IOC Report
https://iam.ngscout.org/account/resetpassword?id=d05ffe24-cb73-4f03-bf4f-9e9ff83127f7&code=cc2ff9ab-5352-4ab7-90d6-7459bc6ea5db

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 03:55:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 03:55:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:00:51 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 03:55:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 03:55:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 03:55:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 159
ASCII text, with very long lines (2895), with no line terminators
downloaded
Chrome Cache Entry: 160
ASCII text, with very long lines (32709)
downloaded
Chrome Cache Entry: 161
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 162
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 163
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 164
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 165
JSON data
downloaded
Chrome Cache Entry: 166
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 167
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 168
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 169
ASCII text, with very long lines (2864)
downloaded
Chrome Cache Entry: 170
ASCII text, with very long lines (2864)
dropped
Chrome Cache Entry: 171
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 172
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 173
JSON data
dropped
Chrome Cache Entry: 174
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 175
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 176
Web Open Font Format (Version 2), TrueType, length 50668, version 1.0
downloaded
Chrome Cache Entry: 177
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 178
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 179
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 180
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 181
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 182
HTML document, ASCII text
downloaded
Chrome Cache Entry: 183
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 184
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 185
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 186
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 187
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 188
HTML document, Unicode text, UTF-8 text, with very long lines (9990)
downloaded
Chrome Cache Entry: 189
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 190
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 191
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 192
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 193
Web Open Font Format (Version 2), TrueType, length 156496, version 773.768
downloaded
Chrome Cache Entry: 194
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 195
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 196
ASCII text, with very long lines (6180)
downloaded
Chrome Cache Entry: 197
Web Open Font Format (Version 2), TrueType, length 23692, version 1.0
downloaded
Chrome Cache Entry: 198
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 199
ASCII text, with very long lines (65310)
dropped
Chrome Cache Entry: 200
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 201
ASCII text, with very long lines (32026)
downloaded
Chrome Cache Entry: 202
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 203
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 204
ASCII text
downloaded
Chrome Cache Entry: 205
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 206
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 207
HTML document, Unicode text, UTF-8 text, with very long lines (60434)
dropped
Chrome Cache Entry: 208
HTML document, ASCII text
downloaded
Chrome Cache Entry: 209
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 210
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 211
PNG image data, 49 x 53, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 212
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 213
HTML document, ASCII text
downloaded
Chrome Cache Entry: 214
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 215
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 216
Unicode text, UTF-8 text, with very long lines (32042)
dropped
Chrome Cache Entry: 217
PNG image data, 26 x 29, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 218
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 219
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 220
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 221
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 222
Unicode text, UTF-8 text, with very long lines (65342)
downloaded
Chrome Cache Entry: 223
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 224
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 225
ASCII text
downloaded
Chrome Cache Entry: 226
ASCII text, with very long lines (65447)
dropped
Chrome Cache Entry: 227
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 228
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 229
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 230
ASCII text, with very long lines (32026)
dropped
Chrome Cache Entry: 231
ASCII text, with very long lines (65241)
downloaded
Chrome Cache Entry: 232
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 233
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 234
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 235
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 236
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 237
HTML document, Unicode text, UTF-8 text, with very long lines (9990)
downloaded
Chrome Cache Entry: 238
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 239
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 240
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 241
Unicode text, UTF-8 text, with very long lines (32042)
downloaded
Chrome Cache Entry: 242
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 243
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 244
JSON data
dropped
Chrome Cache Entry: 245
ASCII text
downloaded
Chrome Cache Entry: 246
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 247
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 248
ASCII text
downloaded
Chrome Cache Entry: 249
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 250
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 251
ASCII text
downloaded
Chrome Cache Entry: 252
ASCII text
downloaded
Chrome Cache Entry: 253
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 254
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 255
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 256
ASCII text, with very long lines (32709)
downloaded
Chrome Cache Entry: 257
JSON data
downloaded
Chrome Cache Entry: 258
ASCII text, with very long lines (4785), with no line terminators
downloaded
Chrome Cache Entry: 259
ASCII text, with very long lines (65447)
dropped
Chrome Cache Entry: 260
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 261
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 262
PNG image data, 26 x 29, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 263
ASCII text
downloaded
Chrome Cache Entry: 264
ASCII text, with very long lines (4827), with no line terminators
dropped
Chrome Cache Entry: 265
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 266
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 267
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 268
Web Open Font Format (Version 2), TrueType, length 23580, version 1.0
downloaded
Chrome Cache Entry: 269
Unicode text, UTF-8 text, with very long lines (32042)
downloaded
Chrome Cache Entry: 270
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 271
PNG image data, 26 x 29, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 272
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 273
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 274
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 275
PNG image data, 49 x 53, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 276
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 277
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 278
PNG image data, 49 x 53, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 279
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 280
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 281
ASCII text, with very long lines (13479)
downloaded
Chrome Cache Entry: 282
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 283
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 284
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 285
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 286
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 287
HTML document, ASCII text, with very long lines (908), with no line terminators
downloaded
Chrome Cache Entry: 288
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 289
ASCII text
dropped
Chrome Cache Entry: 290
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 291
ASCII text, with very long lines (6180)
dropped
Chrome Cache Entry: 292
JSON data
downloaded
Chrome Cache Entry: 293
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 294
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 295
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 296
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 297
PNG image data, 943 x 708, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 298
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 299
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 300
ASCII text
downloaded
Chrome Cache Entry: 301
Unicode text, UTF-8 text, with very long lines (41169)
downloaded
Chrome Cache Entry: 302
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 303
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 304
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 305
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 306
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 307
ASCII text
downloaded
Chrome Cache Entry: 308
ASCII text
downloaded
Chrome Cache Entry: 309
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 310
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 311
PNG image data, 49 x 53, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 312
Unicode text, UTF-8 text, with very long lines (65392), with no line terminators
downloaded
Chrome Cache Entry: 313
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 314
Web Open Font Format (Version 2), TrueType, length 117372, version 773.768
downloaded
Chrome Cache Entry: 315
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 316
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 317
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 318
Web Open Font Format (Version 2), TrueType, length 48444, version 1.0
downloaded
Chrome Cache Entry: 319
ASCII text, with very long lines (2895), with no line terminators
dropped
Chrome Cache Entry: 320
ASCII text, with very long lines (13479)
dropped
Chrome Cache Entry: 321
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 322
ASCII text, with very long lines (52276)
downloaded
Chrome Cache Entry: 323
ASCII text, with very long lines (65310)
downloaded
Chrome Cache Entry: 324
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 325
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 326
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 327
ASCII text
downloaded
Chrome Cache Entry: 328
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 329
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 330
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 331
ASCII text, with very long lines (5945)
downloaded
Chrome Cache Entry: 332
ASCII text, with very long lines (32015)
dropped
Chrome Cache Entry: 333
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 334
HTML document, ASCII text
downloaded
Chrome Cache Entry: 335
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 336
ASCII text
downloaded
Chrome Cache Entry: 337
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 338
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 339
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 340
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 341
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 342
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 343
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 344
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 345
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 346
PNG image data, 943 x 708, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 347
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 348
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 349
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 350
ASCII text
downloaded
Chrome Cache Entry: 351
JSON data
downloaded
Chrome Cache Entry: 352
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 353
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 354
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 355
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 356
PNG image data, 26 x 29, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 357
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 358
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 359
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 360
ASCII text, with very long lines (64614)
dropped
Chrome Cache Entry: 361
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 362
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 363
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 364
Unicode text, UTF-8 text, with very long lines (41169)
dropped
Chrome Cache Entry: 365
ASCII text, with very long lines (4803), with no line terminators
dropped
Chrome Cache Entry: 366
ASCII text
downloaded
Chrome Cache Entry: 367
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 368
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 369
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 370
ASCII text, with very long lines (65241)
dropped
Chrome Cache Entry: 371
ASCII text, with very long lines (4826), with no line terminators
downloaded
Chrome Cache Entry: 372
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 373
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 374
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 375
ASCII text
dropped
Chrome Cache Entry: 376
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 377
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 378
ASCII text, with very long lines (1327)
downloaded
Chrome Cache Entry: 379
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 380
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 381
JSON data
dropped
Chrome Cache Entry: 382
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 383
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 384
JSON data
dropped
Chrome Cache Entry: 385
JSON data
downloaded
Chrome Cache Entry: 386
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 387
ASCII text, with very long lines (4179)
downloaded
Chrome Cache Entry: 388
JSON data
downloaded
Chrome Cache Entry: 389
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 390
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 391
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 392
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 393
Unicode text, UTF-8 text, with very long lines (65392), with no line terminators
dropped
Chrome Cache Entry: 394
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 395
JSON data
dropped
Chrome Cache Entry: 396
HTML document, ASCII text, with very long lines (908), with no line terminators
downloaded
Chrome Cache Entry: 397
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 398
JSON data
downloaded
Chrome Cache Entry: 399
ASCII text, with very long lines (32015)
downloaded
Chrome Cache Entry: 400
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 401
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 402
ASCII text, with very long lines (5945)
dropped
Chrome Cache Entry: 403
ASCII text, with very long lines (4179)
dropped
Chrome Cache Entry: 404
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 405
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 406
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 407
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 408
HTML document, Unicode text, UTF-8 text, with very long lines (60434)
downloaded
Chrome Cache Entry: 409
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 410
ASCII text, with very long lines (64614)
downloaded
Chrome Cache Entry: 411
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 412
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 413
Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 414
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 415
ASCII text
dropped
Chrome Cache Entry: 416
ASCII text, with very long lines (4179)
dropped
Chrome Cache Entry: 417
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 418
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 419
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 420
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 421
ASCII text, with very long lines (4179)
downloaded
Chrome Cache Entry: 422
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 423
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 424
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 425
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 426
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 427
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 428
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 429
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 430
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 431
RIFF (little-endian) data, Web/P image
dropped
There are 270 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2100 --field-trial-handle=1904,i,5457008218177159376,6396731618301045256,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://iam.ngscout.org/account/resetpassword?id=d05ffe24-cb73-4f03-bf4f-9e9ff83127f7&code=cc2ff9ab-5352-4ab7-90d6-7459bc6ea5db"

URLs

Name
IP
Malicious
https://iam.ngscout.org/account/resetpassword?id=d05ffe24-cb73-4f03-bf4f-9e9ff83127f7&code=cc2ff9ab-5352-4ab7-90d6-7459bc6ea5db
malicious
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/ignis-gray.svg
141.193.213.10
https://stats.g.doubleclick.net/g/collect
unknown
https://forms.hubspot.com/lead-flows-config/v1/config/json?portalId=664992&utk=a44d691fe99f03a00102a9e1f4424d0b&__hstc=128482643.a44d691fe99f03a00102a9e1f4424d0b.1724907365228.1724907365228.1724907365228.1&__hssc=128482643.1.1724907365229&currentUrl=https%3A%2F%2Fwww.intterra.io%2F
104.16.118.116
https://api.hubapi.com/hs-script-loader-public/v1/config/pixels-and-events/json?portalId=664992
104.18.242.108
https://js.usemessages.com/conversations-embed.js
104.16.79.142
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/virtual-color.s
unknown
https://cdn.jsdelivr.net/npm/bootstrap@5.3.2/dist/css/bootstrap.min.css?ver=6.6.1
151.101.129.229
https://www.intterra.io/wp-content/themes/intterra/assets/images/wildland.webp
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/veoci-color.svg
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/fireaside-g
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/genasys-color.svg
141.193.213.10
https://fontawesome.com
unknown
https://www.intterragroup.com/
104.196.167.9
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/first-color.svg
141.193.213.10
http://www.opensource.org/licenses/mit-license.php
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/bcs-gray.sv
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/css/home.css?ver=6.6.1
141.193.213.10
https://track.hubspot.com/__ptq.gif?k=1&sd=1280x1024&cd=24-bit&cs=UTF-8&ln=en-us&bfp=471034161&v=1.1&a=664992&rcu=https%3A%2F%2Fwww.intterra.io%2F&pu=https%3A%2F%2Fwww.intterra.io%2F&t=Intterra+-+Fully+Integrated+Mapping+for+Emergency+Services+-&cts=1724907365243&vi=a44d691fe99f03a00102a9e1f4424d0b&nc=true&u=128482643.a44d691fe99f03a00102a9e1f4424d0b.1724907365228.1724907365228.1724907365228.1&b=128482643.1.1724907365229&cc=15
104.16.117.116
https://www.intterra.io/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fwww.intterra.io%2Funify%2F&f
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/esri-gray.s
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/ratings/strat.svg
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/implement.webp
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/unified-light.svg
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/intterra-color.
unknown
https://knowledge.hubspot.com/reports/what-cookies-does-hubspot-set-in-a-visitor-s-browser#analytics
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/analyze.svg
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/home/heatmap.webp);
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/eso-gray.sv
unknown
https://agent.pendo.io/licenses
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/vibrant-color.svg
141.193.213.10
https://portal.intterragroup.com/jspm_packages/npm/ag-grid-aurelia@21.0.1/lib/aureliaFrameworkComponentWrapper.js
35.164.73.249
https://iam.ngscout.org/images/favicon/site.webmanifest?v=2
184.169.226.232
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/imagetrend-
unknown
https://iam.ngscout.org/images/intterra-logo-refresh.svg
184.169.226.232
https://forms.hubspot.com/lead-flows-config/v1/config/json?portalId=664992&utk=a44d691fe99f03a00102a9e1f4424d0b&__hstc=128482643.a44d691fe99f03a00102a9e1f4424d0b.1724907365228.1724907365228.1724907365228.1&__hssc=128482643.2.1724907365229&currentUrl=https%3A%2F%2Fwww.intterra.io%2Funify%2F%3Fbanner%3D3
104.16.118.116
https://www.intterra.io/assess/#breadcrumb
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/home/preplans.webp
141.193.213.10
https://www.intterra.io/#website
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/esri-gray.svg
141.193.213.10
https://portal.intterragroup.com/jspm_packages/npm/ag-grid-aurelia@21.0.1/lib/agTemplate.js
35.164.73.249
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/technosylva-col
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/bcs-gray.svg
141.193.213.10
https://www.intterra.io/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fwww.intterra.io%2F&format=xm
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/MitiTrack.svg
141.193.213.10
https://schema.org
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/esri-color.svg
141.193.213.10
https://www.intterra.io/wp-content/uploads/2023/12/Favicon.webp
unknown
https://portal.intterragroup.com/jspm_packages/npm/ag-grid-aurelia@21.0.1/lib/aureliaFrameworkFactory.js
35.164.73.249
https://www.intterra.io/privacy/
unknown
https://portal.intterragroup.com/
https://forms-na1.hsforms.com/embed/v3/counters.gif?key=forms-embed-v2-RENDER_SUCCESS&count=1
104.18.80.204
https://www.intterra.io/wp-content/themes/intterra/assets/images/smoke.webp
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/imagetrend-gray.svg
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/heromap.webp
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/genasys-gray.svg
141.193.213.10
https://www.intterra.io/wp-includes/js/jquery/jquery-migrate.min.js?ver=3.4.1
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/logo.webp
141.193.213.10
https://forms.hsforms.com/embed/v3/form/664992/4c7fa5fb-9376-4ff0-8161-f224a132ac5c/json?hs_static_app=forms-embed&hs_static_app_version=1.5781&X-HubSpot-Static-App-Info=forms-embed-1.5781&hutk=a44d691fe99f03a00102a9e1f4424d0b
104.18.80.204
https://www.intterra.io/#/schema/logo/image/
unknown
https://portal.intterragroup.com/jspm_packages/npm/ag-grid-aurelia@21.0.1/lib/agGridAurelia.js
35.164.73.249
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/virtual-gray.svg
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/inc/custom.js?ver=1.0.0
141.193.213.10
https://track.hubspot.com/__ptq.gif?k=15&fi=eb80596a-0f74-4b07-9191-1540bf7f7b8b&fci=057aed81-c370-4ed3-86cf-b7a8496562be&ft=0&sd=1280x1024&cd=24-bit&cs=UTF-8&ln=en-us&bfp=471034161&v=1.1&a=664992&rcu=https%3A%2F%2Fwww.intterra.io%2Fassess%2F&pu=https%3A%2F%2Fwww.intterra.io%2Funify%2F%3Fbanner%3D3&t=Assess+Your+Mission+Readiness+-+Unify+Your+Network+-+Intterra&cts=1724907397837&vi=a44d691fe99f03a00102a9e1f4424d0b&nc=false&u=128482643.a44d691fe99f03a00102a9e1f4424d0b.1724907365228.1724907365228.1724907365228.1&b=128482643.2.1724907365229&cc=15
104.16.117.116
https://knowledge.hubspot.com/reports/what-cookies-does-hubspot-set-in-a-visitor-s-browser#necessary
unknown
http://www.hubspot.com
unknown
http://www.intterragroup.com
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/unified-dark.svg
141.193.213.10
https://js.hs-banner.com/v2/activity/view
172.64.147.16
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/intterra-color.svg
141.193.213.10
https://portal.ngscout.org/auth/login
54.177.56.198
https://yoast.com/wordpress/plugins/seo/
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/quote.webp
141.193.213.10
https://iam.ngscout.org/styles/site.css
184.169.226.232
https://js.hs-banner.com/v2
unknown
https://www.intterra.io/#breadcrumb
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/home/assessments.webp
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/darkhorse-gray.svg
141.193.213.10
https://twitter.com/intterra
unknown
https://track.hubspot.com/__ptq.gif?k=1&sd=1280x1024&cd=24-bit&cs=UTF-8&ln=en-us&bfp=471034161&v=1.1&a=664992&rcu=https%3A%2F%2Fwww.intterra.io%2Fassess%2F&pu=https%3A%2F%2Fwww.intterra.io%2Funify%2F%3Fbanner%3D3&t=Assess+Your+Mission+Readiness+-+Unify+Your+Network+-+Intterra&cts=1724907397825&vi=a44d691fe99f03a00102a9e1f4424d0b&nc=false&u=128482643.a44d691fe99f03a00102a9e1f4424d0b.1724907365228.1724907365228.1724907365228.1&b=128482643.2.1724907365229&cc=15
104.16.117.116
https://fontawesome.com/license/free
unknown
https://js.hscollectedforms.net/collectedforms.js
104.16.109.254
https://forms-na1.hsforms.com/embed/v3/counters.gif?key=forms-embed-v2-DEFINITION_SUCCESS&count=1
104.18.80.204
https://iam.ngscout.org/login
184.169.226.232
https://forms-na1.hubspot.com/submissions-validation/v1/validate/664992/4c7fa5fb-9376-4ff0-8161-f224a132ac5c
104.16.117.116
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/omnigo-color.sv
unknown
https://www.intterra.io/
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/imagetrend-color.svg
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/ratings/3.svg
141.193.213.10
https://www.intterra.io/wp-content/themes/intterra/assets/images/home/special-events.webp);
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/deccan-color.sv
unknown
https://portal.ngscout.org/auth/brokerlogin
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/lightgrey/vibrant-gra
unknown
https://forms.hsforms.com/embed/v3/form/664992/7780e653-50bd-416c-934c-030dde14bd24/json?hs_static_app=forms-embed&hs_static_app_version=1.5781&X-HubSpot-Static-App-Info=forms-embed-1.5781&hutk=a44d691fe99f03a00102a9e1f4424d0b
104.18.80.204
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/omnigo-color.svg
141.193.213.10
https://www.intterra.io/xmlrpc.php?rsd
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/partnerassess/color/eso-color.svg
141.193.213.10
https://knowledge.hubspot.com/reports/what-cookies-does-hubspot-set-in-a-visitor-s-browser#functiona
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/home/preplans.webp);
unknown
https://www.intterra.io/assess/#primaryimage
unknown
https://www.intterra.io/wp-content/themes/intterra/assets/images/ratings/2.svg
141.193.213.10
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
iam.ngscout.org
184.169.226.232
malicious
jsdelivr.map.fastly.net
151.101.129.229
forms.hsforms.com
104.18.80.204
forms.hubspot.com
104.16.118.116
intterra.wpengine.com
104.196.167.9
js.hs-analytics.net
104.17.175.201
fp2e7a.wpc.phicdn.net
192.229.221.95
portal.intterragroup.com
35.164.73.249
forms-na1.hubspot.com
104.16.117.116
track.hubspot.com
104.16.117.116
code.jquery.com
151.101.130.137
forms.hscollectedforms.net
104.16.110.254
js.hsforms.net
104.18.142.119
cdnjs.cloudflare.com
104.17.25.14
js.hs-scripts.com
104.16.140.209
www.google.com
142.250.186.132
js.usemessages.com
104.16.79.142
js.hs-banner.com
172.64.147.16
js.hsadspixel.net
104.17.223.152
wp.wpenginepowered.com
141.193.213.10
js.hsleadflows.net
104.18.140.17
bg.microsoft.map.fastly.net
199.232.214.172
api.hubspot.com
104.16.117.116
googleads.g.doubleclick.net
172.217.16.194
forms-na1.hsforms.com
104.18.80.204
cdn.pendo.io
34.36.213.229
api.hubapi.com
104.18.242.108
portal.ngscout.org
54.177.56.198
td.doubleclick.net
142.250.184.194
js.hscollectedforms.net
104.16.109.254
cdn.jsdelivr.net
unknown
www.intterragroup.com
unknown
www.linkedin.com
unknown
px.ads.linkedin.com
unknown
snap.licdn.com
unknown
www.intterra.io
unknown
There are 26 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
184.169.226.232
iam.ngscout.org
United States
malicious
35.164.73.249
portal.intterragroup.com
United States
104.18.137.17
unknown
United States
104.16.79.142
js.usemessages.com
United States
192.168.2.8
unknown
unknown
104.16.139.209
unknown
United States
151.101.130.137
code.jquery.com
United States
104.16.118.116
forms.hubspot.com
United States
104.18.240.108
unknown
United States
104.16.107.254
unknown
United States
104.17.128.172
unknown
United States
142.250.185.68
unknown
United States
142.250.186.36
unknown
United States
104.18.80.204
forms.hsforms.com
United States
104.16.140.209
js.hs-scripts.com
United States
142.250.184.194
td.doubleclick.net
United States
104.17.175.201
js.hs-analytics.net
United States
239.255.255.250
unknown
Reserved
104.18.242.108
api.hubapi.com
United States
142.250.185.194
unknown
United States
172.217.16.194
googleads.g.doubleclick.net
United States
104.17.25.14
cdnjs.cloudflare.com
United States
104.18.142.119
js.hsforms.net
United States
104.196.167.9
intterra.wpengine.com
United States
104.19.175.188
unknown
United States
151.101.129.229
jsdelivr.map.fastly.net
United States
34.36.213.229
cdn.pendo.io
United States
104.16.110.254
forms.hscollectedforms.net
United States
104.16.75.142
unknown
United States
172.64.147.16
js.hs-banner.com
United States
104.16.160.168
unknown
United States
142.250.186.132
www.google.com
United States
54.177.56.198
portal.ngscout.org
United States
104.18.140.17
js.hsleadflows.net
United States
104.17.24.14
unknown
United States
141.193.213.10
wp.wpenginepowered.com
United States
104.16.109.254
js.hscollectedforms.net
United States
104.17.223.152
js.hsadspixel.net
United States
104.16.117.116
forms-na1.hubspot.com
United States
There are 29 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://iam.ngscout.org/account/recovery
malicious
https://iam.ngscout.org/account/resetpassword?id=d05ffe24-cb73-4f03-bf4f-9e9ff83127f7&code=cc2ff9ab-5352-4ab7-90d6-7459bc6ea5db
https://iam.ngscout.org/login?redirect_uri=https%3A%2F%2Fportal.ngscout.org%2Fauth%2Fbrokerlogin&response_type=code&client_id=Portal&scope=offline_access
https://www.intterra.io/
https://www.intterra.io/
https://www.intterra.io/
https://www.intterra.io/
https://www.intterra.io/unify/?banner=3
https://www.intterra.io/unify/?banner=3
https://www.intterra.io/unify/?banner=3
https://portal.intterragroup.com/
https://portal.intterragroup.com/
There are 2 hidden doms, click here to show them.