IOC Report
http://ayeshaaax.github.io/Netflix-Clone

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 117
HTML document, Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 118
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 2000x1125, components 3
downloaded
Chrome Cache Entry: 119
PNG image data, 640 x 480, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 120
MS Windows icon resource - 1 icon, 64x64, 32 bits/pixel
dropped
Chrome Cache Entry: 121
Web Open Font Format (Version 2), TrueType, length 7840, version 1.0
downloaded
Chrome Cache Entry: 122
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 123
ASCII text
downloaded
Chrome Cache Entry: 124
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 640x480, components 3
dropped
Chrome Cache Entry: 125
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 126
PNG image data, 640 x 480, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 127
ISO Media, Apple iTunes Video (.M4V) Video
downloaded
Chrome Cache Entry: 128
ASCII text
downloaded
Chrome Cache Entry: 129
PNG image data, 640 x 480, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 130
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 2000x1125, components 3
dropped
Chrome Cache Entry: 131
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 132
MS Windows icon resource - 1 icon, 64x64, 32 bits/pixel
downloaded
Chrome Cache Entry: 133
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 640x480, components 3
downloaded
Chrome Cache Entry: 134
Web Open Font Format (Version 2), TrueType, length 7816, version 1.0
downloaded
Chrome Cache Entry: 135
PNG image data, 640 x 480, 8-bit colormap, non-interlaced
dropped
There are 10 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2116 --field-trial-handle=1880,i,5621325372249996298,11128244104133301238,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://ayeshaaax.github.io/Netflix-Clone"

URLs

Name
IP
Malicious
http://ayeshaaax.github.io/Netflix-Clone
malicious
https://ayeshaaax.github.io/Netflix-Clone/Assests/images/logo.svg
185.199.108.153
malicious
https://ayeshaaax.github.io/Netflix-Clone/favicon.ico
185.199.108.153
malicious
https://ayeshaaax.github.io/Netflix-Clone/Assests/images/img%202.jpg
185.199.108.153
malicious
https://ayeshaaax.github.io/Netflix-Clone/#login
malicious
https://ayeshaaax.github.io/Netflix-Clone
185.199.108.153
malicious
https://ayeshaaax.github.io/Netflix-Clone/Assests/images/tv.jpg
185.199.108.153
malicious
https://ayeshaaax.github.io/Netflix-Clone/Assests/images/bg.jpg.jpg
185.199.108.153
malicious
https://ayeshaaax.github.io/Netflix-Clone/
malicious
https://ayeshaaax.github.io/Netflix-Clone/#faq
malicious
https://ayeshaaax.github.io/Netflix-Clone/style.css
185.199.108.153
malicious
http://ayeshaaax.github.io/Netflix-Clone
185.199.110.153
malicious
http://www.videolan.org/x264.html
unknown
https://occ-0-4091-58.1.nflxso.net/dnm/api/v6/19OhWN2dO19C9txTON9tvTFtefw/AAAABejKYujIIDQciqmGJJ8BtX
unknown
https://assets.nflxext.com/ffe/siteui/acquisition/ourStory/fuji/desktop/video-tv-0819.m4v
45.57.90.1
https://occ-0-4091-58.1.nflxso.net/dnm/api/v6/19OhWN2dO19C9txTON9tvTFtefw/AAAABejKYujIIDQciqmGJJ8BtXkYKKTi5jiqexltvN1YmvXYIfX8B9CYwooUSIzOKneblRFthZAFsYLMgKMyNfeHwk16DmEkpIIcb6A3.png?r=f55
134.0.219.43
There are 5 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
ayeshaaax.github.io
185.199.110.153
malicious
occ-0-4091-58.1.nflxso.net
134.0.219.43
www.google.com
216.58.206.36
assets.nflxext.com
45.57.90.1
fp2e7a.wpc.phicdn.net
192.229.221.95
s-part-0032.t-0009.t-msedge.net
13.107.246.60

IPs

IP
Domain
Country
Malicious
185.199.110.153
ayeshaaax.github.io
Netherlands
malicious
45.57.90.1
assets.nflxext.com
United States
192.168.2.4
unknown
unknown
216.58.206.36
www.google.com
United States
192.168.2.5
unknown
unknown
134.0.219.43
occ-0-4091-58.1.nflxso.net
Oman
239.255.255.250
unknown
Reserved
185.199.108.153
unknown
Netherlands

DOM / HTML

URL
Malicious
https://ayeshaaax.github.io/Netflix-Clone/
malicious
https://ayeshaaax.github.io/Netflix-Clone/#login
malicious
https://ayeshaaax.github.io/Netflix-Clone/#faq
malicious