IOC Report
https://earthfare96617.lt.emlnk9.com/Prod/link

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 40
JSON data
downloaded
Chrome Cache Entry: 41
JSON data
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2088 --field-trial-handle=2008,i,12592488550153597030,5254020665770698214,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://earthfare96617.lt.emlnk9.com/Prod/link"

URLs

Name
IP
Malicious
https://earthfare96617.lt.emlnk9.com/Prod/link
https://earthfare96617.lt.emlnk9.com/favicon.ico
52.21.0.115
https://earthfare96617.lt.emlnk9.com/Prod/link

Domains

Name
IP
Malicious
earthfare96617.lt.emlnk9.com
52.21.0.115
bg.microsoft.map.fastly.net
199.232.210.172
www.google.com
172.217.215.99
fp2e7a.wpc.phicdn.net
192.229.211.108

IPs

IP
Domain
Country
Malicious
172.217.215.99
www.google.com
United States
192.168.2.22
unknown
unknown
239.255.255.250
unknown
Reserved
52.21.0.115
earthfare96617.lt.emlnk9.com
United States
192.168.2.4
unknown
unknown

DOM / HTML

URL
Malicious
https://earthfare96617.lt.emlnk9.com/Prod/link