IOC Report
https://cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app/?web=minjeong.cho@hyundaimovex.com

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 41
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 42
ASCII text, with very long lines (6358), with no line terminators
downloaded
Chrome Cache Entry: 43
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 44
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 45
PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 46
ASCII text, with very long lines (35968)
downloaded
Chrome Cache Entry: 47
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 48
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 49
PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 50
HTML document, ASCII text
downloaded
Chrome Cache Entry: 51
HTML document, Unicode text, UTF-8 text, with very long lines (2345)
downloaded
There are 2 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2080 --field-trial-handle=1956,i,4148527221995965006,8085163385645463031,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app/?web=minjeong.cho@hyundaimovex.com"

URLs

Name
IP
Malicious
https://cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app/?web=minjeong.cho@hyundaimovex.com
malicious
https://cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app/?web=minjeong.cho@hyundaimovex.com
malicious
https://fontawesome.com
unknown
https://webmail.cpanel.net/cPanel_magic_revision_1678975705/unprotected/cpanel/style_v2_optimized.cs
unknown
https://webmail.cpanel.net/cPanel_magic_revision_1678975705/unprotected/cpanel/style_v2_optimized.css
208.74.121.68
https://cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app/favicon.ico
76.76.21.142
https://webmail.cpanel.net/cPanel_magic_revision_1542052117/unprotected/cpanel/images/webmail-logo.svg
208.74.121.68
https://webmail.cpanel.net/cPanel_magic_revision_1648610195/unprotected/cpanel/fonts/open_sans/open_
unknown
https://webmail.cpanel.net/cPanel_magic_revision_1648610195/unprotected/cpanel/fonts/open_sans/OpenSans-Regular-webfont.ttf
208.74.121.68
https://webmail.cpanel.net/cPanel_magic_revision_1542052117/unprotected/cpanel/images/icon-token.png
208.74.121.68
https://webmail.cpanel.net/cPanel_magic_revision_1648610195/unprotected/cpanel/fonts/open_sans/OpenSans-Semibold-webfont.woff
208.74.121.68
https://go.cpanel.net/privacy
unknown
https://webmail.cpanel.net/cPanel_magic_revision_1648610195/unprotected/cpanel/fonts/open_sans/OpenSans-Regular-webfont.woff
208.74.121.68
https://webmail.cpanel.net/cPanel_magic_revision_1648610195/unprotected/cpanel/fonts/open_sans/open_sans.min.css
208.74.121.68
https://webmail.cpanel.net/cPanel_magic_revision_1648610195/unprotected/cpanel/fonts/open_sans/OpenSans-Semibold-webfont.ttf
208.74.121.68
https://webmail.cpanel.net/cPanel_magic_revision_1542052117/unprotected/cpanel/images/webmail-logo.s
unknown
https://fontawesome.com/license/free
unknown
https://webmail.cpanel.net/cPanel_magic_revision_1542052117/unprotected/cpanel/images/cp-logo.svg
208.74.121.68
There are 7 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app
76.76.21.142
malicious
webmail.cpanel.net
208.74.121.68
www.google.com
172.217.21.36

IPs

IP
Domain
Country
Malicious
76.76.21.142
cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app
United States
malicious
239.255.255.250
unknown
Reserved
208.74.121.68
webmail.cpanel.net
United States
172.217.21.36
www.google.com
United States
192.168.2.4
unknown
unknown

DOM / HTML

URL
Malicious
https://cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app/?web=minjeong.cho@hyundaimovex.com
malicious
https://cp-wb-pe-2-ujft-9-kslojlj-5-gdr-3-cwge-5-h5-posg-3.vercel.app/?web=minjeong.cho@hyundaimovex.com
malicious