IOC Report
https://lobster-app-xvyb9.ondigitalocean.app/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
GIF image data, version 89a, 24 x 9
downloaded
Chrome Cache Entry: 101
Web Open Font Format (Version 2), TrueType, length 7840, version 1.0
downloaded
Chrome Cache Entry: 102
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 47x46, components 3
downloaded
Chrome Cache Entry: 103
GIF image data, version 89a, 120 x 97
downloaded
Chrome Cache Entry: 104
PNG image data, 12 x 12, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 105
GIF image data, version 89a, 65 x 80
dropped
Chrome Cache Entry: 106
PNG image data, 12 x 12, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 107
PNG image data, 12 x 12, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 108
GIF image data, version 89a, 120 x 97
dropped
Chrome Cache Entry: 109
PNG image data, 12 x 12, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 110
PNG image data, 13 x 13, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 111
GIF image data, version 89a, 16 x 16
downloaded
Chrome Cache Entry: 112
ASCII text, with very long lines (7048)
downloaded
Chrome Cache Entry: 113
ASCII text
downloaded
Chrome Cache Entry: 114
PNG image data, 1920 x 1126, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 115
GIF image data, version 89a, 16 x 16
dropped
Chrome Cache Entry: 57
GIF image data, version 89a, 30 x 29
downloaded
Chrome Cache Entry: 58
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 47x46, components 3
dropped
Chrome Cache Entry: 59
Web Open Font Format (Version 2), TrueType, length 8000, version 1.0
downloaded
Chrome Cache Entry: 60
Web Open Font Format (Version 2), TrueType, length 7748, version 1.0
downloaded
Chrome Cache Entry: 61
GIF image data, version 89a, 24 x 9
dropped
Chrome Cache Entry: 62
PNG image data, 47 x 46, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 63
PNG image data, 12 x 12, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 64
GIF image data, version 89a, 65 x 80
downloaded
Chrome Cache Entry: 65
PNG image data, 1920 x 1126, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 66
GIF image data, version 89a, 16 x 16
downloaded
Chrome Cache Entry: 67
GIF image data, version 89a, 29 x 29
dropped
Chrome Cache Entry: 68
PNG image data, 12 x 12, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 69
PNG image data, 12 x 12, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 70
PNG image data, 12 x 12, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 71
GIF image data, version 89a, 78 x 68
dropped
Chrome Cache Entry: 72
PNG image data, 13 x 13, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 73
PNG image data, 47 x 46, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 74
ASCII text, with very long lines (27303)
downloaded
Chrome Cache Entry: 75
ASCII text, with very long lines (65326)
downloaded
Chrome Cache Entry: 76
GIF image data, version 89a, 16 x 16
dropped
Chrome Cache Entry: 77
HTML document, ASCII text
downloaded
Chrome Cache Entry: 78
GIF image data, version 89a, 78 x 68
downloaded
Chrome Cache Entry: 79
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 80
GIF image data, version 89a, 30 x 29
dropped
Chrome Cache Entry: 81
PNG image data, 12 x 12, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 82
GIF image data, version 89a, 80 x 65
downloaded
Chrome Cache Entry: 83
Web Open Font Format (Version 2), TrueType, length 7816, version 1.0
downloaded
Chrome Cache Entry: 84
Audio file with ID3 version 2.4.0, contains: MPEG ADTS, layer III, v1, 56 kbps, 44.1 kHz, Monaural
downloaded
Chrome Cache Entry: 85
GIF image data, version 89a, 16 x 16
downloaded
Chrome Cache Entry: 86
HTML document, Unicode text, UTF-8 text, with CRLF line terminators
downloaded
Chrome Cache Entry: 87
HTML document, ASCII text
downloaded
Chrome Cache Entry: 88
Web Open Font Format (Version 2), TrueType, length 7884, version 1.0
downloaded
Chrome Cache Entry: 89
GIF image data, version 89a, 80 x 65
dropped
Chrome Cache Entry: 90
GIF image data, version 89a, 29 x 29
downloaded
Chrome Cache Entry: 91
Web Open Font Format (Version 2), TrueType, length 66624, version 4.262
downloaded
Chrome Cache Entry: 92
ASCII text, with very long lines (32180)
downloaded
Chrome Cache Entry: 93
ASCII text
downloaded
Chrome Cache Entry: 94
PNG image data, 12 x 12, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 95
HTML document, ASCII text
downloaded
Chrome Cache Entry: 96
GIF image data, version 89a, 16 x 16
dropped
Chrome Cache Entry: 97
ASCII text, with very long lines (59765)
downloaded
Chrome Cache Entry: 98
Audio file with ID3 version 2.3.0, contains:\012- MPEG ADTS, layer III, v2, 64 kbps, 22.05 kHz, Monaural
downloaded
Chrome Cache Entry: 99
ASCII text, with very long lines (5945)
downloaded
There are 50 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2560 --field-trial-handle=2532,i,6664126779072236027,4573282303134864690,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://lobster-app-xvyb9.ondigitalocean.app/"

URLs

Name
IP
Malicious
https://lobster-app-xvyb9.ondigitalocean.app/
malicious
https://lobster-app-xvyb9.ondigitalocean.app/
172.66.0.96
malicious
https://lobster-app-xvyb9.ondigitalocean.app/#
malicious
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbbf25aa_v.gif
172.66.0.96
http://fontawesome.io
unknown
https://maxcdn.bootstrapcdn.com/font-awesome/4.5.0/css/font-awesome.min.css
104.18.10.207
https://stats.g.doubleclick.net/g/collect
unknown
https://lobster-app-xvyb9.ondigitalocean.app/5f205bc2c1b4b_v.gif
172.66.0.96
https://stackpath.bootstrapcdn.com/bootstrap/4.5.2/js/bootstrap.min.js
104.18.11.207
https://lobster-app-xvyb9.ondigitalocean.app/5f205bba58587_v.png
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbf6a050_v.gif
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/img/anim_red.gif
172.66.0.96
https://www.froala.com/wysiwyg-editor)
unknown
https://lobster-app-xvyb9.ondigitalocean.app/5f205bb9bf55a_v.gif
172.66.0.96
https://www.google.com
unknown
https://www.youtube.com/iframe_api
unknown
https://lobster-app-xvyb9.ondigitalocean.app/5f205bb63ccd2_v.css
172.66.0.96
https://github.com/twbs/bootstrap/graphs/contributors)
unknown
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbae3ed9_v.png
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbe46967_v.png
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/5f205bc497791_v.css
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/microsoft.png
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/5f205bc1a74d5_v.gif
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbdae210_v.png
172.66.0.96
https://cdnjs.cloudflare.com/ajax/libs/froala-editor/2.8.5/css/froala_style.min.css
104.17.25.14
https://lobster-app-xvyb9.ondigitalocean.app/5f205bc2379ac_v.gif
172.66.0.96
https://maxcdn.bootstrapcdn.com/font-awesome/4.5.0/fonts/fontawesome-webfont.woff2?v=4.5.0
104.18.10.207
https://lobster-app-xvyb9.ondigitalocean.app/0wa0rni0ng0.mp3
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/jquery.min.js
172.66.0.96
https://github.com/twbs/bootstrap/blob/main/LICENSE)
unknown
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbc8a6e3_v.gif
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/cut.png
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/minus.png
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/img/anim_orange.gif
172.66.0.96
https://adservice.google.com/pagead/regclk
unknown
https://getbootstrap.com/)
unknown
https://cct.google/taggy/agent.js
unknown
https://lobster-app-xvyb9.ondigitalocean.app/5f205bb74a5eb_v.css
172.66.0.96
http://fontawesome.io/license
unknown
https://lobster-app-xvyb9.ondigitalocean.app/microsoft.jpg
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/background-2.png
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/5f205bc00090f_v.gif
172.66.0.96
https://td.doubleclick.net
unknown
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbece31e_v.gif
172.66.0.96
https://www.merchant-center-analytics.goog
unknown
https://lobster-app-xvyb9.ondigitalocean.app/favicon.ico
172.66.0.96
https://lobster-app-xvyb9.ondigitalocean.app/a0ler0tm0s.mp3
172.66.0.96
https://froala.com/wysiwyg-editor/terms/
unknown
https://stackpath.bootstrapcdn.com/bootstrap/4.5.2/css/bootstrap.min.css
104.18.11.207
https://lobster-app-xvyb9.ondigitalocean.app/5f205bbb6fc7d_v.gif
172.66.0.96
There are 39 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
stackpath.bootstrapcdn.com
104.18.11.207
bg.microsoft.map.fastly.net
199.232.210.172
cdnjs.cloudflare.com
104.17.25.14
maxcdn.bootstrapcdn.com
104.18.10.207
www.google.com
142.250.184.196
fp2e7a.wpc.phicdn.net
192.229.221.95
lobster-app-xvyb9.ondigitalocean.app
172.66.0.96
time.windows.com
unknown

IPs

IP
Domain
Country
Malicious
142.250.184.196
www.google.com
United States
104.18.10.207
maxcdn.bootstrapcdn.com
United States
192.168.2.7
unknown
unknown
216.58.206.36
unknown
United States
104.18.11.207
stackpath.bootstrapcdn.com
United States
172.66.0.96
lobster-app-xvyb9.ondigitalocean.app
United States
239.255.255.250
unknown
Reserved
104.17.25.14
cdnjs.cloudflare.com
United States

DOM / HTML

URL
Malicious
https://lobster-app-xvyb9.ondigitalocean.app/#
malicious
https://lobster-app-xvyb9.ondigitalocean.app/#
malicious
https://lobster-app-xvyb9.ondigitalocean.app/#
malicious
https://lobster-app-xvyb9.ondigitalocean.app/#
malicious
https://lobster-app-xvyb9.ondigitalocean.app/#
malicious