top title background image
flash

http://smenet.org/ViewSwitcher/SwitchView?mobile=True&returnUrl=http://xx6v1x.caobatours.com#YXRvbC5vbmxpbmVAY2FhLmNvLnVr

Status: finished
Submission Time: 2023-07-11 17:39:25 +02:00
Clean

Comments

Tags

Details

  • Analysis ID:
    1271053
  • API (Web) ID:
    1271053
  • Analysis Started:
    2023-07-11 17:39:25 +02:00
  • Analysis Finished:
    2023-07-11 17:44:28 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
clean
Score: 0
System: Windows 10 64 bit 20H2 Native physical Machine for testing VM-aware malware (Office 2019, Chrome 93, Firefox 91, Adobe Reader DC 21, Java 8 Update 301

IPs

IP Country Detection
142.250.185.77
United States
142.250.186.68
United States
216.58.212.142
United States
Click to see the 4 hidden entries
40.69.190.41
United States
185.244.151.84
Netherlands
199.192.25.226
United States
239.255.255.250
Reserved

Domains

Name IP Detection
accounts.google.com
142.250.185.77
xx6v1x.caobatours.com
185.244.151.84
yylinvaant.bureaurid.tech
199.192.25.226
Click to see the 5 hidden entries
www.google.com
142.250.186.68
clients.l.google.com
216.58.212.142
smenet.org
40.69.190.41
clients2.google.com
0.0.0.0
www.smenet.org
0.0.0.0

URLs

Name Detection
https://www.smenet.org/ViewSwitcher/SwitchView?mobile=True&returnUrl=http://xx6v1x.caobatours.com
http://www.smenet.org/ViewSwitcher/SwitchView?mobile=True&returnUrl=http://xx6v1x.caobatours.com
http://smenet.org/ViewSwitcher/SwitchView?mobile=True&returnUrl=http://xx6v1x.caobatours.com
Click to see the 6 hidden entries
https://yylinvaant.bureaurid.tech/favicon.ico
https://smenet.org/ViewSwitcher/SwitchView?mobile=True&returnUrl=http://xx6v1x.caobatours.com
http://xx6v1x.caobatours.com/
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard
https://yylinvaant.bureaurid.tech/assets/style.css
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=94.0.4606.61&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1