IOC Report
https://ijazkhan09.github.io/facebook_login_page

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 41
Web Open Font Format (Version 2), TrueType, length 18536, version 1.0
downloaded
Chrome Cache Entry: 42
ASCII text
downloaded
Chrome Cache Entry: 43
HTML document, ASCII text
downloaded
Chrome Cache Entry: 44
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 45
HTML document, ASCII text
downloaded
Chrome Cache Entry: 46
ASCII text
downloaded
Chrome Cache Entry: 47
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 48
Web Open Font Format (Version 2), TrueType, length 18588, version 1.0
downloaded
Chrome Cache Entry: 49
HTML document, ASCII text, with very long lines (3909)
downloaded
Chrome Cache Entry: 50
SVG Scalable Vector Graphics image
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2280 --field-trial-handle=2224,i,15737961466895962115,16571030443050912340,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://ijazkhan09.github.io/facebook_login_page"

URLs

Name
IP
Malicious
https://ijazkhan09.github.io/facebook_login_page
malicious
https://ijazkhan09.github.io/facebook_login_page/images/infofacebook.svg
185.199.109.153
malicious
https://ijazkhan09.github.io/facebook_login_page/?
malicious
https://ijazkhan09.github.io/facebook_login_page
185.199.109.153
malicious
https://ijazkhan09.github.io/facebook_login_page/
malicious
https://ijazkhan09.github.io/facebook_login_page/style.css
185.199.109.153
malicious
https://ijazkhan09.github.io/favicon.ico
185.199.109.153
https://githubstatus.com
unknown
https://help.github.com/pages/
unknown
https://twitter.com/githubstatus
unknown

Domains

Name
IP
Malicious
ijazkhan09.github.io
185.199.109.153
malicious
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.185.132
default.qdr.p1.ds-c7110-microsoft.global.dns.qwilted-cds.cqloud.com
84.201.210.18
fp2e7a.wpc.phicdn.net
192.229.221.95

IPs

IP
Domain
Country
Malicious
185.199.109.153
ijazkhan09.github.io
Netherlands
malicious
142.250.185.132
www.google.com
United States
192.168.2.4
unknown
unknown
192.168.2.6
unknown
unknown
239.255.255.250
unknown
Reserved
185.199.108.153
unknown
Netherlands

DOM / HTML

URL
Malicious
https://ijazkhan09.github.io/facebook_login_page/
malicious
https://ijazkhan09.github.io/facebook_login_page/?
malicious