Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Nov 21 23:12:56 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Nov 21 23:12:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Nov 21 23:12:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Nov 21 23:12:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Nov 21 23:12:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://www.amazon.com/gp/f.html?C=3EZOZG4B143JS&K=1E6K7EDNZJ01O&M=urn:rtn:msg:2024112123575784a68d3791734d57aa59c8099480p0na&R=1X9F7V8OBK7Z1&T=C&U=https%3A%2F%2Fbusiness.amazon.com%2Fabredir%2Fspr%2Freturns%2Fprep%3FcontractId%3D6a0575f9-ef14-43ae-afac-f5063d154a1e%26rmaId%3DDxDwhwGcRRMA%26orderId%3D111-7310600-6665801%26ingress%3Dprep_email%26ref_%3Dpe_114046300_987354350_OD0201BT_E_PREPRefundConfirmation_PREP_St&H=IA4LZ8TXHBNT2KXXSODLQKAB5OKA&ref_=pe_114046300_987354350_OD0201BT_E_PREPRefundConfirmation_PREP_St
|
|||
https://www.amazon.com/ap/signin?openid.pape.max_auth_age=3600&openid.return_to=https%3A%2F%2Fwww.amazon.com%2Fspr%2Freturns%2Fprep%3FcontractId%3D6a0575f9-ef14-43ae-afac-f5063d154a1e%26rmaId%3DDxDwhwGcRRMA%26orderId%3D111-7310600-6665801%26ingress%3Dprep_email%26ref_%3Dpe_114046300_987354350_OD0201BT_E_PREPRefundConfirmation_PREP_St&openid.identity=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0%2Fidentifier_select&openid.assoc_handle=amzn_psr_desktop_us&openid.mode=checkid_setup&language=en_US&openid.claimed_id=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0%2Fidentifier_select&openid.ns=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0
|
|||
https://www.amazon.com/ap/signin?openid.pape.max_auth_age=3600&openid.return_to=https://www.amazon.com/spr/returns/prep?contractId=6a0575f9-ef14-43ae-afac-f5063d154a1e&rmaId=DxDwhwGcRRMA&orderId=111-7310600-6665801&ingress=prep_email&ref_=pe_114046300_987354350_OD0201BT_E_PREPRefundConfirmation_PREP_St&openid.identity=http://specs.openid.net/auth/2.0/identifier_select&openid.assoc_handle=amzn_psr_desktop_us&openid.mode=checkid_setup&language=en_US&openid.claimed_id=http://specs.openid.net/auth/2.0/identifier_select&openid.ns=http://specs.openid.net/auth/2.0
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
business.amazon.com
|
108.158.75.6
|
||
static.siege-amazon.com
|
108.158.75.113
|
||
unagi-na.amazon.com
|
44.215.129.188
|
||
www.google.com
|
142.250.181.100
|
||
c.media-amazon.com
|
18.165.219.107
|
||
d3ag4hukkh62yn.cloudfront.net
|
18.165.215.158
|
||
media.amazon.map.fastly.net
|
151.101.193.16
|
||
endpoint.prod.us-east-1.forester.a2z.com
|
3.95.100.46
|
||
www.amazon.com
|
unknown
|
||
m.media-amazon.com
|
unknown
|
||
images-na.ssl-images-amazon.com
|
unknown
|
||
fls-na.amazon.com
|
unknown
|
||
unagi.amazon.com
|
unknown
|
There are 3 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
108.158.75.6
|
business.amazon.com
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
18.165.219.107
|
c.media-amazon.com
|
United States
|
||
3.95.100.46
|
endpoint.prod.us-east-1.forester.a2z.com
|
United States
|
||
151.101.193.16
|
media.amazon.map.fastly.net
|
United States
|
||
172.217.17.35
|
unknown
|
United States
|
||
172.217.17.46
|
unknown
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
142.250.181.100
|
www.google.com
|
United States
|
||
74.125.205.84
|
unknown
|
United States
|
||
54.237.25.55
|
unknown
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
18.165.215.158
|
d3ag4hukkh62yn.cloudfront.net
|
United States
|
||
172.217.21.42
|
unknown
|
United States
|
||
192.168.2.15
|
unknown
|
unknown
|
||
44.215.129.188
|
unagi-na.amazon.com
|
United States
|
||
172.217.21.35
|
unknown
|
United States
|
||
151.101.129.16
|
unknown
|
United States
|
||
44.215.133.78
|
unknown
|
United States
|
||
108.158.75.113
|
static.siege-amazon.com
|
United States
|
There are 10 hidden IPs, click here to show them.