IOC Report
https://api.sovfixer.com/api/v1/sov/s-no-van-5q3mq9/output/2024%20ULA%20-%20Submission%20-%20Statement%20of%20Values%20with%20COPE%20for%20Modeling%20-%20forPing-VANTAGE.xlsm?access_token=eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJyZXNvdXJjZV90eXBlIjoic292IiwicmVzb3VyY2Vfa2V5Ijoicy1uby12YW4tNXEzbXE5Iiw

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 57
ASCII text
downloaded
Chrome Cache Entry: 58
ASCII text, with very long lines (3026)
downloaded
Chrome Cache Entry: 59
PNG image data, 360 x 857, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 60
PNG image data, 88 x 104, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 61
PNG image data, 355 x 418, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 62
ASCII text, with very long lines (32180)
downloaded
Chrome Cache Entry: 63
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 64
HTML document, ASCII text
downloaded
Chrome Cache Entry: 65
ASCII text
downloaded
Chrome Cache Entry: 66
HTML document, ASCII text, with very long lines (311)
downloaded
Chrome Cache Entry: 67
HTML document, ASCII text
downloaded
Chrome Cache Entry: 68
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 69
Web Open Font Format (Version 2), TrueType, length 19156, version 1.0
downloaded
Chrome Cache Entry: 70
PNG image data, 1123 x 432, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 71
HTML document, ASCII text
downloaded
Chrome Cache Entry: 72
ASCII text, with very long lines (1180)
downloaded
Chrome Cache Entry: 73
ASCII text, with very long lines (1311)
downloaded
Chrome Cache Entry: 74
Web Open Font Format (Version 2), TrueType, length 128352, version 1.0
downloaded
Chrome Cache Entry: 75
PNG image data, 1123 x 432, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 76
PNG image data, 360 x 857, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 77
ASCII text
downloaded
Chrome Cache Entry: 78
PNG image data, 88 x 104, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 79
ASCII text, with very long lines (1076)
downloaded
Chrome Cache Entry: 80
ASCII text
downloaded
Chrome Cache Entry: 81
PNG image data, 355 x 418, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 82
HTML document, ASCII text
downloaded
Chrome Cache Entry: 83
ASCII text, with very long lines (4982)
downloaded
Chrome Cache Entry: 84
ASCII text, with very long lines (1824)
downloaded
Chrome Cache Entry: 85
HTML document, ASCII text
downloaded
Chrome Cache Entry: 86
HTML document, ASCII text
downloaded
Chrome Cache Entry: 87
HTML document, ASCII text
downloaded
Chrome Cache Entry: 88
ASCII text, with very long lines (688)
downloaded
Chrome Cache Entry: 89
ASCII text, with very long lines (3941)
downloaded
Chrome Cache Entry: 90
HTML document, ASCII text
downloaded
There are 25 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2552 --field-trial-handle=2216,i,170605209070316223,3335065777297028043,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://api.sovfixer.com/api/v1/sov/s-no-van-5q3mq9/output/2024%20ULA%20-%20Submission%20-%20Statement%20of%20Values%20with%20COPE%20for%20Modeling%20-%20forPing-VANTAGE.xlsm?access_token=eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJyZXNvdXJjZV90eXBlIjoic292IiwicmVzb3VyY2Vfa2V5Ijoicy1uby12YW4tNXEzbXE5IiwiZXhwIjoxNzEzMTkyOTQ2LCJpYXQiOjE3MTMxODkzNDZ9.GJwtqTrPaS1Yku3glonlTFeIoMz6_wqz3DFf4or86bw"

URLs

Name
IP
Malicious
https://api.sovfixer.com/api/v1/sov/s-no-van-5q3mq9/output/2024%20ULA%20-%20Submission%20-%20Statement%20of%20Values%20with%20COPE%20for%20Modeling%20-%20forPing-VANTAGE.xlsm?access_token=eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJyZXNvdXJjZV90eXBlIjoic292IiwicmVzb3VyY2Vfa2V5Ijoicy1uby12YW4tNXEzbXE5IiwiZXhwIjoxNzEzMTkyOTQ2LCJpYXQiOjE3MTMxODkzNDZ9.GJwtqTrPaS1Yku3glonlTFeIoMz6_wqz3DFf4or86bw
https://api.sovfixer.com/api/v1/sov/s-no-van-5q3mq9/output/2024%20ULA%20-%20Submission%20-%20Statement%20of%20Values%20with%20COPE%20for%20Modeling%20-%20forPing-VANTAGE.xlsm?access_token=eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJyZXNvdXJjZV90eXBlIjoic292IiwicmVzb3VyY2Vfa2V5Ijoicy1uby12YW4tNXEzbXE5IiwiZXhwIjoxNzEzMTkyOTQ2LCJpYXQiOjE3MTMxODkzNDZ9.GJwtqTrPaS1Yku3glonlTFeIoMz6_wqz3DFf4or86bw
https://www.pingintel.com/static/images/logo-ping-dark.png
18.205.36.100
https://www.pingintel.com/static/scss/navigation.b5c7956db6e1.css
18.205.36.100
https://www.pingintel.com/products/sovfixer/
https://www.pingintel.com/whoweare
https://www.pingintel.com/
https://api.sovfixer.com/favicon.ico
18.210.159.47
https://www.pingintel.com/static/scss/grid.6a197e6b6ffb.css
18.205.36.100
https://www.pingintel.com/static/scss/base.e1154900864a.css
18.205.36.100
https://www.pingintel.com
unknown
https://www.pingintel.com/products/ping-geocoding/
https://www.pingintel.com/products/pingdata/
https://www.pingintel.com/static/images/logo-ping-no-shadow-black-88px.png
18.205.36.100
https://www.pingintel.com/whatwedo
https://www.pingintel.com/static/scss/media-screens.339d3e440647.css
18.205.36.100
https://www.pingintel.com/static/scss/reset.625b986db924.css
18.205.36.100
https://www.pingintel.com/static/scss/forms.f904d6e8c80d.css
18.205.36.100
https://www.pingintel.com/static/favicon-32x32.13adde9b446a.png
18.205.36.100
https://nel.heroku.com/reports?ts=1713290860&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&s=liL8PQDRaR8VJJxJb3A%2BHwSHtHsrKFspyuX9cRiLMxg%3D
52.4.3.110
https://www.pingintel.com/static/scss/transitions.550aa09ea41f.css
18.205.36.100
https://www.pingintel.com/static/images/logo-ping-no-shadow-black.png
18.205.36.100
https://data-api.sovfixer.com/docs
unknown
https://www.pingintel.com/static/scss/buttons.281d09b13bc0.css
18.205.36.100
https://www.pingintel.com/contact
https://www.pingintel.com/static/images/ping-sovfixer-workflow.9da7f53c0a2d.png
18.205.36.100
https://polyfill.io/v3/polyfill.min.js?features=default%2CString.prototype.endsWith%2Ces2015%2CNodeL
unknown
There are 16 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.214.172
nel.heroku.com
52.4.3.110
sov-scrubber-prod-alb-1287360708.us-east-1.elb.amazonaws.com
18.210.159.47
www.google.com
64.233.176.106
fp2e7a.wpc.phicdn.net
192.229.211.108
intense-wildfowl-kyres2qigmy9yiqkvjaje2gp.herokudns.com
18.205.36.100
www.pingintel.com
unknown
api.sovfixer.com
unknown
polyfill.io
unknown

IPs

IP
Domain
Country
Malicious
52.4.3.110
nel.heroku.com
United States
18.205.36.100
intense-wildfowl-kyres2qigmy9yiqkvjaje2gp.herokudns.com
United States
192.168.2.6
unknown
unknown
18.210.159.47
sov-scrubber-prod-alb-1287360708.us-east-1.elb.amazonaws.com
United States
239.255.255.250
unknown
Reserved
64.233.176.106
www.google.com
United States

DOM / HTML

URL
Malicious
https://api.sovfixer.com/api/v1/sov/s-no-van-5q3mq9/output/2024%20ULA%20-%20Submission%20-%20Statement%20of%20Values%20with%20COPE%20for%20Modeling%20-%20forPing-VANTAGE.xlsm?access_token=eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJyZXNvdXJjZV90eXBlIjoic292IiwicmVzb3VyY2Vfa2V5Ijoicy1uby12YW4tNXEzbXE5IiwiZXhwIjoxNzEzMTkyOTQ2LCJpYXQiOjE3MTMxODkzNDZ9.GJwtqTrPaS1Yku3glonlTFeIoMz6_wqz3DFf4or86bw
https://www.pingintel.com/
https://www.pingintel.com/whatwedo
https://www.pingintel.com/products/sovfixer/
https://www.pingintel.com/whoweare
https://www.pingintel.com/contact
https://www.pingintel.com/contact
https://www.pingintel.com/products/pingdata/
https://www.pingintel.com/products/ping-geocoding/