IOC Report
https://www.flipsnack.com/C65D7DCC5A8/sw-bruce-limited/full-view.html

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 101
JSON data
dropped
Chrome Cache Entry: 102
TrueType Font data, 18 tables, 1st "GDEF", 15 names, Microsoft, language 0x409, Copyright 2018 The Roboto Slab Project Authors (https://github.com/googlefonts/robotoslab)Roboto
downloaded
Chrome Cache Entry: 103
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 104
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 105
gzip compressed data, max compression, from Unix, original size modulo 2^32 170613
downloaded
Chrome Cache Entry: 106
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 107
gzip compressed data, from Unix, original size modulo 2^32 5962
dropped
Chrome Cache Entry: 108
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 109
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 110
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 111
JSON data
dropped
Chrome Cache Entry: 112
MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 113
gzip compressed data, max compression, from Unix, original size modulo 2^32 257021
downloaded
Chrome Cache Entry: 114
Web Open Font Format (Version 2), TrueType, length 16096, version 1.0
downloaded
Chrome Cache Entry: 54
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 55
gzip compressed data, was "optimised.svg", last modified: Mon Jun 14 06:59:49 2021, from Unix, original size modulo 2^32 130
dropped
Chrome Cache Entry: 56
PNG image data, 227 x 148, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 57
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 58
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 59
Web Open Font Format (Version 2), TrueType, length 17324, version 1.0
downloaded
Chrome Cache Entry: 60
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 61
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 62
ASCII text, with very long lines (1886)
downloaded
Chrome Cache Entry: 63
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 64
HTML document, ASCII text
downloaded
Chrome Cache Entry: 65
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 66
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 67
gzip compressed data, max compression, from Unix, original size modulo 2^32 827
downloaded
Chrome Cache Entry: 68
Web Open Font Format (Version 2), TrueType, length 15784, version 1.0
downloaded
Chrome Cache Entry: 69
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 70
JSON data
downloaded
Chrome Cache Entry: 71
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 72
gzip compressed data, max compression, from Unix, original size modulo 2^32 78898
downloaded
Chrome Cache Entry: 73
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 74
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 75
Web Open Font Format (Version 2), TrueType, length 15872, version 1.0
downloaded
Chrome Cache Entry: 76
JSON data
downloaded
Chrome Cache Entry: 77
gzip compressed data, from Unix, original size modulo 2^32 5962
downloaded
Chrome Cache Entry: 78
PNG image data, 227 x 148, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 79
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 80
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 81
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 82
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 83
gzip compressed data, was "Roboto-Regular.ttf", last modified: Tue Jan 8 22:00:00 2013, from Unix, original size modulo 2^32 168260
downloaded
Chrome Cache Entry: 84
gzip compressed data, max compression, from Unix, original size modulo 2^32 16368
downloaded
Chrome Cache Entry: 85
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 86
Web Open Font Format (Version 2), TrueType, length 15736, version 1.0
downloaded
Chrome Cache Entry: 87
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 88
ASCII text, with very long lines (16792)
downloaded
Chrome Cache Entry: 89
Web Open Font Format (Version 2), TrueType, length 15816, version 1.0
downloaded
Chrome Cache Entry: 90
MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 91
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 92
Web Open Font Format (Version 2), TrueType, length 17448, version 1.0
downloaded
Chrome Cache Entry: 93
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 94
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
dropped
Chrome Cache Entry: 95
gzip compressed data, was "Roboto-Bold.ttf", last modified: Tue Jan 8 22:00:00 2013, from Unix, original size modulo 2^32 167336
downloaded
Chrome Cache Entry: 96
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
Chrome Cache Entry: 97
gzip compressed data, was "optimised.svg", last modified: Mon Jun 14 06:59:49 2021, from Unix, original size modulo 2^32 130
downloaded
Chrome Cache Entry: 98
gzip compressed data, max compression, from Unix, original size modulo 2^32 8801840
downloaded
Chrome Cache Entry: 99
XML 1.0 document, ASCII text, with very long lines (378), with no line terminators
downloaded
There are 52 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2276 --field-trial-handle=2212,i,12234116729747243847,12573027950818601316,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.flipsnack.com/C65D7DCC5A8/sw-bruce-limited/full-view.html"

URLs

Name
IP
Malicious
https://www.flipsnack.com/C65D7DCC5A8/sw-bruce-limited/full-view.html
malicious
https://www.flipsnack.com/C65D7DCC5A8/sw-bruce-limited/full-view.html
malicious
https://sqs.us-east-1.amazonaws.com/756737886395/flip-widget-queue
unknown
https://ct.capterra.com/capterra_tracker.gif
unknown
https://cdn.flipsnack.com/site/dist/site-base.061f5c931801373805bd.js
18.165.183.67
https://cdn.flipsnack.com/site/dist/genericv2.72deeec36864bb0e38da.js
18.165.183.67
https://www.flipsnack.com
unknown
https://content-private.flipsnack.com/authorization
unknown
about:blank
https://app.flipsnack.com
unknown
https://github.com/googlefonts/robotoslab)Roboto
unknown
https://px.ads.linkedin.com/collect?
unknown
https://cdn.flipsnack.com/site/fonts/roboto-v20-latin-700.woff2
18.165.183.67
https://sqs.us-east-1.amazonaws.com/756737886395/flip-order-email
unknown
https://www.google.com
unknown
https://api.flipsnack.com/v2/showCookiePolicy?page=public-profile
18.66.122.120
https://player.flipsnack.com/handleUnsupportedBrowsers.gz.js
18.245.31.38
http://www.apache.org/licenses/LICENSE-2.0Weight
unknown
http://queue.amazonaws.com/doc/2012-11-05/
unknown
https://cdn.flipsnack.com/site/fonts/roboto-v20-latin-regular.woff2
18.165.183.67
https://player.flipsnack.com/?hash=QzY1RDdEQ0M1QTgrdGM1cnM4bTFjaQ%3D%3D&forceWidget=1&t=1716467932
https://d1fpu6k62r548q.cloudfront.net/library/fonts/fbf553490-1230-4c9c-970c-dc73de115be3
108.156.60.14
https://d1dhn91mufybwl.cloudfront.net
unknown
https://cdn.flipsnack.com/site/fonts/visbycf-heavy.woff2
18.165.183.67
https://d1fpu6k62r548q.cloudfront.net/css/fonts/Roboto-Bold.ttf
108.156.60.14
https://googleads.g.doubleclick.net
unknown
https://d1fpu6k62r548q.cloudfront.net/css/fonts/Roboto-Regular.ttf
108.156.60.14
https://adservice.google.com/pagead/regclk
unknown
https://player.flipsnack.com/reader.gz.js
18.245.31.38
https://d1fpu6k62r548q.cloudfront.net/css/fonts/Roboto-Medium.ttf
unknown
https://cct.google/taggy/agent.js
unknown
https://cdn.flipsnack.com/site/images/down-arrow.gz.svg
18.165.183.67
https://sqs.us-east-1.amazonaws.com/756737886395/flip-engagement-stats
unknown
https://snap.licdn.com/li.lms-analytics/insight.min.js
unknown
https://cdn.flipsnack.com/site/fonts/roboto-v20-latin-300italic.woff2
18.165.183.67
https://content-private.flipsnack.com/authorization?hash=QzY1RDdEQ0M1QTgrdGM1cnM4bTFjaQ==
18.239.83.25
https://d3u72tnj701eui.cloudfront.net/C65D7DCC5A8/collections/tc5rs8m1ci/data.json?Signature=jgAFqtzn7oMHe2fJHLpwTyXSK7GdS%7EsSRPDVK8Eikd5NqXXJXHcOzBCOogyMeA8JFhaQ9jnxHSGv43wURv2ROvjmAp1CjswpebB5FStASlpDm8ieCmVphx7qy0zmdJIYsRYql08XG7RnotjXCnEL1Mbe7zUWXaOK3wmVroKciXO0BQkZ3ThKXrqW8elVmIB4MDtZ2nB%7EFjzDvCeuGreFO0SUnVMKDHwb5D1x%7EUEDzvAzClJz%7EaSkAmP-cDHj0ZYWHi-drV7DzxbnaBUWhomPibml0ssKBapfdmjCcWC%7ElmoaB-TcndRTfJ8Ai%7EtZY0zu0GB5-LKGvO16DhVM4H3V-Q__&Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kM3U3MnRuajcwMWV1aS5jbG91ZGZyb250Lm5ldC9DNjVEN0RDQzVBOC9jb2xsZWN0aW9ucy90YzVyczhtMWNpLyoiLCJDb25kaXRpb24iOnsiRGF0ZUxlc3NUaGFuIjp7IkFXUzpFcG9jaFRpbWUiOjE3MTY0ODg1MTJ9fX1dfQ__&Key-Pair-Id=KKS5Y1MBXEN2R
18.239.83.10
https://cdn.flipsnack.com/site/dist/bootstrap4.d425bf917d7ea50616c7.css
18.165.183.67
https://d1fpu6k62r548q.cloudfront.net
unknown
https://d3u72tnj701eui.cloudfront.net
unknown
https://td.doubleclick.net
unknown
https://cdn.flipsnack.com/site/dist/public-profile.c72afb56d4cbef2b6f6a.js
18.165.183.67
https://cdn.flipsnack.com/site/fonts/roboto-v20-latin-500.woff2
18.165.183.67
https://sqs.us-east-1.amazonaws.com/756737886395/flip-sts?Action=SendMessage&MessageBody=%7B%22ih%22%3A%22bc1daa0f89e64b089de6976a351eab9f%22%2C%22ch%22%3A%22tc5rs8m1ci%22%2C%22cih%22%3A%2293ca62bbb9d5fe62ed64a0i143691456%22%2C%22e%22%3A%5B%7B%22eid%22%3A1%7D%5D%2C%22ts%22%3A1716488393%7D
3.239.232.155
https://d1dhn91mufybwl.cloudfront.net/collections/uploads/73dd19a750689c89ef78d2df46724661_s
18.239.50.40
https://sqs.us-east-1.amazonaws.com/756737886395/flip-sts
unknown
https://cdn.flipsnack.com/site/fonts/roboto-v20-latin-italic.woff2
18.165.183.67
https://www.flipsnack.com/favicon.ico
18.164.52.67
https://cdn.flipsnack.com/site/fonts/roboto-v20-latin-300.woff2
18.165.183.67
https://d160aj0mj3npgx.cloudfront.net
unknown
https://google.com
unknown
https://developers.google.com/web/fundamentals/web-app-manifest/
unknown
There are 41 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
d1dhn91mufybwl.cloudfront.net
18.239.50.40
player.flipsnack.com
18.245.31.38
api.flipsnack.com
18.66.122.120
content-private.flipsnack.com
18.239.83.25
d1fpu6k62r548q.cloudfront.net
108.156.60.14
d3u72tnj701eui.cloudfront.net
18.239.83.10
sqs.us-east-1.amazonaws.com
3.239.232.155
www.google.com
142.250.185.132
www.flipsnack.com
18.164.52.67
cdn.flipsnack.com
18.165.183.67

IPs

IP
Domain
Country
Malicious
192.168.2.4
unknown
unknown
18.66.122.120
api.flipsnack.com
United States
13.32.27.19
unknown
United States
18.244.28.90
unknown
United States
192.168.2.6
unknown
unknown
18.245.31.38
player.flipsnack.com
United States
108.138.26.44
unknown
United States
18.239.83.25
content-private.flipsnack.com
United States
18.239.83.9
unknown
United States
18.239.50.40
d1dhn91mufybwl.cloudfront.net
United States
18.165.183.67
cdn.flipsnack.com
United States
3.236.169.32
unknown
United States
142.250.185.132
www.google.com
United States
18.239.69.106
unknown
United States
239.255.255.250
unknown
Reserved
18.164.52.67
www.flipsnack.com
United States
108.156.60.14
d1fpu6k62r548q.cloudfront.net
United States
18.244.28.32
unknown
United States
3.239.232.219
unknown
United States
18.239.83.10
d3u72tnj701eui.cloudfront.net
United States
3.239.232.155
sqs.us-east-1.amazonaws.com
United States
3.239.232.54
unknown
United States
There are 12 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
about:blank
https://www.flipsnack.com/C65D7DCC5A8/sw-bruce-limited/full-view.html
https://player.flipsnack.com/?hash=QzY1RDdEQ0M1QTgrdGM1cnM4bTFjaQ%3D%3D&forceWidget=1&t=1716467932
https://player.flipsnack.com/?hash=QzY1RDdEQ0M1QTgrdGM1cnM4bTFjaQ%3D%3D&forceWidget=1&t=1716467932
https://player.flipsnack.com/?hash=QzY1RDdEQ0M1QTgrdGM1cnM4bTFjaQ%3D%3D&forceWidget=1&t=1716467932
https://player.flipsnack.com/?hash=QzY1RDdEQ0M1QTgrdGM1cnM4bTFjaQ%3D%3D&forceWidget=1&t=1716467932