Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
http://fibrilono.top

Overview

General Information

Sample URL:http://fibrilono.top
Analysis ID:1544559
Infos:
Errors
  • URL not reachable

Detection

Score:0
Range:0 - 100
Whitelisted:false
Confidence:40%

Signatures

No high impact signatures.

Classification

  • System is w10x64
  • chrome.exe (PID: 5576 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 6048 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2296 --field-trial-handle=2252,i,11723466172191677003,17352949872857695083,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • chrome.exe (PID: 6316 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://fibrilono.top" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: fibrilono.topConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global trafficDNS traffic detected: DNS query: fibrilono.top
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundServer: nginxDate: Tue, 29 Oct 2024 14:24:15 GMTContent-Type: text/html; charset=UTF-8Transfer-Encoding: chunkedConnection: keep-aliveKeep-Alive: timeout=20Accept-ch: sec-ch-ua-platform-version,sec-ch-ua-model,sec-ch-ua-full-version,sec-ch-ua-full-version-listContent-Encoding: gzipVary: Accept-EncodingData Raw: 31 34 0d 0a 1f 8b 08 00 00 00 00 00 00 03 03 00 00 00 00 00 00 00 00 00 0d 0a 30 0d 0a 0d 0a Data Ascii: 140
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49672
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: classification engineClassification label: unknown0.win@17/2@4/4
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2296 --field-trial-handle=2252,i,11723466172191677003,17352949872857695083,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://fibrilono.top"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2296 --field-trial-handle=2252,i,11723466172191677003,17352949872857695083,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Process Injection
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media3
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive4
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture3
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
bg.microsoft.map.fastly.net
199.232.210.172
truefalse
    unknown
    www.google.com
    142.250.186.164
    truefalse
      unknown
      fp2e7a.wpc.phicdn.net
      192.229.221.95
      truefalse
        unknown
        fibrilono.top
        212.117.186.244
        truefalse
          unknown
          NameMaliciousAntivirus DetectionReputation
          http://fibrilono.top/false
            unknown
            • No. of IPs < 25%
            • 25% < No. of IPs < 50%
            • 50% < No. of IPs < 75%
            • 75% < No. of IPs
            IPDomainCountryFlagASNASN NameMalicious
            239.255.255.250
            unknownReserved
            unknownunknownfalse
            142.250.186.164
            www.google.comUnited States
            15169GOOGLEUSfalse
            212.117.186.244
            fibrilono.topLuxembourg
            5577ROOTLUfalse
            IP
            192.168.2.4
            Joe Sandbox version:41.0.0 Charoite
            Analysis ID:1544559
            Start date and time:2024-10-29 15:23:04 +01:00
            Joe Sandbox product:CloudBasic
            Overall analysis duration:0h 2m 5s
            Hypervisor based Inspection enabled:false
            Report type:full
            Cookbook file name:browseurl.jbs
            Sample URL:http://fibrilono.top
            Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
            Number of analysed new started processes analysed:7
            Number of new started drivers analysed:0
            Number of existing processes analysed:0
            Number of existing drivers analysed:0
            Number of injected processes analysed:0
            Technologies:
            • EGA enabled
            • AMSI enabled
            Analysis Mode:default
            Analysis stop reason:Timeout
            Detection:UNKNOWN
            Classification:unknown0.win@17/2@4/4
            Cookbook Comments:
            • URL browsing timeout or error
            • URL not reachable
            • Exclude process from analysis (whitelisted): MpCmdRun.exe, SIHClient.exe, conhost.exe, svchost.exe
            • Excluded IPs from analysis (whitelisted): 142.250.186.163, 172.217.23.110, 108.177.15.84, 34.104.35.123, 184.28.90.27, 4.245.163.56, 199.232.210.172, 192.229.221.95, 40.69.42.241, 20.242.39.171
            • Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, fs-wildcard.microsoft.com.edgekey.net, fs-wildcard.microsoft.com.edgekey.net.globalredir.akadns.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, e16604.g.akamaiedge.net, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, clients.l.google.com, prod.fs.microsoft.com.akadns.net, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
            • Not all processes where analyzed, report is missing behavior information
            • Report size getting too big, too many NtSetInformationFile calls found.
            • VT rate limit hit for: http://fibrilono.top
            No simulations
            No context
            No context
            No context
            No context
            No context
            Process:C:\Program Files\Google\Chrome\Application\chrome.exe
            File Type:gzip compressed data, from Unix, truncated
            Category:downloaded
            Size (bytes):20
            Entropy (8bit):1.2917601481809733
            Encrypted:false
            SSDEEP:3:Ftt:Xt
            MD5:7029066C27AC6F5EF18D660D5741979A
            SHA1:46C6643F07AA7F6BFE7118DE926B86DEFC5087C4
            SHA-256:59869DB34853933B239F1E2219CF7D431DA006AA919635478511FABBFC8849D2
            SHA-512:7E8E93F4A89CE7FAE011403E14A1D53544C6E6F6B6010D61129DC27937806D2B03802610D7999EAB33A4C36B0F9E001D9D76001B8354087634C1AA9C740C536F
            Malicious:false
            Reputation:low
            URL:http://fibrilono.top/
            Preview:....................
            No static file info
            TimestampSource PortDest PortSource IPDest IP
            Oct 29, 2024 15:24:04.003278971 CET49675443192.168.2.4173.222.162.32
            Oct 29, 2024 15:24:13.669946909 CET4973680192.168.2.4212.117.186.244
            Oct 29, 2024 15:24:13.670089006 CET4973780192.168.2.4212.117.186.244
            Oct 29, 2024 15:24:13.675322056 CET8049736212.117.186.244192.168.2.4
            Oct 29, 2024 15:24:13.675379038 CET8049737212.117.186.244192.168.2.4
            Oct 29, 2024 15:24:13.675406933 CET4973680192.168.2.4212.117.186.244
            Oct 29, 2024 15:24:13.675431013 CET4973780192.168.2.4212.117.186.244
            Oct 29, 2024 15:24:13.689513922 CET4973780192.168.2.4212.117.186.244
            Oct 29, 2024 15:24:13.695003033 CET8049737212.117.186.244192.168.2.4
            Oct 29, 2024 15:24:15.499056101 CET8049737212.117.186.244192.168.2.4
            Oct 29, 2024 15:24:15.554395914 CET4973780192.168.2.4212.117.186.244
            Oct 29, 2024 15:24:15.984646082 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:15.984713078 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:15.984972000 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:15.990047932 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:15.990061998 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:16.846118927 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:16.859354019 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:16.859375000 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:16.860429049 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:16.860491991 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:16.899812937 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:16.899991035 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:17.018145084 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:17.018176079 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:17.201093912 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:17.441454887 CET49672443192.168.2.4173.222.162.32
            Oct 29, 2024 15:24:17.441483974 CET44349672173.222.162.32192.168.2.4
            Oct 29, 2024 15:24:19.827517986 CET4972380192.168.2.4199.232.214.172
            Oct 29, 2024 15:24:19.834577084 CET8049723199.232.214.172192.168.2.4
            Oct 29, 2024 15:24:19.834706068 CET4972380192.168.2.4199.232.214.172
            Oct 29, 2024 15:24:26.839821100 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:26.839890957 CET44349740142.250.186.164192.168.2.4
            Oct 29, 2024 15:24:26.839992046 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:28.129709005 CET49740443192.168.2.4142.250.186.164
            Oct 29, 2024 15:24:28.129736900 CET44349740142.250.186.164192.168.2.4
            TimestampSource PortDest PortSource IPDest IP
            Oct 29, 2024 15:24:12.038990974 CET53635621.1.1.1192.168.2.4
            Oct 29, 2024 15:24:12.039164066 CET53531681.1.1.1192.168.2.4
            Oct 29, 2024 15:24:13.284051895 CET53626721.1.1.1192.168.2.4
            Oct 29, 2024 15:24:13.659451008 CET6083953192.168.2.41.1.1.1
            Oct 29, 2024 15:24:13.659575939 CET6447153192.168.2.41.1.1.1
            Oct 29, 2024 15:24:13.667164087 CET53608391.1.1.1192.168.2.4
            Oct 29, 2024 15:24:13.667210102 CET53644711.1.1.1192.168.2.4
            Oct 29, 2024 15:24:15.851556063 CET6151053192.168.2.41.1.1.1
            Oct 29, 2024 15:24:15.851556063 CET5055453192.168.2.41.1.1.1
            Oct 29, 2024 15:24:15.859256029 CET53505541.1.1.1192.168.2.4
            Oct 29, 2024 15:24:15.859765053 CET53615101.1.1.1192.168.2.4
            Oct 29, 2024 15:24:19.696243048 CET138138192.168.2.4192.168.2.255
            Oct 29, 2024 15:24:30.590737104 CET53588021.1.1.1192.168.2.4
            TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
            Oct 29, 2024 15:24:13.659451008 CET192.168.2.41.1.1.10x314aStandard query (0)fibrilono.topA (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:13.659575939 CET192.168.2.41.1.1.10xa78bStandard query (0)fibrilono.top65IN (0x0001)false
            Oct 29, 2024 15:24:15.851556063 CET192.168.2.41.1.1.10xdd6cStandard query (0)www.google.com65IN (0x0001)false
            Oct 29, 2024 15:24:15.851556063 CET192.168.2.41.1.1.10x26bcStandard query (0)www.google.comA (IP address)IN (0x0001)false
            TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
            Oct 29, 2024 15:24:13.667164087 CET1.1.1.1192.168.2.40x314aNo error (0)fibrilono.top212.117.186.244A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:13.667164087 CET1.1.1.1192.168.2.40x314aNo error (0)fibrilono.top23.109.170.228A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:13.667164087 CET1.1.1.1192.168.2.40x314aNo error (0)fibrilono.top23.109.170.252A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:13.667164087 CET1.1.1.1192.168.2.40x314aNo error (0)fibrilono.top212.117.186.20A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:13.667164087 CET1.1.1.1192.168.2.40x314aNo error (0)fibrilono.top212.117.186.4A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:13.667164087 CET1.1.1.1192.168.2.40x314aNo error (0)fibrilono.top188.42.247.220A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:15.859256029 CET1.1.1.1192.168.2.40x26bcNo error (0)www.google.com142.250.186.164A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:15.859765053 CET1.1.1.1192.168.2.40xdd6cNo error (0)www.google.com65IN (0x0001)false
            Oct 29, 2024 15:24:19.179109097 CET1.1.1.1192.168.2.40xa223No error (0)bg.microsoft.map.fastly.net199.232.210.172A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:19.179109097 CET1.1.1.1192.168.2.40xa223No error (0)bg.microsoft.map.fastly.net199.232.214.172A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:20.972100973 CET1.1.1.1192.168.2.40xd7f4No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
            Oct 29, 2024 15:24:20.972100973 CET1.1.1.1192.168.2.40xd7f4No error (0)fp2e7a.wpc.phicdn.net192.229.221.95A (IP address)IN (0x0001)false
            Oct 29, 2024 15:24:33.152371883 CET1.1.1.1192.168.2.40x3e29No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
            Oct 29, 2024 15:24:33.152371883 CET1.1.1.1192.168.2.40x3e29No error (0)fp2e7a.wpc.phicdn.net192.229.221.95A (IP address)IN (0x0001)false
            • fibrilono.top
            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            0192.168.2.449737212.117.186.244806048C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            Oct 29, 2024 15:24:13.689513922 CET428OUTGET / HTTP/1.1
            Host: fibrilono.top
            Connection: keep-alive
            Upgrade-Insecure-Requests: 1
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
            Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
            Accept-Encoding: gzip, deflate
            Accept-Language: en-US,en;q=0.9
            Oct 29, 2024 15:24:15.499056101 CET378INHTTP/1.1 404 Not Found
            Server: nginx
            Date: Tue, 29 Oct 2024 14:24:15 GMT
            Content-Type: text/html; charset=UTF-8
            Transfer-Encoding: chunked
            Connection: keep-alive
            Keep-Alive: timeout=20
            Accept-ch: sec-ch-ua-platform-version,sec-ch-ua-model,sec-ch-ua-full-version,sec-ch-ua-full-version-list
            Content-Encoding: gzip
            Vary: Accept-Encoding
            Data Raw: 31 34 0d 0a 1f 8b 08 00 00 00 00 00 00 03 03 00 00 00 00 00 00 00 00 00 0d 0a 30 0d 0a 0d 0a
            Data Ascii: 140


            Click to jump to process

            Click to jump to process

            Click to jump to process

            Target ID:0
            Start time:10:24:06
            Start date:29/10/2024
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
            Imagebase:0x7ff76e190000
            File size:3'242'272 bytes
            MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:false

            Target ID:2
            Start time:10:24:10
            Start date:29/10/2024
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2296 --field-trial-handle=2252,i,11723466172191677003,17352949872857695083,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
            Imagebase:0x7ff76e190000
            File size:3'242'272 bytes
            MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:false

            Target ID:3
            Start time:10:24:12
            Start date:29/10/2024
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://fibrilono.top"
            Imagebase:0x7ff76e190000
            File size:3'242'272 bytes
            MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:true

            No disassembly