IOC Report
https://www.qxeuwqccdzaaaqie6.info

loading gif

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1056 --field-trial-handle=2008,i,12713511431468982074,11000798207561646413,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.qxeuwqccdzaaaqie6.info"

URLs

Name
IP
Malicious
https://www.qxeuwqccdzaaaqie6.info
https://www.qxeuwqccdzaaaqie6.info/
104.21.40.211
https://documentatie.info/v/log.php
172.67.185.106
https://a.nel.cloudflare.com/report/v4?s=edk317n9ghiR%2FqvqcVVg6Ujjzko4tDgGC9wzq%2BO2knP4RUePcIwoJWx2mniXF98txZKUjsshKbPGcv56d0oCKo8lntSAyLfkqo6uwwBCaeWiVall6%2BmprwVSJ6AWTAXuE5SkSw%3D%3D
35.190.80.1

Domains

Name
IP
Malicious
www.qxeuwqccdzaaaqie6.info
104.21.40.211
bg.microsoft.map.fastly.net
199.232.210.172
a.nel.cloudflare.com
35.190.80.1
documentatie.info
172.67.185.106
www.google.com
64.233.177.104
fp2e7a.wpc.phicdn.net
192.229.211.108

IPs

IP
Domain
Country
Malicious
172.67.185.106
documentatie.info
United States
64.233.177.104
www.google.com
United States
104.21.40.211
www.qxeuwqccdzaaaqie6.info
United States
239.255.255.250
unknown
Reserved
192.168.2.16
unknown
unknown
35.190.80.1
a.nel.cloudflare.com
United States
192.168.2.4
unknown
unknown