Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Chrome Cache Entry: 50
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 200x70, components
1
|
downloaded
|
||
Chrome Cache Entry: 51
|
ASCII text, with very long lines (1829), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 52
|
MS Windows icon resource - 4 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 53
|
ASCII text, with very long lines (522), with overstriking
|
dropped
|
||
Chrome Cache Entry: 54
|
MS Windows icon resource - 4 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 55
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 56
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 57
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 200x70, components
1
|
dropped
|
||
Chrome Cache Entry: 58
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 59
|
PNG image data, 400 x 600, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 60
|
ASCII text, with very long lines (522), with overstriking
|
downloaded
|
||
Chrome Cache Entry: 61
|
HTML document, ASCII text
|
downloaded
|
||
Chrome Cache Entry: 62
|
ASCII text, with very long lines (544)
|
dropped
|
||
Chrome Cache Entry: 63
|
ASCII text, with very long lines (7210), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 64
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 65
|
ASCII text, with very long lines (7210), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 66
|
PNG image data, 400 x 600, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 67
|
ASCII text, with very long lines (544)
|
downloaded
|
||
Chrome Cache Entry: 68
|
ASCII text, with very long lines (1829), with no line terminators
|
downloaded
|
There are 10 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2224 --field-trial-handle=2004,i,3876836996973657127,8503017946889704533,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://qqq.ujadw.dns-dynamic.net/"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://qqq.ujadw.dns-dynamic.net/
|
|||
https://qqq.ujadw.dns-dynamic.net/favicon.ico
|
172.66.44.162
|
||
https://qqq.ujadw.dns-dynamic.net/
|
|||
https://images-na.ssl-images-amazon.com/images/G/01/csminstrumentation/ue-base-1c399ad9886cab69575e1
|
unknown
|
||
https://images-na.ssl-images-amazon.com/images/G/01/amazonui/sprites/aui_sprite_0007-1x._V383827579_.png
|
151.101.1.16
|
||
https://images-na.ssl-images-amazon.com/images/G/01/AUIClients/AmazonUI-3c913031596ca78a3768f4e934b1cc02ce238101.secure.min._V1_.css
|
151.101.1.16
|
||
https://images-na.ssl-images-amazon.com/images/G/01/csminstrumentation/ue-base-1c399ad9886cab69575e1e5ee15c61a1._V313498596_.js
|
151.101.1.16
|
||
https://images-na.ssl-images-amazon.com/images/G/01/csminstrumentation/csm-captcha-instrumentation.min.js
|
151.101.1.16
|
||
https://images-na.ssl-images-amazon.com/captcha/tinytuux/Captcha_zgkmhegvcf.jpg
|
151.101.1.16
|
||
https://fls-na.amazon.com/1/oc-csi/1/OP/requestId=97CKDVTC4ZAS4S94DK18&js=1
|
52.54.84.119
|
||
https://fls-na.amazon.com/1/oc-csi/1/OP/requestId=97CKDVTC4ZAS4S94DK18&js=0
|
unknown
|
||
https://www.amazon.com/gp/help/customer/display.html/ref=footer_privacy?ie=UTF8&nodeId=468496
|
unknown
|
||
https://images-na.ssl-images-amazon.com/images/G/01/csminstrumentation/rd-script-6d68177fa6061598e9509dc4b5bdd08d.js
|
151.101.1.16
|
||
https://images-na.ssl-images-amazon.com/images/G/01/csminstrumentation/
|
unknown
|
||
https://fls-na.amazon.com/1/batch/1/OE/
|
52.54.84.119
|
||
https://affiliate-program.amazon.com/gp/advertising/api/detail/main.html/ref=rm_c_ac
|
unknown
|
||
https://developer.amazonservices.com/ref=rm_c_sv
|
unknown
|
||
https://www.amazon.com/gp/help/customer/display.html/ref=footer_cou?ie=UTF8&nodeId=508088
|
unknown
|
||
https://images-na.ssl-images-amazon.com/images/G/01/AUIClients/AmazonUI-3c913031596ca78a3768f4e934b1
|
unknown
|
||
https://images-na.ssl-images-amazon.com/images/G/01/AUIClients/ClientSideMetricsAUIJavascript-51171fbdd28e1a7a61e922e8f0272af8bc74d37b.secure.variant-desktop-session-snapshot-keypress.min._V2_.js
|
151.101.1.16
|
||
https://fls-na.amaz
|
unknown
|
||
https://images-na.ssl-images-amazon.com/images/G/01/AUIClients/
|
unknown
|
There are 11 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
bg.microsoft.map.fastly.net
|
199.232.210.172
|
||
nnnm-e8w.pages.dev
|
172.66.44.162
|
||
www.google.com
|
142.250.185.68
|
||
c.media-amazon.com
|
3.164.158.40
|
||
media.amazon.map.fastly.net
|
151.101.1.16
|
||
fp2e7a.wpc.phicdn.net
|
192.229.221.95
|
||
endpoint.prod.us-east-1.forester.a2z.com
|
52.54.84.119
|
||
qqq.ujadw.dns-dynamic.net
|
unknown
|
||
images-na.ssl-images-amazon.com
|
unknown
|
||
fls-na.amazon.com
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
142.250.185.68
|
www.google.com
|
United States
|
||
3.164.158.40
|
c.media-amazon.com
|
United States
|
||
52.54.84.119
|
endpoint.prod.us-east-1.forester.a2z.com
|
United States
|
||
151.101.1.16
|
media.amazon.map.fastly.net
|
United States
|
||
192.168.2.6
|
unknown
|
unknown
|
||
34.238.18.43
|
unknown
|
United States
|
||
192.168.2.5
|
unknown
|
unknown
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
18.206.26.230
|
unknown
|
United States
|
||
172.66.47.94
|
unknown
|
United States
|
||
172.66.44.162
|
nnnm-e8w.pages.dev
|
United States
|
There are 1 hidden IPs, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://qqq.ujadw.dns-dynamic.net/
|