IOC Report
https://www.jottacloud.com/s/359ee8b110b8ca8464998842a5d227ed979

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 23 18:49:31 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 23 18:49:31 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 09:23:19 2023, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 23 18:49:31 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 23 18:49:31 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Apr 23 18:49:31 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 107
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 108
ASCII text
downloaded
Chrome Cache Entry: 109
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 110
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 111
ASCII text, with very long lines (18738)
downloaded
Chrome Cache Entry: 112
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 113
Web Open Font Format (Version 2), TrueType, length 74316, version 329.30932
downloaded
Chrome Cache Entry: 116
JSON data
dropped
Chrome Cache Entry: 117
ASCII text, with very long lines (19015)
downloaded
Chrome Cache Entry: 119
MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 120
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 121
JSON data
dropped
Chrome Cache Entry: 122
Unicode text, UTF-8 text, with very long lines (54018)
downloaded
Chrome Cache Entry: 123
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 124
HTML document, ASCII text, with very long lines (1238)
downloaded
Chrome Cache Entry: 125
ASCII text, with very long lines (5371)
downloaded
Chrome Cache Entry: 127
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 130
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 131
Web Open Font Format (Version 2), TrueType, length 15740, version 1.0
downloaded
Chrome Cache Entry: 132
HTML document, ASCII text, with very long lines (23389), with CRLF line terminators
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (49244)
downloaded
Chrome Cache Entry: 134
HTML document, Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 136
ASCII text, with very long lines (32012)
downloaded
Chrome Cache Entry: 138
ASCII text, with very long lines (65325)
downloaded
Chrome Cache Entry: 139
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 140
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 141
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 142
ASCII text, with very long lines (32030)
downloaded
Chrome Cache Entry: 143
Unicode text, UTF-8 text, with very long lines (65528), with no line terminators
downloaded
Chrome Cache Entry: 145
C++ source, Unicode text, UTF-8 text, with very long lines (1007)
downloaded
Chrome Cache Entry: 146
ASCII text, with very long lines (64402)
downloaded
Chrome Cache Entry: 147
Web Open Font Format (Version 2), TrueType, length 15920, version 1.0
downloaded
Chrome Cache Entry: 148
ASCII text, with very long lines (5412)
downloaded
Chrome Cache Entry: 151
JPEG image data, baseline, precision 8, 30x30, components 3
downloaded
Chrome Cache Entry: 152
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 153
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 3651
downloaded
Chrome Cache Entry: 155
HTML document, ASCII text, with very long lines (65522)
downloaded
Chrome Cache Entry: 157
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 159
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 161
HTML document, ASCII text, with very long lines (857)
downloaded
Chrome Cache Entry: 162
PNG image data, 320 x 132, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 163
ASCII text
downloaded
Chrome Cache Entry: 164
HTML document, ASCII text, with very long lines (8796), with no line terminators
downloaded
Chrome Cache Entry: 165
exported SGML document, ASCII text
downloaded
Chrome Cache Entry: 166
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 167
Unicode text, UTF-8 text
dropped
Chrome Cache Entry: 168
Unicode text, UTF-8 text, with very long lines (40549), with no line terminators
downloaded
Chrome Cache Entry: 170
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 171
ASCII text, with very long lines (65352)
downloaded
Chrome Cache Entry: 173
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 175
PDF document, version 1.7
downloaded
Chrome Cache Entry: 176
JSON data
downloaded
Chrome Cache Entry: 177
GIF image data, version 89a, 24 x 24
downloaded
Chrome Cache Entry: 178
Unicode text, UTF-8 text, with very long lines (65456), with no line terminators
downloaded
Chrome Cache Entry: 180
ASCII text
downloaded
Chrome Cache Entry: 182
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 183
HTML document, ASCII text
downloaded
Chrome Cache Entry: 184
JPEG image data, baseline, precision 8, 130x130, components 3
downloaded
Chrome Cache Entry: 185
ASCII text, with very long lines (54456)
downloaded
Chrome Cache Entry: 186
ASCII text, with very long lines (32065)
downloaded
Chrome Cache Entry: 187
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 190
Unicode text, UTF-8 text, with very long lines (697)
downloaded
Chrome Cache Entry: 191
Algol 68 source, ASCII text
downloaded
Chrome Cache Entry: 193
Web Open Font Format (Version 2), TrueType, length 15860, version 1.0
downloaded
Chrome Cache Entry: 194
HTML document, ASCII text
dropped
Chrome Cache Entry: 196
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 197
Web Open Font Format (Version 2), TrueType, length 15744, version 1.0
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 201
ASCII text, with very long lines (48664)
downloaded
Chrome Cache Entry: 203
ASCII text
downloaded
Chrome Cache Entry: 204
JSON data
downloaded
Chrome Cache Entry: 206
ASCII text
downloaded
Chrome Cache Entry: 207
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 208
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 209
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 210
ASCII text, with very long lines (1601)
downloaded
Chrome Cache Entry: 213
C++ source, ASCII text
downloaded
Chrome Cache Entry: 214
JSON data
dropped
There are 75 hidden files, click here to show them.

URLs

Name
IP
Malicious
https://www.jottacloud.com/s/359ee8b110b8ca8464998842a5d227ed979
malicious
https://longz.bigordermilok.com/boxmine/
malicious
https://www.jottacloud.com/s/359ee8b110b8ca8464998842a5d227ed979
https://policy.app.cookieinformation.com/cookiesharingiframe.html
https://www.jottacloud.com/s/359ee8b110b8ca8464998842a5d227ed979/thumbs

Domains

Name
IP
Malicious
sn.jotta.cloud
185.179.129.31
www.jottacloud.com
185.179.129.37
a.nel.cloudflare.com
35.190.80.1
longz.bigordermilok.com
172.67.191.212
api.jotta.cloud
185.179.128.40
maxcdn.bootstrapcdn.com
104.18.10.207
a.jottacloud.com
185.179.129.39
093-up-r.jotta.cloud
185.179.128.50
part-0013.t-0009.t-msedge.net
13.107.213.41
code.jquery.com
151.101.194.137
uc.jottacloud.com
185.179.129.45
cdnjs.cloudflare.com
104.17.24.14
sni1gl.wpc.omegacdn.net
152.195.19.97
www.google.com
108.177.122.105
part-0012.t-0009.t-msedge.net
13.107.246.40
consent.app.cookieinformation.com
20.76.133.196
miro.medium.com
162.159.153.4
use.fontawesome.com
unknown
secure.aadcdn.microsoftonline-p.com
unknown
uc-105.jottacloud.com
unknown
policy.app.cookieinformation.com
unknown
There are 11 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
104.18.10.207
maxcdn.bootstrapcdn.com
United States
13.107.246.40
part-0012.t-0009.t-msedge.net
United States
64.233.176.94
unknown
United States
152.195.19.97
sni1gl.wpc.omegacdn.net
United States
192.168.2.16
unknown
unknown
172.67.191.212
longz.bigordermilok.com
United States
192.168.2.18
unknown
unknown
185.179.129.45
uc.jottacloud.com
Norway
142.250.105.138
unknown
United States
64.233.185.113
unknown
United States
162.159.153.4
miro.medium.com
United States
185.179.128.50
093-up-r.jotta.cloud
Norway
13.107.213.41
part-0013.t-0009.t-msedge.net
United States
142.251.15.95
unknown
United States
151.101.194.137
code.jquery.com
United States
35.190.80.1
a.nel.cloudflare.com
United States
104.17.24.14
cdnjs.cloudflare.com
United States
1.1.1.1
unknown
Australia
142.250.105.94
unknown
United States
64.233.176.84
unknown
United States
185.179.129.37
www.jottacloud.com
Norway
185.179.129.39
a.jottacloud.com
Norway
172.253.124.95
unknown
United States
239.255.255.250
unknown
Reserved
104.21.27.152
unknown
United States
185.179.129.31
sn.jotta.cloud
Norway
185.179.128.40
api.jotta.cloud
Norway
64.233.185.95
unknown
United States
20.76.133.196
consent.app.cookieinformation.com
United States
108.177.122.105
www.google.com
United States
There are 20 hidden IPs, click here to show them.