Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 14:33:40 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 14:33:40 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:54:41 2023, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 14:33:40 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 14:33:40 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 14:33:40 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 100
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 101
|
PNG image data, 287 x 192, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 102
|
Web Open Font Format (Version 2), TrueType, length 66893, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 103
|
Web Open Font Format (Version 2), TrueType, length 47072, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 104
|
JPEG image data, baseline, precision 8, 110x62, components 3
|
dropped
|
||
Chrome Cache Entry: 105
|
Web Open Font Format (Version 2), TrueType, length 47236, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 106
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 107
|
PNG image data, 110 x 62, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 108
|
JPEG image data, baseline, precision 8, 607x341, components 3
|
downloaded
|
||
Chrome Cache Entry: 109
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 110
|
ASCII text, with very long lines (10136)
|
dropped
|
||
Chrome Cache Entry: 111
|
Web Open Font Format (Version 2), TrueType, length 26844, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 112
|
JPEG image data, baseline, precision 8, 607x341, components 3
|
dropped
|
||
Chrome Cache Entry: 113
|
ISO Media, AVIF Image
|
downloaded
|
||
Chrome Cache Entry: 114
|
Web Open Font Format (Version 2), TrueType, length 25736, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 115
|
ISO Media, AVIF Image
|
dropped
|
||
Chrome Cache Entry: 116
|
Web Open Font Format (Version 2), TrueType, length 65365, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 117
|
Web Open Font Format (Version 2), TrueType, length 25824, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 118
|
PNG image data, 1200 x 630, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 119
|
Unicode text, UTF-8 text, with very long lines (1425), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 120
|
GIF image data, version 89a, 76 x 76
|
dropped
|
||
Chrome Cache Entry: 121
|
JPEG image data, baseline, precision 8, 287x191, components 3
|
dropped
|
||
Chrome Cache Entry: 122
|
Web Open Font Format (Version 2), TrueType, length 46896, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 123
|
ISO Media, AVIF Image
|
downloaded
|
||
Chrome Cache Entry: 124
|
JPEG image data, baseline, precision 8, 110x62, components 3
|
downloaded
|
||
Chrome Cache Entry: 125
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 126
|
Web Open Font Format (Version 2), TrueType, length 63957, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 127
|
ISO Media, AVIF Image
|
dropped
|
||
Chrome Cache Entry: 128
|
PNG image data, 220 x 220, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 129
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 130
|
Web Open Font Format (Version 2), TrueType, length 47636, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 131
|
PNG image data, 287 x 192, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 132
|
GIF image data, version 89a, 76 x 76
|
downloaded
|
||
Chrome Cache Entry: 133
|
PNG image data, 1200 x 630, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 134
|
Web Open Font Format (Version 2), TrueType, length 47100, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 135
|
ASCII text, with very long lines (10136)
|
downloaded
|
||
Chrome Cache Entry: 136
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 84
|
MS Windows icon resource - 4 icons, 64x64, 8 bits/pixel, 48x48, 8 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 85
|
JPEG image data, baseline, precision 8, 287x191, components 3
|
downloaded
|
||
Chrome Cache Entry: 86
|
MS Windows icon resource - 4 icons, 64x64, 8 bits/pixel, 48x48, 8 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 87
|
JPEG image data, baseline, precision 8, 110x62, components 3
|
downloaded
|
||
Chrome Cache Entry: 88
|
PNG image data, 110 x 62, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 89
|
JPEG image data, baseline, precision 8, 220x220, components 3
|
dropped
|
||
Chrome Cache Entry: 90
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 91
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 92
|
JPEG image data, baseline, precision 8, 220x220, components 3
|
downloaded
|
||
Chrome Cache Entry: 93
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 94
|
PNG image data, 220 x 220, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 95
|
Web Open Font Format (Version 2), TrueType, length 47552, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 96
|
HTML document, Unicode text, UTF-8 text, with very long lines (486)
|
downloaded
|
||
Chrome Cache Entry: 97
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 98
|
JPEG image data, baseline, precision 8, 110x62, components 3
|
dropped
|
||
Chrome Cache Entry: 99
|
Web Open Font Format (Version 2), TrueType, length 48832, version 1.0
|
downloaded
|
There are 50 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument http://wsj.pm/
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2128 --field-trial-handle=1948,i,1801483226750025989,897878588710858823,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://wsj.pm
|
|||
https://wsj.pm/img/CH-AA158_Bernst_NS_20100111195708.gif
|
103.113.70.37
|
||
https://wsj.pm/img/im-44291453.avif
|
103.113.70.37
|
||
https://wsj.pm/css/footer.css
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/retina/RetinaNarr-Book.woff2
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/escrow/Escrow+Display+Condensed+Bold.woff2
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/retina/Retina-Light.woff2
|
103.113.70.37
|
||
https://wsj.pm/favicon.ico
|
103.113.70.37
|
||
https://storage.cdn48f.space/9e4e27b7-bcfb-4298-bf8f-2cf4a6bdb3bf-9b6b40d6-3f8e-4755-9063-562658ebdb
|
unknown
|
||
https://storage.cdn48f.space/9e4e27b7-bcfb-4298-bf8f-2cf4a6bdb3bf-9b6b40d6-3f8e-4755-9063-562658ebdb95
|
138.124.184.247
|
||
https://wsj.pm/fonts/woffs/retina/RetinaNarr-Bold.woff2
|
103.113.70.37
|
||
https://wsj.pm/img/AM.jpeg
|
103.113.70.37
|
||
https://api.ipify.org?format=json
|
unknown
|
||
https://wsj.pm/img/im-949675.png
|
103.113.70.37
|
||
https://wsj.pm/img/im-949345.jpeg
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/retina/RetinaNarr-Light.woff2
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/escrow/Escrow+Display+Condensed+Italic.woff2
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/retina/Retina-Book.woff2
|
103.113.70.37
|
||
https://wsj.pm/img/wsj-social-share.png
|
103.113.70.37
|
||
https://wsj.pm/style.css
|
103.113.70.37
|
||
https://wsj.pm/img/im-948848.jpeg
|
103.113.70.37
|
||
https://wsj.pm/img/appstore.a6e93ba3.svg
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/exchange/Exchange-BookItalic.woff2
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/retina/Retina-Medium.woff2
|
103.113.70.37
|
||
https://wsj.pm/img/im-647221.avif
|
103.113.70.37
|
||
https://api.ipify.org/?format=json
|
172.67.74.152
|
||
https://wsj.pm/img/im-949723.jpeg
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/retina/RetinaNarr-Medium.woff2
|
103.113.70.37
|
||
https://wsj.pm/
|
|||
https://wsj.pm/download.php
|
|||
https://wsj.pm/fonts/woffs/escrow/Escrow+Display+Condensed+Roman.woff2
|
103.113.70.37
|
||
https://wsj.pm/img/AM.png
|
103.113.70.37
|
||
https://wsj.pm/img/wsj-logo-big-black.e653dfca.svg
|
103.113.70.37
|
||
https://wsj.pm/img/google-play.4699f3c2.svg
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/exchange/Exchange-Medium.woff2
|
103.113.70.37
|
||
https://wsj.pm/img/im-949113.jpeg
|
103.113.70.37
|
||
https://wsj.pm/vir.wsj.net/fp/assets/webpack4/img/wsj-logo-big-black.165e51cc.svg
|
103.113.70.37
|
||
https://wsj.pm/img/im-948629.png
|
103.113.70.37
|
||
https://wsj.pm/fonts/woffs/exchange/Exchange-Book.woff2
|
103.113.70.37
|
There are 28 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
api.ipify.org
|
172.67.74.152
|
||
storage.cdn48f.space
|
138.124.184.247
|
||
www.google.com
|
142.250.217.228
|
||
wsj.pm
|
103.113.70.37
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
192.168.2.17
|
unknown
|
unknown
|
||
142.250.217.228
|
www.google.com
|
United States
|
||
192.168.2.18
|
unknown
|
unknown
|
||
138.124.184.247
|
storage.cdn48f.space
|
Norway
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
103.113.70.37
|
wsj.pm
|
India
|
||
104.26.13.205
|
unknown
|
United States
|
||
172.67.74.152
|
api.ipify.org
|
United States
|
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://wsj.pm/
|
||
https://wsj.pm/download.php
|