IOC Report
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/#8347435238

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 48
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 49
ASCII text, with very long lines (65450), with CRLF line terminators
downloaded
Chrome Cache Entry: 50
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 51
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 52
ASCII text, with very long lines (3949), with no line terminators
downloaded
Chrome Cache Entry: 53
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 54
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 2000x1077, components 3
dropped
Chrome Cache Entry: 55
PNG image data, 152 x 60, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 56
GIF image data, version 89a, 1000 x 750
downloaded
Chrome Cache Entry: 57
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 58
HTML document, ASCII text
downloaded
Chrome Cache Entry: 59
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 60
PNG image data, 152 x 60, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 61
ASCII text
downloaded
Chrome Cache Entry: 62
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 2000x1077, components 3
downloaded
Chrome Cache Entry: 63
GIF image data, version 89a, 1000 x 750
dropped
There are 7 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2076 --field-trial-handle=2004,i,5022309933837493830,9903495654802082009,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/#8347435238"

URLs

Name
IP
Malicious
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/#8347435238
malicious
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/#8347435238
malicious
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/images/logo.png
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/assets/index.js?ver=0.0.1
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/assets/jquery.js
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/images/loading2.gif
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/assets/index.css
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/images/locked3.jpg
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/images/check.png
172.67.222.163
https://ezgif.com/optimize
unknown
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/images/brand3.png
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/images/identity.png
172.67.222.163
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/
172.67.222.163
There are 2 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
rro5wktwxr4n.rollout-specialist-assistance-network.cfd
172.67.222.163
www.google.com
108.177.122.147
fp2e7a.wpc.phicdn.net
192.229.211.108

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
172.67.222.163
rro5wktwxr4n.rollout-specialist-assistance-network.cfd
United States
192.168.2.4
unknown
unknown
108.177.122.147
www.google.com
United States

DOM / HTML

URL
Malicious
https://rro5wktwxr4n.rollout-specialist-assistance-network.cfd/support_case_ID/#8347435238