We are hiring! Windows Kernel Developer (Remote), apply here!
flash

https://insacentre-my.sharepoint.com/:o:/g/personal/christel_chevereau_insa-cvl_fr/EiRzYlzmtGdJoxpcLidnoqABdW_125MBX4mxznGrm93yrA?e=ErmP6W

Status: finished
Submission Time: 2022-10-03 15:31:23 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    715053
  • API (Web) ID:
    1082500
  • Analysis Started:
    2022-10-03 15:37:12 +02:00
  • Analysis Finished:
    2022-10-03 15:44:50 +02:00
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 104, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
56/100

malicious

IPs

IP Country Detection
142.250.203.110
United States
13.107.136.9
United States
13.107.6.171
United States
Click to see the 7 hidden entries
13.107.246.60
United States
142.250.203.109
United States
68.65.120.250
United States
142.250.203.100
United States
40.90.128.21
United States
239.255.255.250
Reserved
188.114.97.3
European Union

Domains

Name IP Detection
onenoteonlinesync.onenote.com
0.0.0.0
messaging.engagement.office.com
0.0.0.0
www.onenote.com
0.0.0.0
Click to see the 16 hidden entries
spoprod-a.akamaihd.net
0.0.0.0
amcdn.msftauth.net
0.0.0.0
insacentre-my.sharepoint.com
0.0.0.0
clients2.google.com
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
storage.live.com
0.0.0.0
augloop.office.com
0.0.0.0
b-0016.b-msedge.net
13.107.6.171
dual-spo-0004.spo-msedge.net
13.107.136.9
byzo.pages.dev
188.114.97.3
clients.l.google.com
142.250.203.110
www.google.com
142.250.203.100
part-0032.t-0009.t-msedge.net
13.107.246.60
accounts.google.com
142.250.203.109
i-dub01p-cor003.api.p001.1drv.com
40.90.128.21
kccarpetsandfloorings.com
68.65.120.250

URLs

Name Detection
https://byzo.pages.dev/
https://byzo.pages.dev/
https://byzo.pages.dev/favicon.ico
Click to see the 6 hidden entries
https://insacentre-my.sharepoint.com/personal/christel_chevereau_insa-cvl_fr/_layouts/15/Doc.aspx?sourcedoc={5c627324-b4e6-4967-a31a-5c2e2767a2a0}&action=view&wd=target%28SPRECHER%20AG.one%7C4af76c2d-7b46-4be7-8c10-3c777d3ccd90%2FSPRECHER%20AG%7Ce1b01870-4c86-4aa6-abd5-d2ff398d2087%2F%29&wdorigin=NavigationUrl
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=104.0.5112.81&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
https://amcdn.msftauth.net/me?partner=OneNoteOnline&version=10.22108.2&market=FR-FR&wrapperId=suiteshell
https://insacentre-my.sharepoint.com/personal/christel_chevereau_insa-cvl_fr/_layouts/15/Doc.aspx?sourcedoc=%7B5c627324-b4e6-4967-a31a-5c2e2767a2a0%7D&action=default&slrid=e6036ba0-60ed-5000-3b56-ec6f32cafafb&originalPath=aHR0cHM6Ly9pbnNhY2VudHJlLW15LnNoYXJlcG9pbnQuY29tLzpvOi9nL3BlcnNvbmFsL2NocmlzdGVsX2NoZXZlcmVhdV9pbnNhLWN2bF9mci9FaVJ6WWx6bXRHZEpveHBjTGlkbm9xQUJkV18xMjVNQlg0bXh6bkdybTkzeXJBP3J0aW1lPTNTSGZoa1NsMmtn&cid=b4d974bd-1cf6-430c-b9ae-4dde6b87b7da
https://kccarpetsandfloorings.com/huest/test.php
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard