IOC Report
https://www.1stwashingtongroup.net/Fem7-alert.mp3

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 42
Audio file with ID3 version 2.3.0, contains:\012- MPEG ADTS, layer III, v2, 64 kbps, 22.05 kHz, Monaural
downloaded

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2324 --field-trial-handle=2232,i,11943172166484371858,2869991668311064521,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.1stwashingtongroup.net/Fem7-alert.mp3"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5428 --field-trial-handle=2232,i,11943172166484371858,2869991668311064521,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8

URLs

Name
IP
Malicious
https://www.1stwashingtongroup.net/Fem7-alert.mp3
https://www.1stwashingtongroup.net/Fem7-alert.mp3

Domains

Name
IP
Malicious
www.google.com
192.178.50.36
fp2e7a.wpc.phicdn.net
192.229.211.108
1stwashingtongroup.net
89.116.159.223
www.1stwashingtongroup.net
unknown

IPs

IP
Domain
Country
Malicious
192.178.50.36
www.google.com
United States
239.255.255.250
unknown
Reserved
89.116.159.223
1stwashingtongroup.net
Lithuania
192.168.2.4
unknown
unknown

DOM / HTML

URL
Malicious
https://www.1stwashingtongroup.net/Fem7-alert.mp3