IOC Report
http://mc.yandex.com/watch/18746557?callback=_ymjsp204848000&page-url=https://www.ultimate-guitar.com/user/mytabs&charset=utf-8&uah=chu%0A%22Google%20Chrome%22;v=%22125%22,%22Chromium%22;v=%22125%22,%22Not.A/Brand%22;v=%2224%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A125.0.6422.113%0Achl%0A%22Google%20Chrome

loading gif

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2104 --field-trial-handle=2036,i,11928365704172145029,5500621587362827193,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://mc.yandex.com/watch/18746557?callback=_ymjsp204848000&page-url=https://www.ultimate-guitar.com/user/mytabs&charset=utf-8&uah=chu%0A%22Google%20Chrome%22;v=%22125%22,%22Chromium%22;v=%22125%22,%22Not.A/Brand%22;v=%2224%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A125.0.6422.113%0Achl%0A%22Google%20Chrome%22;v=%22125.0.6422.113%22,%22Chromium%22;v=%22125.0.6422.113%22,%22Not.A/Brand%22;v=%2224.0.0.0%22%0Achm%0A?0%0Achp%0AWindows%0Achv%0A10.0.0&browser-info=pv:1:vf:lxzalitzueo8p9865yapkilbx7:fu:0:en:utf-8:la:en-US:v:1461:cn:1:dp:0:ls:1351292419062:hid:798345388:z:-300:i:20240930145317:et:1727725997:c:1:rn:63242771:rqn:1131:u:1615229803639781828:w:1479x914:s:1920x1080x24:sk:1:ds:0,109,452,18,9,0,,,,,,,:co:0:cpf:1:ns:1727725996533:pani:MTVlNWE4NTJhZmNlOWMxMzdlNTY4YzNmMjg0NDE4NWNhMDJjMDZjOTE1MzY3NDhjZWQ3MDU1ZWE4NTgzNDllYg==:gi:R0ExLjEuNTg1ODkwMzkzLjE3MTgwNTQxMjE=:adb:1:rqnl:1:st:1727725998:t:My%20tabs%20@%20Ultimate-Guitar.Com&t=gdpr(14)clc(0-0-0)rqnt(1)aw(1)cdl(na)eco(3178884)ti(3)&wmode=5"

URLs

Name
IP
Malicious
http://mc.yandex.com/watch/18746557?callback=_ymjsp204848000&page-url=https://www.ultimate-guitar.com/user/mytabs&charset=utf-8&uah=chu%0A%22Google%20Chrome%22;v=%22125%22,%22Chromium%22;v=%22125%22,%22Not.A/Brand%22;v=%2224%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A125.0.6422.113%0Achl%0A%22Google%20Chrome%22;v=%22125.0.6422.113%22,%22Chromium%22;v=%22125.0.6422.113%22,%22Not.A/Brand%22;v=%2224.0.0.0%22%0Achm%0A?0%0Achp%0AWindows%0Achv%0A10.0.0&browser-info=pv:1:vf:lxzalitzueo8p9865yapkilbx7:fu:0:en:utf-8:la:en-US:v:1461:cn:1:dp:0:ls:1351292419062:hid:798345388:z:-300:i:20240930145317:et:1727725997:c:1:rn:63242771:rqn:1131:u:1615229803639781828:w:1479x914:s:1920x1080x24:sk:1:ds:0,109,452,18,9,0,,,,,,,:co:0:cpf:1:ns:1727725996533:pani:MTVlNWE4NTJhZmNlOWMxMzdlNTY4YzNmMjg0NDE4NWNhMDJjMDZjOTE1MzY3NDhjZWQ3MDU1ZWE4NTgzNDllYg==:gi:R0ExLjEuNTg1ODkwMzkzLjE3MTgwNTQxMjE=:adb:1:rqnl:1:st:1727725998:t:My%20tabs%20@%20Ultimate-Guitar.Com&t=gdpr(14)clc(0-0-0)rqnt(1)aw(1)cdl(na)eco(3178884)ti(3)&wmode=5
https://mc.yandex.com/watch/18746557?callback=_ymjsp204848000&page-url=https://www.ultimate-guitar.com/user/mytabs&charset=utf-8&uah=chu%0A%22Google%20Chrome%22;v=%22125%22,%22Chromium%22;v=%22125%22,%22Not.A/Brand%22;v=%2224%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A125.0.6422.113%0Achl%0A%22Google%20Chrome%22;v=%22125.0.6422.113%22,%22Chromium%22;v=%22125.0.6422.113%22,%22Not.A/Brand%22;v=%2224.0.0.0%22%0Achm%0A?0%0Achp%0AWindows%0Achv%0A10.0.0&browser-info=pv:1:vf:lxzalitzueo8p9865yapkilbx7:fu:0:en:utf-8:la:en-US:v:1461:cn:1:dp:0:ls:1351292419062:hid:798345388:z:-300:i:20240930145317:et:1727725997:c:1:rn:63242771:rqn:1131:u:1615229803639781828:w:1479x914:s:1920x1080x24:sk:1:ds:0,109,452,18,9,0,,,,,,,:co:0:cpf:1:ns:1727725996533:pani:MTVlNWE4NTJhZmNlOWMxMzdlNTY4YzNmMjg0NDE4NWNhMDJjMDZjOTE1MzY3NDhjZWQ3MDU1ZWE4NTgzNDllYg==:gi:R0ExLjEuNTg1ODkwMzkzLjE3MTgwNTQxMjE=:adb:1:rqnl:1:st:1727725998:t:My%20tabs%20@%20Ultimate-Guitar.Com&t=gdpr(14)clc(0-0-0)rqnt(1)aw(1)cdl(na)eco(3178884)ti(3)&wmode=5
87.250.250.119
http://mc.yandex.com/watch/18746557?callback=_ymjsp204848000&page-url=https://www.ultimate-guitar.com/user/mytabs&charset=utf-8&uah=chu%0A%22Google%20Chrome%22;v=%22125%22,%22Chromium%22;v=%22125%22,%22Not.A/Brand%22;v=%2224%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A125.0.6422.113%0Achl%0A%22Google%20Chrome%22;v=%22125.0.6422.113%22,%22Chromium%22;v=%22125.0.6422.113%22,%22Not.A/Brand%22;v=%2224.0.0.0%22%0Achm%0A?0%0Achp%0AWindows%0Achv%0A10.0.0&browser-info=pv:1:vf:lxzalitzueo8p9865yapkilbx7:fu:0:en:utf-8:la:en-US:v:1461:cn:1:dp:0:ls:1351292419062:hid:798345388:z:-300:i:20240930145317:et:1727725997:c:1:rn:63242771:rqn:1131:u:1615229803639781828:w:1479x914:s:1920x1080x24:sk:1:ds:0,109,452,18,9,0,,,,,,,:co:0:cpf:1:ns:1727725996533:pani:MTVlNWE4NTJhZmNlOWMxMzdlNTY4YzNmMjg0NDE4NWNhMDJjMDZjOTE1MzY3NDhjZWQ3MDU1ZWE4NTgzNDllYg==:gi:R0ExLjEuNTg1ODkwMzkzLjE3MTgwNTQxMjE=:adb:1:rqnl:1:st:1727725998:t:My%20tabs%20@%20Ultimate-Guitar.Com&t=gdpr(14)clc(0-0-0)rqnt(1)aw(1)cdl(na)eco(3178884)ti(3)&wmode=5
77.88.21.119
https://mc.yandex.com/watch/18746557/1?callback=_ymjsp204848000&page-url=https%3A%2F%2Fwww.ultimate-guitar.com%2Fuser%2Fmytabs&charset=utf-8&uah=chu%0A%22Google%20Chrome%22%3Bv%3D%22125%22%2C%22Chromium%22%3Bv%3D%22125%22%2C%22Not.A%2FBrand%22%3Bv%3D%2224%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A125.0.6422.113%0Achl%0A%22Google%20Chrome%22%3Bv%3D%22125.0.6422.113%22%2C%22Chromium%22%3Bv%3D%22125.0.6422.113%22%2C%22Not.A%2FBrand%22%3Bv%3D%2224.0.0.0%22%0Achm%0A%3F0%0Achp%0AWindows%0Achv%0A10.0.0&browser-info=pv%3A1%3Avf%3Alxzalitzueo8p9865yapkilbx7%3Afu%3A0%3Aen%3Autf-8%3Ala%3Aen-US%3Av%3A1461%3Acn%3A1%3Adp%3A0%3Als%3A1351292419062%3Ahid%3A798345388%3Az%3A-300%3Ai%3A20240930145317%3Aet%3A1727725997%3Ac%3A1%3Arn%3A63242771%3Arqn%3A1131%3Au%3A1615229803639781828%3Aw%3A1479x914%3As%3A1920x1080x24%3Ask%3A1%3Ads%3A0%2C109%2C452%2C18%2C9%2C0%2C%2C%2C%2C%2C%2C%2C%3Aco%3A0%3Acpf%3A1%3Ans%3A1727725996533%3Apani%3AMTVlNWE4NTJhZmNlOWMxMzdlNTY4YzNmMjg0NDE4NWNhMDJjMDZjOTE1MzY3NDhjZWQ3MDU1ZWE4NTgzNDllYg%3D%3D%3Agi%3AR0ExLjEuNTg1ODkwMzkzLjE3MTgwNTQxMjE%3D%3Aadb%3A1%3Arqnl%3A1%3Ast%3A1727725998%3At%3AMy%20tabs%20%40%20Ultimate-Guitar.Com&t=gdpr%2814%29clc%280-0-0%29rqnt%281%29aw%281%29cdl%28na%29eco%283178884%29ti%283%29&wmode=5&redirnss=1
https://mc.yandex.com/favicon.ico
87.250.250.119

Domains

Name
IP
Malicious
mc.yandex.ru
77.88.21.119
www.google.com
142.250.186.164
default.qdr.p1.ds-c7110-microsoft.global.dns.qwilted-cds.cqloud.com
84.201.210.34
mc.yandex.com
unknown

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
77.88.21.119
mc.yandex.ru
Russian Federation
142.250.186.164
www.google.com
United States
192.168.2.7
unknown
unknown
87.250.250.119
unknown
Russian Federation

DOM / HTML

URL
Malicious
https://mc.yandex.com/watch/18746557/1?callback=_ymjsp204848000&page-url=https%3A%2F%2Fwww.ultimate-guitar.com%2Fuser%2Fmytabs&charset=utf-8&uah=chu%0A%22Google%20Chrome%22%3Bv%3D%22125%22%2C%22Chromium%22%3Bv%3D%22125%22%2C%22Not.A%2FBrand%22%3Bv%3D%2224%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A125.0.6422.113%0Achl%0A%22Google%20Chrome%22%3Bv%3D%22125.0.6422.113%22%2C%22Chromium%22%3Bv%3D%22125.0.6422.113%22%2C%22Not.A%2FBrand%22%3Bv%3D%2224.0.0.0%22%0Achm%0A%3F0%0Achp%0AWindows%0Achv%0A10.0.0&browser-info=pv%3A1%3Avf%3Alxzalitzueo8p9865yapkilbx7%3Afu%3A0%3Aen%3Autf-8%3Ala%3Aen-US%3Av%3A1461%3Acn%3A1%3Adp%3A0%3Als%3A1351292419062%3Ahid%3A798345388%3Az%3A-300%3Ai%3A20240930145317%3Aet%3A1727725997%3Ac%3A1%3Arn%3A63242771%3Arqn%3A1131%3Au%3A1615229803639781828%3Aw%3A1479x914%3As%3A1920x1080x24%3Ask%3A1%3Ads%3A0%2C109%2C452%2C18%2C9%2C0%2C%2C%2C%2C%2C%2C%2C%3Aco%3A0%3Acpf%3A1%3Ans%3A1727725996533%3Apani%3AMTVlNWE4NTJhZmNlOWMxMzdlNTY4YzNmMjg0NDE4NWNhMDJjMDZjOTE1MzY3NDhjZWQ3MDU1ZWE4NTgzNDllYg%3D%3D%3Agi%3AR0ExLjEuNTg1OD