top title background image
flash

https://docsend.com/view/vs4xxnasd8xu75by

Status: finished
Submission Time: 2021-11-30 05:17:10 +01:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    530873
  • API (Web) ID:
    898395
  • Analysis Started:
    2021-11-30 05:17:10 +01:00
  • Analysis Finished:
    2021-11-30 05:23:21 +01:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 52
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
54.91.59.199
United States
104.18.10.207
United States
142.250.180.78
United States
Click to see the 6 hidden entries
142.250.180.77
United States
142.250.180.163
United States
104.19.142.111
United States
239.255.255.250
Reserved
142.250.180.65
United States
104.16.19.94
United States

Domains

Name IP Detection
gstaticadssl.l.google.com
142.250.180.163
accounts.google.com
142.250.180.77
i.gyazo.com
104.19.142.111
Click to see the 13 hidden entries
cdnjs.cloudflare.com
104.16.19.94
maxcdn.bootstrapcdn.com
104.18.10.207
clients.l.google.com
142.250.180.78
docsend.com
54.91.59.199
googlehosted.l.googleusercontent.com
142.250.180.65
ka-f.fontawesome.com
0.0.0.0
kit.fontawesome.com
0.0.0.0
aadcdn.msauth.net
0.0.0.0
clients2.googleusercontent.com
0.0.0.0
clients2.google.com
0.0.0.0
code.jquery.com
0.0.0.0
onedrive.live.com
0.0.0.0
e9qmzg.bl.files.1drv.com
0.0.0.0

URLs

Name Detection
file:///C:/Users/user/Downloads/Payment-Receipt.html
https://hangouts.clients6.google.com
https://www.google.com/intl/en-US/chrome/blank.html
Click to see the 97 hidden entries
http://www.apache.org/licenses/LICENSE-2.0
https://clients2.google.com
https://onedrive.live.com/download?cid=59C6A303099CB9A4&resid=59C6A303099CB9A4%21594&authkey=AExLMfz
https://csp.withgoogle.com/csp/report-to/hosted-libraries-pushers
https://www-googleapis-staging.sandbox.google.com
https://apis.google.com
https://github.com/angular/material
http://angularjs.org
https://clients2.google.com/cr/report
https://accounts.google.com
https://meet.google.com
https://notify.bugsnag.com
https://api-ping.intercom.io
https://creativecommons.org/.
https://github.com/easylist)
https://clients2.googleusercontent.com/crx/blobs/Acy1k0bLIjHsvnKaKN_oRpVaYYvFs25d7GKYF1WXrT6yizCMksBO0c_ggE0B6tx6HPRHe6q1GOEe3_NcIbSiGG8kXeLMUY0sAKVvC6R89zvKM13s5VqoAMZSmuUgjQL5vlygJuArQghXXE_qTL7NlQ/extension_8520_615_0_5.crx
https://creativecommons.org/compatiblelicenses
https://accounts.google.com/MergeSession
https://sandbox.google.com/payments/v4/js/integrator.js
https://nexus-websocket-a.intercom.io
https://docsend.com/view/vs4xxnasd8xu75by59C6A303099CB9A4
https://ka-f.fontawesome.com/releases/v5.15.4/css/free-v4-shims.min.css?token=585b051251
https://www.google.com/log?format=json&hasfast=true
http://llvm.org/):
https://clients2.googleusercontent.com
https://uploads.intercomusercontent.com
https://support.google.com/chromecast/answer/2998456
https://nexus-websocket-b.intercom.io
https://csp.withgoogle.com/csp/hosted-libraries-pushersCross-Origin-Resource-Policy:
https://code.google.com/p/nativeclient/issues/entry
https://cdnjs.cloudflare.com/ajax/libs/popper.js/1.12.9/umd/popper.min.js
https://docsend.com/view/vs4xxnasd8xu75by
https://gyazo.comAge:
https://code.google.com/p/nativeclient/issues/entry%s:
https://meetings.clients6.google.com
https://kit.fontawesome.com
https://ogs.google.com
https://nexus-long-poller-a.intercom.io
https://code.jquery.com/jquery-3.3.1.js
https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0/css/bootstrap.min.css
https://nexus-long-poller-b.intercom.io
https://hangouts.google.com/
https://chromium.googlesource.com/a/native_client/pnacl-llvm.git
https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0/js/bootstrap.min.jsy
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard
https://code.jquery.com/jquery-3.1.1.min.js
https://aadcdn.msauth.net/ests/2.1/content/images/favicon_a_eupayfgghqiai7k9sol6lg2.ico
https://play.google.com
https://api.intercom.io
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions
https://support.google.com/chromecast/troubleshooter/2995236
https://github.com/google/closure-library/wiki/goog.module:-an-ES6-module-like-alternative-to-goog.p
https://dns.google
https://www.google.com/tools/feedback
https://i.gyazo.com/960ba84347db823b8e7fc9cd4369a4cc.png
https://github.com/madler/zlib/blob/master/zlib.h
https://www.google.com/accounts/OAuthLogin?issueuberauth=1
https://kit.fontawesome.com/585b051251.js
https://i.gyazo.com/d1b2270a564efe0c37d2e01ed1c647a8.png
https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0/js/bootstrap.min.js
https://creativecommons.org/publicdomain/zero/1.0/.
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=85.0.4183.121&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1&x=id%3Dpkedcjkdefgpdelpbcmbmeomcjbeemfm%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
https://hangouts.google.com/hangouts/_/logpref
https://www.google.com
https://preprod-hangouts-googleapis.sandbox.google.com
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions-01
https://docsend.com/view/vs4xxnasd8xu75byy?
https://cdn.segment.com
https://easylist.to/)
https://crash.corp.google.com/samples?reportid=&q=
https://e9qmzg.bl.files.1drv.com/y4mfQlinL1bjZWvQxbSaPtnetahEIoHLnMnJI6oj1ylel9auWkfO4GQpcYn9KT1aRVB
https://code.jquery.com/jquery-3.2.1.slim.min.js
https://a.nel.cloudflare.com/report/v3?s=icKGpM7uYIiZswZvQEHjBMof4gelzMvES6xMZP4r6n7GxoYUR9JYUFkNLc9
https://code.jquery.com/jquery-3.3.1.js&
https://www.google.com/images/cleardot.gif
https://ka-f.fontawesome.com
https://cdnjs.cloudflare.com/ajax/libs/popper.js/1.12.9/umd/popper.min.jskf
https://a.nel.cloudflare.com/report/v3?s=aJe%2B3%2F4hNG3Whh0qPCoSicWI%2BVtjYBqSfq0o%2B%2F24mI7J3PldT
https://api.segment.io
https://clients6.google.com
https://feedback.googleusercontent.com
https://www.google.com/
https://docs.google.com
https://d2qvtfnm75xrxf.cloudfront.net
https://gyazo.com
https://apis.google.com/js/client.js
http://tools.ietf.org/html/rfc1950
https://sessions.bugsnag.com
https://play.google.com/log?format=json&hasfast=true
https://i.gyazo.com/d1b2270a564efe0c37d2e01ed1c647a8.pngD
https://www.google.com/images/dot2.gif
https://www.google.com/images/x2.gif
https://csp.withgoogle.com/csp/hosted-libraries-pushers
https://ka-f.fontawesome.com/releases/v5.15.4/css/free.min.css?token=585b051251
https://api-iam.intercom.io
https://www.google.com;
https://payments.google.com/payments/v4/js/integrator.js

Dropped files

No malicious files found. See full and IOC report for all dropped files.