General
-
Target
https://ddec1-0-en-ctp.trendmicro.com/wis/clicktime/v1/query?url=https%3a%2f%2fwww.cvent.com%2fs.aspx%3f5Q%2cP1%2cd45f88c9%2dc2e5%2d44e6%2d860c%2d4cb6e4bb678d%2cR1%2c44df4148%2ded4b%2d40d7%2d8a94%2d047508707e60%2cS1%2cinfo.krakow%40parkinn.com&umid=75bf6d2a-567e-4354-831a-9ada4acbac17&auth=3262a64ff51ed7015b9fc7a2051c8e354164257c-d6446b170c830180129df20c86f041e79d373a30
-
Sample
240628-nd6pjswgkh
URLScan task
urlscan1
Behavioral task
behavioral1
Sample
https://ddec1-0-en-ctp.trendmicro.com/wis/clicktime/v1/query?url=https%3a%2f%2fwww.cvent.com%2fs.aspx%3f5Q%2cP1%2cd45f88c9%2dc2e5%2d44e6%2d860c%2d4cb6e4bb678d%2cR1%2c44df4148%2ded4b%2d40d7%2d8a94%2d047508707e60%2cS1%2cinfo.krakow%40parkinn.com&umid=75bf6d2a-567e-4354-831a-9ada4acbac17&auth=3262a64ff51ed7015b9fc7a2051c8e354164257c-d6446b170c830180129df20c86f041e79d373a30
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
https://ddec1-0-en-ctp.trendmicro.com/wis/clicktime/v1/query?url=https%3a%2f%2fwww.cvent.com%2fs.aspx%3f5Q%2cP1%2cd45f88c9%2dc2e5%2d44e6%2d860c%2d4cb6e4bb678d%2cR1%2c44df4148%2ded4b%2d40d7%2d8a94%2d047508707e60%2cS1%2cinfo.krakow%40parkinn.com&umid=75bf6d2a-567e-4354-831a-9ada4acbac17&auth=3262a64ff51ed7015b9fc7a2051c8e354164257c-d6446b170c830180129df20c86f041e79d373a30
Score6/10-
Looks up external IP address via web service
Uses a legitimate IP lookup service to find the infected system's external IP.
-