IOC Report
https://my.certificial.com/sign-up-agent/new/

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri May 24 11:53:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri May 24 11:53:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri May 24 11:53:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri May 24 11:53:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri May 24 11:53:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 197
ASCII text, with very long lines (25386), with no line terminators
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 199
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 200
ASCII text, with very long lines (7789)
downloaded
Chrome Cache Entry: 201
JSON data
dropped
Chrome Cache Entry: 202
ASCII text, with very long lines (3683), with no line terminators
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (65395)
downloaded
Chrome Cache Entry: 204
HTML document, ASCII text, with very long lines (8339), with no line terminators
downloaded
Chrome Cache Entry: 205
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 206
JSON data
downloaded
Chrome Cache Entry: 207
Unicode text, UTF-8 (with BOM) text, with very long lines (5713), with no line terminators
downloaded
Chrome Cache Entry: 208
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 209
ASCII text, with very long lines (8393), with CRLF line terminators
downloaded
Chrome Cache Entry: 210
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 211
ASCII text, with very long lines (1337), with no line terminators
downloaded
Chrome Cache Entry: 212
JSON data
downloaded
Chrome Cache Entry: 213
JSON data
downloaded
Chrome Cache Entry: 214
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 215
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 216
Unicode text, UTF-8 text, with very long lines (37356), with no line terminators
downloaded
Chrome Cache Entry: 217
JSON data
dropped
Chrome Cache Entry: 218
ASCII text, with very long lines (3690)
downloaded
Chrome Cache Entry: 219
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 220
JSON data
downloaded
Chrome Cache Entry: 221
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 222
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 223
Unicode text, UTF-8 text, with very long lines (47653)
downloaded
Chrome Cache Entry: 224
ASCII text, with very long lines (42448), with CRLF line terminators
downloaded
Chrome Cache Entry: 225
TrueType Font data, 18 tables, 1st "GDEF", 17 names, Microsoft, language 0x409, Copyright 2019 The Work Sans Project Authors (https://github.com/weiweihuanghuang/Work-Sans)Work
downloaded
Chrome Cache Entry: 226
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 227
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 228
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 229
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 230
JSON data
downloaded
Chrome Cache Entry: 231
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 232
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 233
JSON data
dropped
Chrome Cache Entry: 234
JSON data
dropped
Chrome Cache Entry: 235
C source, ASCII text, with very long lines (65471)
downloaded
Chrome Cache Entry: 236
PNG image data, 3707 x 643, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 237
ASCII text, with very long lines (7711)
downloaded
Chrome Cache Entry: 238
Unicode text, UTF-8 (with BOM) text, with very long lines (24542), with no line terminators
downloaded
Chrome Cache Entry: 239
JSON data
dropped
Chrome Cache Entry: 240
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 241
HTML document, Unicode text, UTF-8 text, with very long lines (32790)
downloaded
Chrome Cache Entry: 242
JSON data
downloaded
Chrome Cache Entry: 243
JSON data
dropped
Chrome Cache Entry: 244
TrueType Font data, 18 tables, 1st "GDEF", 19 names, Microsoft, language 0x409, Copyright 2019 The Work Sans Project Authors (https://github.com/weiweihuanghuang/Work-Sans)Work
downloaded
Chrome Cache Entry: 245
Unicode text, UTF-8 text, with very long lines (65491), with no line terminators
dropped
Chrome Cache Entry: 246
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 247
PNG image data, 1201 x 543, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 248
JSON data
downloaded
Chrome Cache Entry: 249
PNG image data, 842 x 411, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 250
HTML document, ASCII text, with very long lines (8339), with no line terminators
downloaded
Chrome Cache Entry: 251
ASCII text, with very long lines (1937), with no line terminators
downloaded
Chrome Cache Entry: 252
HTML document, ASCII text, with very long lines (8339), with no line terminators
downloaded
Chrome Cache Entry: 253
PNG image data, 1201 x 543, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 254
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 255
ASCII text, with very long lines (5134)
downloaded
Chrome Cache Entry: 256
ASCII text, with very long lines (28605), with CRLF line terminators
downloaded
Chrome Cache Entry: 257
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 258
ASCII text, with very long lines (1856)
downloaded
Chrome Cache Entry: 259
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 260
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 261
ASCII text, with very long lines (1401), with no line terminators
downloaded
Chrome Cache Entry: 262
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 263
JSON data
downloaded
Chrome Cache Entry: 264
JSON data
downloaded
Chrome Cache Entry: 265
PNG image data, 842 x 411, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 266
Unicode text, UTF-8 text, with very long lines (65491), with no line terminators
downloaded
Chrome Cache Entry: 267
PNG image data, 3707 x 643, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 268
JSON data
dropped
Chrome Cache Entry: 269
ASCII text, with very long lines (65450)
downloaded
Chrome Cache Entry: 270
ASCII text, with no line terminators
downloaded
There are 71 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2224 --field-trial-handle=2172,i,16395723806715120012,8446153916749426226,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://my.certificial.com/sign-up-agent/new/"

URLs

Name
IP
Malicious
https://my.certificial.com/sign-up-agent/new/
https://support.certificial.com/portal/en/kb/articles/generating-your-certificates-of-insurance-for-
unknown
https://stats.g.doubleclick.net/g/collect
unknown
https://icomoon.io/app-features.html)
unknown
https://support.certificial.com/portal/en/kb/articles/responding-to-incoming-requests-for-cois-or-in
unknown
https://support.certificial.com/portal/en/kb/articles/generating-your-own-certificates-of-insurance
unknown
https://my.certificial.com/sign-up
https://support.certificial.com/portal/en/kb/articles/requesting-policies-from-suppliers-or-vendors
unknown
https://my.certificial.com/static/css/main.4665a261.chunk.css
54.70.164.125
https://ampcid.google.com/v1/publisher:getClientId
unknown
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461z8859921755za200zb859921755&_p=1716555243021&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_s=1&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=page_view&tfd=1751
142.250.185.206
about:blank
https://content.hotjar.io/?site_id=3351594&gzip=1
52.215.176.54
https://cdn.walkme.com/player/lib/walkme_lib_20230613-125400-83905bf9.js
unknown
https://support.certificial.com/portal/en/kb/articles/sharing-your-policies-with-3rd-parties
unknown
https://px.ads.linkedin.com/collect?
unknown
https://support.certificial.com/portal/en/kb/articles/managing-your-client-s-account-on-their-behalf
unknown
https://js.hs-banner.com/v2/23490394/banner.js
unknown
https://support.certificial.com/portal/en/kb/articles/rejecting-a-policy
unknown
https://www.google.com
unknown
https://www.youtube.com/iframe_api
unknown
https://ws.hotjar.com/api/v2/client/ws?v=7&site_id=3351594
54.220.44.158
https://support.certificial.com/portal/en/kb/articles/adding-a-digital-signature-to-cois
unknown
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461za200zb859921755&_p=1716555223600&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_eu=AEA&_s=2&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=scroll&epn.percent_scrolled=90&_et=661&tfd=8207
142.250.185.206
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461za200zb859921755&_p=1716555243021&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_eu=AEA&_s=2&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=scroll&epn.percent_scrolled=90&_et=10&tfd=7186
142.250.185.206
https://cdn.walkme.com/users/3be7b86056a1409ab8207e63a7c316d3/custom_css_cc920c7122124af7bc25f4369ab
unknown
https://static.hotjar.com/c/hotjar-3351594.js?sv=7
18.239.83.76
https://stats.g.doubleclick.net/j/collect
unknown
https://my.certificial.com/favicon.ico
54.70.164.125
https://support.certificial.com/portal/en/kb/articles/the-dashboard-page-displays-all-the-suppliers-
unknown
https://www.google.com/pagead/attribution/wcm?cc=ZZ&dn=7783205413&cl=DLj6COWu7pcDEOHV2boB&dma=0
142.250.186.68
https://my.certificial.com/login
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461za200zb859921755&_p=1716555248313&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_eu=AEA&_s=2&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Flogin&dt=Certificial%20%7C%20Login%20%2F%20Register&en=scroll&epn.percent_scrolled=90&_et=6&tfd=5551
142.250.185.206
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461za200zb859921755&_p=1716555260225&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_eu=AEA&_s=2&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=scroll&epn.percent_scrolled=90&_et=4&tfd=7180
142.250.185.206
https://support.certificial.com/portal/en/kb/articles/policy-status-indicators
unknown
https://support.certificial.com/portal/en/kb/articles/adding-new-requirement-templates
unknown
https://github.com/weiweihuanghuang/Work-Sans)Work
unknown
https://my.certificial.com/static/js/main.83596f17.chunk.js
54.70.164.125
https://js.hsadspixel.net/fb.js
unknown
https://cdn.pagesense.io/js/jy3mhhq9/94b263aed3284b24a1072137a39ff56b.js
143.204.9.22
https://adservice.google.com/pagead/regclk
unknown
https://cdn.walkme.com/player/lib/20230613-125400-83905bf9/
unknown
https://support.certificial.com/portal/en/kb/articles/stop-monitoring-a-supplier-s-policy-or-handle-
unknown
https://cct.google/taggy/agent.js
unknown
https://ec.walkme.com
unknown
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461z8859921755za200zb859921755&_p=1716555248313&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_s=1&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Flogin&dt=Certificial%20%7C%20Login%20%2F%20Register&en=page_view&tfd=549
142.250.185.206
https://s3.walkmeusercontent.com/3be7b86056a1409ab8207e63a7c316d3/Cert
unknown
https://support.certificial.com/portal/en/kb/articles/share-your-own-policy-and-requests-others-poli
unknown
https://support.certificial.com/portal/en/kb/articles/understanding-policy-status
unknown
http://scripts.sil.org/OFLhttp://scripts.sil.org/OFLWork
unknown
https://support.certificial.com/portal/en/kb/articles/a-complete-policy-history-is-available
unknown
https://s3.walkmeusercontent.com/3be7b86056a1409ab8207e63a7c316d3/Upload%20Icon.PNG
unknown
https://my.certificial.com/static/media/certificial-logo-white-final.18958aa0.png
54.70.164.125
https://cdn.walkme.com/users/3be7b86056a1409ab8207e63a7c316d3/data_cc920c7122124af7bc25f4369ab887a3.
unknown
http://scripts.sil.org/OFLhttp://scripts.sil.org/OFLWeightRomanItalic
unknown
https://cdn.walkme.com/chatbot/3.78.34/main.js
unknown
https://www.google.%/ads/ga-audiences
unknown
https://s3.walkmeusercontent.com/31543a0941e54cdfa9252432898fd6cd/Arrow
unknown
https://support.certificial.com/portal/en/kb/articles/responding-to-requests-for-my-client-s-coi-or-
unknown
https://js.hs-scripts.com/23490394.js
104.16.137.209
https://my.certificial.com/certificial-api/referenceData/state?countryCode=US
54.70.164.125
https://support.certificial.com/portal/en/kb/articles/viewing-your-policies-in-graph-view-or-list-vi
unknown
https://my.certificial.com
unknown
https://d3js.org/d3.v4.min.js
104.26.7.30
https://www.walkme.com/
unknown
https://s3.walkmeusercontent.com/3be7b86056a1409ab8207e63a7c316d3/logo.png
unknown
https://fonts.google.com/specimen/Noto
unknown
https://support.certificial.com/portal/en/kb/articles/managing-renewals-on-certificial
unknown
https://support.certificial.com/portal/en/kb/articles/generate-a-policy-history
unknown
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461z8859921755za200zb859921755&_p=1716555202570&_gaz=1&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_s=1&sid=1716555207&sct=1&seg=0&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up-agent%2Fnew%2F&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=page_view&_fv=1&_ss=1&tfd=6691
142.250.185.206
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461z8859921755za200zb859921755&_p=1716555264348&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_s=1&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Flogin&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=page_view&tfd=593
142.250.185.206
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461za200zb859921755&_p=1716555264348&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_eu=AEA&_s=2&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Flogin&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=scroll&epn.percent_scrolled=90&_et=15&tfd=5680
142.250.185.206
https://s3.walkmeusercontent.com/3be7b86056a1409ab8207e63a7c316d3/Arrow.png
unknown
https://www.latofonts.com/lato-free-fonts/).
unknown
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461z8859921755za200zb859921755&_p=1716555229231&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_s=1&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Flogin&dt=Certificial%20%7C%20Login%20%2F%20Register&en=page_view&tfd=1785
142.250.185.206
https://github.com/google/safevalues/issues
unknown
https://my.certificial.com/static/js/16.785afac5.chunk.js
54.70.164.125
https://my.certificial.com/certificial-api/maintenance
54.70.164.125
https://support.certificial.com/portal/en/kb/articles/cancelling-a-client-policy
unknown
https://js.hscollectedforms.net/collectedforms.js
unknown
https://s3.walkmeusercontent.com/3be7b86056a1409ab8207e63a7c316d3/Dots.PNG
unknown
https://cdn.walkme.com/users/3be7b86056a1409ab8207e63a7c316d3/walkme_config_cc920c7122124af7bc25f436
unknown
https://rapi.walkme.com
unknown
https://my.certificial.com/manifest.json
54.70.164.125
https://my.certificial.com/static/media/WorkSans-Medium.c657dd31.ttf
54.70.164.125
https://s3.walkmeusercontent.com/3be7b86056a1409ab8207e63a7c316d3/Arrow.PNG
unknown
https://support.certificial.com/portal/en/kb/articles/viewing-and-editing-your-own-policies
unknown
https://my.certificial.com/sign-up-agent/new/
https://script.hotjar.com/modules.404c8789d11e259a4872.js
18.65.39.37
https://support.walkme.com/knowledge-base/walkme-open-source/
unknown
https://my.certificial.com/static/media/WorkSans-Regular.6f916ce8.ttf
54.70.164.125
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461za200zb859921755&_p=1716555202570&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_eu=AEA&_s=2&sid=1716555207&sct=1&seg=0&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up-agent%2Fnew%2F&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=scroll&epn.percent_scrolled=90&_et=36&tfd=11808
142.250.185.206
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461z8859921755za200zb859921755&_p=1716555260225&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_s=1&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=page_view&tfd=648
142.250.185.206
https://stats.g.doubleclick.net/g/collect?v=2&tid=G-8TQ82V6X5Q&cid=300274814.1716555207&gtm=45je45m0v875289461z8859921755za200zb859921755&aip=1&dma=0&gcd=13l3l3l3l1&npa=0&frm=0
64.233.166.156
https://support.certificial.com/portal/en/kb/articles/adding-additional-users-to-our-account
unknown
https://my.certificial.com/static/media/bg.f477050a.svg
54.70.164.125
https://s3.walkmeusercontent.com/3be7b86056a1409ab8207e63a7c316d3/Upload
unknown
https://analytics.google.com/g/collect?v=2&tid=G-8TQ82V6X5Q&gtm=45je45m0v875289461z8859921755za200zb859921755&_p=1716555223600&gcd=13l3l3l3l1&npa=0&dma=0&cid=300274814.1716555207&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_s=1&sid=1716555207&sct=1&seg=1&dl=https%3A%2F%2Fmy.certificial.com%2Fsign-up&dt=Certificial%20%7C%20Digital%20Insurance%20Verification&en=page_view&tfd=2272
142.250.185.206
https://support.certificial.com/portal/en/kb/articles/granting-endorsements
unknown
https://stats.g.doubleclick.net/j/collect?t=dc&aip=1&_r=3&v=1&_v=j101&tid=UA-146595136-1&cid=300274814.1716555207&jid=2129950416&gjid=373786456&_gid=1510177655.1716555207&_u=YEBAAEAAAAAAACAAI~&z=45873876
64.233.166.156
https://my.certificial.com/certificial-api/referenceData/country
54.70.164.125
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
pacman-content-live.live.eks.hotjar.com
52.215.176.54
ec.walkme.com
35.201.109.167
d3js.org
104.26.7.30
fp2e7a.wpc.phicdn.net
192.229.221.95
d2yb1bkhdjcerk.cloudfront.net
143.204.9.22
stats.g.doubleclick.net
64.233.166.156
bg.microsoft.map.fastly.net
199.232.210.172
script.hotjar.com
18.65.39.37
frontend-alb-prod-my-certificial-1409396880.us-west-2.elb.amazonaws.com
54.70.164.125
js.hs-scripts.com
104.16.137.209
www.google.com
142.250.185.68
td.doubleclick.net
142.250.186.162
analytics.google.com
142.250.185.206
wsky-live.live.eks.hotjar.com
54.220.44.158
static-cdn.hotjar.com
18.239.83.76
cdn.pagesense.io
unknown
cdn.walkme.com
unknown
www.linkedin.com
unknown
my.certificial.com
unknown
px.ads.linkedin.com
unknown
content.hotjar.io
unknown
snap.licdn.com
unknown
static.hotjar.com
unknown
papi.walkme.com
unknown
ws.hotjar.com
unknown
There are 15 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
142.250.186.68
unknown
United States
64.233.167.154
unknown
United States
104.26.7.30
d3js.org
United States
142.250.185.206
analytics.google.com
United States
54.70.164.125
frontend-alb-prod-my-certificial-1409396880.us-west-2.elb.amazonaws.com
United States
192.168.2.9
unknown
unknown
192.168.2.5
unknown
unknown
18.65.39.37
script.hotjar.com
United States
52.215.176.54
pacman-content-live.live.eks.hotjar.com
United States
52.42.178.186
unknown
United States
54.220.44.158
wsky-live.live.eks.hotjar.com
United States
35.201.109.167
ec.walkme.com
United States
79.125.63.63
unknown
Ireland
142.250.185.68
www.google.com
United States
108.128.245.202
unknown
United States
104.16.137.209
js.hs-scripts.com
United States
143.204.9.22
d2yb1bkhdjcerk.cloudfront.net
United States
216.58.206.68
unknown
United States
64.233.166.156
stats.g.doubleclick.net
United States
239.255.255.250
unknown
Reserved
18.239.83.76
static-cdn.hotjar.com
United States
There are 11 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://my.certificial.com/sign-up-agent/new/
https://my.certificial.com/sign-up-agent/new/
https://my.certificial.com/sign-up-agent/new/
https://my.certificial.com/sign-up-agent/new/
https://my.certificial.com/sign-up-agent/new/
https://td.doubleclick.net/td/ga/rul?tid=G-8TQ82V6X5Q&gacid=300274814.1716555207&gtm=45je45m0v875289461z8859921755za200zb859921755&dma=0&gcd=13l3l3l3l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&z=1981852296
about:blank
https://my.certificial.com/sign-up
https://my.certificial.com/sign-up
https://my.certificial.com/sign-up
https://my.certificial.com/sign-up
https://my.certificial.com/sign-up
https://my.certificial.com/sign-up
https://my.certificial.com/sign-up
https://my.certificial.com/sign-up
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
https://my.certificial.com/login
There are 16 hidden doms, click here to show them.