flash

https://sdsmdsds.s3.us-east.cloud-object-storage.appdomain.cloud/modfs.html

Status: finished
Submission Time: 22.07.2021 03:06:10
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    452272
  • API (Web) ID:
    819861
  • Analysis Started:
    22.07.2021 03:06:10
  • Analysis Finished:
    22.07.2021 03:13:02
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
64/100

malicious

IPs

IP Country Detection
104.19.143.111
United States
142.250.203.110
United States
172.217.168.45
United States
Click to see the 7 hidden entries
142.250.203.97
United States
172.217.168.3
United States
151.101.112.193
United States
104.18.11.207
United States
169.63.118.98
United States
239.255.255.250
Reserved
104.16.19.94
United States

Domains

Name IP Detection
code.jquery.com
0.0.0.0
sdsmdsds.s3.us-east.cloud-object-storage.appdomain.cloud
0.0.0.0
kit.fontawesome.com
0.0.0.0
Click to see the 14 hidden entries
i.imgur.com
0.0.0.0
gstaticadssl.l.google.com
172.217.168.3
s3.us-east.cloud-object-storage.appdomain.cloud
169.63.118.98
accounts.google.com
172.217.168.45
cdnjs.cloudflare.com
104.16.19.94
i.gyazo.com
104.19.143.111
maxcdn.bootstrapcdn.com
104.18.11.207
clients.l.google.com
142.250.203.110
googlehosted.l.googleusercontent.com
142.250.203.97
ipv4.imgur.map.fastly.net
151.101.112.193
clients2.googleusercontent.com
0.0.0.0
clients2.google.com
0.0.0.0
ka-f.fontawesome.com
0.0.0.0
secure.aadcdn.microsoftonline-p.com
0.0.0.0

URLs

Name Detection
https://sdsmdsds.s3.us-east.cloud-object-storage.appdomain.cloud/modfs.html2
https://sdsmdsds.s3.us-east.cloud-object-storage.appdomain.cloud/modfs.html
https://sdsmdsds.s3.us-east.cloud-object-storage.appdomain.cloud/modfs.html
Click to see the 37 hidden entries
https://sdsmdsds.s3.us-east.cloud-object-storage.appdomain.cloud/modfs.htmlMicrosoft
https://dns.google
https://ogs.google.com
https://support.google.com/chromecast/troubleshooter/2995236
https://ka-f.fontawesome.com
https://code.jquery.com/jquery-3.2.1.slim.min.js
https://play.google.com
https://payments.google.com/payments/v4/js/integrator.js
https://www.google.com;
https://hangouts.google.com/
https://i.imgur.com
https://code.jquery.com
https://sandbox.google.com/payments/v4/js/integrator.js
https://www.google.com
https://appdomain.cloud/GL
https://kit.fontawesome.com
https://cdnjs.cloudflare.com/ajax/libs/popper.js/1.12.9/umd/popper.min.js
https://accounts.google.com
https://maxcdn.bootstrapcdn.com
https://i.gyazo.com
https://support.google.com/chromecast/answer/2998456
https://a.nel.cloudflare.com/report/v3?s=l7kX3bFhIYDKkHfCqDHNJMWS2LXLGn0Rr5oqFHixheQy8dH%2B7ZuIRsRej
https://appdomain.cloud/
https://cdnjs.cloudflare.com
https://clients2.googleusercontent.com
https://apis.google.com
https://appdomain.cloud/;)
https://csp.withgoogle.com/csp/report-to/IdentityListAccountsHttp/external
https://kit.fontawesome.com/585b051251.js
https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0/js/bootstrap.min.js
https://a.nel.cloudflare.com/report/v3?s=bfMxrjD02eqaimy8YL791SxF4Tc33YdoX5hYLq7R%2FYCn%2BX8%2F5kaJr
https://www.google.com/
https://appdomain.cloud/-i
https://csp.withgoogle.com/csp/report-to/downloads-lorry
https://feedback.googleusercontent.com
https://clients2.google.com
https://clients2.google.com/service/update2/crx

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\0e4abc9f-77ac-426e-b570-d9743e691843.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\47d85127-2633-41fe-9cd9-638e04de94b1.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\4dd31015-9a7e-4098-9296-104fa606d49d.tmp
ASCII text, with very long lines, with no line terminators
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\71b905ec-f721-43c6-9a21-998dc126a7da.tmp
very short file (no magic)
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\81e9a38e-1855-4acc-930d-b3c95f6f9ab2.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\82752746-7e69-48da-9af7-89cfc134a032.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\94124e94-b36d-4ca9-b540-90c2a15de012.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\9bf091da-24ad-4d46-ae19-a6997dead82b.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\057a1b3eaa2d474e_0
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\4b6b31cd20412ec5_0
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\5e646c241401bf71_0
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\6ce82e9cbd7524dd_0
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\c6f62b67bce83557_0
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\fcbeb72be584479d_0
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Code Cache\js\index-dir\temp-index
zlib compressed data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Session
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\8520.615.0.5_1\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History-journal
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Reporting and NEL
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Reporting and NEL-journal
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\416766e9-efa1-46c2-aa4a-fbc33decb317.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Local Storage\leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Platform Notifications\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\a21f8c24-9f31-455f-a2b0-216a16b75ef5.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Visited Links
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000004.dbtmp
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000004
MPEG-4 LOAS
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\de5a43af-04ac-4778-a551-52c286e3cdf3.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\ded6f638-ae4c-42b7-9b14-152384447ea8.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\e457b25e-85fe-4f2c-bf98-bc0b08df1041.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\fb9d68f7-1081-455a-b701-3f8bb1eed39a.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Browser
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\ShaderCache\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\a7c32f2e-5b24-4f23-b0f2-6df4c3f9767b.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\e643cb09-4351-45d5-b8a5-5da34b2f124d.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\f8f79434-7e5d-4349-8052-697d335fa3b0.tmp
SysEx File -
#
C:\Users\user\AppData\Local\Temp\3384_1989888281\manifest.fingerprint
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Temp\5b74393f-7076-48f5-9317-5a8adf23afb1.tmp
Google Chrome extension, version 3
#
C:\Users\user\AppData\Local\Temp\8a37d301-8775-42d5-a559-f0cd26099b95.tmp
very short file (no magic)
#
C:\Users\user\AppData\Local\Temp\8d850e53-6506-4244-92de-aab2d23bf488.tmp
very short file (no magic)
#
C:\Users\user\AppData\Local\Temp\browser-sslkeys.log
ASCII text
#
C:\Users\user\AppData\Local\Temp\f15b416b-f54d-4a31-b14e-d47f92170d39.tmp
Google Chrome extension, version 3
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\5b74393f-7076-48f5-9317-5a8adf23afb1.tmp
Google Chrome extension, version 3
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\bg\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\ca\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\cs\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\da\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\de\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\el\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\en\messages.json
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\en_GB\messages.json
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir3384_1226577643\CRX_INSTALL\_locales\es\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic
data
#
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
Microsoft Cabinet archive data, 61020 bytes, 1 file
#
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\0fa001ba-a932-4b6b-adfb-da9f331f6cf2.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\29cae7cf-6470-48f0-b89c-5b65d4d0ff81.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\4445659c-dffb-4958-ac3c-53b63805fdd2.tmp
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\49ee52f3-dbc1-4106-9b89-b7b2ae0de228.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\5ab8e060-0164-402b-bbb7-bc2ae9874894.tmp
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\652a3a7f-5a33-41d1-8db1-0afc18965b05.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\7f31125c-f03e-4755-bc2a-2974488fd57f.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
data
#