IOC Report
https://dinosaur-megalodon-8eae.squarespace.com

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Dec 22 00:23:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Dec 22 00:23:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Dec 22 00:23:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Dec 22 00:23:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Dec 22 00:23:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 121
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 122
JSON data
downloaded
Chrome Cache Entry: 123
JSON data
dropped
Chrome Cache Entry: 124
ASCII text, with very long lines (36378), with no line terminators
downloaded
Chrome Cache Entry: 125
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 126
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 127
ASCII text, with very long lines (41697)
dropped
Chrome Cache Entry: 128
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 129
JSON data
dropped
Chrome Cache Entry: 130
ASCII text, with very long lines (56224), with no line terminators
downloaded
Chrome Cache Entry: 131
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 132
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 134
ASCII text, with very long lines (20978), with no line terminators
downloaded
Chrome Cache Entry: 135
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 136
ASCII text, with very long lines (64957), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 137
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 138
ASCII text, with very long lines (771), with no line terminators
dropped
Chrome Cache Entry: 139
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 140
ASCII text
downloaded
Chrome Cache Entry: 141
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 142
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 143
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 144
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 145
ASCII text, with very long lines (65158)
dropped
Chrome Cache Entry: 146
ASCII text, with very long lines (36378), with no line terminators
dropped
Chrome Cache Entry: 147
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 148
ASCII text, with very long lines (19939), with CRLF line terminators
downloaded
Chrome Cache Entry: 149
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 150
ASCII text, with very long lines (65196)
downloaded
Chrome Cache Entry: 151
ASCII text, with very long lines (17772), with no line terminators
dropped
Chrome Cache Entry: 152
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 153
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 154
JSON data
downloaded
Chrome Cache Entry: 155
ASCII text, with very long lines (738), with no line terminators
downloaded
Chrome Cache Entry: 156
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 157
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 158
ASCII text, with very long lines (65196)
dropped
Chrome Cache Entry: 159
Unicode text, UTF-8 text, with very long lines (43878), with NEL line terminators
downloaded
Chrome Cache Entry: 160
ASCII text, with very long lines (38832), with no line terminators
downloaded
Chrome Cache Entry: 161
ASCII text, with very long lines (2356), with no line terminators
downloaded
Chrome Cache Entry: 162
Unicode text, UTF-8 text, with very long lines (43878), with NEL line terminators
dropped
Chrome Cache Entry: 163
JSON data
dropped
Chrome Cache Entry: 164
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 165
ASCII text, with very long lines (38832), with no line terminators
dropped
Chrome Cache Entry: 166
Web Open Font Format, TrueType, length 104724, version 1.0
downloaded
Chrome Cache Entry: 167
ASCII text, with very long lines (738), with no line terminators
dropped
Chrome Cache Entry: 168
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 169
ASCII text, with very long lines (20978), with no line terminators
dropped
Chrome Cache Entry: 170
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 172
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 173
ASCII text
downloaded
Chrome Cache Entry: 174
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 175
Unicode text, UTF-8 text, with very long lines (15109), with CRLF line terminators
dropped
Chrome Cache Entry: 176
ASCII text, with very long lines (56224), with no line terminators
dropped
Chrome Cache Entry: 177
HTML document, ASCII text, with very long lines (17251)
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (771), with no line terminators
downloaded
Chrome Cache Entry: 179
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 180
JSON data
downloaded
Chrome Cache Entry: 181
Unicode text, UTF-8 text, with very long lines (15109), with CRLF line terminators
downloaded
Chrome Cache Entry: 182
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 183
ASCII text, with very long lines (65467)
downloaded
Chrome Cache Entry: 184
ASCII text, with very long lines (65158)
downloaded
Chrome Cache Entry: 185
ASCII text, with very long lines (17772), with no line terminators
downloaded
Chrome Cache Entry: 186
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 188
ASCII text, with very long lines (65467)
dropped
Chrome Cache Entry: 189
ASCII text, with very long lines (41697)
downloaded
Chrome Cache Entry: 190
ASCII text, with very long lines (64957), with CRLF, LF line terminators
dropped
There are 67 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2116 --field-trial-handle=1876,i,14394039975335812045,10154006767898104271,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://dinosaur-megalodon-8eae.squarespace.com"

URLs

Name
IP
Malicious
https://dinosaur-megalodon-8eae.squarespace.com
http://github.com/jquery/globalize
unknown
https://static1.squarespace.com/static/vta/5c5a519771c10ba3470d8101/scripts/site-bundle.3f54e02ecf800724a9e3b135d2a95191.js
151.101.0.238
https://github.com/jquery/PEP
unknown
https://github.com/zloirock/core-js/blob/v3.26.0/LICENSE
unknown
https://assets.squarespace.com/universal/styles-compressed/user-account-core-b6e8cafbf34b05da5c2b-min.en-US.css
151.101.0.237
https://npms.io/search?q=ponyfill.
unknown
http://jquery.org/license
unknown
https://static1.squarespace.com/static/vta/5c5a519771c10ba3470d8101/versioned-assets/1734634171682-R
unknown
https://github.com/zloirock/core-js
unknown
https://lodash.com/
unknown
https://dev.azure.com/powerbi/PowerBIClients/_git/PowerBIClients/pullrequest/131629)
unknown
http://jqueryui.com
unknown
http://interactjs.io/docs/#autoscroll
unknown
http://interactjs.io/docs/restriction
unknown
http://jqueryui.com/themeroller/?scope=&folderName=base&cornerRadiusShadow=8px&offsetLeftShadow=0px&
unknown
https://assets.squarespace.com/universal/default-favicon.ico
unknown
https://github.com/requirejs/requirejs/blob/master/LICENSE
unknown
https://raw.github.com/taye/interact.js/master/LICENSE
unknown
https://static1.squarespace.com/static/versioned-site-css/675bffea9281b6478ae50b81/0/5c5a519771c10ba3470d8101/675bffea9281b6478ae50ba2/1596/site.css
151.101.0.238
https://app.powerbi.com/13.0.24766.39/sharedresources/BaseThemes/CY24SU10.json
20.38.136.70
http://wiki.jqueryui.com/Globalize
unknown
https://pbivisuals.powerbi.com/approvedResources.json
20.38.136.70
http://underscorejs.org/LICENSE
unknown
http://interactjs.io/docs/#resize-square
unknown
https://static1.squarespace.com/static/vta/5c5a519771c10ba3470d8101/versioned-assets/1734634171682-RZF6JR6GWSGG409XDSTH/static.css
151.101.0.238
https://github.com/gromo/jquery.scrollbar/
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/235e0d367207107d444f9fd17
unknown
https://dinosaur-megalodon-8eae.squarespace.com/
198.185.159.177
https://app.powerbi.com/13.0.24766.39/scripts/hash-manifest.js
20.38.136.70
https://app.powerbi.com/images/PowerBI_Favicon.ico
20.38.136.70
http://opengraphprotocol.org/schema/
unknown
https://lodash.com/license
unknown
https://app.powerbi.com/view?r=eyJrIjoiZjY0Y2FhMzUtMzM0ZS00YjQ2LTk5NDQtNmUwY2M5MDRiNmNjIiwidCI6ImJkMWRiODMyLWYwY2QtNDRiNS04ZTNjLTYxMmNlY2NhMjQ4ZSJ9
https://assets.squarespace.com/universal/scripts-compressed/extract-css-runtime-c53402e169a8bb53259f-min.en-US.js
151.101.0.237
https://dinosaur-megalodon-8eae.squarespace.com
unknown
http://jscompress.com/
unknown
https://images.squarespace-cdn.com
unknown
https://appsource.powerbi.com/visuals.json
40.74.24.71
https://openjsf.org/
unknown
https://assets.squarespace.com/@sqs/polyfiller/1.6/modern.js
151.101.0.237
https://static1.squarespace.com/static/vta/5c5a519771c10ba3470d8101/scripts/site-bundle.3f54e02ecf80
unknown
http://interactjs.io/docs/snapping
unknown
http://interactjs.io/docs/inertia
unknown
There are 33 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
google.com
142.250.181.110
waws-prod-am2-a8c336ff.sip.p.azurewebsites.windows.net
40.74.24.71
static.squarespace.map.fastly.net
151.101.0.237
www.google.com
142.250.181.132
s-part-0035.t-0009.t-msedge.net
13.107.246.63
dinosaur-megalodon-8eae.squarespace.com
198.185.159.177
squarespace.map.fastly.net
151.101.0.238
waws-prod-dxb-b24c6da5.sip.p.azurewebsites.windows.net
20.38.136.70
prod.squarespace.map.fastly.net
151.101.0.238
images.squarespace-cdn.com
unknown
appsource.powerbi.com
unknown
app.powerbi.com
unknown
assets.squarespace.com
unknown
static1.squarespace.com
unknown
login.365link.tech
unknown
wabi-uk-south-c-primary-api.analysis.windows.net
unknown
content.powerapps.com
unknown
dc.services.visualstudio.com
unknown
pbivisuals.powerbi.com
unknown
There are 9 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
20.38.136.70
waws-prod-dxb-b24c6da5.sip.p.azurewebsites.windows.net
United States
40.74.24.71
waws-prod-am2-a8c336ff.sip.p.azurewebsites.windows.net
United States
151.101.0.237
static.squarespace.map.fastly.net
United States
151.101.0.238
squarespace.map.fastly.net
United States
142.250.181.132
www.google.com
United States
192.168.2.5
unknown
unknown
151.101.128.238
unknown
United States
198.185.159.177
dinosaur-megalodon-8eae.squarespace.com
United States
239.255.255.250
unknown
Reserved

DOM / HTML

URL
Malicious
https://app.powerbi.com/view?r=eyJrIjoiZjY0Y2FhMzUtMzM0ZS00YjQ2LTk5NDQtNmUwY2M5MDRiNmNjIiwidCI6ImJkMWRiODMyLWYwY2QtNDRiNS04ZTNjLTYxMmNlY2NhMjQ4ZSJ9
https://app.powerbi.com/view?r=eyJrIjoiZjY0Y2FhMzUtMzM0ZS00YjQ2LTk5NDQtNmUwY2M5MDRiNmNjIiwidCI6ImJkMWRiODMyLWYwY2QtNDRiNS04ZTNjLTYxMmNlY2NhMjQ4ZSJ9
https://app.powerbi.com/view?r=eyJrIjoiZjY0Y2FhMzUtMzM0ZS00YjQ2LTk5NDQtNmUwY2M5MDRiNmNjIiwidCI6ImJkMWRiODMyLWYwY2QtNDRiNS04ZTNjLTYxMmNlY2NhMjQ4ZSJ9
https://app.powerbi.com/view?r=eyJrIjoiZjY0Y2FhMzUtMzM0ZS00YjQ2LTk5NDQtNmUwY2M5MDRiNmNjIiwidCI6ImJkMWRiODMyLWYwY2QtNDRiNS04ZTNjLTYxMmNlY2NhMjQ4ZSJ9
https://app.powerbi.com/view?r=eyJrIjoiZjY0Y2FhMzUtMzM0ZS00YjQ2LTk5NDQtNmUwY2M5MDRiNmNjIiwidCI6ImJkMWRiODMyLWYwY2QtNDRiNS04ZTNjLTYxMmNlY2NhMjQ4ZSJ9