Edit tour
Windows
Analysis Report
https://linkprotect.cudasvc.com/url?a=https%3a%2f%2f4ncz5-oaaaa-aaaad-qcczq-cai.raw.ic0.app%2f&c=E,1,yzYGtry9tkljqbJFR2Fcl9THP5bR1sEWsz96zu1YjEpVa-GeOf64B1QO3Pqj4BfBfwPlAE-gtFsjV2hfrh_QzouozC2Fgzm-iaKMtOem3A,,&typo=1
Overview
General Information
Detection
Score: | 2 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
HTTP GET or POST without a user agent
Found iframes
Invalid T&C link found
No HTML title found
Classification
- System is start
- chrome.exe (PID: 4224 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed --enab le-automat ion --sin gle-argume nt https:/ /linkprote ct.cudasvc .com/url?a =https%3a% 2f%2f4ncz5 -oaaaa-aaa ad-qcczq-c ai.raw.ic0 .app%2f&c= E,1,yzYGtr y9tkljqbJF R2Fcl9THP5 bR1sEWsz96 zu1YjEpVa- GeOf64B1QO 3Pqj4BfBfw PlAE-gtFsj V2hfrh_Qzo uozC2Fgzm- iaKMtOem3A ,,&typo=1 MD5: 2A7452F3E3165FECBFCCAD71B04E5C37) - chrome.exe (PID: 5296 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -field-tri al-handle= 1712,10268 3262474062 31543,1098 7779347778 780195,131 072 --lang =en-US --s ervice-san dbox-type= none --moj o-platform -channel-h andle=2080 /prefetch :8 MD5: 2A7452F3E3165FECBFCCAD71B04E5C37)
- cleanup
⊘No configs have been found
⊘No yara matches
⊘No Sigma rule has matched
⊘No Snort rule has matched
Click to jump to signature section
Show All Signature Results
There are no malicious signatures, click here to show all signatures.
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | File created: | Jump to behavior |
Source: | HTTPS traffic detected: |
Source: | HTTP traffic detected: |