IOC Report
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
ASCII text, with very long lines (2049)
downloaded
Chrome Cache Entry: 101
ASCII text, with very long lines (1617)
downloaded
Chrome Cache Entry: 102
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 103
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
downloaded
Chrome Cache Entry: 104
Web Open Font Format (Version 2), TrueType, length 18588, version 1.0
downloaded
Chrome Cache Entry: 105
JSON data
downloaded
Chrome Cache Entry: 106
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 270
downloaded
Chrome Cache Entry: 107
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 3651
dropped
Chrome Cache Entry: 108
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
downloaded
Chrome Cache Entry: 109
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 110
JSON data
dropped
Chrome Cache Entry: 111
ASCII text, with very long lines (2049)
downloaded
Chrome Cache Entry: 112
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 113
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 114
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 115
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 2905
downloaded
Chrome Cache Entry: 116
ASCII text, with very long lines (2049)
downloaded
Chrome Cache Entry: 117
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 2905
dropped
Chrome Cache Entry: 118
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 119
ASCII text, with very long lines (4589)
downloaded
Chrome Cache Entry: 120
ASCII text, with very long lines (582)
downloaded
Chrome Cache Entry: 121
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 122
ASCII text, with very long lines (10017)
downloaded
Chrome Cache Entry: 123
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 124
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 125
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 126
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
dropped
Chrome Cache Entry: 127
ASCII text, with very long lines (33488)
downloaded
Chrome Cache Entry: 128
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 129
ASCII text, with very long lines (594)
downloaded
Chrome Cache Entry: 130
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 270
dropped
Chrome Cache Entry: 131
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 132
ASCII text, with very long lines (557)
downloaded
Chrome Cache Entry: 133
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 134
ASCII text, with very long lines (1572)
downloaded
Chrome Cache Entry: 135
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 136
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 137
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
downloaded
Chrome Cache Entry: 138
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 139
ASCII text, with very long lines (10345)
downloaded
Chrome Cache Entry: 140
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
downloaded
Chrome Cache Entry: 141
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 142
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 143
ASCII text, with very long lines (4656)
downloaded
Chrome Cache Entry: 144
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 145
ASCII text, with very long lines (65437)
downloaded
Chrome Cache Entry: 146
ASCII text, with very long lines (1667), with no line terminators
downloaded
Chrome Cache Entry: 147
ASCII text, with very long lines (48316), with no line terminators
downloaded
Chrome Cache Entry: 148
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 149
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 150
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 151
ASCII text
downloaded
Chrome Cache Entry: 152
ASCII text
downloaded
Chrome Cache Entry: 153
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 3651
downloaded
Chrome Cache Entry: 154
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1592
dropped
Chrome Cache Entry: 155
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 268
dropped
Chrome Cache Entry: 156
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 157
JSON data
downloaded
Chrome Cache Entry: 158
ASCII text, with very long lines (4613)
downloaded
Chrome Cache Entry: 159
Web Open Font Format (Version 2), TrueType, length 36216, version 1.0
downloaded
Chrome Cache Entry: 160
HTML document, ASCII text, with very long lines (65023)
downloaded
Chrome Cache Entry: 161
JSON data
dropped
Chrome Cache Entry: 162
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 163
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 164
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 165
ASCII text
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 167
ASCII text, with very long lines (10873)
downloaded
Chrome Cache Entry: 168
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 169
JSON data
dropped
Chrome Cache Entry: 170
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (65531)
dropped
Chrome Cache Entry: 172
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 173
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 174
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1592
downloaded
Chrome Cache Entry: 175
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 176
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 177
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 178
ASCII text, with very long lines (4589)
downloaded
Chrome Cache Entry: 179
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 180
Web Open Font Format (Version 2), TrueType, length 128352, version 1.0
downloaded
Chrome Cache Entry: 181
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 182
HTML document, ASCII text, with very long lines (321), with no line terminators
downloaded
Chrome Cache Entry: 183
ASCII text, with very long lines (65531)
downloaded
Chrome Cache Entry: 184
Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
downloaded
Chrome Cache Entry: 185
ASCII text
downloaded
Chrome Cache Entry: 186
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 268
downloaded
Chrome Cache Entry: 187
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 188
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 189
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 190
HTML document, ASCII text
downloaded
Chrome Cache Entry: 191
PNG image data, 160 x 160, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 192
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 7390
downloaded
Chrome Cache Entry: 193
HTML document, ASCII text
downloaded
Chrome Cache Entry: 194
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1864
dropped
Chrome Cache Entry: 195
PNG image data, 160 x 160, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 196
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 197
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 198
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 95
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1864
downloaded
Chrome Cache Entry: 96
Web Open Font Format (Version 2), TrueType, length 18536, version 1.0
downloaded
Chrome Cache Entry: 97
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 7390
dropped
Chrome Cache Entry: 98
ASCII text, with very long lines (6129)
downloaded
Chrome Cache Entry: 99
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
There are 95 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2040,i,7275894935217929423,17391902144927271025,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2020 /prefetch:3
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF"

URLs

Name
IP
Malicious
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
malicious
https://support.google.com/looker-studio/answer/6370353
unknown
https://apis.google.com/js/googleapis.proxy.js?onload=startup
108.177.122.139
https://ad.doubleclick.net/activity;register_conversion=1;
unknown
https://stats.g.doubleclick.net/g/collect
unknown
https://apis.google.com/_/scs/abc-static/_/js/k=gapi.lb.en.fwXSHnIYz-4.O/m=client/rt=j/sv=1/d=1/ed=1/rs=AHpOoo_SvulQ5pP6FvvJyrQeIOJ4MStGTQ/cb=gapi.loaded_0?le=scs
74.125.21.102
https://code.jquery.com/jquery-3.6.0.min.js
151.101.194.137
https://apis.google.com/js/client.js
74.125.21.102
https://apis.google.com/js/googleapis.proxy.js
unknown
https://dataconnector.corp.google.com/:session_prefix:ui/widgetview?usegapi=1
unknown
https://ampcid.google.com/v1/publisher:getClientId
unknown
https://googleads.g.doubleclick.net/pagead/viewthroughconversion
unknown
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LcE_6MUAAAAACM2aL4qbFG8PNDIIl4krUNCLmXE&co=aHR0cHM6Ly9sb29rZXJzdHVkaW8uZ29vZ2xlLmNvbTo0NDM.&hl=en&v=hbAq-YhJxOnlU-7cpgBoAJHb&size=invisible&cb=bqs96l88nqoo
173.194.219.103
https://www.google.com/recaptcha/api.js?trustedtypes=true&render=6LcE_6MUAAAAACM2aL4qbFG8PNDIIl4krUNCLmXE
173.194.219.103
https://workspace.google.com/:session_prefix:marketplace/appfinder?usegapi=1
unknown
https://www.youtube.com
unknown
https://www.google.com
unknown
https://www.youtube.com/iframe_api
unknown
https://www.google.com/shopping/customerreviews/badge?usegapi=1
unknown
https://github.com/fent)
unknown
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
https://pay.google.com/gp/v/widget/save
unknown
https://www.google.com/travel/flights/click/conversion
unknown
https://drive.google.com/savetodrivebutton?usegapi=1
unknown
https://www.google.com/shopping/customerreviews/optin?usegapi=1
unknown
https://stats.g.doubleclick.net/j/collect
unknown
https://apis.google.com
unknown
https://www.google.com/recaptcha/api2/
unknown
https://domains.google.com/suggest/flow
unknown
http://www.apache.org/licenses/LICENSE-2.0
unknown
https://cdnjs.cloudflare.com/ajax/libs/crypto-js/4.1.1/crypto-js.min.js
104.17.24.14
https://classroom.google.com/sharewidget?usegapi=1
unknown
https://support.google.com/looker-studio/answer/9713766#viewer-consent
unknown
https://developers.google.com/maps/documentation/javascript/error-messages#
unknown
https://www.google.com/recaptcha/api2/webworker.js?hl=en&v=hbAq-YhJxOnlU-7cpgBoAJHb
173.194.219.103
https://tagassistant.google.com/
unknown
https://www.youtube.com/subscribe_embed?usegapi=1
unknown
https://support.google.com/looker-studio/answer/7083608#refresh-data-source-fields
unknown
https://play.google.com/log?format=json&hasfast=true&authuser=0
108.177.122.100
https://cloud.google.com/looker/docs/r/download-charts-and-reports
unknown
https://cct.google/taggy/agent.js
unknown
https://plus.google.com
unknown
https://google.com/domainreliability/upload
142.250.105.138
https://clients3.google.com/cast/chromecast/home/widget/backdrop?usegapi=1
unknown
https://support.google.com/looker-studio/answer/9125317
unknown
https://apis.google.com/_/scs/abc-static/_/js/k=gapi.lb.en.fwXSHnIYz-4.O/m=googleapis_proxy/rt=j/sv=1/d=1/ed=1/rs=AHpOoo_SvulQ5pP6FvvJyrQeIOJ4MStGTQ/cb=gapi.loaded_0?le=scs
108.177.122.139
https://www.google.com/ads/ga-audiences
unknown
https://ad.doubleclick.net/activity;
unknown
https://www.google.%/ads/ga-audiences
unknown
https://td.doubleclick.net
unknown
https://www.merchant-center-analytics.goog
unknown
https://stats.g.doubleclick.net/g/collect?v=2&
unknown
https://talkgadget.google.com/:session_prefix:talkgadget/_/widget
unknown
https://play.google.com/work/embedded/search?usegapi=1&usegapi=1
unknown
https://www.google.com/ccm/collect
unknown
https://families.google.com/webcreation?usegapi=1&usegapi=1
unknown
https://fonts.google.com/license/googlerestricted
unknown
https://adservice.google.com/pagead/regclk?
unknown
https://clients6.google.com
unknown
There are 48 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
s-part-0012.t-0009.t-msedge.net
13.107.246.40
google.com
142.250.105.138
plus.l.google.com
74.125.21.102
github.com
140.82.114.3
beacons-handoff.gcp.gvt2.com
142.250.113.94
s-part-0013.t-0009.t-msedge.net
13.107.246.41
beacons.gvt2.com
142.250.114.94
beacons6.gvt2.com
108.177.122.94
lookerstudio.google.com
172.217.215.101
play.google.com
108.177.122.100
code.jquery.com
151.101.194.137
cdnjs.cloudflare.com
104.17.24.14
gce-beacons.gcp.gvt2.com
35.190.26.192
www.google.com
173.194.219.103
objects.githubusercontent.com
185.199.110.133
beacons.gcp.gvt2.com
unknown
apis.google.com
unknown
There are 7 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
140.82.114.3
github.com
United States
192.168.2.4
unknown
unknown
142.250.105.138
google.com
United States
108.177.122.139
unknown
United States
151.101.194.137
code.jquery.com
United States
185.199.110.133
objects.githubusercontent.com
Netherlands
104.17.24.14
cdnjs.cloudflare.com
United States
173.194.219.103
www.google.com
United States
74.125.21.102
plus.l.google.com
United States
108.177.122.100
play.google.com
United States

DOM / HTML

URL
Malicious
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
malicious
https://dm3psc.z13.web.core.windows.net/
malicious
https://dm3psc.z13.web.core.windows.net/
malicious
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF
https://lookerstudio.google.com/reporting/1eba6e7a-7538-414f-8d22-c7ad67187dda/page/kQxGF