IOC Report
http://sobeteracotafancris.ro

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:49 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:49 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:49 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 16 09:33:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 126
ASCII text, with very long lines (1572)
downloaded
Chrome Cache Entry: 127
ASCII text
downloaded
Chrome Cache Entry: 128
ASCII text, with very long lines (8428), with no line terminators
downloaded
Chrome Cache Entry: 129
ASCII text, with very long lines (11126)
downloaded
Chrome Cache Entry: 130
HTML document, ASCII text, with very long lines (31614), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 131
Web Open Font Format (Version 2), TrueType, length 18644, version 1.0
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (43771)
downloaded
Chrome Cache Entry: 134
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 225x225, components 3
dropped
Chrome Cache Entry: 135
ASCII text
downloaded
Chrome Cache Entry: 137
GIF image data, version 89a, 24 x 24
downloaded
Chrome Cache Entry: 138
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 140
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 141
ASCII text, with very long lines (1723)
downloaded
Chrome Cache Entry: 143
ASCII text, with very long lines (3537)
downloaded
Chrome Cache Entry: 144
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 640x480, components 3
downloaded
Chrome Cache Entry: 145
HTML document, ASCII text, with very long lines (25274)
downloaded
Chrome Cache Entry: 146
ASCII text, with very long lines (5326), with no line terminators
downloaded
Chrome Cache Entry: 147
ASCII text
downloaded
Chrome Cache Entry: 148
ASCII text, with very long lines (401)
downloaded
Chrome Cache Entry: 149
ASCII text, with very long lines (612)
downloaded
Chrome Cache Entry: 150
Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
downloaded
Chrome Cache Entry: 151
ASCII text, with very long lines (15660)
downloaded
Chrome Cache Entry: 153
HTML document, ASCII text, with very long lines (9720), with no line terminators
downloaded
Chrome Cache Entry: 154
ASCII text, with very long lines (27985), with CRLF line terminators
downloaded
Chrome Cache Entry: 155
ASCII text, with very long lines (11760)
downloaded
Chrome Cache Entry: 156
PNG image data, 81 x 82, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 157
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 158
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 159
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 160
ASCII text, with very long lines (365)
downloaded
Chrome Cache Entry: 161
ASCII text, with very long lines (682)
downloaded
Chrome Cache Entry: 163
PNG image data, 7 x 7, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 164
ASCII text
downloaded
Chrome Cache Entry: 165
ASCII text, with very long lines (54907), with CRLF line terminators
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (634)
downloaded
Chrome Cache Entry: 167
PNG image data, 10 x 10, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 168
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 68x68, components 3
dropped
Chrome Cache Entry: 169
PNG image data, 576 x 298, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 170
ASCII text, with very long lines (1143)
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (6475), with no line terminators
downloaded
Chrome Cache Entry: 172
ASCII text, with very long lines (3391)
downloaded
Chrome Cache Entry: 173
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 174
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 1878x960, components 3
downloaded
Chrome Cache Entry: 175
Web Open Font Format (Version 2), TrueType, length 22404, version 1.0
downloaded
Chrome Cache Entry: 176
Web Open Font Format (Version 2), TrueType, length 11936, version 1.0
downloaded
Chrome Cache Entry: 177
Unicode text, UTF-8 text, with very long lines (19138), with no line terminators
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (32011)
downloaded
Chrome Cache Entry: 179
ASCII text
downloaded
Chrome Cache Entry: 180
PNG image data, 376 x 298, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 181
ASCII text, with very long lines (29418), with CRLF line terminators
downloaded
Chrome Cache Entry: 182
Web Open Font Format (Version 2), TrueType, length 15920, version 1.0
downloaded
Chrome Cache Entry: 183
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian, direntries=1, software=Google], baseline, precision 8, 68x68, components 3
downloaded
Chrome Cache Entry: 184
Web Open Font Format (Version 2), TrueType, length 21820, version 1.0
downloaded
Chrome Cache Entry: 185
ASCII text, with very long lines (2946)
downloaded
Chrome Cache Entry: 186
Web Open Font Format (Version 2), TrueType, length 21904, version 1.0
downloaded
Chrome Cache Entry: 187
Web Open Font Format (Version 2), TrueType, length 21496, version 1.0
downloaded
Chrome Cache Entry: 188
Unicode text, UTF-8 text, with very long lines (8189)
downloaded
Chrome Cache Entry: 189
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 190
ASCII text
downloaded
Chrome Cache Entry: 194
ASCII text, with very long lines (8470), with CRLF line terminators
downloaded
Chrome Cache Entry: 196
ASCII text, with very long lines (51956)
downloaded
Chrome Cache Entry: 197
ASCII text
downloaded
Chrome Cache Entry: 199
PNG image data, 376 x 298, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 200
ASCII text, with very long lines (318)
downloaded
Chrome Cache Entry: 201
ASCII text, with very long lines (27287), with CRLF line terminators
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (3233)
downloaded
Chrome Cache Entry: 204
PNG image data, 49 x 45, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 206
PNG image data, 376 x 298, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 207
ASCII text, with very long lines (2051)
downloaded
Chrome Cache Entry: 208
ASCII text, with very long lines (404)
downloaded
Chrome Cache Entry: 209
ASCII text, with very long lines (8632)
downloaded
Chrome Cache Entry: 211
ASCII text
downloaded
Chrome Cache Entry: 212
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 214
Web Open Font Format, TrueType, length 80636, version 1.0
downloaded
Chrome Cache Entry: 216
ASCII text, with very long lines (64278), with CRLF line terminators
downloaded
Chrome Cache Entry: 217
RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 219
ASCII text, with very long lines (543)
downloaded
Chrome Cache Entry: 221
ASCII text, with very long lines (58508), with no line terminators
downloaded
Chrome Cache Entry: 222
ASCII text, with very long lines (555)
downloaded
Chrome Cache Entry: 223
ASCII text
downloaded
There are 77 hidden files, click here to show them.

URLs

Name
IP
Malicious
http://sobeteracotafancris.ro
malicious
http://sobeteracotafancris.ro/
194.36.141.112
malicious
https://www.youtube.com/embed/cjJVAxyfZKU
https://www.sobeteracotafancris.ro/
https://www.youtube.com/embed/9sfY1al0iAM

Domains

Name
IP
Malicious
youtube-ui.l.google.com
64.233.176.93
sobeteracotafancris.ro
194.36.141.112
googleads.g.doubleclick.net
173.194.219.154
play.google.com
108.177.122.101
gazduiredesite.ro
89.42.218.138
i.ytimg.com
142.250.105.119
photos-ugc.l.googleusercontent.com
64.233.177.132
secure.trafic.ro
89.35.7.133
www.google.com
173.194.219.99
s.w.org
192.0.77.48
static.doubleclick.net
74.125.138.149
yt3.ggpht.com
unknown
www.youtube.com
unknown
www.gazduiredesite.ro
unknown
www.sobeteracotafancris.ro
unknown
There are 5 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
194.36.141.112
sobeteracotafancris.ro
Romania
64.233.176.95
unknown
United States
64.233.176.93
youtube-ui.l.google.com
United States
192.168.2.16
unknown
unknown
173.194.219.99
www.google.com
United States
192.168.2.4
unknown
unknown
173.194.219.154
googleads.g.doubleclick.net
United States
89.42.218.138
gazduiredesite.ro
Romania
108.177.122.139
unknown
United States
89.35.7.133
secure.trafic.ro
Romania
64.233.177.132
photos-ugc.l.googleusercontent.com
United States
64.233.177.154
unknown
United States
142.250.9.94
unknown
United States
64.233.185.84
unknown
United States
172.217.215.94
unknown
United States
74.125.138.95
unknown
United States
74.125.138.149
static.doubleclick.net
United States
1.1.1.1
unknown
Australia
142.250.9.139
unknown
United States
173.194.219.102
unknown
United States
142.250.105.119
i.ytimg.com
United States
239.255.255.250
unknown
Reserved
173.194.219.119
unknown
United States
64.233.185.93
unknown
United States
108.177.122.101
play.google.com
United States
64.233.185.95
unknown
United States
64.233.176.103
unknown
United States
74.125.136.132
unknown
United States
There are 18 hidden IPs, click here to show them.