IOC Report
https://t.co/yXelyYqHRk

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 44
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 45
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 46
ASCII text, with very long lines (8034), with no line terminators
dropped
Chrome Cache Entry: 47
ASCII text, with very long lines (8075), with no line terminators
downloaded
Chrome Cache Entry: 48
HTML document, ASCII text, with very long lines (1195), with no line terminators
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2280 --field-trial-handle=2208,i,14211548071798225933,8504382171299703789,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://t.co/yXelyYqHRk"

URLs

Name
IP
Malicious
https://t.co/yXelyYqHRk
malicious
https://t.co/yXelyYqHRk
172.66.0.227
malicious
https://sleipmre.com/cdn-cgi/challenge-platform/h/g/jsd/r/8d76b26ff96b4662
172.67.150.161
https://a.nel.cloudflare.com/report/v4?s=c04IIx1Yv5z4PzzB%2Fr10iXdU%2BbbOMzE%2B9iMLdrGiGZxGoQbCMy1e2OonUnfopU%2BIugASJ0Q%2BTQdq1vzzPFpsFZRxGfQUaDnROJ3X8ovLAmPVB%2B4SrQJcXVG6Jx0UblY%3D
35.190.80.1
https://a.nel.cloudflare.com/report/v4?s=62fJnQrkwaELKRGDlOViyT%2BKow%2BR99c1M0bZs18%2BthDa%2BHG9AZx8WNz%2FnifcgaAYh5RPRY5cZ0CP5o%2FImXjIDlRtFewIi6VaxwmQZB3N7UdX0ph6KnC47DvcOahCgbA%3D
35.190.80.1
https://sleipmre.com/cdn-cgi/challenge-platform/scripts/jsd/main.js
172.67.150.161
https://sleipmre.com/cdn-cgi/challenge-platform/h/g/scripts/jsd/f2bbd6738e15/main.js?
172.67.150.161
https://sleipmre.com/sn/b10o.html
https://sleipmre.com/favicon.ico
172.67.150.161
https://a.nel.cloudflare.com/report/v4?s=RH66EzDQwUq3kht2Wf6ZqwHRarTCDRK9PkEzsvw7q5z3%2FT8Y8ZfqByFLN0OKQYzaKVI91uqrGhA5R4dVHpv0VLgBSx%2F8VHXkUL0r54%2FSOO3EgLpiFs2vei1diZjjrU8%3D
35.190.80.1

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
a.nel.cloudflare.com
35.190.80.1
t.co
172.66.0.227
s-part-0036.t-0009.t-msedge.net
13.107.246.64
www.google.com
142.250.181.228
sleipmre.com
172.67.150.161
fp2e7a.wpc.phicdn.net
192.229.221.95
s-part-0032.t-0009.t-msedge.net
13.107.246.60

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
142.250.181.228
www.google.com
United States
172.67.150.161
sleipmre.com
United States
192.168.2.16
unknown
unknown
35.190.80.1
a.nel.cloudflare.com
United States
192.168.2.4
unknown
unknown
172.66.0.227
t.co
United States

DOM / HTML

URL
Malicious
https://sleipmre.com/sn/b10o.html
https://sleipmre.com/sn/b10o.html