IOC Report
https://raveisnet-my.sharepoint.com/:b:/g/personal/charles_magyar_raveis_com/EXcQ7jfjoRRElVGCYOzbRHgB-DdV8LhSQTAdk06dppgodw?email=Charles.Magyar%40Raveis.com&e=4%3alGbSIk&fromShare=true&at=9

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 54
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 102804
downloaded
Chrome Cache Entry: 55
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
downloaded
Chrome Cache Entry: 56
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 57
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 58
ASCII text, with very long lines (456), with no line terminators
downloaded
Chrome Cache Entry: 59
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 60
ASCII text, with very long lines (35238), with no line terminators
downloaded
Chrome Cache Entry: 61
ASCII text, with very long lines (23437), with CRLF line terminators
downloaded
Chrome Cache Entry: 62
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 63
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 64
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 40329
downloaded
Chrome Cache Entry: 65
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
dropped
Chrome Cache Entry: 66
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 67
HTML document, ASCII text, with very long lines (64257), with CRLF, LF line terminators
downloaded
There are 5 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2436 --field-trial-handle=2304,i,13728218226947553562,16425673572567539754,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://raveisnet-my.sharepoint.com/:b:/g/personal/charles_magyar_raveis_com/EXcQ7jfjoRRElVGCYOzbRHgB-DdV8LhSQTAdk06dppgodw?email=Charles.Magyar%40Raveis.com&e=4%3alGbSIk&fromShare=true&at=9"

URLs

Name
IP
Malicious
https://raveisnet-my.sharepoint.com/:b:/g/personal/charles_magyar_raveis_com/EXcQ7jfjoRRElVGCYOzbRHgB-DdV8LhSQTAdk06dppgodw?email=Charles.Magyar%40Raveis.com&e=4%3alGbSIk&fromShare=true&at=9
https://raveisnet-my.sharepoint.com/:b:/g/personal/charles_magyar_raveis_com/EXcQ7jfjoRRElVGCYOzbRHgB-DdV8LhSQTAdk06dppgodw?email=Charles.Magyar%40Raveis.com&e=4%3alGbSIk&fromShare=true&at=9
https://raveisnet-my.sharepoint.com/_layouts/15/1033/styles/corev15.css?rev=34APf%2FlfLRHu1iumf2MGdw%3D%3DTAG84
13.107.136.10
https://raveisnet-my.sharepoint.com/_layouts/15/1033/styles/error.css?rev=tF7fyfzbaQzNoASoSDlV4A%3D%3DTAG84
13.107.136.10
https://raveisnet-my.sharepoint.com/ScriptResource.axd?d=xEqMoQOETTWMkBfcAWgApwdEfMw5b8zV-FBRbSC_BI7OlAW61jtIaNtZGa1g2Qexvqy-SEbjBo7HnbR9mikPFn3qzFNVmNVCXVjf5pGtC929OBVnazUyYZc9euNQFAh-iED9b558EzZ0Ru52fT_uR5IapADF7SfSQReGp7zyiObGjp3pp-eo8wF8YVTD8_sc0&t=74258c30
13.107.136.10
https://raveisnet-my.sharepoint.com/_layouts/15/images/favicon.ico?rev=47
13.107.136.10

Domains

Name
IP
Malicious
dual-spo-0005.spo-msedge.net
13.107.136.10
www.google.com
108.177.122.147
raveisnet-my.sharepoint.com
unknown

IPs

IP
Domain
Country
Malicious
13.107.136.10
dual-spo-0005.spo-msedge.net
United States
239.255.255.250
unknown
Reserved
192.168.2.4
unknown
unknown
108.177.122.147
www.google.com
United States

DOM / HTML

URL
Malicious
https://raveisnet-my.sharepoint.com/:b:/g/personal/charles_magyar_raveis_com/EXcQ7jfjoRRElVGCYOzbRHgB-DdV8LhSQTAdk06dppgodw?email=Charles.Magyar%40Raveis.com&e=4%3alGbSIk&fromShare=true&at=9
https://raveisnet-my.sharepoint.com/:b:/g/personal/charles_magyar_raveis_com/EXcQ7jfjoRRElVGCYOzbRHgB-DdV8LhSQTAdk06dppgodw?email=Charles.Magyar%40Raveis.com&e=4%3alGbSIk&fromShare=true&at=9