URL: https://t.co Model: Joe Sandbox AI | {
"typosquatting": false,
"unusual_query_string": false,
"suspicious_tld": false,
"ip_in_url": false,
"long_subdomain": false,
"malicious_keywords": false,
"encoded_characters": false,
"redirection": false,
"contains_email_address": false,
"known_domain": true,
"brand_spoofing_attempt": false,
"third_party_hosting": false
} |
URL: https://t.co |
URL: https://twitter.com/safety/unsafe_link_warning?unsafe_link=http://0zcur91l1.centralshallow.top/contactos Model: Joe Sandbox AI | {
"contains_trigger_text": true,
"trigger_text": "Warning: this link may be unsafe",
"prominent_button_name": "Back to previous page",
"text_input_field_labels": "unknown",
"pdf_icon_visible": false,
"has_visible_captcha": false,
"has_urgent_text": false,
"has_visible_qrcode": false,
"contains_chinese_text": false,
"contains_fake_security_alerts": false
} |
|
URL: https://twitter.com/safety/unsafe_link_warning?unsafe_link=http://0zcur91l1.centralshallow.top/contactos Model: Joe Sandbox AI | {
"brands": "unknown"
} |
|
URL: https://x.com/... Model: Joe Sandbox AI | {
"risk_score": 7,
"reasoning": "The script is attempting to redirect the user to a suspicious URL that appears to be obfuscated. This behavior is indicative of potential malicious activity, such as a phishing attempt or redirection to a malicious website. The obfuscated URL and the lack of context around the redirection raise significant security concerns."
} |
document.location = "https://twitter.com/x/migrate?tok=7b2265223a222f222c2274223a313733363238333836397d97e3b3a59597030937c58ac500d669a4"
|
URL: https://x.com/?mx=2... Model: Joe Sandbox AI | {
"risk_score": 2,
"reasoning": "The provided code sets several cookies, which is a common practice for web applications to maintain user session and preferences. While the code sets cookies with long expiration dates, this is not inherently malicious and can be part of legitimate functionality. The code does not exhibit any high-risk indicators like dynamic code execution, data exfiltration, or redirects to suspicious domains. Therefore, the overall risk score is low."
} |
document.cookie="guest_id_marketing=v1%3A173628385762665632; Max-Age=63072000; Expires=Thu, 07 Jan 2027 21:04:30 GMT; Path=/; Domain=.x.com; Secure; SameSite=None";document.cookie="guest_id_ads=v1%3A173628385762665632; Max-Age=63072000; Expires=Thu, 07 Jan 2027 21:04:30 GMT; Path=/; Domain=.x.com; Secure; SameSite=None";document.cookie="personalization_id=\"v1_11T/FdTtoIJmNL0e/523Yg==\"; Max-Age=63072000; Expires=Thu, 07 Jan 2027 21:04:30 GMT; Path=/; Domain=.x.com; Secure; SameSite=None";document.cookie="gt=1876736693966864531; Max-Age=9000; Domain=.x.com; Path=/; Secure";
|
URL: https://x.com/?mx=2... Model: Joe Sandbox AI | {
"risk_score": 1,
"reasoning": "The provided JavaScript snippet appears to be a serialized initial state object for a web application. It does not contain any high-risk indicators such as dynamic code execution, data exfiltration, or redirects to malicious domains. The script seems to be setting up the initial state for various application entities and feature switches, which is a common practice in modern web development frameworks. There are no obvious signs of malicious intent, and the script appears to be part of a legitimate application."
} |
window.__INITIAL_STATE__={"optimist":[],"entities":{"broadcasts":{"entities":{},"errors":{},"fetchStatus":{}},"cards":{"entities":{},"errors":{},"fetchStatus":{}},"commerceItems":{"entities":{},"errors":{},"fetchStatus":{}},"communities":{"entities":{},"errors":{},"fetchStatus":{}},"conversations":{"entities":{},"errors":{},"fetchStatus":{}},"entries":{"entities":{},"errors":{},"fetchStatus":{}},"grokShare":{"entities":{},"errors":{},"fetchStatus":{}},"lists":{"entities":{},"errors":{},"fetchStatus":{}},"livestreams":{"entities":{},"errors":{},"fetchStatus":{}},"moments":{"entities":{},"errors":{},"fetchStatus":{}},"topics":{"entities":{},"errors":{},"fetchStatus":{}},"tweets":{"entities":{},"errors":{},"fetchStatus":{}},"articleEntities":{"entities":{},"errors":{},"fetchStatus":{}},"trustedFriends":{"entities":{},"errors":{},"fetchStatus":{}},"userPresence":{"entities":{},"errors":{},"fetchStatus":{}},"userCommunityInviteActionResult":{"entities":{},"errors":{},"fetchStatus":{}},"users":{"entities":{},"errors":{},"fetchStatus":{}},"aitrends":{"entities":{},"errors":{},"fetchStatus":{}},"userCommunityRoleRelationship":{"entities":{},"errors":{},"fetchStatus":{}},"publishedArticles":{"entities":{},"errors":{},"fetchStatus":{}}},"featureSwitch":{"defaultConfig":{"2fa_temporary_password_enabled":{"value":false},"account_country_setting_countries_whitelist":{"value":["ad","ae","af","ag","ai","al","am","ao","ar","as","at","au","aw","ax","az","ba","bb","bd","be","bf","bg","bh","bi","bj","bl","bm","bn","bo","bq","br","bs","bt","bv","bw","by","bz","ca","cc","cd","cf","cg","ch","ci","ck","cl","cm","co","cr","cu","cv","cw","cx","cy","cz","de","dj","dk","dm","do","dz","ec","ee","eg","er","es","et","fi","fj","fk","fm","fo","fr","ga","gb","gd","ge","gf","gg","gh","gi","gl","gm","gn","gp","gq","gr","gs","gt","gu","gw","gy","hk","hn","hr","ht","hu","id","ie","il","im","in","io","iq","ir","is","it","je","jm","jo","jp","ke","kg","kh","ki","km","kn","kr","kw","ky","kz","la","lb","lc","li","lk","lr","ls","lt","lu","lv","ly","ma","mc","md","me","mf","mg","mh","mk","ml","mn","mo","mp","mq","mr","ms","mt","mu","mv","mw","mx","my","mz","na","nc","ne","nf","ng","ni","nl","no","np","nr","nu","nz","om","pa","pe","pf","pg","ph","pk","pl","pm","pn","pr","ps","pt","pw","py","qa","re","ro","rs","ru","rw","sa","sb","sc","se","sg","sh","si","sk","sl","sm","sn","so","sr","st","sv","sx","sz","tc","td","tf","tg","th","tj","tk","tl","tm","tn","to","tr","tt","tv","tw","tz","ua","ug","us","uy","uz","va","vc","ve","vi","vn","vu","wf","ws","xk","ye","yt","za","zm","zw"]},"ads_spacing_client_fallback_minimum_spacing":{"value":3},"ads_spacing_client_fallback_minimum_spacing_verified_blue":{"value":3},"arkose_challenge_lo_web_notification_dev":{"value":"BF5FA6C8-9668-4AF9-AFA2-E362F56E5B71"},"arkose_challenge_lo_web_notification_mobile_prod":{"value":"6A2FD110-7C1A-47CD-82EE-D01FFB4810D7"},"arkose_challenge_lo_web_notification_prod":{"value":"50706BFE-942C-4EEC-B9AD-03F7CD268FB1"},"arkose_challenge_login_web_devel":{"value":"DF58DD3B-DFCC-4502-91FA-EDC0DC385CFF"},"arkose_challenge_login_web_prod":{"value":"2F4F0B28-BC94-4271-8AD7-A51662E3C91C"},"arkose_challenge_open_app_dev":{"value":"560C66A3-C8EB-4D11-BE53-A8232734AA62"},"arkose_challenge_open_app_prod":{"value":"6E8D3D6E-30D4-45F1-9838-BA3D9651AAA1"},"arkose_challenge_signup_mobile_dev":{"value":"006B5E87-7497-403E-9E0C-8FFBAAC6FA67"},"arkose_challenge_signup_mobile_prod":{"value":"867D55F2-24FD-4C56-AB6D-589EDAF5E7C5"},"arkose_challenge_signup_web_dev":{"value":"DF58DD3B-DFCC-4502-91FA-EDC0DC385CFF"},"arkose_challenge_signup_web_prod":{"value":"2CB16598-CB82-4CF7-B332-5990DB66F3AB"},"arkose_challenge_transparent_signup_dev":{"value":"6627C16B-DA60-47A5-85F7-CFF23BD2BE69"},"arkose_challenge_transparent_signup_prod":{"value":"4CB8C8B0-40FF-439C-9D0D-9A389ADA18CB"},"Arkose_rweb_hosted_page":{"value":true},"Arkose_use_invisible_challenge_key":{"value":false},"articles_preview_enabled":{"value":true},"articles_rest_api_ena |
URL: https://abs.twimg.com/responsive-web/client-web/sh... Model: Joe Sandbox AI | {
"risk_score": 3,
"reasoning": "The provided JavaScript snippet appears to be a part of a larger Twitter application. It contains GraphQL queries related to authenticated user's Twitter lists, communities exploration timeline, and communities main page timeline. While the code includes some potentially sensitive information like query IDs and operation names, it does not exhibit any high-risk indicators such as dynamic code execution, data exfiltration, or redirects to malicious domains. The behaviors observed are mostly related to standard application functionality and data fetching, which are common in legitimate web applications. Therefore, this snippet is assessed as low risk."
} |
(self.webpackChunk_twitter_responsive_web=self.webpackChunk_twitter_responsive_web||[]).push([["shared~loader.DashMenu~loader.SideNav~loader.SideNavRedesign~loader.AppModules~loader.DMDrawer~bundle.Grok~bu"],{877944:e=>{e.exports={queryId:"QjN8ZdavFDqxUjNn3r9cig",operationName:"AuthenticatedUserTFLists",operationType:"query",metadata:{featureSwitches:[],fieldToggles:[]}}},641029:e=>{e.exports={queryId:"k8ob36_UqxElbQ88qCKnfg",operationName:"CommunitiesExploreTimeline",operationType:"query",metadata:{featureSwitches:["profile_label_improvements_pcf_label_in_post_enabled","rweb_tipjar_consumption_enabled","responsive_web_graphql_exclude_directive_enabled","verified_phone_label_enabled","creator_subscriptions_tweet_preview_api_enabled","responsive_web_graphql_timeline_navigation_enabled","responsive_web_graphql_skip_user_profile_image_extensions_enabled","premium_content_api_read_enabled","communities_web_enable_tweet_community_results_fetch","c9s_tweet_anatomy_moderator_badge_enabled","responsive_web_grok_analyze_button_fetch_trends_enabled","responsive_web_grok_analyze_post_followups_enabled","responsive_web_grok_share_attachment_enabled","articles_preview_enabled","responsive_web_edit_tweet_api_enabled","graphql_is_translatable_rweb_tweet_is_translatable_enabled","view_counts_everywhere_api_enabled","longform_notetweets_consumption_enabled","responsive_web_twitter_article_tweet_consumption_enabled","tweet_awards_web_tipping_enabled","creator_subscriptions_quote_tweet_preview_enabled","freedom_of_speech_not_reach_fetch_enabled","standardized_nudges_misinfo","tweet_with_visibility_results_prefer_gql_limited_actions_policy_enabled","rweb_video_timestamps_enabled","longform_notetweets_rich_text_read_enabled","longform_notetweets_inline_media_enabled","responsive_web_enhance_cards_enabled"],fieldToggles:["withAuxiliaryUserLabels","withArticleRichContentState","withArticlePlainText","withGrokAnalyze","withDisallowedReplyControls"]}}},535167:e=>{e.exports={queryId:"23kxE5A1XcYMj-9mJM76kw",operationName:"CommunitiesMainDiscoveryModule",operationType:"query",metadata:{featureSwitches:["profile_label_improvements_pcf_label_in_post_enabled","rweb_tipjar_consumption_enabled","responsive_web_graphql_exclude_directive_enabled","verified_phone_label_enabled","creator_subscriptions_tweet_preview_api_enabled","responsive_web_graphql_timeline_navigation_enabled","responsive_web_graphql_skip_user_profile_image_extensions_enabled","premium_content_api_read_enabled","communities_web_enable_tweet_community_results_fetch","c9s_tweet_anatomy_moderator_badge_enabled","responsive_web_grok_analyze_button_fetch_trends_enabled","responsive_web_grok_analyze_post_followups_enabled","responsive_web_grok_share_attachment_enabled","articles_preview_enabled","responsive_web_edit_tweet_api_enabled","graphql_is_translatable_rweb_tweet_is_translatable_enabled","view_counts_everywhere_api_enabled","longform_notetweets_consumption_enabled","responsive_web_twitter_article_tweet_consumption_enabled","tweet_awards_web_tipping_enabled","creator_subscriptions_quote_tweet_preview_enabled","freedom_of_speech_not_reach_fetch_enabled","standardized_nudges_misinfo","tweet_with_visibility_results_prefer_gql_limited_actions_policy_enabled","rweb_video_timestamps_enabled","longform_notetweets_rich_text_read_enabled","longform_notetweets_inline_media_enabled","responsive_web_enhance_cards_enabled"],fieldToggles:["withAuxiliaryUserLabels","withArticleRichContentState","withArticlePlainText","withGrokAnalyze","withDisallowedReplyControls"]}}},551938:e=>{e.exports={queryId:"XWO0Kd4ZPSYKviZiae6YeQ",operationName:"CommunitiesMainPageTimeline",operationType:"query",metadata:{featureSwitches:["profile_label_improvements_pcf_label_in_post_enabled","rweb_tipjar_consumption_enabled","responsive_web_graphql_exclude_directive_enabled","verified_phone_label_enabled","creator_subscriptions_tweet_preview_api_enabled","responsive_web_graphql_timeline_navigation_enabled","responsive_web_graphql_skip_ |
URL: https://x.com/?mx=2... Model: Joe Sandbox AI | {
"risk_score": 2,
"reasoning": "The provided JavaScript snippet appears to be setting cookies for marketing, advertising, and personalization purposes. This is a common practice for websites to track user behavior and provide personalized content. While the use of cookies can raise privacy concerns, the snippet does not exhibit any high-risk indicators such as dynamic code execution, data exfiltration, or redirects to malicious domains. The cookies are being set with appropriate security attributes (Secure, SameSite=None) and expiration dates, indicating a legitimate use case. Therefore, the overall risk score is low."
} |
document.cookie="guest_id_marketing=v1%3A173628385762665632; Max-Age=63072000; Expires=Thu, 07 Jan 2027 21:04:43 GMT; Path=/; Domain=.x.com; Secure; SameSite=None";document.cookie="guest_id_ads=v1%3A173628385762665632; Max-Age=63072000; Expires=Thu, 07 Jan 2027 21:04:43 GMT; Path=/; Domain=.x.com; Secure; SameSite=None";document.cookie="personalization_id=\"v1_+2tQm1VwBwwQHH1j7qJWVw==\"; Max-Age=63072000; Expires=Thu, 07 Jan 2027 21:04:43 GMT; Path=/; Domain=.x.com; Secure; SameSite=None";
|
URL: https://abs.twimg.com/responsive-web/client-web/sh... Model: Joe Sandbox AI | {
"risk_score": 3,
"reasoning": "The provided JavaScript snippet appears to be a part of a larger application that handles logged-out web notifications. It does not contain any high-risk indicators like dynamic code execution, data exfiltration, or suspicious redirects. The script primarily deals with managing the state and status of various notification prompts (in-app, browser, and Arkose) and interacting with the browser's push notification API. While it uses some legacy APIs like `XDomainRequest`, the overall behavior seems to be focused on providing a legitimate notification experience for logged-out users. The script also includes some contextual adjustments, such as reducing the risk score for interactions with trusted domains and analytics-related functionality. Therefore, this script is assessed as low risk with a score of 3."
} |
(self.webpackChunk_twitter_responsive_web=self.webpackChunk_twitter_responsive_web||[]).push([["shared~loader.AppModules~loader.LoggedOutNotifications"],{527021:e=>{e.exports={queryId:"BqIHKmwZKtiUBPi07jKctg",operationName:"EnableLoggedOutWebNotifications",operationType:"mutation",metadata:{featureSwitches:[],fieldToggles:[]}}},288625:(e,t,o)=>{"use strict";o.r(t),o.d(t,{PromptStatus:()=>y,SET_PROMPT_STATUS:()=>_,default:()=>k,fetchLoggedOutNotificationsDataTypes:()=>O,loadLoggedOutNotificationData:()=>F,pushSubscribeLoggedOut:()=>H,resetLoggedOutNotificationState:()=>V,selectArkosePromptStatus:()=>v,selectBrowserPromptStatus:()=>I,selectFetchStatus:()=>K,selectInAppPromptStatus:()=>U,selectIsEligibleForPushPrompt:()=>D,selectLastSeenTimeStamp:()=>C,selectPushNotificationsPromptIsSeen:()=>R,setLastSeenTimeStamp:()=>w,setPromptStatus:()=>h,updatePromptStatus:()=>j,verifyArkoseTokenAndSavePushToken:()=>Q,verifyArkoseTokenAndSavePushTokenActionTypes:()=>N});o(571372);var s=o(472599),r=o(17360),i=o(527021),n=o.n(i),a=o(487760);const c=(e,t)=>{const o=t?.enable_logged_out_web_notifications;return o||(0,s.ZP)("GQL LoggedOutNotifications: Failed to execute EnableLoggedOutWebNotifications",{extra:(0,a.dL)(e)}),(0,r.jB)(e)},p=({apiClient:e,featureSwitches:t})=>({enableLoggedOutWebNotifications:t=>e.graphQL(n(),t,c)});var u=o(366136),S=o(426540),l=o(526853),E=o(753392),m=o(823803),d=o(467935),g=(o(543673),o(240753),o(128399),o(669263));const f=(0,g.ju)("https://x.com");const T="loggedOutNotifications",P="rweb.loggedOutNotifications",_="rweb/loggedOutNotifications/SET_PROMPT_STATUS",b="rweb/loggedOutNotifications/SET_LAST_SEEN_TIMESTAMP",y=Object.freeze({DISMISSED:"dismissed",APPROVED:"approved",NOT_SEEN:"not_seen",SEEN:"seen"}),O=Object.freeze({REQUEST:"rweb/loggedOutNotifications/FETCH_REQUEST",SUCCESS:"rweb/loggedOutNotifications/FETCH_SUCCESS",FAILURE:"rweb/loggedOutNotifications/FETCH_FAILURE"}),N=Object.freeze({REQUEST:"rweb/loggedOutNotifications/SAVE_PUSH_TOKEN_REQUEST",SUCCESS:"rweb/loggedOutNotifications/SAVE_PUSH_TOKEN_SUCCESS",FAILURE:"rweb/loggedOutNotifications/SAVE_PUSH_TOKEN_FAILURE"}),h=(e,t)=>({type:_,payload:{promptType:e,promptStatus:t}}),w=()=>({type:b}),A={inAppPrompt:y.NOT_SEEN,browserPrompt:y.NOT_SEEN,arkosePrompt:y.NOT_SEEN,fetchStatus:m.ZP.NONE};function k(e=A,t){if(!t)return e;switch(t.type){case O.REQUEST:return{...e,fetchStatus:m.ZP.LOADING};case O.FAILURE:return{...e,fetchStatus:m.ZP.FAILED};case O.SUCCESS:return{...e,...t.payload,fetchStatus:m.ZP.LOADED};case _:if(t.payload)return{...e,[t.payload.promptType]:t.payload.promptStatus};break;case b:return{...e,lastSeenTimestamp:Date.now()};default:return e}return e}const L=e=>({type:O.SUCCESS,payload:e}),U=e=>e[T].inAppPrompt,I=e=>e[T].browserPrompt,v=e=>e[T].arkosePrompt,C=e=>e[T].lastSeenTimestamp,K=e=>e[T].fetchStatus,R=e=>U(e)!==y.NOT_SEEN,D=e=>!R(e),F=()=>(e,t,{devicePersistence:o,featureSwitches:s})=>K(t())===m.ZP.LOADED?Promise.resolve():(e({type:O.REQUEST}),o.get(P).then((t=>t?.lastSeenTimestamp&&function({browserPrompt:e,featureSwitches:t,lastSeenTimestamp:o}){if(e!==y.APPROVED&&"denied"!==S.qO()){const e=t.getNumberValue("responsive_web_logged_out_notifications_fatigue_days_count",7);return Date.now()-o>864e5*e}return!1}({featureSwitches:s,lastSeenTimestamp:t.lastSeenTimestamp,browserPrompt:t.browserPrompt})?e(L(A)):e(L(t)))).catch((()=>e({type:O.FAILURE})))),V=()=>(e,t)=>e(L(A)),j=(e,t)=>(o,s,{devicePersistence:r})=>{const i={...s()[T],[e]:t};return r.set(P,i).then((()=>{"inAppPrompt"===e&&t===y.SEEN&&o(w()),o(h(e,t))}))},H=()=>(e,t,{api:o,featureSwitches:s,scribe:r})=>{const i="default"===S.qO(),n={page:"app",section:"permissions",component:"lo_notifications"},a=e=>{i&&r.log({...n,action:e})};return a("impression"),S.pI(!0).then((t=>(a("permissions_granted"),e(j("browserPrompt",y.APPROVED)),Promise.resolve(!0))),(t=>"denied"===S.qO()?(a("permissions_denied"),e(j("browserPrompt",y.DISMISSED)),Promise.resolve(!1)):(a("permissions_error"),e(j("browserPromp |
URL: https://abs.twimg.com/responsive-web/client-web/sh... Model: Joe Sandbox AI | {
"risk_score": 4,
"reasoning": "The provided JavaScript snippet appears to be a part of a larger web application that integrates with the Arkose security challenge system. While the code does not exhibit any clear malicious behaviors, it does contain some moderate-risk indicators that warrant further review:
1. External Data Transmission (+2 points): The code sends user data (e.g., guest ID, OS information, Arkose keys) to external domains as part of the Arkose challenge integration.
2. Fallback Domains (+2 points): The code uses multiple fallback domains for the Arkose challenge, which could potentially include untrusted domains.
3. Aggressive DOM Manipulation (+2 points): The code repeatedly alters the DOM to load and manage the Arkose challenge iframe.
However, the code also exhibits some legitimate context that reduces the overall risk score:
1. Trusted Domains (-1 point): The code interacts with the Arkose domain, which is likely a reputable security provider.
2. Analytics/Telemetry (-2 points): The code's primary purpose appears to be integrating with the Arkose security challenge system, which is a common and legitimate use case.
Overall, the code demonstrates a medium-risk profile due to the external data transmission and fallback domain usage, but the legitimate context of the Arkose integration mitigates the risk to some degree. Further review of the full application context and Arkose integration would be necessary to provide a more comprehensive assessment."
} |
"use strict";(self.webpackChunk_twitter_responsive_web=self.webpackChunk_twitter_responsive_web||[]).push([["shared~loader.AppModules~bundle.Ocf"],{750519:(e,t,n)=>{n.d(t,{QF:()=>i,Qo:()=>l,hZ:()=>o});var r=n(24058);const a="external_referer",s=604800;function o(e){return(0,r.ej)({cookieName:a,featureSwitches:e})}function i(e,t){const n=t&&t.encryptedReferralDetails||"",o=t&&t.encryptedReferer||"",i=t&&void 0!==t.referralType?`${t.referralType}`:"";if(!n&&!o&&!i)return;const l=`${encodeURIComponent(o)}|${i}|${encodeURIComponent(n)}`;(0,r.d8)(a,l,{cookieOptions:{maxAge:s,encode:e=>e},featureSwitches:e})}const l=e=>{const t=o(e);if(t&&t.split("|").length>1){const e=t.split("|");return{encryptedReferer:e[0],referralType:e[1],encryptedReferralDetails:e[2]}}}},658380:(e,t,n)=>{n.r(t),n.d(t,{ArkoseChallengeType:()=>$,ArkoseSecurityChallenge:()=>_,default:()=>C});var r=n(202784),a=n(325686),s=n(973186),o=n(808443),i=n(206149),l=n(348501),c=n(90437),d=n(472599),u=n(470025),f=n(182385),m=n(460673),p=n(437796),h=n(467935);const g="arkose-subtask",k="arkose",b={loadIframe:(e,t,n,r)=>{e.scribe({action:"load",data:{items:[{guest_id:t,os:i.ZP.osString(),arkose_keys:{mobile:n,web:r}}]},element:k,page:g})},loadIframeFailed:(e,t,n,r)=>{e.scribe({action:"fail",data:{items:[{guest_id:t,os:i.ZP.osString(),arkose_keys:{mobile:n,web:r}}]},element:k,page:g})},completeChallenge:(e,t,n,r,a)=>{e.scribe({action:"complete",data:{items:[{guest_id:t,os:i.ZP.osString(),challenge_type:n,arkose_keys:{mobile:r,web:a}}]},element:k,page:g})},suppressedChallenge:(e,t,n,r)=>{e.scribe({action:"show",data:{items:[{guest_id:t,challenge_type:$.passive,os:i.ZP.osString(),arkose_keys:{mobile:n,web:r}}]},element:k,page:g})},shownChallenge:(e,t,n,r)=>{e.scribe({action:"show",data:{items:[{guest_id:t,challenge_type:$.interactive,os:i.ZP.osString(),arkose_keys:{mobile:n,web:r}}]},element:k,page:g})}};var w=n(392160),y=n(687950);function _(e){const{location:t,onChallengeFailed:n}=e,[g,k]=r.useState(!0),[w,y]=r.useState(!1),{featureSwitches:_}=r.useContext(l.rC),C=(0,m.z)(),R=(0,p.v9)(h.OW),M=r.useRef(null),P=r.useRef(null),W=S(t,"publicKey")??"",F=e.mobileKey||S(t,"mobileKey")||W,x=e.webKey||S(t,"webKey")||W,z=e.data||S(t,"data"),V=F?_.getStringValue(F):"",K=x?_.getStringValue(x):"",j=e.shouldVerifyAfterChallengeCompleted||Boolean(t?.query?.verifyOnChallengeCompleted)||!1,N=e.flowToken||S(t,"flowToken")||"",q=Object.freeze({light:"default",dark:"dim",darker:"dark",business:"business"}),L=i.ZP.isWebView()||!("function"==typeof e.onChallengeCompleted),B=L?window.matchMedia("(prefers-color-scheme: dark)")?"dark":"default":q[s.default.theme.paletteName],D=r.useMemo((()=>L||window.innerWidth<A),[L]),[H,Q]=r.useState(D?E:O),[U,J]=r.useState(D?I:A),[G,X]=r.useState($.passive),Y=r.useMemo((()=>D?Math.min(window.innerWidth/I,window.innerHeight/E):1),[D]),ee=t?.query?.guestId,te=r.useMemo((()=>L&&"string"==typeof ee?ee:L?"":R||""),[L,ee,R]);r.useEffect((()=>{M.current=(0,f.Z)({name:"arkose-challenge-load"})}),[]);const ne=t=>{L?u.Z.openApp(t):e.onChallengeCompleted(t)},re=r.useRef((()=>{}));re.current=function(t){if("string"==typeof t.data)try{const n=JSON.parse(t.data);switch(n.eventId){case"challenge-suppressed":b.suppressedChallenge(C,te,F,x),X($.passive);break;case"challenge-shown":b.shownChallenge(C,te,F,x),X($.interactive),k(!1);break;case"challenge-complete":{b.completeChallenge(C,te,G,F,x),P.current?.end({endMessage:`mobile key:${F}, web key:${x}, challenge type: ${G}`}),P.current=null;const t=`${T}?access_token=${n.payload.sessionToken}`,r=n.payload.sessionToken;j?e.verifyIdentifier({arkose_access_token:r,flow_token:N}).then((e=>{ne(t)})).catch((e=>{ne(t)})):ne(t);break}case"challenge-iframeSize":Q(n.payload.frameHeight),J(n.payload.frameWidth)}}catch(e){(0,d.ZP)(e)}},r.useEffect((()=>{function e(...e){re.current(...e)}return window.addEventListener("message",e,!1),()=>{window.removeEventListener("message",e,!1)}}),[]);const ae=r.useRef((()=>{}));ae.current=function(){b.loadIfram |
URL: https://x.com Model: Joe Sandbox AI | {
"typosquatting": false,
"unusual_query_string": false,
"suspicious_tld": false,
"ip_in_url": false,
"long_subdomain": false,
"malicious_keywords": false,
"encoded_characters": false,
"redirection": false,
"contains_email_address": false,
"known_domain": true,
"brand_spoofing_attempt": false,
"third_party_hosting": false
} |
URL: https://x.com |
URL: https://x.com/?mx=2 Model: Joe Sandbox AI | {
"contains_trigger_text": false,
"trigger_text": "unknown",
"prominent_button_name": "Refresh",
"text_input_field_labels": "unknown",
"pdf_icon_visible": false,
"has_visible_captcha": false,
"has_urgent_text": false,
"has_visible_qrcode": false,
"contains_chinese_text": false,
"contains_fake_security_alerts": false
} |
|
URL: https://abs.twimg.com/responsive-web/client-web/ve... Model: Joe Sandbox AI | ```json
{
"risk_score": 1,
"reasoning": "The script appears to be part of a larger application, likely related to Twitter's responsive web interface. It does not exhibit any high-risk behaviors such as dynamic code execution, data exfiltration, or redirects to suspicious domains. The code primarily involves module management and context handling, which are typical for web applications. There are no indicators of malicious intent or aggressive behaviors."
} |
window.__SCRIPTS_LOADED__.runtime&&((self.webpackChunk_twitter_responsive_web=self.webpackChunk_twitter_responsive_web||[]).push([["vendor"],{186706:(e,t,r)=>{"use strict";r.d(t,{zt:()=>Z,$j:()=>V,I0:()=>Y,v9:()=>b,oR:()=>W});var n=r(743100),a=r(341110),i=r(928316);let o=function(e){e()};const u=()=>o;var s=r(202784);const l=Symbol.for("react-redux-context"),c="undefined"!=typeof globalThis?globalThis:{};function d(){var e;if(!s.createContext)return{};const t=null!=(e=c[l])?e:c[l]=new Map;let r=t.get(s.createContext);return r||(r=s.createContext(null),t.set(s.createContext,r)),r}const f=d();function p(e=f){return function(){return(0,s.useContext)(e)}}const h=p(),v=()=>{throw new Error("uSES not initialized!")};let g=v;const m=(e,t)=>e===t;function y(e=f){const t=e===f?h:p(e);return function(e,r={}){const{equalityFn:n=m,stabilityCheck:a,noopCheck:i}="function"==typeof r?{equalityFn:r}:r;const{store:o,subscription:u,getServerState:l,stabilityCheck:c,noopCheck:d}=t(),f=((0,s.useRef)(!0),(0,s.useCallback)({[e.name]:t=>e(t)}[e.name],[e,c,a])),p=g(u.addNestedSub,o.getState,l||o.getState,f,n);return(0,s.useDebugValue)(p),p}}const b=y();var _=r(807896),S=r(231461),E=r(373463),k=r.n(E),w=r(372973);const R=["initMapStateToProps","initMapDispatchToProps","initMergeProps"];function x(e,t,r,n,{areStatesEqual:a,areOwnPropsEqual:i,areStatePropsEqual:o}){let u,s,l,c,d,f=!1;function p(f,p){const h=!i(p,s),v=!a(f,u,p,s);return u=f,s=p,h&&v?(l=e(u,s),t.dependsOnOwnProps&&(c=t(n,s)),d=r(l,c,s),d):h?(e.dependsOnOwnProps&&(l=e(u,s)),t.dependsOnOwnProps&&(c=t(n,s)),d=r(l,c,s),d):v?function(){const t=e(u,s),n=!o(t,l);return l=t,n&&(d=r(l,c,s)),d}():d}return function(a,i){return f?p(a,i):(u=a,s=i,l=e(u,s),c=t(n,s),d=r(l,c,s),f=!0,d)}}function T(e){return function(t){const r=e(t);function n(){return r}return n.dependsOnOwnProps=!1,n}}function C(e){return e.dependsOnOwnProps?Boolean(e.dependsOnOwnProps):1!==e.length}function P(e,t){return function(t,{displayName:r}){const n=function(e,t){return n.dependsOnOwnProps?n.mapToProps(e,t):n.mapToProps(e,void 0)};return n.dependsOnOwnProps=!0,n.mapToProps=function(t,r){n.mapToProps=e,n.dependsOnOwnProps=C(e);let a=n(t,r);return"function"==typeof a&&(n.mapToProps=a,n.dependsOnOwnProps=C(a),a=n(t,r)),a},n}}function O(e,t){return(r,n)=>{throw new Error(`Invalid value of type ${typeof e} for ${t} argument when connecting component ${n.wrappedComponentName}.`)}}function I(e,t,r){return(0,_.Z)({},r,e,t)}const D={notify(){},get:()=>[]};function A(e,t){let r,n=D,a=0,i=!1;function o(){c.onStateChange&&c.onStateChange()}function s(){a++,r||(r=t?t.addNestedSub(o):e.subscribe(o),n=function(){const e=u();let t=null,r=null;return{clear(){t=null,r=null},notify(){e((()=>{let e=t;for(;e;)e.callback(),e=e.next}))},get(){let e=[],r=t;for(;r;)e.push(r),r=r.next;return e},subscribe(e){let n=!0,a=r={callback:e,next:null,prev:r};return a.prev?a.prev.next=a:t=a,function(){n&&null!==t&&(n=!1,a.next?a.next.prev=a.prev:r=a.prev,a.prev?a.prev.next=a.next:t=a.next)}}}}())}function l(){a--,r&&0===a&&(r(),r=void 0,n.clear(),n=D)}const c={addNestedSub:function(e){s();const t=n.subscribe(e);let r=!1;return()=>{r||(r=!0,t(),l())}},notifyNestedSubs:function(){n.notify()},handleChangeWrapper:o,isSubscribed:function(){return i},trySubscribe:function(){i||(i=!0,s())},tryUnsubscribe:function(){i&&(i=!1,l())},getListeners:()=>n};return c}const N=!("undefined"==typeof window||void 0===window.document||void 0===window.document.createElement)?s.useLayoutEffect:s.useEffect;function F(e,t){return e===t?0!==e||0!==t||1/e==1/t:e!=e&&t!=t}function L(e,t){if(F(e,t))return!0;if("object"!=typeof e||null===e||"object"!=typeof t||null===t)return!1;const r=Object.keys(e),n=Object.keys(t);if(r.length!==n.length)return!1;for(let n=0;n<r.length;n++)if(!Object.prototype.hasOwnProperty.call(t,r[n])||!F(e[r[n]],t[r[n]]))return!1;return!0}const M=["reactReduxForwardedRef"];let z=v;const U=[null,null];function j(e,t,r,n,a,i){e.current=n,r.current=!1,a.current&&(a.current=null |
URL: https://abs.twimg.com/responsive-web/client-web/on... Model: Joe Sandbox AI | ```json
{
"risk_score": 6,
"reasoning": "The script contains obfuscated code, which is a high-risk indicator (+3 points). It also uses dynamic code execution techniques, such as function constructors, which are another high-risk indicator (+3 points). The script does not show clear intent of data exfiltration or redirection to suspicious domains, but the obfuscation and dynamic execution suggest potentially malicious behavior."
} |
"use strict";(self.webpackChunk_twitter_responsive_web=self.webpackChunk_twitter_responsive_web||[]).push([["ondemand.s"],{471269:(n,t,W)=>{W.r(t),W.d(t,{default:()=>o});W(136728),W(875640);function r(n,t){const W=c();return r=function(t,o){let c=W[t-=271];if(void 0===r.NEYPMQ){const t=function(n,t){let W,r,o=[],c=0,u="";for(n=function(n){let t="",W="";for(let W,r,o=0,c=0;r=n.charAt(c++);~r&&(W=o%4?64*W+r:r,o++%4)?t+=String.fromCharCode(255&W>>(-2*o&6)):0)r="abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789+/=".indexOf(r);for(let n=0,r=t.length;n<r;n++)W+="%"+("00"+t.charCodeAt(n).toString(16)).slice(-2);return decodeURIComponent(W)}(n),r=0;r<256;r++)o[r]=r;for(r=0;r<256;r++)c=(c+o[r]+t.charCodeAt(r%t.length))%256,W=o[r],o[r]=o[c],o[c]=W;r=0,c=0;for(let t=0;t<n.length;t++)r=(r+1)%256,c=(c+o[r])%256,W=o[r],o[r]=o[c],o[c]=W,u+=String.fromCharCode(n.charCodeAt(t)^o[(o[r]+o[c])%256]);return u};r.ZsEZpY=t,n=arguments,r.NEYPMQ=!0}const u=t+W[0],e=n[u];return e?c=e:(void 0===r.DEXXmf&&(r.DEXXmf=!0),c=r.ZsEZpY(c,o),n[u]=c),c},r(n,t)}!function(n,t){const W="E@H@",o=275,c="CPUg",u="v2p$",e=1271,f="fGrn",d=1153,i="nx0A",a=1172,k=1346,S=1212,s=97,C=403,O=494,Q=26,p=869,K=562;function m(n,t,W,o,c){return r(n- -K,W)}function G(n,t,W,o,c){return r(c-p,W)}function I(n,t,W,o,c){return r(t-Q,o)}const P=n();function R(n,t,W,o,c){return r(n-O,c)}for(;;)try{if(761184===parseInt(G(0,0,"nx0A",0,1361))/1+parseInt(R(947,0,0,0,W))/2*(parseInt(m(-o,0,c))/3)+-parseInt(G(0,0,u,0,e))/4*(-parseInt(G(0,0,f,0,d))/5)+parseInt(G(0,0,i,0,1385))/6*(-parseInt(G(0,0,"Oarj",0,a))/7)+parseInt(G(0,0,"IK##",0,k))/8*(parseInt(G(0,0,"K&KG",0,1241))/9)+parseInt(m(-s,0,"^IsG"))/10*(parseInt(I(0,C,0,"Pswt"))/11)+-parseInt(G(0,0,"FpMV",0,S))/12)break;P.push(P.shift())}catch(n){P.push(P.shift())}}(c);const o=()=>{const n=477,t=643,W=782,o=566,c=630,u=39,e=136,f="P#pK",d=11,i=19,a="4g8X",k=1509,S=1418,s=325,C="j93f",O=277,Q=351,p=473,K="Y9%4",m=369,G=1350,I=1221,P=1495,R=1245,h=606,q=559,g=203,l=1373,v=1229,w=1417,b=1251,E=472,y=148,j=107,N=336,x="icKl",J=379,H=1383,F=81,U=80,Z=15,T="zKr4",X=230,M=24,L=567,V=763,z=172,B=189,A=163,D=320,Y=326,$=513,_=681,nn=89,tn=130,Wn="E@H@",rn=33,on=352,cn="IK##",un=285,en=682,fn=195,dn="8gE*",an=575,kn=349,Sn=294,sn=376,Cn=330,On="Pswt",Qn=1246,pn=541,Kn=668,mn=629,Gn="y0bW",In=391,Pn=448,Rn=1399,hn=1276,qn="Oarj",gn=587,ln="rIsa",vn=239,wn="rIsa",bn="4g8X",En="#l6(",yn="Et]7",jn=335,Nn=1472,xn="j93f",Jn=367,Hn=1247,Fn="w&#p",Un="^GUa",Zn=237,Tn=1245,Xn="zKr4",Mn=205,Ln="0f[P",Vn="ZQnr",zn="CP#4",Bn="8gE*",An=1114,Dn="IK##",Yn="IK##",$n=7,_n=168,nt=223,tt=131,Wt="rIsa",rt=100,ot=42,ct=21,ut="v6KT",et=99,ft=84,dt=114,it="xka(",at="@w%f",kt="OKyk",St="y2$f",st=30,Ct="p75h",Ot="8gE*",Qt=450,pt="nx0A",Kt="44eT",mt=107,Gt="zKr4",It=354,Pt=288,Rt="hSST",ht=396,qt=477,gt=1,lt="icKl",vt=331,wt="xka(",bt=80,Et=436,yt=423,jt=227,Nt="Y9%4",xt=150,Jt=455,Ht=202,Ft="5*$m",Ut=171,Zt="hSST",Tt=578,Xt=604,Mt="CP#4",Lt=74,Vt="juvM",zt="ZQnr",Bt=919,At=954,Dt=")En#",Yt=817,$t="#l6(",_t=144,nW=165,tW="fGrn",WW=143,rW=151,oW=101,cW=279,uW=986,eW=862,fW="Qptj",dW=89,iW="rIsa",aW=838,kW=661,SW=717,sW=688,CW="OKyk",OW=807,QW=657,pW="Et]7",KW="4g8X",mW=1460,GW=640,IW=361,PW=359,RW=861,hW=791,qW=893,gW=881,lW="nx0A",vW=761,wW=722,bW=672,EW=627,yW=662,jW=")En#",NW=213,xW="Pswt",JW=182,HW=65,FW="xka(",UW=56,ZW=157,TW=69,XW=22,MW=599,LW=1216,VW="w&#p",zW=30,BW=218,AW="0f[P",DW=293,YW=239,$W="Et]7",_W=1387,nr=192,tr=1282,Wr="y0bW",rr=79,or=189,cr="v2p$",ur=21,er="juvM",fr=106,dr=432,ir=467,ar=429,kr="5*$m",Sr=482,sr=1096,Cr=992,Or="zKr4",Qr=393,pr="ZQnr",Kr=316,mr=261,Gr="^IsG",Ir=771,Pr="#l6(",Rr=1026,hr=916,qr=250,gr="IK##",lr=1008,vr=1386,wr="ZdtO",br=995,Er="Pswt",yr=644,jr=527,Nr="8gE*",xr=1393,Jr="FpMV",Hr=683,Fr=396,Ur=150,Zr=138,Tr=41,Xr=140,Mr=1425,Lr=322,Vr=950,zr=268,Br=110,Ar=342,Dr={dvwJB:Lo(542,677,"ZQnr",606,n),tmXsZ:function(n,t){return n===t},GwEZM:Lo(t,W,"4g8X",o,c),druin:function(n,t){return n(t)},hSvTS:function(n,t){return n*t},bUJCk:functi |
URL: https://x.com/?mx=2 Model: Joe Sandbox AI | {
"brands": "unknown"
} |
|
URL: https://abs.twimg.com/responsive-web/client-web/sh... Model: Joe Sandbox AI | ```json
{
"risk_score": 1,
"reasoning": "The script appears to be part of a legitimate application, likely related to Twitter's subscription services. It involves GraphQL queries and mutations for managing subscription details and checkout URLs. There are no high-risk indicators such as dynamic code execution or data exfiltration. The use of GraphQL and feature switches suggests a structured approach to API interactions, typical for modern web applications. No interactions with suspicious domains or obfuscated code were observed."
} |
(self.webpackChunk_twitter_responsive_web=self.webpackChunk_twitter_responsive_web||[]).push([["shared~loader.AppModules~ondemand.SettingsRevamp~bundle.NotABot~bundle.TwitterBlue"],{410926:t=>{t.exports={queryId:"I5Al47wpRsKQ2gp0W749Yw",operationName:"ListProductSubscriptions",operationType:"query",metadata:{featureSwitches:[],fieldToggles:[]}}},74115:t=>{t.exports={queryId:"RM4x9h3tF8bCn69VV3-gRg",operationName:"NotABotCheckoutUrlWithEligibility",operationType:"mutation",metadata:{featureSwitches:[],fieldToggles:[]}}},465926:t=>{t.exports={queryId:"-kH-xt82ZhKnAMTXv1Fuzg",operationName:"SubscriptionCheckoutUrlWithEligibility",operationType:"mutation",metadata:{featureSwitches:[],fieldToggles:[]}}},88220:t=>{t.exports={queryId:"RxcPLZAkZ4nT26phAUJi5Q",operationName:"SubscriptionProductDetails",operationType:"query",metadata:{featureSwitches:["subscriptions_marketing_page_fetch_promotions"],fieldToggles:[]}}},799388:t=>{t.exports={queryId:"NEMw3cw4v0-Oo-nTMI8reQ",operationName:"SwitchTier",operationType:"mutation",metadata:{featureSwitches:[],fieldToggles:[]}}},6420:(t,e,r)=>{"use strict";r.d(e,{hu:()=>k,v1:()=>g,qB:()=>Z,Ne:()=>F,F$:()=>w,$B:()=>N,pC:()=>A,dF:()=>L,VR:()=>y,h9:()=>f,tF:()=>O,RC:()=>D,xN:()=>x});var s=r(410926),c=r.n(s),i=r(74115),o=r.n(i),n=r(465926),u=r.n(n),a=r(88220),p=r.n(a),S=r(799388),d=r.n(S);const _=({apiClient:t,featureSwitches:e})=>({fetchSubscriptionProductDetails:e=>t.graphQL(p(),e).then((t=>t.web_subscription_product_details)),fetchSubscriptionProductCheckoutUrl:e=>t.graphQL(u(),e).then((t=>t.subscriptioncheckoutsession_create_for_blue?.session_url)),fetchNotABotCheckoutUrl:e=>t.graphQL(o(),e).then((t=>t.subscriptioncheckoutsession_create_for_not_a_bot?.session_url)),fetchProductSubscriptions:e=>t.graphQL(c(),e).then((t=>t.viewer_v2?.list_product_subscriptions)),switchTier:e=>t.graphQL(d(),e).then((t=>t))});var E=r(745313),T=r(526853),U=r(753392),l=r(823803);const h="subscriptionPayments",C="FETCH_SUBSCRIPTION_PRODUCT_CHECKOUT_URL",P=Object.freeze({REQUEST:"rweb/subscriptionPayments/FETCH_SUBSCRIPTION_PRODUCT_DETAILS_REQUEST",SUCCESS:"rweb/subscriptionPayments/FETCH_SUBSCRIPTION_PRODUCT_DETAILS_SUCCESS",FAILURE:"rweb/subscriptionPayments/FETCH_SUBSCRIPTION_PRODUCT_DETAILS_FAILURE"}),I=Object.freeze({REQUEST:"rweb/subscriptionPayments/FETCH_SUBSCRIPTION_PRODUCT_CHECKOUT_URL_REQUEST",SUCCESS:"rweb/subscriptionPayments/FETCH_SUBSCRIPTION_PRODUCT_CHECKOUT_URL_SUCCESS",FAILURE:"rweb/subscriptionPayments/FETCH_SUBSCRIPTION_PRODUCT_CHECKOUT_URL_FAILURE"}),b=Object.freeze({REQUEST:"rweb/subscriptionPayments/FETCH_PRODUCT_SUBSCRIPTIONS_REQUEST",SUCCESS:"rweb/subscriptionPayments/FETCH_PRODUCT_SUBSCRIPTIONS_SUCCESS",FAILURE:"rweb/subscriptionPayments/FETCH_PRODUCT_SUBSCRIPTIONS_FAILURE"}),m=Object.freeze({REQUEST:"rweb/subscriptionPayments/TIER_SWITCH_REQUEST",SUCCESS:"rweb/subscriptionPayments/TIER_SWITCH_SUCCESS",FAILURE:"rweb/subscriptionPayments/TIER_SWITCH_FAILURE"}),R={products:{},checkoutUrls:{},productSubscriptions:{fetchStatus:l.ZP.NONE},switchTier:{fetchStatus:l.ZP.NONE}};const O=(t,e)=>{const r=t[h].products[e];return r?.fetchStatus||l.ZP.NONE},f=(t,e)=>{const r=t[h].products[e];return r?.details},N=(t,e)=>{const r=t[h].checkoutUrls[e];return r?.fetchStatus||l.ZP.NONE},w=(t,e)=>{const r=t[h].checkoutUrls[e];return r?.checkoutUrl},y=t=>t[h].productSubscriptions.fetchStatus,A=t=>(t[h].productSubscriptions.subscriptions||[]).find((t=>t.product?.rest_id&&("one-dollar-1"===t.product?.rest_id||"one-dollar-subscription"===t.product?.rest_id||"one-dollar-1-sandbox"===t.product?.rest_id)&&"Inactive"!==t.state)),L=t=>{const e=t[h].productSubscriptions.subscriptions||[],r=e.find((t=>t.product?.rest_id&&E.v5.premium[t.product?.rest_id]&&"Inactive"!==t.state&&"Stripe"===t.payment_source)),s=e.find((t=>t.product?.rest_id&&E.v5.premium[t.product?.rest_id]&&"Inactive"!==t.state&&"Twitter"!==t.payment_source&&"Ads"!==t.payment_source)),c=e.find((t=>t.product?.rest_id&&E.v5.premium[t.product?.rest_id]&&"Inactive"!==t. |
URL: http://0zcur91l1.centralshallow.top/contactos Model: Joe Sandbox AI | {
"contains_trigger_text": false,
"trigger_text": "unknown",
"prominent_button_name": "unknown",
"text_input_field_labels": "unknown",
"pdf_icon_visible": false,
"has_visible_captcha": false,
"has_urgent_text": false,
"has_visible_qrcode": false,
"contains_chinese_text": false,
"contains_fake_security_alerts": false
} |
|
URL: http://0zcur91l1.centralshallow.top/contactos Model: Joe Sandbox AI | {
"brands": "unknown"
} |
|
URL: http://0zcur91l1.centralshallow.top Model: Joe Sandbox AI | {
"typosquatting": true,
"unusual_query_string": false,
"suspicious_tld": true,
"ip_in_url": false,
"long_subdomain": true,
"malicious_keywords": false,
"encoded_characters": false,
"redirection": false,
"contains_email_address": false,
"known_domain": false,
"brand_spoofing_attempt": false,
"third_party_hosting": true
} |
URL: http://0zcur91l1.centralshallow.top |