IOC Report
https://ak-45k430083237-akbn.com/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 101
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 102
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
downloaded
Chrome Cache Entry: 103
Unicode text, UTF-8 text, with very long lines (65518), with no line terminators
downloaded
Chrome Cache Entry: 104
PNG image data, 1 x 130, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 105
Unicode text, UTF-8 text, with CRLF line terminators
downloaded
Chrome Cache Entry: 106
PNG image data, 87 x 47, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 107
PNG image data, 1 x 52, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 108
PNG image data, 1920 x 1080, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 109
Unicode text, UTF-8 text, with very long lines (65429), with no line terminators
downloaded
Chrome Cache Entry: 110
PNG image data, 176 x 977, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 111
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 112
PNG image data, 48 x 42, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 113
PNG image data, 2 x 30, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 114
ASCII text, with very long lines (1398), with CRLF line terminators
downloaded
Chrome Cache Entry: 115
PNG image data, 1 x 300, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 116
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 117
PNG image data, 22 x 44, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 118
PNG image data, 558 x 135, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 67
PNG image data, 1 x 300, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 68
PNG image data, 38 x 38, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 69
PNG image data, 1920 x 1080, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 70
PNG image data, 95 x 120, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 71
PNG image data, 320 x 1742, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 72
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 73
Unicode text, UTF-8 text, with very long lines (65429), with no line terminators
dropped
Chrome Cache Entry: 74
PNG image data, 320 x 1742, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 75
ASCII text, with very long lines (32351), with no line terminators
downloaded
Chrome Cache Entry: 76
ASCII text, with very long lines (7693), with no line terminators
downloaded
Chrome Cache Entry: 77
PNG image data, 2 x 30, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 78
PNG image data, 176 x 977, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 79
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
dropped
Chrome Cache Entry: 80
Unicode text, UTF-8 text, with very long lines (65518), with no line terminators
dropped
Chrome Cache Entry: 81
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 82
PNG image data, 22 x 44, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 83
PNG image data, 1 x 130, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 84
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 85
PNG image data, 38 x 38, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 86
Unicode text, UTF-8 text, with CRLF line terminators
dropped
Chrome Cache Entry: 87
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 88
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 89
PNG image data, 612 x 78, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 90
PNG image data, 612 x 78, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 91
PNG image data, 558 x 135, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 92
PNG image data, 48 x 42, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 93
PNG image data, 87 x 47, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 94
PNG image data, 1 x 52, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 95
ASCII text, with very long lines (7693), with no line terminators
dropped
Chrome Cache Entry: 96
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 97
Unicode text, UTF-8 (with BOM) text, with very long lines (305), with CRLF line terminators
downloaded
Chrome Cache Entry: 98
PNG image data, 95 x 120, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 99
ASCII text, with very long lines (65451)
dropped
There are 43 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2092 --field-trial-handle=1972,i,17059230825949682609,5236807600932095043,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://ak-45k430083237-akbn.com/"

URLs

Name
IP
Malicious
https://ak-45k430083237-akbn.com/
malicious
https://ak-45k430083237-akbn.com/favicon.ico
87.120.117.199
malicious
https://ak-45k430083237-akbn.com/
malicious
https://ak-45k430083237-akbn.com/WebResourcee4ff.js?d=jZ52RNi3ga9NSD-I4mpLDbSckJ4AezrdAXLU1iptMS7Wqkxe13owHZJmFoa6pnEWoQi-ABQnnRjlUq4cwCdcfBKbgBv_4jTUjbcjNzeEs-CEWrbfedpTusHvM8SY-a-m5GI6ti_M6uJB8PcuH1CdsQh65rtZGyKIJErV5RnckgVY55ZGzohkyw0xl6U1&t=638267545960000000
87.120.117.199
malicious
https://ak-45k430083237-akbn.com/process
87.120.117.199
malicious
https://bugs.webkit.org/show_bug.cgi?id=136851
unknown
http://jquery.org/license
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-aside-header-bg.png
217.169.192.73
http://keith-wood.name/localisation.html
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/css/akbank-face/face.axd?v=mB6e02h5wbwbtG_c06cWUYaZIJs4ZZgTtJpeGrOfro01
217.169.192.73
https://jsperf.com/thor-indexof-vs-for/5
unknown
http://github.com/coderifous/jquery-localize
unknown
https://bugs.jquery.com/ticket/12359
unknown
https://giris.turkiye.gov.tr/Giris/Banka-Giris
unknown
https://internetsubesi.akbank.com/WebApplication.UI/blank.gif
217.169.192.73
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-banner-bg.png
217.169.192.73
https://web.archive.org/web/20100324014747/http://blindsignals.com/index.php/2009/07/jquery-delay/
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-btn.png?v=10
217.169.192.73
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/virtual-keyboard.png?v=5
217.169.192.73
https://html.spec.whatwg.org/#strip-and-collapse-whitespace
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/js/veribranch.axd?v=IaAJ_WVRlHFL_RKWLCR9WIc128xV6WuIPoYpoXQ-yoM1
217.169.192.73
https://internetsubesi.akbank.com/WebApplication.UI/content/img/pop_up.png
217.169.192.73
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-aside-security.png
217.169.192.73
https://internetsubesi.akbank.com/WebApplication.UI/Content/js/login/newloginjs.axd?v=w9n_sqeW1cupOoH6t_AjcFwKQzfYdzoCkUD1NgFTcrc1
217.169.192.73
https://promisesaplus.com/#point-75
unknown
https://web.archive.org/web/20141116233347/http://fluidproject.org/blog/2008/01/09/getting-setting-a
unknown
https://drafts.csswg.org/cssom/#common-serializing-idioms
unknown
https://html.spec.whatwg.org/multipage/forms.html#concept-fe-disabled
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-switch-separator.png
217.169.192.73
https://bugs.webkit.org/show_bug.cgi?id=29084
unknown
http://es5.github.io/#x15.4.4.14
unknown
http://jqueryui.com/themeroller/?ffDefault=Verdana
unknown
https://infra.spec.whatwg.org/#strip-and-collapse-ascii-whitespace
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/css/login/newlogin.axd?v=af0kruIPKPD37uQNhNY2Ij6MDi8cBYotc-qEYbjxtNI1
217.169.192.73
https://github.com/eslint/eslint/issues/6125
unknown
https://html.spec.whatwg.org/multipage/forms.html#concept-option-disabled
unknown
https://github.com/jquery/jquery/pull/557)
unknown
https://bugs.chromium.org/p/chromium/issues/detail?id=378607
unknown
https://github.com/jrburke/requirejs/wiki/Updating-existing-libraries#wiki-anon
unknown
https://bugzilla.mozilla.org/show_bug.cgi?id=687787
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/js/lib/development/jquerymain.axd?v=t1WFLLqrBDYK53_7choyrx8iLi7kzq9Psl3jEABdvOM1
217.169.192.73
https://bugs.chromium.org/p/chromium/issues/detail?id=470258
unknown
https://bugs.jquery.com/ticket/13378
unknown
https://promisesaplus.com/#point-64
unknown
https://promisesaplus.com/#point-61
unknown
http://stackoverflow.com/questions/995183/how-to-allow-only-numeric-0-9-in-html-inputbox-using-jquer
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/css/facelift/facelift.axd?v=4BpbXMXedfdR7SZyg8tQ5Bch8z3STdpR4fnj211FaeU1
217.169.192.73
https://drafts.csswg.org/cssom/#resolved-values
unknown
https://bugs.chromium.org/p/chromium/issues/detail?id=589347
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/js/lib/development/protoyping/jqueryui-intb-custom/development-bundle/themes/smoothness/jqueryuismoothness.axd?v=JehJi4R3UZ2-7bCoJWRBWJpOtwpxIYz-7c85MFCrZyo1
217.169.192.73
https://internetsubesi.akbank.com/webapplication.ui/Content/img/login/norton-secured.png
217.169.192.73
http://dev.jquery.com/browser/trunk/jquery/MIT-LICENSE.txt)
unknown
https://html.spec.whatwg.org/multipage/syntax.html#attributes-2
unknown
https://promisesaplus.com/#point-59
unknown
http://dev.jquery.com/browser/trunk/jquery/GPL-LICENSE.txt)
unknown
https://jsperf.com/getall-vs-sizzle/2
unknown
https://promisesaplus.com/#point-57
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-content-bg.png
217.169.192.73
https://internetsubesi.akbank.com/WebApplication.UI/Content/js/akbank-face/face.axd?v=w0Lp8boU1keud3Uf0sPdVQOsoLyRhi4CAU9QxYXtvcA1
217.169.192.73
https://github.com/eslint/eslint/issues/3229
unknown
https://promisesaplus.com/#point-54
unknown
http://direkttest.akbank.com/
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/vp/akbank-logo3x.png
217.169.192.73
https://html.spec.whatwg.org/multipage/forms.html#category-listed
unknown
https://html.spec.whatwg.org/multipage/scripting.html#selector-disabled
unknown
https://developer.mozilla.org/en-US/docs/CSS/display
unknown
https://jquery.org/license
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/facelift/bg.png
217.169.192.73
https://jquery.com/
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/banner_hera_bg_new.png
217.169.192.73
https://internetsubesi.akbank.com/WebApplication.UI/Content/js/lib/development/protoyping/jqueryui-intb-custom/development-bundle/ui/jqueryui.axd?v=mCAgxE9MYL7Bci0MqbyynjUEDljPQjpBqDWV3Qd3Xag1
217.169.192.73
http://github.com/coderifous)
unknown
https://bugs.webkit.org/show_bug.cgi?id=137337
unknown
https://html.spec.whatwg.org/multipage/scripting.html#selector-enabled
unknown
https://code.jquery.com/jquery-3.5.1.min.js
151.101.194.137
https://internetsubesi.akbank.com/WebApplication.UI/Content/js/akbank-face/vendor/raphael/raphael.axd?v=ulIgWmVwdlQT9wclGn1GE3g-_6h1bdeV2v92QZmwNko1
217.169.192.73
http://jqueryui.com/about)
unknown
https://promisesaplus.com/#point-48
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-tooltip-keyboard.png
217.169.192.73
http://stackoverflow.com/a/18915861
unknown
https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Array/indexOf
unknown
https://internetsubesi.akbank.com/WebApplication.UI/Content/img/login/login-get-password-key.png
217.169.192.73
https://github.com/jquery/sizzle/pull/225
unknown
https://sizzlejs.com/
unknown
https://bugs.chromium.org/p/chromium/issues/detail?id=449857
unknown
http://stackoverflow.com/a/2880929
unknown
There are 75 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
ak-45k430083237-akbn.com
87.120.117.199
code.jquery.com
151.101.194.137
www.google.com
142.250.184.196
internetsubesi.akbank.com
217.169.192.73
fp2e7a.wpc.phicdn.net
192.229.221.95
s-part-0032.t-0009.t-msedge.net
13.107.246.60
198.187.3.20.in-addr.arpa
unknown

IPs

IP
Domain
Country
Malicious
142.250.184.196
www.google.com
United States
142.250.186.36
unknown
United States
87.120.117.199
ak-45k430083237-akbn.com
Bulgaria
192.168.2.4
unknown
unknown
192.168.2.6
unknown
unknown
217.169.192.73
internetsubesi.akbank.com
Turkey
239.255.255.250
unknown
Reserved
151.101.194.137
code.jquery.com
United States

DOM / HTML

URL
Malicious
https://ak-45k430083237-akbn.com/