IOC Report
https://atpscan.global.hornetsecurity.com?d=CSvj-8b3fpwAumC6AbFMfEVmIT5ENJWTqrZHusAeFnU&f=Mzo1PUwZQd3evqHstuwR_5FCozrkJ9Jd1jGDrnrvcdluTk54zR-Gop3tgMHHrGpX90Gv7ZppU4ALGygldB7J0A&i=&k=bz9r&m=KuGpJb7F8ZjkKBdLnbtsoBlIPcr_V2YvhrjDwSG7wjDkh9t68btueC3me_khplS04Y1vkmcz2DALFAdsCPnXV9Y0e_KkoBmquE5hQxvQRCkIOVA

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 15:47:09 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 15:47:09 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 15:47:09 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 15:47:09 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 15:47:09 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 100
HTML document, ASCII text, with very long lines (1626)
downloaded
Chrome Cache Entry: 103
PNG image data, 40 x 41, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 67
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 68
PNG image data, 550 x 312, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 71
PNG image data, 40 x 41, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 72
JSON data
downloaded
Chrome Cache Entry: 73
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 74
PNG image data, 49 x 41, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 75
ASCII text, with very long lines (2181), with no line terminators
downloaded
Chrome Cache Entry: 77
JSON data
downloaded
Chrome Cache Entry: 78
PNG image data, 381 x 189, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 80
PNG image data, 495 x 309, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 81
Web Open Font Format (Version 2), TrueType, length 49920, version 1.0
downloaded
Chrome Cache Entry: 82
ASCII text, with very long lines (2713), with no line terminators
downloaded
Chrome Cache Entry: 83
ASCII text, with very long lines (34317), with no line terminators
downloaded
Chrome Cache Entry: 84
ASCII text, with very long lines (8206)
downloaded
Chrome Cache Entry: 88
Web Open Font Format (Version 2), TrueType, length 48108, version 1.0
downloaded
Chrome Cache Entry: 91
HTML document, ASCII text, with very long lines (1626)
downloaded
Chrome Cache Entry: 92
PNG image data, 381 x 189, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 93
MS Windows icon resource - 1 icon, -128x-128, 32 bits/pixel
downloaded
Chrome Cache Entry: 94
ASCII text, with very long lines (18047), with no line terminators
dropped
There are 18 hidden files, click here to show them.

URLs

Name
IP
Malicious
https://atpscan.global.hornetsecurity.com?d=CSvj-8b3fpwAumC6AbFMfEVmIT5ENJWTqrZHusAeFnU&f=Mzo1PUwZQd3evqHstuwR_5FCozrkJ9Jd1jGDrnrvcdluTk54zR-Gop3tgMHHrGpX90Gv7ZppU4ALGygldB7J0A&i=&k=bz9r&m=KuGpJb7F8ZjkKBdLnbtsoBlIPcr_V2YvhrjDwSG7wjDkh9t68btueC3me_khplS04Y1vkmcz2DALFAdsCPnXV9Y0e_KkoBmquE5hQxvQRCkIOVAxUSYrmBcZKNoh8NCT&n=3jw3xk5HrrJRpv5jkTsPtIA8SNg8pPkNVIChy5v4uioLwV8t1Qhw8Jl0rPecYr_z&r=Mi1JW6WUX7aRK4law3uJhl9L7Awt-TwJX20OR-eyQiCnjiN--PaFEdBZXBvOt4br&s=9e20e3b941956d702101ff1a86d29524b24c4f8158208c10cfbca279a872d30e&u=https%3A%2F%2Fwww.google.ca%2Furl%3Fn89vrc%3Dhttps%3A%2F%2Fwww.cookejackson.com%26bg%3DAJ%26SQ%3DPQ%26TA%3DR6%26SQ%3DPW%26TA%3D6O%26q%3D%252561%25256d%252570%252F%252573%252561%25256E%252564%252562%25256F%252578%25252E%252575%252573%25252E%252570%252572%25256F%252564%25252E%252561%252570%252569%25252E%252575%252570%252566%25256F%252572%252574%25252E%252563%25256F%25256D%25252F%25256C%252569%25256E%25256B%25252F%252565%252579%25254A%252573%252549%25256A%25256F%252569aHR0cHM6Ly9xM3oycDUuZGVrY2hvYnRpZXcuY29tL2Jvbm5pZS5wZXRlcnNlbkBnZWxpdGEuY29tIiwidSI6InVzZXItMGIzMzM5NWItZDE0OS00NzVkLTljMDMtZmExMGIxMjg1YTVmIiwiciI6ImFubmEudmFuY2VAbWFzb25vd2VuYW5kaGFsZS5jaCIsInYiOjF9%26opdg%3DSmo%26Uk4%3DRXM%26QTU%3DN3I%20Category%20Status%20Priority%20QuickActions
https://securelinks.cloud-security.net/404

Domains

Name
IP
Malicious
securelinks.cloud-security.net
94.100.133.74
atpscan.global.hornetsecurity.com
94.100.136.44
www.google.com
216.58.206.36

IPs

IP
Domain
Country
Malicious
94.100.136.44
atpscan.global.hornetsecurity.com
Germany
142.250.185.67
unknown
United States
142.251.168.84
unknown
United States
94.100.133.74
securelinks.cloud-security.net
Germany
1.1.1.1
unknown
Australia
239.255.255.250
unknown
Reserved
142.250.186.142
unknown
United States
192.168.2.16
unknown
unknown
216.58.206.36
www.google.com
United States