IOC Report
https://forms.gle/sxFUT7YRxjaFsuNq6

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
Web Open Font Format (Version 2), TrueType, length 1664, version 1.0
downloaded
Chrome Cache Entry: 101
Web Open Font Format (Version 2), TrueType, length 45536, version 1.0
downloaded
Chrome Cache Entry: 102
Web Open Font Format (Version 2), TrueType, length 1748, version 1.0
downloaded
Chrome Cache Entry: 103
Web Open Font Format (Version 2), TrueType, length 39708, version 1.0
downloaded
Chrome Cache Entry: 104
ASCII text, with very long lines (1572)
downloaded
Chrome Cache Entry: 105
ASCII text, with very long lines (1747)
downloaded
Chrome Cache Entry: 106
ASCII text, with very long lines (562)
dropped
Chrome Cache Entry: 107
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 108
Web Open Font Format (Version 2), TrueType, length 58892, version 1.0
downloaded
Chrome Cache Entry: 109
Web Open Font Format (Version 2), TrueType, length 37488, version 1.0
downloaded
Chrome Cache Entry: 110
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 111
Web Open Font Format (Version 2), TrueType, length 64164, version 1.0
downloaded
Chrome Cache Entry: 112
Web Open Font Format (Version 2), TrueType, length 44316, version 1.0
downloaded
Chrome Cache Entry: 113
Web Open Font Format (Version 2), TrueType, length 1256, version 1.0
downloaded
Chrome Cache Entry: 114
Web Open Font Format (Version 2), TrueType, length 72628, version 1.0
downloaded
Chrome Cache Entry: 115
Web Open Font Format (Version 2), TrueType, length 60648, version 1.0
downloaded
Chrome Cache Entry: 116
Web Open Font Format (Version 2), TrueType, length 36840, version 1.0
downloaded
Chrome Cache Entry: 117
Web Open Font Format (Version 2), TrueType, length 34184, version 1.0
downloaded
Chrome Cache Entry: 118
Web Open Font Format (Version 2), TrueType, length 41676, version 1.0
downloaded
Chrome Cache Entry: 119
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 120
Web Open Font Format (Version 2), TrueType, length 40412, version 1.0
downloaded
Chrome Cache Entry: 121
Web Open Font Format (Version 2), TrueType, length 41284, version 1.0
downloaded
Chrome Cache Entry: 122
Web Open Font Format (Version 2), TrueType, length 1416, version 1.0
downloaded
Chrome Cache Entry: 123
ASCII text, with very long lines (562)
downloaded
Chrome Cache Entry: 124
Web Open Font Format (Version 2), TrueType, length 1516, version 1.0
downloaded
Chrome Cache Entry: 125
Web Open Font Format (Version 2), TrueType, length 64968, version 1.0
downloaded
Chrome Cache Entry: 126
Web Open Font Format (Version 2), TrueType, length 2484, version 1.0
downloaded
Chrome Cache Entry: 127
Web Open Font Format (Version 2), TrueType, length 46840, version 1.0
downloaded
Chrome Cache Entry: 128
Web Open Font Format (Version 2), TrueType, length 3576, version 1.0
downloaded
Chrome Cache Entry: 129
Web Open Font Format (Version 2), TrueType, length 55204, version 1.0
downloaded
Chrome Cache Entry: 130
Web Open Font Format (Version 2), TrueType, length 50664, version 1.0
downloaded
Chrome Cache Entry: 131
Web Open Font Format (Version 2), TrueType, length 40184, version 1.0
downloaded
Chrome Cache Entry: 132
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 133
ASCII text, with very long lines (1747)
dropped
Chrome Cache Entry: 134
ASCII text, with very long lines (844)
dropped
Chrome Cache Entry: 135
Web Open Font Format (Version 2), TrueType, length 2708, version 1.0
downloaded
Chrome Cache Entry: 136
Web Open Font Format (Version 2), TrueType, length 57612, version 1.0
downloaded
Chrome Cache Entry: 137
Web Open Font Format (Version 2), TrueType, length 32644, version 1.0
downloaded
Chrome Cache Entry: 138
Web Open Font Format (Version 2), TrueType, length 58200, version 1.0
downloaded
Chrome Cache Entry: 139
ASCII text, with very long lines (844)
downloaded
Chrome Cache Entry: 140
Web Open Font Format (Version 2), TrueType, length 41288, version 1.0
downloaded
Chrome Cache Entry: 141
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 142
Web Open Font Format (Version 2), TrueType, length 116852, version 1.0
downloaded
Chrome Cache Entry: 143
Web Open Font Format (Version 2), TrueType, length 126660, version 1.0
downloaded
Chrome Cache Entry: 144
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 145
Web Open Font Format (Version 2), TrueType, length 3640, version 1.0
downloaded
Chrome Cache Entry: 146
Web Open Font Format (Version 2), TrueType, length 26992, version 1.0
downloaded
Chrome Cache Entry: 147
ASCII text, with very long lines (572)
dropped
Chrome Cache Entry: 148
Web Open Font Format (Version 2), TrueType, length 4344, version 1.0
downloaded
Chrome Cache Entry: 149
Web Open Font Format (Version 2), TrueType, length 99952, version 1.0
downloaded
Chrome Cache Entry: 150
Web Open Font Format (Version 2), TrueType, length 50264, version 1.0
downloaded
Chrome Cache Entry: 151
Web Open Font Format (Version 2), TrueType, length 64656, version 1.0
downloaded
Chrome Cache Entry: 152
Web Open Font Format (Version 2), TrueType, length 1528, version 1.0
downloaded
Chrome Cache Entry: 153
ASCII text, with very long lines (3814)
downloaded
Chrome Cache Entry: 154
Web Open Font Format (Version 2), TrueType, length 41584, version 1.0
downloaded
Chrome Cache Entry: 155
Web Open Font Format (Version 2), TrueType, length 41220, version 1.0
downloaded
Chrome Cache Entry: 156
Web Open Font Format (Version 2), TrueType, length 100756, version 1.0
downloaded
Chrome Cache Entry: 157
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 158
Web Open Font Format (Version 2), TrueType, length 2560, version 1.0
downloaded
Chrome Cache Entry: 159
ASCII text, with very long lines (3814)
dropped
Chrome Cache Entry: 160
Web Open Font Format (Version 2), TrueType, length 25940, version 1.0
downloaded
Chrome Cache Entry: 161
Web Open Font Format (Version 2), TrueType, length 84892, version 1.0
downloaded
Chrome Cache Entry: 162
Web Open Font Format (Version 2), TrueType, length 50032, version 1.0
downloaded
Chrome Cache Entry: 163
Web Open Font Format (Version 2), TrueType, length 37800, version 1.0
downloaded
Chrome Cache Entry: 164
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 165
ASCII text, with very long lines (572)
downloaded
Chrome Cache Entry: 166
Web Open Font Format (Version 2), TrueType, length 57236, version 1.0
downloaded
Chrome Cache Entry: 167
Web Open Font Format (Version 2), TrueType, length 37632, version 1.0
downloaded
Chrome Cache Entry: 168
Web Open Font Format (Version 2), TrueType, length 43772, version 1.0
downloaded
Chrome Cache Entry: 169
Web Open Font Format (Version 2), TrueType, length 5044, version 1.0
downloaded
Chrome Cache Entry: 170
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 171
Web Open Font Format (Version 2), TrueType, length 142920, version 1.0
downloaded
Chrome Cache Entry: 172
PNG image data, 1200 x 300, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 173
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 174
ASCII text
downloaded
Chrome Cache Entry: 175
Web Open Font Format (Version 2), TrueType, length 129848, version 1.0
downloaded
Chrome Cache Entry: 176
Web Open Font Format (Version 2), TrueType, length 47364, version 1.0
downloaded
Chrome Cache Entry: 177
Web Open Font Format (Version 2), TrueType, length 35060, version 1.0
downloaded
Chrome Cache Entry: 178
ASCII text
downloaded
Chrome Cache Entry: 179
Web Open Font Format (Version 2), TrueType, length 53884, version 1.0
downloaded
Chrome Cache Entry: 180
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 181
Web Open Font Format (Version 2), TrueType, length 4280, version 1.0
downloaded
Chrome Cache Entry: 182
Web Open Font Format (Version 2), TrueType, length 105776, version 1.0
downloaded
Chrome Cache Entry: 183
Web Open Font Format (Version 2), TrueType, length 42296, version 1.0
downloaded
Chrome Cache Entry: 184
Web Open Font Format (Version 2), TrueType, length 1420, version 1.0
downloaded
Chrome Cache Entry: 185
Web Open Font Format (Version 2), TrueType, length 49980, version 1.0
downloaded
Chrome Cache Entry: 186
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 187
Web Open Font Format (Version 2), TrueType, length 44980, version 1.0
downloaded
Chrome Cache Entry: 188
Web Open Font Format (Version 2), TrueType, length 54212, version 1.0
downloaded
Chrome Cache Entry: 89
Web Open Font Format (Version 2), TrueType, length 72896, version 1.0
downloaded
Chrome Cache Entry: 90
Web Open Font Format (Version 2), TrueType, length 65828, version 1.0
downloaded
Chrome Cache Entry: 91
Web Open Font Format (Version 2), TrueType, length 58012, version 1.0
downloaded
Chrome Cache Entry: 92
Web Open Font Format (Version 2), TrueType, length 1360, version 1.0
downloaded
Chrome Cache Entry: 93
Web Open Font Format (Version 2), TrueType, length 18536, version 1.0
downloaded
Chrome Cache Entry: 94
Web Open Font Format (Version 2), TrueType, length 31456, version 1.0
downloaded
Chrome Cache Entry: 95
Web Open Font Format (Version 2), TrueType, length 42132, version 1.0
downloaded
Chrome Cache Entry: 96
PNG image data, 1200 x 300, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 97
Web Open Font Format (Version 2), TrueType, length 4196, version 1.0
downloaded
Chrome Cache Entry: 98
Web Open Font Format (Version 2), TrueType, length 64068, version 1.0
downloaded
Chrome Cache Entry: 99
GIF image data, version 89a, 1 x 1
downloaded
There are 91 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2560 --field-trial-handle=2524,i,986314333724332850,16836519362287794161,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://forms.gle/sxFUT7YRxjaFsuNq6"

URLs

Name
IP
Malicious
https://forms.gle/sxFUT7YRxjaFsuNq6
https://forms.gle/sxFUT7YRxjaFsuNq6
199.36.158.100
http://localhost.corp.google.com/inapp/
unknown
https://feedback.googleusercontent.com/resources/annotator.css
unknown
https://youtube.com/embed/?rel=0
unknown
https://apis.google.com/js/client.js
unknown
https://feedback2-test.corp.googleusercontent.com/tools/feedback/%
unknown
https://support.google.com
unknown
https://play.google.com
unknown
https://youtube.com/embed/
unknown
http://localhost.proxy.googlers.com/inapp/
unknown
https://stagingqual-feedback-pa-googleapis.sandbox.google.com
unknown
https://support.google.com/inapp/%
unknown
https://asx-help-frontend-autopush.corp.youtube.com/inapp/
unknown
https://help.youtube.com/tools/feedback/
unknown
https://asx-frontend-staging.corp.google.com/tools/feedback/
unknown
https://support.google.com/
unknown
https://www.google.com
unknown
https://lh4.googleusercontent.com/B-vjoRYNSIlQl8HAsCemiW6akJ2yHBC4b2EoA2G3HKhmVs2CcpaqCpP35m7VNUTdetN_2n66_fMVg5s9CuDEBvQYkeP5IkOVv7IwxdcjVEC_JCG9ElXIY26bHMO1MWo2zA=w1200
142.250.181.225
https://scone-pa.clients6.google.com
unknown
https://support.google.com/inapp/
unknown
https://asx-frontend-autopush.corp.google.co.uk/inapp/
unknown
https://asx-frontend-autopush.corp.google.co.uk/tools/feedback/
unknown
https://asx-frontend-autopush.corp.google.com/tools/feedback/
unknown
https://asx-frontend-autopush.corp.youtube.com/tools/feedback/
unknown
https://feedback2-test.corp.google.com/inapp/%
unknown
https://www.google.com/tools/feedback
unknown
https://sandbox.google.com/inapp/%
unknown
https://docs.google.com/forms/d/e/1FAIpQLSeosl99tYV3KV8jIMUimreRZjxW_h7xXREfcFbjnsdmd-sCjA/viewform
https://feedback2-test.corp.googleusercontent.com/inapp/%
unknown
https://localhost.proxy.googlers.com/inapp/
unknown
https://www.google.com/tools/feedback/
unknown
https://www.google.cn/tools/feedback/
unknown
https://play.google.com/log?format=json&hasfast=true&authuser=0
142.250.185.142
https://asx-frontend-autopush.corp.google.de/inapp/
unknown
https://www.google.cn/tools/feedback/%
unknown
https://feedback2-test.corp.google.com/tools/feedback/%
unknown
https://www.google.com/tools/feedback/help_panel_binary.js
unknown
https://docs.google.com/forms/d/e/1FAIpQLSeosl99tYV3KV8jIMUimreRZjxW_h7xXREfcFbjnsdmd-sCjA/viewform?usp=send_form
142.250.185.206
https://uberproxy-pen-redirect.corp.google.com/uberproxy/pen?url=
unknown
https://asx-frontend-autopush.corp.google.de/tools/feedback/
unknown
https://sandbox.google.com/inapp/
unknown
https://test-scone-pa-googleapis.sandbox.google.com
unknown
https://asx-help-frontend-autopush.corp.youtube.com/tools/feedback/
unknown
https://play.google.com/log?format=json&hasfast=true
unknown
https://asx-frontend-autopush.corp.google.com/inapp/
unknown
https://feedback.googleusercontent.com/resources/render_frame2.html
unknown
https://sandbox.google.com/tools/feedback/%
unknown
https://sandbox.google.com/tools/feedback/
unknown
https://localhost.corp.google.com/inapp/
unknown
https://docs.google.com/forms/d/e/1FAIpQLSeosl99tYV3KV8jIMUimreRZjxW_h7xXREfcFbjnsdmd-sCjA/naLogImpressions
142.250.185.206
https://asx-frontend-autopush.corp.youtube.com/inapp/
unknown
https://feedback-pa.clients6.google.com
unknown
https://docs.google.com/forms/d/e/1FAIpQLSeosl99tYV3KV8jIMUimreRZjxW_h7xXREfcFbjnsdmd-sCjA/font/getmetadata
142.250.185.206
https://asx-frontend-staging.corp.google.com/inapp/
unknown
https://www.google.com/tools/feedback/%
unknown
https://fonts.google.com/license/googlerestricted
unknown
There are 46 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
docs.google.com
142.250.185.206
play.google.com
142.250.185.142
s-part-0017.t-0009.t-msedge.net
13.107.246.45
forms.gle
199.36.158.100
www.google.com
142.250.186.68
googlehosted.l.googleusercontent.com
142.250.181.225
15.164.165.52.in-addr.arpa
unknown
lh4.googleusercontent.com
unknown

IPs

IP
Domain
Country
Malicious
142.250.186.68
www.google.com
United States
142.250.185.206
docs.google.com
United States
192.168.2.4
unknown
unknown
199.36.158.100
forms.gle
United States
142.250.181.225
googlehosted.l.googleusercontent.com
United States
239.255.255.250
unknown
Reserved
142.250.185.142
play.google.com
United States
142.250.184.225
unknown
United States
142.250.186.100
unknown
United States
172.217.18.110
unknown
United States

DOM / HTML

URL
Malicious
https://docs.google.com/forms/d/e/1FAIpQLSeosl99tYV3KV8jIMUimreRZjxW_h7xXREfcFbjnsdmd-sCjA/viewform