IOC Report
https://chat.zipzip.ai/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 142
ASCII text, with very long lines (26234)
dropped
Chrome Cache Entry: 143
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 144
JSON data
downloaded
Chrome Cache Entry: 145
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 146
HTML document, ASCII text, with very long lines (2716)
downloaded
Chrome Cache Entry: 147
ASCII text, with very long lines (19948), with no line terminators
dropped
Chrome Cache Entry: 148
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
downloaded
Chrome Cache Entry: 149
JSON data
dropped
Chrome Cache Entry: 150
ASCII text, with very long lines (1407), with no line terminators
dropped
Chrome Cache Entry: 151
ASCII text, with very long lines (727)
dropped
Chrome Cache Entry: 152
JSON data
dropped
Chrome Cache Entry: 153
HTML document, ASCII text, with very long lines (2716)
dropped
Chrome Cache Entry: 154
ASCII text
dropped
Chrome Cache Entry: 155
ASCII text, with very long lines (21409)
downloaded
Chrome Cache Entry: 156
TrueType Font data, 12 tables, 1st "OS/2", 7 names, Microsoft, language 0x409
downloaded
Chrome Cache Entry: 157
HTML document, ASCII text
downloaded
Chrome Cache Entry: 158
JSON data
downloaded
Chrome Cache Entry: 159
ASCII text, with very long lines (21409)
dropped
Chrome Cache Entry: 160
Algol 68 source, ASCII text, with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 161
ASCII text
downloaded
Chrome Cache Entry: 162
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
dropped
Chrome Cache Entry: 163
ASCII text, with very long lines (1407), with no line terminators
downloaded
Chrome Cache Entry: 164
Algol 68 source, ASCII text, with CRLF, LF line terminators
dropped
Chrome Cache Entry: 165
OpenType font data
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (26234)
downloaded
Chrome Cache Entry: 167
ASCII text
downloaded
Chrome Cache Entry: 168
ASCII text, with very long lines (19948), with no line terminators
downloaded
Chrome Cache Entry: 169
JSON data
dropped
Chrome Cache Entry: 170
ASCII text
dropped
Chrome Cache Entry: 171
JSON data
downloaded
Chrome Cache Entry: 172
ASCII text, with very long lines (727)
downloaded
Chrome Cache Entry: 173
ASCII text, with very long lines (522), with no line terminators
downloaded
Chrome Cache Entry: 174
ASCII text
downloaded
There are 24 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1952 --field-trial-handle=2072,i,2424896456289961471,4888319090387022463,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://chat.zipzip.ai/"

URLs

Name
IP
Malicious
https://chat.zipzip.ai/
https://static.cloudflareinsights.com/beacon.min.js/vcd15cbe7772f49c399c6a5babf22c1241717689176015
104.16.80.73
https://zipzip.ai/sample-question
unknown
https://chat.zipzip.ai/assets/fonts/MaterialIcons-Regular.otf
172.67.149.70
https://chat.zipzip.ai/manifest.json
172.67.149.70
https://support.truecaller.com/support/tickets/new?utm_source=zipzip&utm_medium=chat&utm_campaign=zi
unknown
https://www.truecaller.com/terms-of-service
unknown
https://www.truecaller.com
unknown
https://chat.zipzip.ai/main.dart.js
172.67.149.70
https://support.truecaller.com
unknown
https://forms.gle/Uh9f77VA55qcStfH8
unknown
https://chat.zipzip.ai/resize.js
172.67.149.70
https://chat.zipzip.ai/cdn-cgi/rum?
172.67.149.70
https://asia-south1-truecaller-web.cloudfunctions.net/geoip/v1
216.239.36.54
https://github.com/dart-lang/language/issues/3488
unknown
https://developer.mozilla.org/en-US/docs/Web/Security/Secure_Contexts
unknown
https://chat.zipzip.ai/analytics.js
172.67.149.70
https://chat.zipzip.ai/flutter_service_worker.js?v=2047715617
172.67.149.70
https://chat.zipzip.ai/index.html
172.67.149.70
https://22957cc9.nip.io/v0/meta
34.149.124.201
https://chat.zipzip.ai/icons/favicon-32x32.png
172.67.149.70
https://www.support.truecaller.com
unknown
https://chat.zipzip.ai/assets/packages/cupertino_icons/assets/CupertinoIcons.ttf
172.67.149.70
https://www.truecaller.com/privacy/our-privacy-policy/privacy-policy/row#policy
unknown
https://truecaller-website--feature-tcweb-4145-htwatws0.web.app/
unknown
https://chat.zipzip.ai/assets/FontManifest.json
172.67.149.70
https://firebase.flutter.dev/docs/overview#initialization
unknown
https://chat.zipzip.ai/
https://api.flutter.dev/flutter/material/Scaffold/of.html
unknown
https://docs.flutter.dev/development/platform-integration/web/initialization
unknown
https://chat.zipzip.ai/assets/AssetManifest.bin.json
172.67.149.70
https://chat.zipzip.ai/favicon.ico
172.67.149.70
https://plausible.io/api/event
169.150.247.36
https://zipzip.ai
unknown
https://chat.zipzip.ai/flutter.js
172.67.149.70
https://plausible.io/js/script.js
169.150.247.36
https://22957cc9.nip.io
unknown
https://truecaller.com
unknown
There are 27 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
plausible.io
169.150.247.36
bg.microsoft.map.fastly.net
199.232.210.172
static.cloudflareinsights.com
104.16.80.73
asia-south1-truecaller-web.cloudfunctions.net
216.239.36.54
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.185.164
22957cc9.nip.io
34.149.124.201
chat.zipzip.ai
172.67.149.70

IPs

IP
Domain
Country
Malicious
34.149.124.201
22957cc9.nip.io
United States
172.67.149.70
chat.zipzip.ai
United States
192.168.2.4
unknown
unknown
169.150.247.36
plausible.io
United States
104.16.80.73
static.cloudflareinsights.com
United States
169.150.247.37
unknown
United States
239.255.255.250
unknown
Reserved
142.250.185.164
www.google.com
United States
216.239.36.54
asia-south1-truecaller-web.cloudfunctions.net
United States

DOM / HTML

URL
Malicious
https://chat.zipzip.ai/
https://chat.zipzip.ai/
https://chat.zipzip.ai/