IOC Report
https://siiportale.acquirenteunico.it/comunicazioni/-/asset_publisher/5GDyPvwCeJ6E/content/riattivazione-cloud-misure?inheritRedirect=false&redirect=https://siiportale.acquirenteunico.it/comunicazioni?p_p_id=101_INSTANCE_5GDyPvwCeJ6E&p_p_lifecycle=0&p_p_state=normal&p_p_mode=view&p_p_col_id=column-2

loading gif

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2056 --field-trial-handle=1932,i,14179078796029693503,3585288164958245737,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://siiportale.acquirenteunico.it/comunicazioni/-/asset_publisher/5GDyPvwCeJ6E/content/riattivazione-cloud-misure?inheritRedirect=false&redirect=https://siiportale.acquirenteunico.it/comunicazioni?p_p_id=101_INSTANCE_5GDyPvwCeJ6E&p_p_lifecycle=0&p_p_state=normal&p_p_mode=view&p_p_col_id=column-2&p_p_col_pos=1&p_p_col_count=2"

Domains

Name
IP
Malicious
siiportale.acquirenteunico.it
185.234.236.10
www.google.com
142.250.186.132
fp2e7a.wpc.phicdn.net
192.229.221.95
56.126.166.20.in-addr.arpa
unknown

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
142.250.186.132
www.google.com
United States
192.168.2.4
unknown
unknown
185.234.236.10
siiportale.acquirenteunico.it
Italy