IOC Report
http://miyajima-zipang.com/

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 21:43:39 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 21:43:39 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:00:51 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 21:43:39 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 21:43:39 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 21:43:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 68
HTML document, Unicode text, UTF-8 text, with very long lines (1003)
downloaded
Chrome Cache Entry: 69
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 70
Unicode text, UTF-8 text, with very long lines (34734)
dropped
Chrome Cache Entry: 71
ASCII text, with very long lines (1932)
downloaded
Chrome Cache Entry: 72
Unicode text, UTF-8 text, with very long lines (34734)
downloaded
Chrome Cache Entry: 73
ASCII text, with very long lines (1932)
downloaded
Chrome Cache Entry: 74
ASCII text, with very long lines (1932)
dropped
Chrome Cache Entry: 75
ASCII text, with very long lines (392), with no line terminators
downloaded
Chrome Cache Entry: 76
HTML document, ASCII text, with very long lines (13053)
downloaded
Chrome Cache Entry: 77
ASCII text, with very long lines (392), with no line terminators
dropped
Chrome Cache Entry: 78
ASCII text, with very long lines (1932)
dropped
Chrome Cache Entry: 79
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 80
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 81
SVG Scalable Vector Graphics image
dropped
There are 11 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2208 --field-trial-handle=1952,i,3238856530332543692,1321710214798586852,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://miyajima-zipang.com/"

URLs

Name
IP
Malicious
http://miyajima-zipang.com/
https://www.google.com/settings/ads/plugin
unknown
https://syndicatedsearch.goog/afs/gen_204?client=dp-bodis01_js&output=uds_ads_only&zx=wq6bwy9kxwo&aqid=I3wZZ57dB5u1juwPg9bMwQM&psid=3113057640&pbt=bv&adbx=281.5&adby=143&adbh=480&adbw=700&adbah=153%2C153%2C153&adbn=master-1&eawp=partner-dp-bodis01_js&errv=688160506&csala=5%7C0%7C1853%7C1962%7C1004&lle=0&ifv=1&hpt=0
142.250.185.174
https://syndicatedsearch.goog
unknown
https://miyajima-zipang.com/favicon.ico
199.59.243.227
https://www.cloudflare.com/privacypolicy/
unknown
https://policy.pinterest.com/en/privacy-policy
unknown
https://miyajima-zipang.com/privacy
https://miyajima-zipang.com/
https://afs.googleusercontent.com/ad_icons/standard/publisher_icon_image/chevron.svg?c=%2302198b
172.217.16.129
http://www.youronlinechoices.com/de/praferenzmanagement/
unknown
https://www.outbrain.com/legal/privacy
unknown
https://www.snap.com/en-US/privacy/privacy-policy
unknown
https://syndicatedsearch.goog/afs/gen_204?client=dp-bodis01_js&output=uds_ads_only&zx=c8qc6ovl7qu&aqid=I3wZZ57dB5u1juwPg9bMwQM&psid=3113057640&pbt=bs&adbx=281.5&adby=143&adbh=480&adbw=700&adbah=153%2C153%2C153&adbn=master-1&eawp=partner-dp-bodis01_js&errv=688160506&csala=5%7C0%7C1853%7C1962%7C1004&lle=0&ifv=1&hpt=0
142.250.185.174
https://www.google.com/policies/privacy/partners/
unknown
https://www.taboola.com/privacy-policy
unknown
https://syndicatedsearch.goog/adsense/domains/caf.js?pac=0
142.250.185.174
https://miyajima-zipang.com/_fd
199.59.243.227
https://miyajima-zipang.com/_tr
199.59.243.227
https://twitter.com/en/privacy
unknown
https://www.tiktok.com/legal/privacy-policy?lang=us
unknown
https://miyajima-zipang.com/bCELKCHiV.js
199.59.243.227
https://afs.googleusercontent.com/ad_icons/standard/publisher_icon_image/call_to_action_arrow.svg?c=%23ffffff
172.217.16.129
https://bodis.com
unknown
https://www.google.com/pagead/1p-conversion/16521530460/?gad_source=1&adview_type=5
unknown
https://www.google.com/adsense/domains/caf.js?abp=1&bodis=true
142.250.186.68
There are 15 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
miyajima-zipang.com
199.59.243.227
syndicatedsearch.goog
142.250.185.174
www.google.com
142.250.186.68
googlehosted.l.googleusercontent.com
172.217.16.129
fp2e7a.wpc.phicdn.net
192.229.221.95
56.163.245.4.in-addr.arpa
unknown
15.164.165.52.in-addr.arpa
unknown
afs.googleusercontent.com
unknown

IPs

IP
Domain
Country
Malicious
142.250.186.68
www.google.com
United States
142.250.186.36
unknown
United States
172.217.16.129
googlehosted.l.googleusercontent.com
United States
199.59.243.227
miyajima-zipang.com
United States
192.168.2.8
unknown
unknown
192.168.2.16
unknown
unknown
192.168.2.5
unknown
unknown
142.250.181.225
unknown
United States
239.255.255.250
unknown
Reserved
142.250.185.174
syndicatedsearch.goog
United States
142.250.185.164
unknown
United States
172.217.23.100
unknown
United States
There are 2 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://miyajima-zipang.com/
https://miyajima-zipang.com/
https://miyajima-zipang.com/
https://miyajima-zipang.com/
https://miyajima-zipang.com/
https://miyajima-zipang.com/privacy