IOC Report
https://vk.com/@jands_company-coraline-neil-gaiman-chapter-1-2%20YIXlv3gu9fWHJ6tYW?domain=vk.com

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 16:22:23 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 16:22:23 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 16:22:23 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 16:22:23 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 16:22:23 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 100
Unicode text, UTF-8 (with BOM) text, with very long lines (65461)
downloaded
Chrome Cache Entry: 101
Unicode text, UTF-8 (with BOM) text, with very long lines (61946)
downloaded
Chrome Cache Entry: 102
Unicode text, UTF-8 (with BOM) text, with very long lines (65457)
downloaded
Chrome Cache Entry: 103
Unicode text, UTF-8 (with BOM) text, with very long lines (946), with no line terminators
downloaded
Chrome Cache Entry: 104
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 75x30, components 3
downloaded
Chrome Cache Entry: 105
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 72x72, components 3
dropped
Chrome Cache Entry: 106
Unicode text, UTF-8 (with BOM) text, with very long lines (65433)
downloaded
Chrome Cache Entry: 107
Unicode text, UTF-8 (with BOM) text
downloaded
Chrome Cache Entry: 108
Unicode text, UTF-8 (with BOM) text, with very long lines (404)
downloaded
Chrome Cache Entry: 109
Unicode text, UTF-8 (with BOM) text, with very long lines (65433)
dropped
Chrome Cache Entry: 110
Unicode text, UTF-8 (with BOM) text, with very long lines (7064), with no line terminators
downloaded
Chrome Cache Entry: 111
Unicode text, UTF-8 (with BOM) text, with very long lines (821)
downloaded
Chrome Cache Entry: 112
Unicode text, UTF-8 (with BOM) text, with very long lines (12794), with no line terminators
dropped
Chrome Cache Entry: 113
Unicode text, UTF-8 (with BOM) text, with very long lines (7064), with no line terminators
dropped
Chrome Cache Entry: 114
Unicode text, UTF-8 (with BOM) text, with very long lines (65461)
dropped
Chrome Cache Entry: 115
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 116
Unicode text, UTF-8 (with BOM) text, with very long lines (19274), with no line terminators
downloaded
Chrome Cache Entry: 117
Unicode text, UTF-8 (with BOM) text, with very long lines (404)
downloaded
Chrome Cache Entry: 118
Unicode text, UTF-8 (with BOM) text, with very long lines (65449)
downloaded
Chrome Cache Entry: 119
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 120
ASCII text, with very long lines (307), with no line terminators
dropped
Chrome Cache Entry: 121
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 122
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 123
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 72x72, components 3
downloaded
Chrome Cache Entry: 124
Unicode text, UTF-8 (with BOM) text, with very long lines (5186)
downloaded
Chrome Cache Entry: 125
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 75x30, components 3
dropped
Chrome Cache Entry: 126
C source, Unicode text, UTF-8 (with BOM) text, with very long lines (24767), with no line terminators
downloaded
Chrome Cache Entry: 127
ASCII text, with very long lines (307), with no line terminators
downloaded
Chrome Cache Entry: 128
Unicode text, UTF-8 (with BOM) text, with very long lines (946), with no line terminators
dropped
Chrome Cache Entry: 129
Unicode text, UTF-8 (with BOM) text, with very long lines (5186)
dropped
Chrome Cache Entry: 130
Unicode text, UTF-8 (with BOM) text
downloaded
Chrome Cache Entry: 131
C source, Unicode text, UTF-8 (with BOM) text, with very long lines (28569), with no line terminators
dropped
Chrome Cache Entry: 132
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 75x30, components 3
downloaded
Chrome Cache Entry: 133
Web Open Font Format (Version 2), TrueType, length 8820, version 3.13107
downloaded
Chrome Cache Entry: 134
Unicode text, UTF-8 (with BOM) text, with very long lines (56287), with no line terminators
downloaded
Chrome Cache Entry: 135
Unicode text, UTF-8 (with BOM) text, with very long lines (30078), with no line terminators
dropped
Chrome Cache Entry: 136
Unicode text, UTF-8 (with BOM) text, with very long lines (35952), with no line terminators
dropped
Chrome Cache Entry: 137
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 138
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 139
Unicode text, UTF-8 text, with very long lines (58503)
downloaded
Chrome Cache Entry: 140
Unicode text, UTF-8 (with BOM) text, with very long lines (3809), with no line terminators
downloaded
Chrome Cache Entry: 141
Unicode text, UTF-8 (with BOM) text, with very long lines (30078), with no line terminators
downloaded
Chrome Cache Entry: 142
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 143
Unicode text, UTF-8 (with BOM) text, with very long lines (56287), with no line terminators
dropped
Chrome Cache Entry: 144
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 145
ASCII text, with very long lines (39306)
dropped
Chrome Cache Entry: 146
Unicode text, UTF-8 (with BOM) text, with very long lines (3082)
downloaded
Chrome Cache Entry: 147
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 148
C source, Unicode text, UTF-8 (with BOM) text, with very long lines (24767), with no line terminators
dropped
Chrome Cache Entry: 149
Unicode text, UTF-8 (with BOM) text, with very long lines (3809), with no line terminators
dropped
Chrome Cache Entry: 150
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 151
Unicode text, UTF-8 (with BOM) text, with very long lines (65529), with no line terminators
downloaded
Chrome Cache Entry: 152
Unicode text, UTF-8 (with BOM) text, with very long lines (35952), with no line terminators
downloaded
Chrome Cache Entry: 153
Unicode text, UTF-8 (with BOM) text, with very long lines (65518), with no line terminators
downloaded
Chrome Cache Entry: 154
Unicode text, UTF-8 (with BOM) text, with very long lines (65457)
dropped
Chrome Cache Entry: 155
Unicode text, UTF-8 (with BOM) text, with very long lines (65267), with no line terminators
downloaded
Chrome Cache Entry: 156
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 157
Unicode text, UTF-8 (with BOM) text, with very long lines (404)
downloaded
Chrome Cache Entry: 158
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 159
Unicode text, UTF-8 (with BOM) text, with very long lines (65455)
dropped
Chrome Cache Entry: 160
Unicode text, UTF-8 (with BOM) text, with very long lines (56319)
downloaded
Chrome Cache Entry: 161
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 75x30, components 3
downloaded
Chrome Cache Entry: 162
ASCII text, with very long lines (307), with no line terminators
dropped
Chrome Cache Entry: 163
Unicode text, UTF-8 (with BOM) text, with very long lines (65455)
downloaded
Chrome Cache Entry: 164
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 75x30, components 3
dropped
Chrome Cache Entry: 165
Unicode text, UTF-8 (with BOM) text, with very long lines (65267), with no line terminators
dropped
Chrome Cache Entry: 166
Unicode text, UTF-8 (with BOM) text, with very long lines (5380), with no line terminators
downloaded
Chrome Cache Entry: 167
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 168
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 75x30, components 3
dropped
Chrome Cache Entry: 169
ASCII text, with very long lines (307), with no line terminators
downloaded
Chrome Cache Entry: 170
Unicode text, UTF-8 (with BOM) text, with very long lines (4410)
downloaded
Chrome Cache Entry: 171
Unicode text, UTF-8 (with BOM) text, with very long lines (518)
downloaded
Chrome Cache Entry: 172
Unicode text, UTF-8 (with BOM) text, with very long lines (25154)
downloaded
Chrome Cache Entry: 173
Unicode text, UTF-8 (with BOM) text, with very long lines (5380), with no line terminators
dropped
Chrome Cache Entry: 174
Unicode text, UTF-8 (with BOM) text, with very long lines (19274), with no line terminators
dropped
Chrome Cache Entry: 175
Unicode text, UTF-8 (with BOM) text, with very long lines (4330)
downloaded
Chrome Cache Entry: 176
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 177
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 178
Unicode text, UTF-8 (with BOM) text, with very long lines (12794), with no line terminators
downloaded
Chrome Cache Entry: 93
Unicode text, UTF-8 (with BOM) text, with very long lines (64790)
dropped
Chrome Cache Entry: 94
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
dropped
Chrome Cache Entry: 95
C source, Unicode text, UTF-8 (with BOM) text, with very long lines (28569), with no line terminators
downloaded
Chrome Cache Entry: 96
Unicode text, UTF-8 (with BOM) text, with very long lines (2303)
downloaded
Chrome Cache Entry: 97
Unicode text, UTF-8 (with BOM) text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 98
Unicode text, UTF-8 (with BOM) text, with very long lines (1866)
downloaded
Chrome Cache Entry: 99
ASCII text, with very long lines (39306)
downloaded
There are 83 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2180 --field-trial-handle=1868,i,7768156611236392057,15421555852066886391,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://vk.com/@jands_company-coraline-neil-gaiman-chapter-1-2%20YIXlv3gu9fWHJ6tYW?domain=vk.com"

URLs

Name
IP
Malicious
https://vk.com/@jands_company-coraline-neil-gaiman-chapter-1-2%20YIXlv3gu9fWHJ6tYW?domain=vk.com
https://st6-20.vk.com/dist/web/chunks/356f0d7c.3421b6b2.js
95.142.206.0
https://st6-20.vk.com/css/al/fonts_utf.7fa94ada.css
95.142.206.0
https://st6-20.vk.com/css/al/search.5f3ac0d7.css
95.142.206.0
https://st6-20.vk.com/dist/web/performance_observers.116a486c.js
95.142.206.0
https://st6-20.vk.com/css/al/vk_sans_display_faux.7d208ecb.css
95.142.206.0
https://st6-20.vk.com/dist/web/jobs_devtools_notification.2094f96b.js
95.142.206.0
https://st6-20.vk.com/dist/web/site_layout.2877307d.css
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/vkcom-kit.9b04dd5f.js
95.142.206.0
https://st6-20.vk.com/dist/web/search_top_anonymous.89eef45b.js
95.142.206.0
https://st6-20.vk.com/dist/web/search_top_anonymous.10cf2e3b.css
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/vkui.9ff75b43.js
95.142.206.0
https://st6-20.vk.com/css/fonts/VKSansDisplayDemiBoldFaux.v100.woff2
95.142.206.0
https://st6-20.vk.com/css/al/common.ef136208.css
95.142.206.0
https://st6-20.vk.com/dist/web/unauthorized.8cc3ce95.js
95.142.206.0
https://st6-20.vk.com/css/al/vk_sans_display.5625d45f.css
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/vkcom-kit.a207e0d2.css
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/react.e5ffc77d.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/20186f9f.89ac7489.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/draggable.27e2b0ef.js
95.142.206.0
https://st6-20.vk.com/dist/web/common_web.8897cd70.css
95.142.206.0
https://st6-20.vk.com/css/al/reports.5e617ad9.css
95.142.206.0
https://st6-20.vk.com/dist/web/notifier.4b793668.js
95.142.206.0
https://sun6-21.userapi.com/s/v1/if1/HntIMRwTeXT1LMveUAIItzekCqboaxFkTTUyFVFb3AxHLYbqg4Aq4-nr5lCXtPCDbdrdWaHP.jpg?quality=96&crop=21,21,2139,2139&as=32x32,48x48,72x72,108x108,160x160,240x240,360x360,480x480,540x540,640x640,720x720,1080x1080,1280x1280,1440x1440&ava=1&cs=50x50
95.142.206.1
https://st6-20.vk.com/dist/web/css_types.06885fed.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/audioplayer-lib.37f8703e.css
95.142.206.0
https://st6-20.vk.com/dist/web/core_spa.1489c3a9.css
95.142.206.0
https://st6-20.vk.com/dist/web/article_layer.cc367503.css
95.142.206.0
https://vk.com/js/lib/px.js?ch=2
87.240.129.133
https://st6-20.vk.com/dist/web/vk_sans_observer.1f9b779f.js
95.142.206.0
https://st6-20.vk.com/css/al/article.57d0027f.css
95.142.206.0
https://vk.com/js/lib/px.js?ch=1
87.240.129.133
https://sun9-62.userapi.com/impf/c850608/v850608974/a6ba/u8WIvXXYR8U.jpg?size=75x30&quality=96&sign=95af9bc2577792640c81a9177852a77b&type=album
87.240.185.161
https://vk.com/js/lang3_2.js?28875922
87.240.129.133
https://st6-20.vk.com/css/al/base.4b6df9e7.css
95.142.206.0
https://vk.com/dist/public/lib/px.d8e2d40de34f54b587630b4bb4f716cf.js?ch=2
87.240.129.133
https://vk.com/dist/public/lib/px.d8e2d40de34f54b587630b4bb4f716cf.js?ch=1
87.240.129.133
https://st6-20.vk.com/dist/web/article_layer.663dc8ca.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/palette.ca029abe.css
95.142.206.0
https://st6-20.vk.com/dist/web/notifier.f1b6b1d5.css
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/audioplayer-lib.b8d09f1d.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/palette.e98c6114.js
95.142.206.0
https://vk.com/js/loader_nav21284198096_3.js
87.240.129.133
https://st6-20.vk.com/dist/web/common_web.fddd3043.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/common.46e8e426.js
95.142.206.0
https://st6-20.vk.com/dist/web/grip.da934a84.js
95.142.206.0
https://sun9-41.userapi.com/impf/c850608/v850608974/a6b1/ImfBegv5GHM.jpg?size=75x30&quality=96&sign=b9d62a8b723742bd93ab8f5521304234&type=album
93.186.227.148
https://sun9-7.userapi.com/impf/c850608/v850608289/a444/QsUJad6IFlg.jpg?size=75x30&quality=96&sign=c2166c7a19dbbab7bc9a30c982802c8c&type=album
87.240.185.134
https://st6-20.vk.com/dist/web/core_spa.68d0600c.js
95.142.206.0
https://vk.com/@jands_company-coraline-neil-gaiman-chapter-1-2%20YIXlv3gu9fWHJ6tYW?domain=vk.com
87.240.129.133
https://st6-20.vk.com/dist/web/chunks/vkcom-kit-icons.d88401db.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/6fb92d7a.443f48b1.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/state-management.c5d7f9fa.js
95.142.206.0
https://vk.com/dist/web/language.64d77c64.js
87.240.129.133
https://st6-20.vk.com/css/al/vkui.499054b5.css
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/core_spa.9670bb4b.js
95.142.206.0
https://st6-20.vk.com/dist/web/chunks/architecture-mobx.a6413002.js
95.142.206.0
https://st6-20.vk.com/dist/web/site_layout.052def25.js
95.142.206.0
There are 47 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
login.vk.com
93.186.237.1
api.vk.com
87.240.137.206
sun6-21.userapi.com
95.142.206.1
www.google.com
142.250.181.68
sun9-62.userapi.com
87.240.185.161
vk.com
87.240.129.133
sun6-20.userapi.com
95.142.206.0
sun9-41.userapi.com
93.186.227.148
sun9-7.userapi.com
87.240.185.134
st6-20.vk.com
unknown

IPs

IP
Domain
Country
Malicious
93.186.227.148
sun9-41.userapi.com
Russian Federation
87.240.185.161
sun9-62.userapi.com
Russian Federation
192.168.2.16
unknown
unknown
93.186.225.194
unknown
Russian Federation
239.255.255.250
unknown
Reserved
93.186.237.1
login.vk.com
Russian Federation
95.142.206.0
sun6-20.userapi.com
Russian Federation
95.142.206.1
sun6-21.userapi.com
Russian Federation
142.250.181.68
www.google.com
United States
87.240.185.134
sun9-7.userapi.com
Russian Federation
87.240.137.206
api.vk.com
Russian Federation
87.240.129.133
vk.com
Russian Federation
There are 2 hidden IPs, click here to show them.