Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2128 --field-trial-handle=1952,i,15935143292258005548,8705793493078961674,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
C:\Program Files\Google\Chrome\Application\chrome.exe" "http://hqqak.ondigitalocean.app
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://hqqak.ondigitalocean.app
|
|||
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=117.0.5938.132&lang=en-US&acceptformat=crx3,puff&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26brand%3DONGR%26ping%3Dr%253D-1%2526e%253D1
|
173.194.219.139
|
||
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard
|
74.125.138.84
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
google.com
|
172.253.126.138
|
||
accounts.google.com
|
74.125.138.84
|
||
www.google.com
|
64.233.185.99
|
||
clients.l.google.com
|
173.194.219.139
|
||
fp2e7a.wpc.phicdn.net
|
192.229.211.108
|
||
clients2.google.com
|
unknown
|
||
hqqak.ondigitalocean.app
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
239.255.255.250
|
unknown
|
Reserved
|
||
173.194.219.139
|
clients.l.google.com
|
United States
|
||
74.125.138.84
|
accounts.google.com
|
United States
|
||
192.168.2.4
|
unknown
|
unknown
|
||
64.233.185.99
|
www.google.com
|
United States
|