Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jul 3 12:48:28 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jul 3 12:48:28 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:54:41 2023, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jul 3 12:48:28 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jul 3 12:48:28 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jul 3 12:48:28 2024, atime=Mon Oct 2 20:46:57
2023, length=1210144, window=hide
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1018036673\LICENSE
|
ASCII text
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1018036673\_metadata\verified_contents.json
|
JSON data
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1018036673\manifest.fingerprint
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1018036673\manifest.json
|
JSON data
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1018036673\sets.json
|
JSON data
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1629589010\_metadata\verified_contents.json
|
JSON data
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1629589010\cr_en-us_500000_index.bin
|
data
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1629589010\manifest.fingerprint
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3100_1629589010\manifest.json
|
JSON data
|
dropped
|
There are 6 hidden files, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://uglb4.roperelo.com/caGPey/
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv1/5YiJtKlZY9zsY10/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://uglb4.roperelo.com/caGPey/
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv1/5YiJtKlZY9zsY10/8hg6u/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv2/VN0ta9OzzfN6R8T/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv7/rneWVs1b04b3xiN/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv4/kndUV7JugzK85zT/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv8/Rno5CciNJ7APW03/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv2/VN0ta9OzzfN6R8T/8hg6u/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv5/gK_peYpdatqtD68/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv0/0/8hg6u/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv6/aHtfoA7ocYfEOOT/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv3/8gNQiKqJn8j24XB/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv0/0/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
|||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/g/turnstile/if/ov2/av0/rcv9/OJEqXYjsq4l6Yxu/jrcuw/0x4AAAAAAAdTJ8hLN9w03U34/auto/normal
|
There are 4 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
a.nel.cloudflare.com
|
35.190.80.1
|
||
code.jquery.com
|
151.101.130.137
|
||
hv8d.p9j32.com
|
172.67.182.147
|
||
cdnjs.cloudflare.com
|
104.17.24.14
|
||
rnnz.081zq.com
|
188.114.96.3
|
||
challenges.cloudflare.com
|
104.17.3.184
|
||
uglb4.roperelo.com
|
188.114.96.3
|
||
www.google.com
|
142.250.186.164
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
142.250.185.99
|
unknown
|
United States
|
||
104.17.24.14
|
cdnjs.cloudflare.com
|
United States
|
||
142.250.186.67
|
unknown
|
United States
|
||
34.104.35.123
|
unknown
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
172.67.182.147
|
hv8d.p9j32.com
|
United States
|
||
74.125.133.84
|
unknown
|
United States
|
||
192.168.2.17
|
unknown
|
unknown
|
||
151.101.130.137
|
code.jquery.com
|
United States
|
||
104.17.3.184
|
challenges.cloudflare.com
|
United States
|
||
142.250.181.238
|
unknown
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
188.114.96.3
|
rnnz.081zq.com
|
European Union
|
||
142.250.186.164
|
www.google.com
|
United States
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
142.250.184.206
|
unknown
|
United States
|
||
104.17.2.184
|
unknown
|
United States
|
There are 7 hidden IPs, click here to show them.