IOC Report
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 50
HTML document, ASCII text
downloaded
Chrome Cache Entry: 51
PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 52
ASCII text, with very long lines (32065)
downloaded
Chrome Cache Entry: 53
ASCII text, with very long lines (50758)
downloaded
Chrome Cache Entry: 54
ASCII text, with very long lines (7043), with no line terminators
downloaded
Chrome Cache Entry: 55
ASCII text, with very long lines (42565)
downloaded
Chrome Cache Entry: 56
PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 57
HTML document, ASCII text, with very long lines (4020)
downloaded
Chrome Cache Entry: 58
PNG image data, 49 x 8, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 59
PNG image data, 49 x 8, 8-bit/color RGB, non-interlaced
dropped

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2652 --field-trial-handle=2252,i,8995632710190601751,3339016134002602855,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd"

URLs

Name
IP
Malicious
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/boot/4e24221eb1cff2d2696cd3b03c101b22663ac240494cb
172.67.152.82
https://github.com/twbs/bootstrap/graphs/contributors)
unknown
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/jq/4e24221eb1cff2d2696cd3b03c101b22663ac240494c4
172.67.152.82
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/orchestrate/chl_api/v1?ray=880535039d3376a5
104.17.2.184
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/i/880535039d3376a5/1715126823752/2-85dMif4kcH46a
104.17.2.184
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/cmg/1/wh0E0SXYnx6pTBdJW%2Fl926I%2BPRUplRdtQz3K9lHXs%2Fs%3D
104.17.2.184
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/1
172.67.152.82
https://a.nel.cloudflare.com/report/v4?s=v1DF7gakT84j4OSKygWskRvUCEaxmHPB%2FJc6qkj5J0nDlCgjIR8AVcM7msBh0RMdrEpxIbV%2FFSdkXiaDzjNBR2o9WacKixBOpn70Y1VeLKyA95OfDZ7pq%2FRzkLVF9Q7qsWM7BqX2wZAAQdgLzewqH%2BqNfbIT
35.190.80.1
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/pat/880535039d3376a5/1715126823744/8f21a9948ffaf4e5da16668e17ad1fddfe3846f4f83d3b02eba4b2d6a6174b4d/_t4W5AHtPwPrnh2
104.17.2.184
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/js/4e24221eb1cff2d2696cd3b03c101b22663ac240494cd
172.67.152.82
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://a.nel.cloudflare.com/report/v4?s=oPme82Kds0nHsWA5j5oojzmuxzH6sSDgU2gKhHwHDFpv%2ByTaoB83LD09TQkcAy8eIY7clkIdOPdBpwZeZas2GrxjZzN26VsmxqCi7bsuV5Th92xWRdmNXoY6LCqE5lTvtJ2yCo0UWnTeOt5hPadA3Y1mCQOJ
35.190.80.1
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/cdn-cgi/challenge-platform/h/b/orchestrate/chl_page/v1?ray=880534f23821c735
172.67.152.82
https://a.nel.cloudflare.com/report/v4?s=%2Fi6XxMZCQxdL%2BrKNtycjFY86UqWZApkq1rbzobvLornk0sN2XFUpqpZK880ut5Jw4DL5sXoOUAFIkz2vIA0MvEZgiTBLBNs6ejIjaY5McM07A96VP8iHeBxH7zo81WnOv8n5Ye4cMVPiIpclHsTfNRvxQIcI
35.190.80.1
https://getbootstrap.com/)
unknown
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/izxhv/0x4AAAAAAADnPIDROrmt1Wwj/light/normal
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/cdn-cgi/challenge-platform/h/b/flow/ov1/2093501258:1715124454:BmGMjrJ8huu1RB5EK4tqp9cB9ydp2-PFBVLKiqOxVqc/880534f23821c735/95d163a320a8837
172.67.152.82
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/flow/ov1/1724738179:1715124698:aN3J9ewC50gp_9HWmK8Zq2oHgKAyjJWOayCmar_sMDc/880535039d3376a5/208eef10b10d2cd
104.17.2.184
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/favicon.ico
172.67.152.82
There are 10 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.214.172
a.nel.cloudflare.com
35.190.80.1
challenges.cloudflare.com
104.17.2.184
xdocusigniusmmxnmmxdicu.smumsmd.ws
172.67.152.82
www.google.com
142.250.217.68
fp2e7a.wpc.phicdn.net
192.229.211.108

IPs

IP
Domain
Country
Malicious
239.255.255.250
unknown
Reserved
35.190.80.1
a.nel.cloudflare.com
United States
142.250.217.68
www.google.com
United States
192.168.2.4
unknown
unknown
104.17.2.184
challenges.cloudflare.com
United States
172.67.152.82
xdocusigniusmmxnmmxdicu.smumsmd.ws
United States
104.17.3.184
unknown
United States

DOM / HTML

URL
Malicious
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd
https://xdocusigniusmmxnmmxdicu.smumsmd.ws/42e4636da8f7d642003509a874a7e40b663ac180360ccLOG42e4636da8f7d642003509a874a7e40b663ac180360cd
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/izxhv/0x4AAAAAAADnPIDROrmt1Wwj/light/normal
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/izxhv/0x4AAAAAAADnPIDROrmt1Wwj/light/normal
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/izxhv/0x4AAAAAAADnPIDROrmt1Wwj/light/normal