IOC Report
http://on.ny.gov

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 19:48:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 19:48:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 19:48:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 19:48:22 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 23 19:48:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3668_471539463\LICENSE
ASCII text
dropped
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3668_471539463\_metadata\verified_contents.json
JSON data
dropped
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3668_471539463\manifest.fingerprint
ASCII text, with no line terminators
dropped
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3668_471539463\manifest.json
JSON data
dropped
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping3668_471539463\sets.json
JSON data
dropped
Chrome Cache Entry: 225
ASCII text, with very long lines (19948), with no line terminators
downloaded
Chrome Cache Entry: 226
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 227
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 228
Unicode text, UTF-8 text, with very long lines (31997)
downloaded
Chrome Cache Entry: 229
ASCII text, with very long lines (65091)
dropped
Chrome Cache Entry: 230
ASCII text, with very long lines (65451)
dropped
Chrome Cache Entry: 231
PNG image data, 1000 x 100, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 232
ASCII text, with very long lines (65450)
downloaded
Chrome Cache Entry: 233
JSON data
dropped
Chrome Cache Entry: 234
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 235
ASCII text, with very long lines (22445)
dropped
Chrome Cache Entry: 236
HTML document, Unicode text, UTF-8 text, with very long lines (30788), with CRLF, LF line terminators
dropped
Chrome Cache Entry: 237
ASCII text, with very long lines (409), with no line terminators
dropped
Chrome Cache Entry: 238
JSON data
downloaded
Chrome Cache Entry: 239
ASCII text, with very long lines (64844)
dropped
Chrome Cache Entry: 240
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 241
Unicode text, UTF-8 text, with very long lines (947)
downloaded
Chrome Cache Entry: 242
JSON data
downloaded
Chrome Cache Entry: 243
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 244
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 245
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 246
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 247
ASCII text, with very long lines (61420)
downloaded
Chrome Cache Entry: 248
HTML document, ASCII text, with very long lines (1371)
downloaded
Chrome Cache Entry: 249
ASCII text, with very long lines (5552)
dropped
Chrome Cache Entry: 250
HTML document, ASCII text, with very long lines (873), with no line terminators
downloaded
Chrome Cache Entry: 251
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 252
PNG image data, 1000 x 100, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 253
ASCII text, with very long lines (24745), with no line terminators
dropped
Chrome Cache Entry: 254
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 255
ASCII text, with very long lines (65091)
downloaded
Chrome Cache Entry: 256
ASCII text, with very long lines (56495)
downloaded
Chrome Cache Entry: 257
JSON data
downloaded
Chrome Cache Entry: 258
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 259
Web Open Font Format, CFF, length 59264, version 0.0
downloaded
Chrome Cache Entry: 260
JSON data
dropped
Chrome Cache Entry: 261
JSON data
downloaded
Chrome Cache Entry: 262
JSON data
downloaded
Chrome Cache Entry: 263
ASCII text, with very long lines (19948), with no line terminators
dropped
Chrome Cache Entry: 264
Unicode text, UTF-8 text, with very long lines (35788), with CRLF line terminators
downloaded
Chrome Cache Entry: 265
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 266
Unicode text, UTF-8 text, with very long lines (35788), with CRLF line terminators
dropped
Chrome Cache Entry: 267
ASCII text, with very long lines (57671), with no line terminators
dropped
Chrome Cache Entry: 268
ASCII text, with very long lines (4861), with no line terminators
dropped
Chrome Cache Entry: 269
ASCII text, with very long lines (914), with no line terminators
dropped
Chrome Cache Entry: 270
JSON data
downloaded
Chrome Cache Entry: 271
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 272
HTML document, ASCII text, with very long lines (815)
downloaded
Chrome Cache Entry: 273
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 274
Web Open Font Format, CFF, length 57944, version 0.0
downloaded
Chrome Cache Entry: 275
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 276
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 277
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 278
ASCII text, with very long lines (3969)
downloaded
Chrome Cache Entry: 279
JSON data
dropped
Chrome Cache Entry: 280
gzip compressed data, from Unix, original size modulo 2^32 43473
dropped
Chrome Cache Entry: 281
ASCII text, with very long lines (11774)
dropped
Chrome Cache Entry: 282
JSON data
dropped
Chrome Cache Entry: 283
ASCII text, with very long lines (3835)
downloaded
Chrome Cache Entry: 284
JSON data
downloaded
Chrome Cache Entry: 285
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 286
ASCII text, with very long lines (7915)
dropped
Chrome Cache Entry: 287
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 288
ASCII text
dropped
Chrome Cache Entry: 289
ASCII text, with very long lines (34384)
dropped
Chrome Cache Entry: 290
gzip compressed data, truncated
downloaded
Chrome Cache Entry: 291
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 292
ASCII text, with very long lines (61420)
dropped
Chrome Cache Entry: 293
JSON data
downloaded
Chrome Cache Entry: 294
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 295
ASCII text, with very long lines (57671), with no line terminators
downloaded
Chrome Cache Entry: 296
ASCII text, with very long lines (409), with no line terminators
downloaded
Chrome Cache Entry: 297
Unicode text, UTF-8 text, with very long lines (448)
downloaded
Chrome Cache Entry: 298
JSON data
downloaded
Chrome Cache Entry: 299
PNG image data, 281 x 101, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 300
ASCII text, with very long lines (56495)
dropped
Chrome Cache Entry: 301
ASCII text, with very long lines (4860), with no line terminators
dropped
Chrome Cache Entry: 302
ASCII text
dropped
Chrome Cache Entry: 303
ASCII text, with very long lines (3835)
dropped
Chrome Cache Entry: 304
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 305
ASCII text, with very long lines (9217)
downloaded
Chrome Cache Entry: 306
ASCII text, with very long lines (11774)
downloaded
Chrome Cache Entry: 307
JSON data
dropped
Chrome Cache Entry: 308
Unicode text, UTF-8 text, with very long lines (41169)
downloaded
Chrome Cache Entry: 309
ASCII text, with very long lines (65447)
dropped
Chrome Cache Entry: 310
ASCII text, with very long lines (65468)
downloaded
Chrome Cache Entry: 311
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 312
ASCII text, with very long lines (13479)
downloaded
Chrome Cache Entry: 313
ASCII text, with very long lines (30361), with no line terminators
downloaded
Chrome Cache Entry: 314
JSON data
dropped
Chrome Cache Entry: 315
JSON data
downloaded
Chrome Cache Entry: 316
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 317
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 318
ASCII text, with very long lines (1787), with no line terminators
downloaded
Chrome Cache Entry: 319
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 320
ASCII text
downloaded
Chrome Cache Entry: 321
ASCII text, with very long lines (3835)
downloaded
Chrome Cache Entry: 322
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 323
ASCII text, with very long lines (64844)
downloaded
Chrome Cache Entry: 324
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 325
JSON data
dropped
Chrome Cache Entry: 326
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 327
ASCII text
downloaded
Chrome Cache Entry: 328
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 329
gzip compressed data, from Unix, original size modulo 2^32 43473
downloaded
Chrome Cache Entry: 330
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 331
JSON data
dropped
Chrome Cache Entry: 332
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 333
ASCII text, with very long lines (65468)
dropped
Chrome Cache Entry: 334
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 335
ASCII text, with very long lines (31962)
dropped
Chrome Cache Entry: 336
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 337
JSON data
dropped
Chrome Cache Entry: 338
ASCII text, with very long lines (3969)
dropped
Chrome Cache Entry: 339
HTML document, Unicode text, UTF-8 text, with very long lines (30788), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 340
Unicode text, UTF-8 text, with very long lines (34438), with no line terminators
downloaded
Chrome Cache Entry: 341
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 342
ASCII text, with very long lines (7915)
downloaded
Chrome Cache Entry: 343
ASCII text, with very long lines (4841), with no line terminators
downloaded
Chrome Cache Entry: 344
Unicode text, UTF-8 text, with very long lines (51384), with no line terminators
dropped
Chrome Cache Entry: 345
JSON data
downloaded
Chrome Cache Entry: 346
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 347
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 348
ASCII text, with very long lines (65450)
dropped
Chrome Cache Entry: 349
ASCII text, with very long lines (914), with no line terminators
downloaded
Chrome Cache Entry: 350
JSON data
dropped
Chrome Cache Entry: 351
JSON data
dropped
Chrome Cache Entry: 352
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 353
Unicode text, UTF-8 text, with very long lines (41169)
dropped
Chrome Cache Entry: 354
Unicode text, UTF-8 text, with very long lines (31997)
dropped
Chrome Cache Entry: 355
ASCII text, with very long lines (5552)
downloaded
Chrome Cache Entry: 356
ASCII text, with very long lines (22445)
downloaded
Chrome Cache Entry: 357
PNG image data, 281 x 101, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 358
Unicode text, UTF-8 text, with very long lines (51384), with no line terminators
downloaded
Chrome Cache Entry: 359
HTML document, ASCII text, with very long lines (3279), with no line terminators
downloaded
Chrome Cache Entry: 360
ASCII text, with very long lines (723)
downloaded
Chrome Cache Entry: 361
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
dropped
Chrome Cache Entry: 362
ASCII text, with very long lines (4842), with no line terminators
downloaded
Chrome Cache Entry: 363
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 364
gzip compressed data, truncated
dropped
Chrome Cache Entry: 365
HTML document, ASCII text, with very long lines (5228), with no line terminators
downloaded
Chrome Cache Entry: 366
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 367
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 368
Unicode text, UTF-8 text, with very long lines (448)
dropped
Chrome Cache Entry: 369
ASCII text, with very long lines (1787), with no line terminators
dropped
Chrome Cache Entry: 370
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 371
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 372
ASCII text, with very long lines (34384)
downloaded
Chrome Cache Entry: 373
ASCII text
downloaded
Chrome Cache Entry: 374
ASCII text, with very long lines (9217)
dropped
Chrome Cache Entry: 375
JSON data
dropped
Chrome Cache Entry: 376
Web Open Font Format, CFF, length 58304, version 0.0
downloaded
Chrome Cache Entry: 377
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 378
Unicode text, UTF-8 text, with very long lines (34438), with no line terminators
dropped
Chrome Cache Entry: 379
ASCII text
downloaded
Chrome Cache Entry: 380
ASCII text
dropped
Chrome Cache Entry: 381
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 382
JSON data
downloaded
Chrome Cache Entry: 383
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 384
ASCII text, with very long lines (24745), with no line terminators
downloaded
Chrome Cache Entry: 385
ASCII text, with very long lines (3835)
dropped
Chrome Cache Entry: 386
Web Open Font Format, CFF, length 58520, version 0.0
downloaded
Chrome Cache Entry: 387
ASCII text, with very long lines (31962)
downloaded
Chrome Cache Entry: 388
ASCII text, with very long lines (13479)
dropped
There are 166 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2440 --field-trial-handle=2400,i,5822853731474177872,13775876700447196615,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://on.ny.gov"

URLs

Name
IP
Malicious
http://on.ny.gov
https://bitly.com/pages/#organization
unknown
https://wieistmeineip.de
unknown
https://mercadoshops.com.co
unknown
https://bitly.com/pages/cookies
unknown
https://pixel-config.reddit.com/pixels/a2_fen0j12o3rmb/config
151.101.129.140
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly#breadcrumb
unknown
https://www.google.com/pagead/1p-user-list/768371374/?random
unknown
https://mercadolivre.com
unknown
https://script.hotjar.com/modules.7d35ebb92a246d9f66a6.js
13.33.187.19
https://docrdsfx76ssb.cloudfront.net/static/1727747022/pages/wp-content/uploads/2020/11/074_CS_Unive
unknown
https://www.redditstatic.com/ads/conversions-config/v1/pixel/config/a2_fen0j12o3rmb_telemetry
151.101.1.140
https://w3-reporting-nel.reddit.com/reports
151.101.129.140
https://medonet.pl
unknown
https://mercadoshops.com.br
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/themes/JointsWP-CSS-master/foundation-sites/dist/js/foundation.min.js
143.204.178.222
https://johndeere.com
unknown
https://baomoi.com
unknown
https://elfinancierocr.com
unknown
https://bolasport.com
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/plugins/sitepress-multilingual-cms/res/js/cookies/language-cookie.js
143.204.178.222
https://desimartini.com
unknown
https://hearty.app
unknown
https://mercadoshops.com
unknown
https://nlc.hu
unknown
https://p106.net
unknown
https://radio2.be
unknown
https://bitly.com/pages/website-accessibility-statement
unknown
https://docrdsfx76ssb.cloudfront.net/static/1727747022/pages/wp-content/uploads/2022/11/link-in-bio-
unknown
https://songshare.com
unknown
https://smaker.pl
unknown
https://p24.hu
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/uploads/2019/06/LP_Unbranded-vs-Branded_Beats_1.png
143.204.178.222
https://cdn.cookielaw.org/scripttemplates/202409.1.0/otBannerSdk.js
104.18.87.42
https://24.hu
unknown
https://mightytext.net
unknown
https://hazipatika.com
unknown
https://joyreactor.com
unknown
https://wildixin.com
unknown
https://eworkbookcloud.com
unknown
https://chennien.com
unknown
https://drimer.travel
unknown
https://privacyportal-eu.onetrust.com/request/v1/consentreceipts
104.18.32.137
https://mercadopago.cl
unknown
https://naukri.com
unknown
https://interia.pl
unknown
https://bonvivir.com
unknown
https://sapo.io
unknown
https://wpext.pl
unknown
https://welt.de
unknown
https://poalim.site
unknown
https://drimer.io
unknown
https://infoedgeindia.com
unknown
https://blackrockadvisorelite.it
unknown
https://tdsf.doubleclick.net/td/adfetch/gda?adg_id=167942052455
unknown
https://cognitive-ai.ru
unknown
https://docrdsfx76ssb.cloudfront.net/static/1727747022/pages/wp-content/uploads/2016/01/043_Case-stu
unknown
https://cafemedia.com
unknown
https://graziadaily.co.uk
unknown
https://thirdspace.org.au
unknown
https://mercadoshops.com.ar
unknown
https://cdn.cookielaw.org/scripttemplates/otSDKStub.js
104.18.87.42
https://bitly.com/pages/es/tarifas
unknown
http://www.hubspot.com
unknown
https://bitly.com/pages/#/schema/logo/image/
unknown
https://commentcamarche.com
unknown
https://rws3nvtvt.com
unknown
https://mercadolivre.com.br
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/plugins/sitepress-multilingu
unknown
https://bitly.com/pages/it
unknown
https://clmbtech.com
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/plugins/page-links-to/dist/n
unknown
https://salemovefinancial.com
unknown
https://mercadopago.com.br
unknown
https://commentcamarche.net
unknown
https://hj.rs
unknown
https://hearty.me
unknown
https://mercadolibre.com.gt
unknown
https://indiatodayne.in
unknown
https://idbs-staging.com
unknown
https://cdn.visitorapi.com/visitor-api.js
unknown
https://js-eu1.hs-analytics.net/analytics/1729705800000/26740822.js
172.65.238.60
https://mercadolibre.co.cr
unknown
https://prisjakt.no
unknown
https://kompas.com
unknown
https://wingify.com
unknown
https://player.pl
unknown
https://mercadopago.com.ar
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/themes/JointsWP-CSS-master/assets/images/globe.svg
143.204.178.222
https://mercadolibre.com.hn
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/cache/fvm/min/1729256436-css6a3a42c8ef9b43e1ac5313ba3c0351bad079abf14962a6901d7a3e97a6a07.css
143.204.178.222
https://tucarro.com.co
unknown
https://een.be
unknown
https://terazgotuje.pl
unknown
https://static.hotjar.com/c/hotjar-
unknown
http://creativecommons.org/ns#
unknown
https://t.co/i/adsct?bci=3&eci=2&event_id=a1fa486c-9721-40a2-b948-e7c2e1a15f2a&events=%5B%5B%22pagev
unknown
https://docrdsfx76ssb.cloudfront.net/static/1729518575/pages/wp-content/uploads/2019/03/recognizable-brands-gartner.svg
143.204.178.222
https://a16488430484.cdn.optimizely.com/client_storage/a16488430484.html
104.18.65.57
https://t.co/i/adsct
unknown
https://js-eu1.hs-scripts.com/26740822.js
172.65.208.22
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
jsdelivr.map.fastly.net
151.101.193.229
dart.l.doubleclick.net
142.250.185.166
1667503734.rsc.cdn77.org
195.181.175.40
vc-live-cf.hotjar.io
18.66.112.15
static.cloudflareinsights.com
104.16.79.73
bitly.com
67.199.248.14
1784939676.rsc.cdn77.org
212.102.56.179
adservice.google.com
142.250.186.162
fp2e7a.wpc.phicdn.net
192.229.221.95
18ea70d2d9a945cfb97d818ba71817dc.pacloudflare.com
172.65.238.60
platform.twitter.map.fastly.net
199.232.188.157
api.userway.org
52.33.29.59
scontent.xx.fbcdn.net
157.240.253.1
t.co
162.159.140.229
script.hotjar.com
13.33.187.19
privacyportal-eu.onetrust.com
104.18.32.137
www.google.com
142.250.186.132
static-cdn.hotjar.com
18.245.175.78
2acdb9b66bb242618283aadb21ede6c1.pacloudflare.com
172.65.208.22
logx.optimizely.com
34.49.241.189
star-mini.c10r.facebook.com
157.240.0.35
s.twitter.com
104.244.42.3
cname.bitly.com
67.199.248.13
sp.bitly.com
34.120.78.44
ad.doubleclick.net
142.250.185.230
dna8twue3dlxq.cloudfront.net
13.32.121.46
ax-0001.ax-msedge.net
150.171.28.10
cdn.optimizely.com
104.18.65.57
dualstack.reddit.map.fastly.net
151.101.1.140
bg.microsoft.map.fastly.net
199.232.210.172
a16488430484.cdn.optimizely.com
104.18.65.57
analytics-alv.google.com
216.239.34.181
reddit.map.fastly.net
151.101.129.140
googleads.g.doubleclick.net
142.250.186.162
docrdsfx76ssb.cloudfront.net
143.204.178.222
td.doubleclick.net
142.250.184.194
7c7b02d4bc3d48dd81a7c7738d4de1ab.pacloudflare.com
172.65.202.201
cdn.cookielaw.org
104.18.87.42
geolocation.onetrust.com
172.64.155.119
alb.reddit.com
unknown
static.ads-twitter.com
unknown
cdn.jsdelivr.net
unknown
js-eu1.hs-analytics.net
unknown
w3-reporting-nel.reddit.com
unknown
cdn77.api.userway.org
unknown
vc.hotjar.io
unknown
static.hotjar.com
unknown
pixel-config.reddit.com
unknown
on.ny.gov
unknown
www.facebook.com
unknown
www.redditstatic.com
unknown
12389169.fls.doubleclick.net
unknown
www.linkedin.com
unknown
public.profitwell.com
unknown
connect.facebook.net
unknown
px.ads.linkedin.com
unknown
js-eu1.hs-scripts.com
unknown
cdn.userway.org
unknown
analytics.twitter.com
unknown
js-eu1.hs-banner.com
unknown
snap.licdn.com
unknown
analytics.google.com
unknown
There are 52 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
18.66.102.53
unknown
United States
13.33.187.19
script.hotjar.com
United States
216.239.34.181
analytics-alv.google.com
United States
151.101.193.229
jsdelivr.map.fastly.net
United States
34.120.78.44
sp.bitly.com
United States
18.66.112.15
vc-live-cf.hotjar.io
United States
142.250.185.226
unknown
United States
192.168.2.5
unknown
unknown
13.32.121.46
dna8twue3dlxq.cloudfront.net
United States
104.18.32.137
privacyportal-eu.onetrust.com
United States
172.65.202.201
7c7b02d4bc3d48dd81a7c7738d4de1ab.pacloudflare.com
United States
34.49.241.189
logx.optimizely.com
United States
172.65.238.60
18ea70d2d9a945cfb97d818ba71817dc.pacloudflare.com
United States
142.250.185.66
unknown
United States
142.250.184.196
unknown
United States
162.159.140.229
t.co
United States
18.172.111.58
unknown
United States
104.18.87.42
cdn.cookielaw.org
United States
104.18.65.57
cdn.optimizely.com
United States
18.245.175.78
static-cdn.hotjar.com
United States
142.250.184.194
td.doubleclick.net
United States
157.240.0.35
star-mini.c10r.facebook.com
United States
172.64.155.119
geolocation.onetrust.com
United States
212.102.56.179
1784939676.rsc.cdn77.org
Italy
239.255.255.250
unknown
Reserved
142.250.185.230
ad.doubleclick.net
United States
212.102.56.178
unknown
Italy
199.232.188.157
platform.twitter.map.fastly.net
United States
195.181.175.40
1667503734.rsc.cdn77.org
United Kingdom
13.33.187.109
unknown
United States
142.250.185.166
dart.l.doubleclick.net
United States
216.58.206.38
unknown
United States
157.240.0.6
unknown
United States
143.204.178.222
docrdsfx76ssb.cloudfront.net
United States
35.83.226.195
unknown
United States
18.245.143.47
unknown
United States
150.171.28.10
ax-0001.ax-msedge.net
United States
67.199.248.13
cname.bitly.com
United States
67.199.248.14
bitly.com
United States
142.250.186.132
www.google.com
United States
104.16.79.73
static.cloudflareinsights.com
United States
52.33.29.59
api.userway.org
United States
142.250.186.162
adservice.google.com
United States
104.244.42.67
unknown
United States
104.244.42.3
s.twitter.com
United States
151.101.1.140
dualstack.reddit.map.fastly.net
United States
157.240.253.1
scontent.xx.fbcdn.net
United States
172.65.208.22
2acdb9b66bb242618283aadb21ede6c1.pacloudflare.com
United States
151.101.129.140
reddit.map.fastly.net
United States
172.66.0.227
unknown
United States
There are 40 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
https://bitly.com/pages/landing/branded-short-domains-powered-by-bitly?bsd=on.ny.gov
There are 1 hidden doms, click here to show them.