSpoIpYFiwNV5K-2BmQ5n8rkwH-2BZs19a0S4ACs7cG0coB8hCkc7dYusWYc9VpM6YOH44QWlSsFxNHzjy-2Bdaajt-2BviK61tww-3D-3D
|
|||
http://url7700.sugarwish.com/wf/open?upn=u001.etcngukW2f9Wo-2BWRMt0HZnd-2FHGgITZ8lP0HZ8reAMFt8j2H9KP92FtQV5MQUzLemtgXKcF3SnVC28uLQ7lQlFLBZnIC9b6LjBr-2FtWwqd5Vm23VCXFQdaDGwOUctZvf3d-2Bj005iM5kPphcS4y9scjiGF76BFGooohygAWWPr7v-2F8oOkNppTuVCCv5VqSpoIpYFiwNV5K-2BmQ5n8rkwH-2BZs19a0S4ACs7cG0coB8hCkc7dYusWYc9VpM6YOH44QWlSsFxNHzjy-2Bdaajt-2BviK61tww-3D-3D
|
|||
http://url7700.sugarwish.com/favicon.ico
|
167.89.118.128
|
||
https://url7700.sugarwish.com/wf/open?upn=u001.etcngukW2f9Wo-2BWRMt0HZnd-2FHGgITZ8lP0HZ8reAMFt8j2H9KP92FtQV5MQUzLemtgXKcF3SnVC28uLQ7lQlFLBZnIC9b6LjBr-2FtWwqd5Vm23VCXFQdaDGwOUctZvf3d-2Bj005iM5kPphcS4y9scjiGF76BFGooohygAWWPr7v-2F8oOkNppTuVCCv5VqSpoIpYFiwNV5K-2BmQ5n8rkwH-2BZs19a0S4ACs7cG0coB8hCkc7dYusWYc9VpM6YOH44QWlSsFxNHzjy-2Bdaajt-2BviK61tww-3D-3D
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
sendgrid.net
|
167.89.118.128
|
||
www.google.com
|
172.217.21.36
|
||
url7700.sugarwish.com
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
172.217.19.206
|
unknown
|
United States
|
||
172.217.19.227
|
unknown
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
192.168.2.24
|
unknown
|
unknown
|
||
192.168.2.23
|
unknown
|
unknown
|
||
167.89.118.128
|
sendgrid.net
|
United States
|
||
172.217.17.35
|
unknown
|
United States
|
||
64.233.161.84
|
unknown
|
United States
|
||
142.250.181.142
|
unknown
|
United States
|
||
172.217.21.36
|
www.google.com
|
United States
|
||
192.168.2.18
|
unknown
|
unknown
|
There are 2 hidden IPs, click here to show them.