IOC Report
https://certify.us.com/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 44
HTML document, ASCII text, with very long lines (1195), with no line terminators
downloaded
Chrome Cache Entry: 45
ASCII text, with very long lines (8130), with no line terminators
dropped
Chrome Cache Entry: 46
ASCII text, with very long lines (8131), with no line terminators
downloaded
Chrome Cache Entry: 47
HTML document, ASCII text, with no line terminators
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2268 --field-trial-handle=2212,i,7500599649524904157,11607324375634140655,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://certify.us.com/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm"

URLs

Name
IP
Malicious
https://certify.us.com/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm
https://certify.us.org/favicon.ico
188.114.97.3
https://a.nel.cloudflare.com/report/v4?s=oBx7H%2FLqlFaQOSQhbH5%2BL%2FZciBaN5xEx8TQuzp7SRiNDR4O2h92wEwr9HZucXawnFzGMqqDT%2B8YyweEnZzL4VqSxsUISl29WoM7n6Bwzs7b8t1ecUaYTZeC7MMUdifBe2A%3D%3D
35.190.80.1
https://certify.us.org/cdn-cgi/challenge-platform/scripts/jsd/main.js
188.114.97.3
https://certify.us.org/cdn-cgi/challenge-platform/h/b/jsd/r/8db5bd6deb8f316c
188.114.97.3
https://certify.us.com/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm
184.174.35.163
https://certify.us.org/cdn-cgi/challenge-platform/h/b/scripts/jsd/22755d9a86c9/main.js?
188.114.97.3
https://certify.us.org/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm
https://a.nel.cloudflare.com/report/v4?s=v6%2FhgPApvRcR23%2BDpwSFURWtt3qYj2SaSYAzq0jMdO3Dtj0Ueq5Q9imw6YkcoYE7JcfNIHPMFw9inEm47me5kdI1JH3ukWSjCsNKWeKce7r6ht%2FKnb%2FnLk9v9Xlckeh6%2FA%3D%3D
35.190.80.1

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.214.172
certify.us.com
184.174.35.163
a.nel.cloudflare.com
35.190.80.1
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.186.132
fp2e7a.wpc.phicdn.net
192.229.221.95
certify.us.org
188.114.97.3

IPs

IP
Domain
Country
Malicious
192.168.2.16
unknown
unknown
192.168.2.4
unknown
unknown
184.174.35.163
certify.us.com
United States
239.255.255.250
unknown
Reserved
188.114.97.3
certify.us.org
European Union
188.114.96.3
unknown
European Union
142.250.186.132
www.google.com
United States
35.190.80.1
a.nel.cloudflare.com
United States
142.250.184.228
unknown
United States

DOM / HTML

URL
Malicious
https://certify.us.org/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm
https://certify.us.org/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm
https://certify.us.org/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm
https://certify.us.org/mI1AchaQ3ElB4G4RAoTxwn2APP214RAQ3ED5QI1A4DCI1AoTxz01coTxm