IOC Report
https://www.apfis.com.au/program

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 17 21:47:39 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 17 21:47:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 17 21:47:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 17 21:47:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 17 21:47:38 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 100
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 101
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 102
HTML document, ASCII text, with very long lines (32596)
downloaded
Chrome Cache Entry: 103
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 104
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 105
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 106
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 107
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 108
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 109
ASCII text, with very long lines (65454)
downloaded
Chrome Cache Entry: 110
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 111
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 112
ASCII text, with very long lines (65454)
downloaded
Chrome Cache Entry: 113
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 114
RIFF (little-endian) data, Web/P image, VP8 encoding, 1000x120, Suserng: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 115
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 116
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 117
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 118
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 119
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 120
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 121
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 122
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 123
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 124
RIFF (little-endian) data, Web/P image, VP8 encoding, 2500x1211, Suserng: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 125
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 126
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 127
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 128
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 129
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 130
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 131
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 132
JSON data
downloaded
Chrome Cache Entry: 133
JSON data
downloaded
Chrome Cache Entry: 134
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 135
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 136
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 137
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 138
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 139
JSON data
downloaded
Chrome Cache Entry: 140
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 141
ASCII text, with very long lines (55250), with no line terminators
dropped
Chrome Cache Entry: 142
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 143
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 144
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 145
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 146
Unicode text, UTF-8 text, with very long lines (53314)
downloaded
Chrome Cache Entry: 147
JSON data
dropped
Chrome Cache Entry: 148
ASCII text, with very long lines (55250), with no line terminators
downloaded
Chrome Cache Entry: 149
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 150
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 151
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 152
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 153
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 154
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 155
Unicode text, UTF-8 text, with very long lines (65415)
downloaded
Chrome Cache Entry: 156
JSON data
dropped
Chrome Cache Entry: 157
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 158
JSON data
downloaded
Chrome Cache Entry: 159
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 160
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 161
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 162
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 163
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 164
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 165
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 166
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 87
ASCII text, with very long lines (5955)
downloaded
Chrome Cache Entry: 88
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 89
ASCII text, with very long lines (4558)
downloaded
Chrome Cache Entry: 90
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 91
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 92
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 93
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 94
RIFF (little-endian) data, Web/P image, VP8 encoding, 2500x1211, Suserng: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 95
ASCII text, with very long lines (1819)
downloaded
Chrome Cache Entry: 96
RIFF (little-endian) data, Web/P image, VP8 encoding, 1000x120, Suserng: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 97
ASCII text, with very long lines (65448)
downloaded
Chrome Cache Entry: 98
JSON data
dropped
Chrome Cache Entry: 99
ISO Media, AVIF Image
dropped
There are 77 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://www.apfis.com.au/program
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2188 --field-trial-handle=1956,i,13335971639457209954,6257622294217913942,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8

URLs

Name
IP
Malicious
https://www.apfis.com.au/program
https://stats.g.doubleclick.net/g/collect
unknown
https://tailwindcss.com
unknown
https://www.apfis.com.au/static/8523c558709c02d601c242768d0d41b1/2caaf/Janet_Whiting.avif
103.119.110.240
https://www.apfis.com.au/static/a15e3367972da1877dbda4727eb4ca2a/26b80/Tim_Pallas.avif
103.119.110.240
https://www.apfis.com.au/component---src-pages-program-js-1c49721a4761634b7918.js
103.119.110.240
https://www.apfis.com.au/static/d1fe4ed5eb68f7cba20768d1c33b55df/a9fbb/APFIS2024-general-footer.webp
103.119.110.240
https://www.apfis.com.au/page-data/program/page-data.json
103.119.110.240
https://www.apfis.com.au/manifest.webmanifest
103.119.110.240
https://www.apfis.com.au/static/ed8e447fdc0da8e4a4d0360c8c7aabcd/2caaf/Robert_Kapito.avif
103.119.110.240
https://www.apfis.com.au/static/d89fb2ff43d39b8201ac18ac9e7a0ee3/2caaf/Kathleen_McCarthy.avif
103.119.110.240
https://www.apfis.com.au/static/20ba200416b8a7b28c21a736c288ab4c/2caaf/Graeme_Miller.avif
103.119.110.240
https://www.apfis.com.au/ee9ce975-d7d14d1955991a691bf5.js
103.119.110.240
https://www.google.com
unknown
https://www.youtube.com/iframe_api
unknown
https://www.apfis.com.au/static/264c02234d7e9650b496d90171294451/2caaf/Russell_Clarke.avif
103.119.110.240
https://www.apfis.com.au/program
103.119.110.240
https://www.apfis.com.au/static/ad0025d97d6e077cfa46917d65db0a14/2caaf/Suzanne_Branton.avif
103.119.110.240
https://www.apfis.com.au/static/c32943cae42e8dd7b2472413858b5ccc/2caaf/Kate_Galvin.avif
103.119.110.240
https://www.apfis.com.au/framework-14cb81a79b9846a53fe3.js
103.119.110.240
https://www.apfis.com.au/static/a2a37630abc314f268c73f0cb6f842f7/c65bc/APFIS2024-CPD-Icon-v1.webp
103.119.110.240
https://www.apfis.com.au/webpack-runtime-cd1b56a3a43dcb9b61e0.js
103.119.110.240
https://www.apfis.com.au/static/d46723e43cd539c8bc1f8c4d004e1575/2caaf/Grant_Dooley.avif
103.119.110.240
https://www.apfis.com.au/static/a7c8228c89bb971b128362a148356de1/2caaf/Kim_Bowater.avif
103.119.110.240
https://www.apfis.com.au/static/cade94dc1f5ee28350517429b9f60ce6/2caaf/Tim_Church.avif
103.119.110.240
https://www.apfis.com.au/favicon-32x32.png?v=d53c1676623e299bec0e2a6bc1eae0ab
103.119.110.240
https://www.apfis.com.au/favicon.svg?v=d53c1676623e299bec0e2a6bc1eae0ab
103.119.110.240
https://www.apfis.com.au/static/de390658822ba5d121f5866ebace18c4/2caaf/Ross_Barry.avif
103.119.110.240
https://www.apfis.com.au/static/272ec35c8bd3e3cde7d34703836cd6df/2caaf/Lee_Ainslie.avif
103.119.110.240
https://www.apfis.com.au/img/footer-bg.svg
103.119.110.240
https://www.apfis.com.au/app-a2b3d873910e2b4c29b4.js
103.119.110.240
https://www.apfis.com.au/static/12adcc2c154b03180017f02daf358b5a/2caaf/Alison_Tarditi.avif
103.119.110.240
https://adservice.google.com/pagead/regclk
unknown
https://www.apfis.com.au/static/d9a2e291375749c730f1cf7d6c285a51/2caaf/David_Neal.avif
103.119.110.240
https://cct.google/taggy/agent.js
unknown
https://www.apfis.com.au/static/5b95540269ebc21ec6f0311464d741b7/2caaf/Henry_Cornell.avif
103.119.110.240
https://www.apfis.com.au/731-dde39eca748f2a155326.js
103.119.110.240
https://www.apfis.com.au/static/ebdb99ae0d423b32748498998337ca5d/2caaf/Mark_Delaney.avif
103.119.110.240
https://www.apfis.com.au/img/APFIS2024-pos-name-full-horizontal.svg
103.119.110.240
https://www.apfis.com.au/static/c4344570987a73fa2ef3c4a0a0d8471a/2caaf/John_Wylie.avif
103.119.110.240
https://www.apfis.com.au/static/87af4bdaa73ba1d9fcc384fcce382b0b/2caaf/Steve_Schwarzman.avif
103.119.110.240
https://www.apfis.com.au/img/header-bg.webp
103.119.110.240
https://td.doubleclick.net
unknown
https://www.apfis.com.au/static/590026623a748c601d8529f942f7c0e6/2caaf/Sonya_Sawtell-Rickson.avif
103.119.110.240
https://www.apfis.com.au/page-data/app-data.json
103.119.110.240
https://www.apfis.com.au/static/fd17a3caba11d9d95788242560342928/2caaf/John_Pearce.avif
103.119.110.240
https://www.merchant-center-analytics.goog
unknown
https://www.apfis.com.au/program/
https://stats.g.doubleclick.net/g/collect?v=2&
unknown
https://www.apfis.com.au/static/8646890aa49a90cfe35806f4ed57f637/2caaf/Paul_Bassat.avif
103.119.110.240
https://www.apfis.com.au/54fee7d53990cd707f0cd37e00dd9813fe578122-d3a952e89af51c41d8e1.js
103.119.110.240
https://www.apfis.com.au/static/512efff1a2a266d4a2522a904e77aa0f/2caaf/James_Zelter.avif
103.119.110.240
https://www.apfis.com.au/static/2ae06641a459dfe708235a98a0385115/2caaf/Mary_Power.avif
103.119.110.240
There are 42 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
apfis.com.au
103.119.110.240
www.google.com
142.250.105.99
www.apfis.com.au
unknown

IPs

IP
Domain
Country
Malicious
142.250.105.99
www.google.com
United States
192.168.2.16
unknown
unknown
103.119.110.240
apfis.com.au
India
192.168.2.4
unknown
unknown
239.255.255.250
unknown
Reserved

DOM / HTML

URL
Malicious
https://www.apfis.com.au/program/
https://www.apfis.com.au/program/
https://www.apfis.com.au/program/
https://www.apfis.com.au/program/
https://www.apfis.com.au/program/