IOC Report
https://eu.knowbe4.com/ui/login/Q2hsyaXN0aWdFuR2FyZXtBvQHaBhheWUujbmV0

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 121
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 122
ASCII text
dropped
Chrome Cache Entry: 123
Unicode text, UTF-8 text, with very long lines (39947), with no line terminators
dropped
Chrome Cache Entry: 124
Unicode text, UTF-8 text, with very long lines (53919), with no line terminators
downloaded
Chrome Cache Entry: 125
ASCII text
downloaded
Chrome Cache Entry: 126
ASCII text
dropped
Chrome Cache Entry: 127
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 128
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 129
JSON data
downloaded
Chrome Cache Entry: 130
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 131
ASCII text
downloaded
Chrome Cache Entry: 132
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (10427), with no line terminators
downloaded
Chrome Cache Entry: 134
Unicode text, UTF-8 text, with very long lines (22789), with NEL line terminators
downloaded
Chrome Cache Entry: 135
ASCII text, with very long lines (1981)
downloaded
Chrome Cache Entry: 136
Unicode text, UTF-8 text, with very long lines (2782)
dropped
Chrome Cache Entry: 137
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 138
JSON data
downloaded
Chrome Cache Entry: 139
ASCII text, with very long lines (13153), with no line terminators
dropped
Chrome Cache Entry: 140
Unicode text, UTF-8 text, with very long lines (51960), with no line terminators
dropped
Chrome Cache Entry: 141
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
downloaded
Chrome Cache Entry: 142
Unicode text, UTF-8 text, with very long lines (56491), with no line terminators
downloaded
Chrome Cache Entry: 143
HTML document, ASCII text, with very long lines (513)
downloaded
Chrome Cache Entry: 144
ASCII text, with very long lines (26700), with no line terminators
downloaded
Chrome Cache Entry: 145
ASCII text, with very long lines (11103), with no line terminators
dropped
Chrome Cache Entry: 146
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 147
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 148
JSON data
dropped
Chrome Cache Entry: 149
Unicode text, UTF-8 text, with very long lines (22789), with NEL line terminators
dropped
Chrome Cache Entry: 150
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 151
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 152
ASCII text, with very long lines (16666), with no line terminators
downloaded
Chrome Cache Entry: 153
ASCII text, with very long lines (20338), with no line terminators
downloaded
Chrome Cache Entry: 154
ASCII text, with very long lines (9015), with no line terminators
dropped
Chrome Cache Entry: 155
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 156
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
dropped
Chrome Cache Entry: 157
ASCII text, with very long lines (10427), with no line terminators
dropped
Chrome Cache Entry: 158
ASCII text, with very long lines (13153), with no line terminators
downloaded
Chrome Cache Entry: 159
Unicode text, UTF-8 text, with very long lines (65532), with no line terminators
downloaded
Chrome Cache Entry: 160
ASCII text, with very long lines (20338), with no line terminators
dropped
Chrome Cache Entry: 161
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
dropped
Chrome Cache Entry: 162
JSON data
dropped
Chrome Cache Entry: 163
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 164
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 165
Unicode text, UTF-8 text, with very long lines (39947), with no line terminators
downloaded
Chrome Cache Entry: 166
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 167
JSON data
dropped
Chrome Cache Entry: 168
Unicode text, UTF-8 text, with very long lines (2782)
downloaded
Chrome Cache Entry: 169
ASCII text, with very long lines (29434), with no line terminators
downloaded
Chrome Cache Entry: 170
ASCII text, with very long lines (1018), with no line terminators
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (26700), with no line terminators
dropped
Chrome Cache Entry: 172
ASCII text, with very long lines (29434), with no line terminators
dropped
Chrome Cache Entry: 173
ASCII text, with very long lines (11103), with no line terminators
downloaded
Chrome Cache Entry: 174
ASCII text
dropped
Chrome Cache Entry: 175
ASCII text
downloaded
Chrome Cache Entry: 176
ASCII text
dropped
Chrome Cache Entry: 177
ASCII text
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 179
HTML document, ASCII text, with very long lines (513)
dropped
Chrome Cache Entry: 180
ASCII text
dropped
Chrome Cache Entry: 181
JSON data
downloaded
Chrome Cache Entry: 182
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 183
HTML document, ASCII text, with very long lines (513)
dropped
Chrome Cache Entry: 184
ASCII text, with very long lines (9015), with no line terminators
downloaded
Chrome Cache Entry: 185
ASCII text
downloaded
Chrome Cache Entry: 186
ASCII text
downloaded
Chrome Cache Entry: 187
Unicode text, UTF-8 text, with very long lines (23652), with no line terminators
downloaded
Chrome Cache Entry: 188
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 189
Unicode text, UTF-8 text, with very long lines (51960), with no line terminators
downloaded
Chrome Cache Entry: 190
ASCII text, with very long lines (16666), with no line terminators
dropped
There are 61 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1956 --field-trial-handle=2012,i,16037324769304954961,204434834895189479,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://eu.knowbe4.com/ui/login/Q2hsyaXN0aWdFuR2FyZXtBvQHaBhheWUujbmV0"

URLs

Name
IP
Malicious
https://eu.knowbe4.com/ui/login/Q2hsyaXN0aWdFuR2FyZXtBvQHaBhheWUujbmV0
https://support.knowbe4.com/hc/en-us/articles/6676053834131
unknown
https://support.knowbe4.com/hc/en-us/articles/8419812847763
unknown
https://eu.knowbe4.com/ui/version?1728655816641
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/13129840202643
unknown
https://support.knowbe4.com/hc/en-us/articles/7159155080851#ACTIVE
unknown
https://html2canvas.hertzen.com
unknown
https://support.knowbe4.com/hc/en-us/articles/226457887#TRAINING
unknown
https://support.knowbe4.com/hc/en-us/articles/8410005122963
unknown
https://support.knowbe4.com/hc/en-us/articles/360058125634
unknown
https://s3.amazonaws.com/helpimg/ASAP/SecurityAwarenessTrainingandTestingModelPolicyTemplate.docx
unknown
https://eu.knowbe4.com/ui/js/6390.a0352fbd.js
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/6654432814355-SecurityCoach-Product-Manual
unknown
https://support.knowbe4.com/hc/en-us/articles/6654432814355
unknown
https://exemple.com
unknown
https://eu.knowbe4.com/spa/session
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/226683248
unknown
https://support.knowbe4.com/hc/en-us/articles/6671924884243
unknown
https://support.knowbe4.com/hc/en-us/articles/7159255924371
unknown
https://support.knowbe4.com/hc/en-us/articles/226457887#PHISHING
unknown
https://support.knowbe4.com/hc/en-us/articles/26600721581971
unknown
https://github.com/mholt/PapaParse
unknown
https://support.knowbe4.com/hc/en-us/articles/226314167
unknown
https://support.knowbe4.com/hc/en-us/articles/360010802673
unknown
https://support.knowbe4.com/hc/en-us/articles/115013655647
unknown
https://eu.knowbe4.com/ui/css/modstore.e6dc2405.css
52.222.236.7
https://eu.knowbe4.com/ui/login/Q2hsyaXN0aWdFuR2FyZXtBvQHaBhheWUujbmV0
https://support.knowbe4.com/hc/en-us/articles/115010417488
unknown
https://eu.knowbe4.com/ui/version?1728655771641
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/115010399868
unknown
https://support.knowbe4.com/hc/en-us/articles/6675246222483
unknown
http://admin.google.com
unknown
https://esempio.com.
unknown
https://support.knowbe4.com/hc/en-us/articles/115010417528
unknown
https://eu.knowbe4.com/ui/css/login.447bae78.css
52.222.236.7
https://exemple.fr
unknown
https://support.knowbe4.com/hc/en-us/articles/115009600648
unknown
https://support.knowbe4.com/hc/en-us/articles/115005962328
unknown
https://eu.knowbe4.com/ui/js/8704.9c7711ad.js
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/15480944821395
unknown
https://support.knowbe4.com/hc/en-us/articles/226518427
unknown
https://eu.knowbe4.com/ui/js/8552.b926d32f.js
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/4410161863955-Phishing-Templates-Guide
unknown
https://eu.knowbe4.com/spa/auth/registration
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/6675462413203
unknown
https://openjsf.org/
unknown
https://support.knowbe4.com/hc/en-us/articles/6675337447571
unknown
https://support.knowbe4.com/hc/en-us/articles/31928962152339-Palo-Alto-Next-Generation-Firewall-NGFW
unknown
https://support.knowbe4.com/hc/en-us/articles/115010148647
unknown
https://support.knowbe4.com/hc/en-us/articles/360000159887
unknown
https://support.knowbe4.com/hc/en-us/articles/14185157829139
unknown
https://support.knowbe4.com/hc/en-us/articles/6676500375571
unknown
https://support.knowbe4.com/hc/en-us/articles/115013738548
unknown
https://support.knowbe4.com/hc/en-us/articles/215781208
unknown
https://support.knowbe4.com/hc/fr-ca/articles/8520581440403
unknown
https://support.knowbe4.com/hc/en-us/articles/6676449951251
unknown
https://support.knowbe4.com/hc/en-us/articles/227864388
unknown
https://support.knowbe4.com/hc/en-us/articles/6676302311443
unknown
https://eu.knowbe4.com/ui/js/login.e50ec53d.js
52.222.236.7
https://eu.knowbe4.com/ui/version?1728655801641
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/29576863589651
unknown
https://support.knowbe4.com/hc/en-us/articles/6653763859347
unknown
https://support.knowbe4.com/hc/en-us/articles/115001886067-USB-Security-Test-UST-
unknown
https://events.launchdarkly.com/events/diagnostic/5f3d24c16da26109540297f6
23.20.45.252
https://eu.knowbe4.com/ui/js/1141.1db8db9d.js
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/21452968565523
unknown
https://support.knowbe4.com/hc/en-us/articles/222636687
unknown
https://support.knowbe4.com/hc/en-us/articles/360019110094
unknown
https://support.knowbe4.com/hc/en-us/articles/8876441103123
unknown
http://underscorejs.org/LICENSE
unknown
https://eu.knowbe4.com/ui/users/login
https://cdn.jsdelivr.net/npm/date-time-format-timezone
unknown
https://eu.knowbe4.com/ui/css/app.62a3dac9.css
52.222.236.7
https://eu.knowbe4.com/ui/js/8883.6359e727.js
52.222.236.7
https://eu.knowbe4.com/ui/version?1728655786636
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/205070247#ADD
unknown
https://support.knowbe4.com/hc/en-us/articles/204873347
unknown
https://eu.knowbe4.com/ui/favicon.ico
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/226519807
unknown
https://eu.knowbe4.com/ui/js/modstore.2b98003c.js
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/6675763215379
unknown
https://github.com/js-cookie/js-cookie
unknown
https://support.knowbe4.com/hc/en-us/articles/360024195754
unknown
https://support.knowbe4.com/hc/en-us/articles/115013400768
unknown
https://support.knowbe4.com/hc/en-us/articles/360037392654
unknown
https://eu.knowbe4.com/ui/js/1671.45066501.js
52.222.236.7
https://ejemplo.com
unknown
https://eu.knowbe4.com/ui/js/615.428a6507.js
52.222.236.7
https://eu.knowbe4.com/ui/css/chunk-vendors.d65b7af7.css
52.222.236.7
https://support.knowbe4.com/hc/en-us/articles/227022908
unknown
https://eu.knowbe4.com/ui/js/account.8a4ff4db.js
52.222.236.7
https://eu.knowbe4.com/ui/js/7907.c3eb21ff.js
52.222.236.7
https://npms.io/search?q=ponyfill.
unknown
https://support.knowbe4.com/hc/en-us/articles/360001641907
unknown
https://support.knowbe4.com/hc/en-us/articles/219576987
unknown
https://support.knowbe4.com/hc/en-us/articles/115010243207
unknown
https://support.knowbe4.com/hc/en-us/articles/115015835387-How-Can-I-Add-a-TXT-Record-to-My-DNS-Reco
unknown
https://support.knowbe4.com/hc/en-us/articles/360007952894
unknown
https://support.knowbe4.com/hc/en-us/sections/10969917980435
unknown
https://support.knowbe4.com/hc/en-us/articles/204948207
unknown
https://exemplo.com
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
eu.knowbe4.com
52.222.236.7
s-part-0017.t-0009.t-msedge.net
13.107.246.45
s-part-0017.t-0009.fb-t-msedge.net
13.107.253.45
www.google.com
142.250.185.132
events.launchdarkly.com
23.20.45.252
app.launchdarkly.com
unknown

IPs

IP
Domain
Country
Malicious
23.20.45.252
events.launchdarkly.com
United States
142.250.185.132
www.google.com
United States
142.250.185.100
unknown
United States
192.168.2.4
unknown
unknown
192.168.2.6
unknown
unknown
239.255.255.250
unknown
Reserved
52.222.236.7
eu.knowbe4.com
United States

DOM / HTML

URL
Malicious
https://eu.knowbe4.com/ui/login/Q2hsyaXN0aWdFuR2FyZXtBvQHaBhheWUujbmV0
https://eu.knowbe4.com/ui/login/Q2hsyaXN0aWdFuR2FyZXtBvQHaBhheWUujbmV0
https://eu.knowbe4.com/ui/users/login
https://eu.knowbe4.com/ui/users/login
https://eu.knowbe4.com/ui/users/login