Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
9463911040.svg
|
HTML document, ASCII text, with very long lines (3295), with CRLF line terminators
|
initial sample
|
||
C:\Windows\SystemTemp\chrome_Unpacker_BeginUnzipping6660_1220190882\_metadata\verified_contents.json
|
JSON data
|
dropped
|
||
C:\Windows\SystemTemp\chrome_Unpacker_BeginUnzipping6660_1220190882\manifest.fingerprint
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Windows\SystemTemp\chrome_Unpacker_BeginUnzipping6660_1220190882\manifest.json
|
JSON data
|
dropped
|
||
C:\Windows\SystemTemp\chrome_Unpacker_BeginUnzipping6660_1220190882\privacy-sandbox-attestations.dat
|
data
|
dropped
|
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2008,i,7492967644631357018,6530129153233175342,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
--variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2028 /prefetch:3
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "C:\Users\user\Desktop\9463911040.svg"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://mediavine.com
|
unknown
|
||
https://connatix.com
|
unknown
|
||
https://yelp.com
|
unknown
|
||
https://nodals.io
|
unknown
|
||
https://getyourguide.com
|
unknown
|
||
https://mediaintelligence.de
|
unknown
|
||
https://privacy-sandcastle-dev-dsp.web.app
|
unknown
|
||
https://privacy-sandbox-demos-dsp-a.dev
|
unknown
|
||
https://permutive.app
|
unknown
|
||
https://privacy-sandbox-demos-dsp.dev
|
unknown
|
||
https://adthrive.com
|
unknown
|
||
https://ad.gt
|
unknown
|
||
https://gumgum.com
|
unknown
|
||
https://trkkn.com
|
unknown
|
||
https://logly.co.jp
|
unknown
|
||
https://media6degrees.com
|
unknown
|
||
https://privacy-sandcastle-dev-ssp.web.app
|
unknown
|
||
https://inmobi.com
|
unknown
|
||
https://33across.com
|
unknown
|
||
https://dreammail.jp
|
unknown
|
||
https://jkforum.net
|
unknown
|
||
https://iobeya.com
|
unknown
|
||
https://a-mo.net
|
unknown
|
||
https://ebis.ne.jp
|
unknown
|
||
https://privacy-sandbox-demos-ssp-y.dev
|
unknown
|
||
https://aphub.ai
|
unknown
|
||
https://gama.globo
|
unknown
|
||
https://audienceproject.com
|
unknown
|
||
https://adsrvr.org
|
unknown
|
||
https://finn.no
|
unknown
|
||
https://lucead.com
|
unknown
|
||
https://verve.com
|
unknown
|
||
https://r2b2.io
|
unknown
|
||
https://bluems.com
|
unknown
|
||
https://edkt.io
|
unknown
|
||
https://atomex.net
|
unknown
|
||
https://crcldu.com
|
unknown
|
||
https://rubiconproject.com
|
unknown
|
||
https://sitescout.com
|
unknown
|
||
https://apex-football.com
|
unknown
|
||
https://dotomi.com
|
unknown
|
||
https://ctnsnet.com
|
unknown
|
||
https://toponad.com
|
unknown
|
||
https://shinobi.jp
|
unknown
|
||
https://superfine.org
|
unknown
|
||
https://360yield.com
|
unknown
|
||
https://usemax.de
|
unknown
|
||
https://display.io
|
unknown
|
||
https://adform.net
|
unknown
|
||
https://eloan.co.jp
|
unknown
|
||
https://postrelease.com
|
unknown
|
||
https://aqfer.com
|
unknown
|
||
https://docomo.ne.jp
|
unknown
|
||
https://shared-storage-demo-publisher-a.web.app
|
unknown
|
||
https://weborama-tech.ru
|
unknown
|
||
https://innovid.com
|
unknown
|
||
https://demand.supply
|
unknown
|
||
https://nexxen.tech
|
unknown
|
||
https://2k.com
|
unknown
|
||
https://advividnetwork.com
|
unknown
|
||
https://undertone.com
|
unknown
|
||
https://creative-serving.com
|
unknown
|
||
https://unrulymedia.com
|
unknown
|
||
https://tailtarget.com
|
unknown
|
||
https://paa-reporting-advertising.amazon
|
unknown
|
||
https://privacy-sandbox-demos-ssp-b.dev
|
unknown
|
||
https://bypass.jp
|
unknown
|
||
https://dotdashmeredith.com
|
unknown
|
||
https://atirun.com
|
unknown
|
||
https://adingo.jp
|
unknown
|
||
https://impact-ad.jp
|
unknown
|
||
https://admatrix.jp
|
unknown
|
||
https://openx.net
|
unknown
|
||
https://taboola.com
|
unknown
|
||
https://ayads.io
|
unknown
|
||
https://i-mobile.co.jp
|
unknown
|
||
https://uinterbox.com
|
unknown
|
||
https://mail.ru
|
unknown
|
||
https://simeola.com
|
unknown
|
||
https://gmossp-sp.jp
|
unknown
|
||
https://primecaster.net
|
unknown
|
||
https://privacy-sandcastle-dev-ssp-a.web.app
|
unknown
|
||
https://worldhistory.org
|
unknown
|
||
https://adnxs.com
|
unknown
|
||
https://dabbs.net
|
unknown
|
||
https://seedtag.com
|
unknown
|
||
https://casalemedia.com
|
unknown
|
||
https://privacy-sandcastle-dev-dsp-x.web.app
|
unknown
|
||
https://authorizedvault.com
|
unknown
|
||
https://privacy-sandcastle-dev-ssp-y.web.app
|
unknown
|
||
https://sportradarserving.com
|
unknown
|
||
https://semafor.com
|
unknown
|
||
https://lwadm.com
|
unknown
|
||
https://appconsent.io
|
unknown
|
||
https://vg.no
|
unknown
|
||
https://fout.jp
|
unknown
|
||
https://elle.com
|
unknown
|
||
https://privacy-sandcastle-dev-dsp-a1.web.app
|
unknown
|
||
https://flashtalking.com
|
unknown
|
||
https://pinterest.com
|
unknown
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
www.google.com
|
172.217.16.196
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
192.168.2.7
|
unknown
|
unknown
|
||
172.217.16.196
|
www.google.com
|
United States
|
||
192.168.2.4
|
unknown
|
unknown
|