IOC Report
https://eu.myconnectwise.net/v4_6_release/api/inlineimages/infinitygrp/8a07a37f-0e34-48e8-8792-5f81fcbde46d

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 42
PNG image data, 480 x 43, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 43
XML 1.0 document, ASCII text
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2264 --field-trial-handle=2212,i,17304811127047344951,1977242911418865081,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://eu.myconnectwise.net/v4_6_release/api/inlineimages/infinitygrp/8a07a37f-0e34-48e8-8792-5f81fcbde46d"

URLs

Name
IP
Malicious
https://eu.myconnectwise.net/v4_6_release/api/inlineimages/infinitygrp/8a07a37f-0e34-48e8-8792-5f81fcbde46d
https://eu.myconnectwise.net/v4_6_release/api/inlineimages/infinitygrp/8a07a37f-0e34-48e8-8792-5f81fcbde46d
18.164.174.26
https://cw-eu-documents.s3.eu-west-1.amazonaws.com/favicon.ico
52.218.116.234

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
s3-r-w.eu-west-1.amazonaws.com
52.218.116.234
eu.myconnectwise.net
18.164.174.26
www.google.com
142.250.141.99
cw-eu-documents.s3.eu-west-1.amazonaws.com
unknown

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
18.164.174.26
eu.myconnectwise.net
United States
52.218.116.234
s3-r-w.eu-west-1.amazonaws.com
United States
142.250.141.99
www.google.com
United States
192.168.2.7
unknown
unknown

DOM / HTML

URL
Malicious
https://cw-eu-documents.s3.eu-west-1.amazonaws.com/infinitygrp/7df2b4da-ddd3-49bc-9d40-ba86e6ff6d6c.png?X-Amz-Expires=300&X-Amz-Security-Token=IQoJb3JpZ2luX2VjEEUaCWV1LXdlc3QtMSJGMEQCIGhCZ04ZR7dqRuUrg2gcJEnulmoGQDZTwlL%2FyPHVfzqyAiBB3Wl8Z5Rlc4gOZIAmW4L4N3N5gatma5hsPemdQsILsyq6BQiO%2F%2F%2F%2F%2F%2F%2F%2F%2F%2F8BEAAaDDAwOTA0MzgzMTM3OCIMarrG2VhTy3VjABzxKo4FfTUisDdctRb3p%2Bd8HMbM6IhdntM25HsBTZwWmDvJZJKM3tuY7CkSVR3b3Bz2FtVJeJ7fycf3ecFIU146BrrIjh%2BGsDbeTcxiB9rTepupv7sslvTeYFwwqvl4OA0AHri5PJou3lEAA4N%2BwwHuyTJEzs%2BzAPXEEn1WwzlwW2g2FAtfghaEKC3mw01tGhXSO0cFvu7ApgMOJGBDJAV3KffZc%2B4bK1ZMhgI0LvcIGVDkIivnWHKIUDCp4XMvzUyHR4jo%2BpWI79mconN1xSn5kMw71aDlmD1XEK8JTb0HnGTA9QQCvoF7bUR%2FwRJPzMBmjcV4WqJiJBY9DUp8YLC18hNWqqANHuRVmSD%2BX0MXbj2dW2NDH80yvhPwWFApqWvplDutkONR4oAv939zO%2FuH0uuE1mD9EA6NGbTyggCGKAqBcCTvbrRkXqDf9Ht8Gx87gLw%2BRmvIm97EH5CMwq4vMGBc5%2FiCqZn6k6hjrfFuNSdBHJXs9ZvVeMQwwLUxSkRE8FeB7EnSA9iCUVtjtqh5iujwVXZrKrg%2BmEdtIRMhBNPAR63eLGyL14GQe2WZs9Lt6%2F8BKKJBT0yfYn3IJJjlt12EJqRxEn%2FN20zKB%2BwSs%2FTJekbw5FV0HjD7t4a%2F0