IOC Report
https://biruuq.com/f.php?e=br2PMEkzX4etGTJQWDungH49fmtueHVYY3lUMlNtQmowN3Y4WGd6LzdFUVB6dUZXNllHUE1NQndDaEdlcTJURC9qQ1R0VHBHWWIxY2R4UHlwWXNCcmhRQVcyalQ3K0VFWFU4RUtsaHluWE9kYnc1U0MwYVdLOHVsZ2NvWDNnV21rM3BNVFJVekpEdTh3NjFBbXhQMVExKzA3dytjcHJEcVpRTCsrcEM3UUozNXdPSXl2dUZ3OEpXZXFpMUNSaXdsdFE2TjYxR2x1NVZpe

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 70
HTML document, ASCII text
downloaded
Chrome Cache Entry: 71
ASCII text, with CRLF line terminators
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1460 --field-trial-handle=1264,i,6515938508693869711,13721224092671204226,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "https://biruuq.com/f.php?e=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%3D%3D&fp=3f9689c9c10f3e5af454abad6931a2b8"

URLs

Name
IP
Malicious
https://biruuq.com/f.php?e=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%3D%3D&fp=3f9689c9c10f3e5af454abad6931a2b8
https://biruuq.com/favicon.ico
103.224.182.206

Domains

Name
IP
Malicious
www.google.com
172.217.18.4
biruuq.com
103.224.182.206

IPs

IP
Domain
Country
Malicious
103.224.182.206
biruuq.com
Australia
239.255.255.250
unknown
Reserved
172.217.18.4
www.google.com
United States

DOM / HTML

URL
Malicious
https://biruuq.com/f.php?e=br2PMEkzX4etGTJQWDungH49fmtueHVYY3lUMlNtQmowN3Y4WGd6LzdFUVB6dUZXNllHUE1NQndDaEdlcTJURC9qQ1R0VHBHWWIxY2R4UHlwWXNCcmhRQVcyalQ3K0VFWFU4RUtsaHluWE9kYnc1U0MwYVdLOHVsZ2NvWDNnV21rM3BNVFJVekpEdTh3NjFBbXhQMVExKzA3dytjcHJEcVpRTCsrcEM3UUozNXdPSXl2dUZ3OEpXZXFpMUNSaXdsdFE2TjYxR2x1NVZpeWhNbmYxblg3amM1WTFlUEZIVmRTaHQ2YkdvZFhTYld3MWRSN3JxNkw2U1FkRHNGTFpIMzkyb2I0WDROWm1taERuNHlhZWRlemZQT0pIVFZYb2lVUGhTOU9qNmJSNXhrTEVURXAxSVlEblRXQTFaYjdGUVlyOVNaa3ZGS3h1eERKMzNiMk1vRkdyUkFPTmNyc1hqV092MCtEak1oK01OblNZdmNCSHRkWFVtdWVjTXFUUHE4MjdZa0pIdVdGaDUyQkJnbmtJdVJDYVgxczdod0FkWFlIUmxFTTdsUzJYSHdtWEFRU1JYM0tzangyOHlOb0c3bE1YWFNuWkJYWm1hS29tQjkxUjBFbXBzbktsbXp6VGh0VVU5M0ZjVnMvaVBoZFEySGF5eitQd3ZPdUMzMkVmalZDN0dtVW96MEZTdXloT0g0RDFJQ3Z6bFpVWVl3NUV1QmRxS0p2WHJxcVY2WkVqck54NGEzV3hRUFlraXdCK09uZzlTaXVKWmdYQ2pZT0ZsWUZJVjBwb2VLNjMrQ0JKbjQxMXh0RUcvVVB4M1VGSzlWMnhLYlUraXdaYXgvTFRmSHgwUG5Id1BTZEEyUXJJS2lHdmZaRTRGUTZHVVhuUUR3ZHJFeXJKUmdqc0crck4rTUdUdWh1N3krYVR0QldXQU4rSGRBS0Z2L0N3RitlTjh0a09YNzBranUyQ1Z0QXB3QU1mNzdjWE1nQnNJW