Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=1868 --field-trial-handle=1672,i,17582304814663474974,3067264136992902369,131072
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationTargetPrediction /prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
C:\Program Files\Google\Chrome\Application\chrome.exe" "https://comfirmationandverification.duartemobilerepair.com/
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://comfirmationandverification.duartemobilerepair.com/
|
|||
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=104.0.5112.81&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
|
142.250.203.110
|
||
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard
|
142.250.203.109
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
google.com
|
172.217.168.14
|
||
accounts.google.com
|
142.250.203.109
|
||
www.google.com
|
142.250.203.100
|
||
clients.l.google.com
|
142.250.203.110
|
||
clients2.google.com
|
unknown
|
||
comfirmationandverification.duartemobilerepair.com
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
192.168.2.1
|
unknown
|
unknown
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
142.250.203.100
|
www.google.com
|
United States
|
||
142.250.203.110
|
clients.l.google.com
|
United States
|
||
142.250.203.109
|
accounts.google.com
|
United States
|