IOC Report
https://apps.microsoft.com/detail/snip-at-sketch/9MZ95KL8MR0L?hl=fil-PH&gl=MC

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 121
Unicode text, UTF-8 text, with very long lines (65480)
downloaded
Chrome Cache Entry: 122
JSON data
downloaded
Chrome Cache Entry: 123
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 124
Java source, ASCII text, with very long lines (572)
dropped
Chrome Cache Entry: 125
PNG image data, 450 x 253, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 126
ASCII text
downloaded
Chrome Cache Entry: 127
ASCII text, with very long lines (4329)
downloaded
Chrome Cache Entry: 128
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 129
ASCII text, with very long lines (2218)
dropped
Chrome Cache Entry: 130
JSON data
downloaded
Chrome Cache Entry: 131
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 450x253, components 3
downloaded
Chrome Cache Entry: 132
ASCII text, with very long lines (446)
dropped
Chrome Cache Entry: 133
Java source, ASCII text, with very long lines (4534)
dropped
Chrome Cache Entry: 134
ASCII text, with very long lines (492)
downloaded
Chrome Cache Entry: 135
C++ source, ASCII text, with very long lines (3146)
downloaded
Chrome Cache Entry: 136
assembler source, ASCII text, with very long lines (2939)
downloaded
Chrome Cache Entry: 137
PNG image data, 372 x 210, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 138
assembler source, ASCII text, with very long lines (2939)
dropped
Chrome Cache Entry: 139
PNG image data, 210 x 210, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 140
PNG image data, 372 x 210, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 141
ASCII text, with very long lines (457)
downloaded
Chrome Cache Entry: 142
ASCII text, with very long lines (524)
downloaded
Chrome Cache Entry: 143
ASCII text, with very long lines (1452)
downloaded
Chrome Cache Entry: 144
ASCII text, with very long lines (2218)
downloaded
Chrome Cache Entry: 145
Unicode text, UTF-8 text, with very long lines (65480)
dropped
Chrome Cache Entry: 146
Java source, ASCII text, with very long lines (572)
downloaded
Chrome Cache Entry: 147
ASCII text, with very long lines (446)
downloaded
Chrome Cache Entry: 148
ASCII text, with very long lines (51564)
downloaded
Chrome Cache Entry: 149
PNG image data, 448 x 253, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 150
PNG image data, 1275 x 720, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 151
ASCII text, with very long lines (4721)
downloaded
Chrome Cache Entry: 152
ASCII text, with very long lines (1333)
dropped
Chrome Cache Entry: 153
ASCII text, with very long lines (2523)
downloaded
Chrome Cache Entry: 154
ASCII text, with very long lines (1117)
downloaded
Chrome Cache Entry: 155
PNG image data, 450 x 253, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 156
ASCII text, with very long lines (1333)
downloaded
Chrome Cache Entry: 157
ASCII text, with very long lines (3498)
downloaded
Chrome Cache Entry: 158
Java source, ASCII text, with very long lines (4534)
downloaded
Chrome Cache Entry: 159
ASCII text, with very long lines (51564)
dropped
Chrome Cache Entry: 160
ASCII text, with very long lines (23465)
dropped
Chrome Cache Entry: 161
ASCII text, with very long lines (4329)
dropped
Chrome Cache Entry: 162
HTML document, ASCII text, with very long lines (47374), with CRLF line terminators
downloaded
Chrome Cache Entry: 163
PNG image data, 448 x 253, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 164
ASCII text, with very long lines (23465)
downloaded
Chrome Cache Entry: 165
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 166
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 167
ASCII text
dropped
Chrome Cache Entry: 168
C++ source, ASCII text, with very long lines (3146)
dropped
Chrome Cache Entry: 169
PNG image data, 210 x 210, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 170
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (1117)
dropped
There are 42 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2032 --field-trial-handle=1988,i,6253302769534853577,13705889049471225565,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://apps.microsoft.com/detail/snip-at-sketch/9MZ95KL8MR0L?hl=fil-PH&gl=MC"

URLs

Name
IP
Malicious
https://apps.microsoft.com/detail/snip-at-sketch/9MZ95KL8MR0L?hl=fil-PH&gl=MC
https://aka.ms/reportconcerns?productgroup=$
unknown
https://www.clarity.ms/tag/inyago70pn
13.107.246.45
https://images-eds-ssl.xboxlive.com
unknown
https://schema.org
unknown
https://support.xbox.com/en-US/help/family-online-safety/online-safety/report-issue-in-microsoft-sto
unknown
https://www.clarity.ms/tag/
unknown
https://musicart.xboxlive.com
unknown
https://www.clarity.ms/s/0.7.47/clarity-extended.js
13.107.246.45
https://bugs.webkit.org/show_bug.cgi?id=216780
unknown
https://blogs.windows.com/
unknown
https://support.xbox.com/en-US/help/family-online-safety/online-safety/photosensitive-seizure-warnin
unknown
There are 1 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.185.68
s-part-0032.t-0009.t-msedge.net
13.107.246.60
fp2e7a.wpc.phicdn.net
192.229.221.95
www.clarity.ms
unknown
t.clarity.ms
unknown
images-eds-ssl.xboxlive.com
unknown
login.microsoftonline.com
unknown
musicart.xboxlive.com
unknown

IPs

IP
Domain
Country
Malicious
142.250.185.68
www.google.com
United States
13.107.246.45
s-part-0017.t-0009.t-msedge.net
United States
192.168.2.4
unknown
unknown
13.107.246.60
s-part-0032.t-0009.t-msedge.net
United States
239.255.255.250
unknown
Reserved

DOM / HTML

URL
Malicious
https://apps.microsoft.com/detail/9mz95kl8mr0l?hl=fil-PH&gl=MC
https://apps.microsoft.com/detail/9mz95kl8mr0l?hl=fil-PH&gl=MC