IOC Report
https://onoff.vn/blog/wp-content/builds/app/smserror2.php

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Aug 27 21:53:35 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Aug 27 21:53:35 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Aug 27 21:53:35 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Aug 27 21:53:35 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Aug 27 21:53:35 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 129
HTML document, ASCII text
dropped
Chrome Cache Entry: 130
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 131
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=22, height=3648, bps=0, PhotometricIntepretation=RGB, description=myGov sign in screen on mobile phone, manufacturer=Canon, model=Canon EOS 7D Mark II, orientation=upper-left, width=5472], baseline, precision 8, 1200x800, components 3
dropped
Chrome Cache Entry: 132
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 133
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 134
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 135
HTML document, ASCII text
dropped
Chrome Cache Entry: 136
ASCII text, with very long lines (544)
downloaded
Chrome Cache Entry: 137
Web Open Font Format (Version 2), TrueType, length 18536, version 1.0
downloaded
Chrome Cache Entry: 138
HTML document, ASCII text
dropped
Chrome Cache Entry: 139
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 140
ASCII text, with very long lines (521), with no line terminators
downloaded
Chrome Cache Entry: 141
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 142
HTML document, ASCII text
dropped
Chrome Cache Entry: 143
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=22, height=3648, bps=0, PhotometricIntepretation=RGB, description=myGov sign in screen on mobile phone, manufacturer=Canon, model=Canon EOS 7D Mark II, orientation=upper-left, width=5472], baseline, precision 8, 1200x800, components 3
downloaded
Chrome Cache Entry: 144
ASCII text, with very long lines (32740)
dropped
Chrome Cache Entry: 145
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=1, description=Person working at a desk holding a paper receipt in their left hand while their right hand is resting on the keyboard of a lapt], baseline, precision 8, 800x533, components 3
downloaded
Chrome Cache Entry: 146
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 147
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 148
Web Open Font Format (Version 2), TrueType, length 15920, version 1.0
downloaded
Chrome Cache Entry: 149
ASCII text, with very long lines (59825)
downloaded
Chrome Cache Entry: 150
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 151
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=7, description=A young person in activewear with a prosthetic leg in a gym using their smart phone], baseline, precision 8, 800x533, components 3
dropped
Chrome Cache Entry: 152
ASCII text, with very long lines (18312)
dropped
Chrome Cache Entry: 153
HTML document, ASCII text
dropped
Chrome Cache Entry: 154
ASCII text, with very long lines (756), with no line terminators
downloaded
Chrome Cache Entry: 155
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 156
ASCII text, with very long lines (18312)
downloaded
Chrome Cache Entry: 157
ASCII text
downloaded
Chrome Cache Entry: 158
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 159
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 160
ASCII text
downloaded
Chrome Cache Entry: 161
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=1, description=Person holding smart mobile phone in their right hand with a phishing text message displayed on the screen with a big red 'scam], baseline, precision 8, 800x533, components 3
downloaded
Chrome Cache Entry: 162
ASCII text, with very long lines (1560), with no line terminators
downloaded
Chrome Cache Entry: 163
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=7, description=A young person in activewear with a prosthetic leg in a gym using their smart phone], baseline, precision 8, 800x533, components 3
downloaded
Chrome Cache Entry: 164
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 165
HTML document, Unicode text, UTF-8 text, with very long lines (21867)
downloaded
Chrome Cache Entry: 166
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 167
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 1360x765, components 3
downloaded
Chrome Cache Entry: 168
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 169
HTML document, ASCII text
dropped
Chrome Cache Entry: 170
HTML document, ASCII text
dropped
Chrome Cache Entry: 171
HTML document, ASCII text
dropped
Chrome Cache Entry: 172
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 173
HTML document, ASCII text
dropped
Chrome Cache Entry: 174
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 175
HTML document, Unicode text, UTF-8 text, with very long lines (21867)
downloaded
Chrome Cache Entry: 176
Web Open Font Format (Version 2), TrueType, length 18492, version 1.0
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (2343)
dropped
Chrome Cache Entry: 178
JPEG image data, JFIF standard 1.01, resolution (DPI), density 300x300, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=21, height=6582, bps=0, compression=LZW, PhotometricIntepretation=RGB, description=Mother with child in school uniform, orientation=upper-left, width=4388], baseline, precision 8, 1200x793, components 3
downloaded
Chrome Cache Entry: 179
ASCII text, with very long lines (455)
downloaded
Chrome Cache Entry: 180
ASCII text, with very long lines (565)
downloaded
Chrome Cache Entry: 181
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 182
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=1, description=Mental health professional consulting with a young person in an office], progressive, precision 8, 800x533, components 3
downloaded
Chrome Cache Entry: 183
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=7, description=Two people holding both of each others hands in a supporting way], baseline, precision 8, 800x533, components 3
dropped
Chrome Cache Entry: 184
ASCII text, with very long lines (643)
downloaded
Chrome Cache Entry: 185
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 186
ASCII text, with very long lines (511)
downloaded
Chrome Cache Entry: 187
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 188
HTML document, ASCII text
dropped
Chrome Cache Entry: 189
HTML document, ASCII text
dropped
Chrome Cache Entry: 190
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 191
PNG image data, 177 x 37, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 192
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=1, description=Mental health professional consulting with a young person in an office], progressive, precision 8, 800x533, components 3
dropped
Chrome Cache Entry: 193
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 194
HTML document, ASCII text
dropped
Chrome Cache Entry: 195
HTML document, ASCII text
dropped
Chrome Cache Entry: 196
JPEG image data, JFIF standard 1.01, resolution (DPI), density 300x300, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=21, height=6582, bps=0, compression=LZW, PhotometricIntepretation=RGB, description=Mother with child in school uniform, orientation=upper-left, width=4388], baseline, precision 8, 1200x793, components 3
dropped
Chrome Cache Entry: 197
HTML document, ASCII text
dropped
Chrome Cache Entry: 198
HTML document, ASCII text
dropped
Chrome Cache Entry: 199
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 200
HTML document, Unicode text, UTF-8 text, with very long lines (21867)
downloaded
Chrome Cache Entry: 201
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 202
ASCII text, with very long lines (1560), with no line terminators
dropped
Chrome Cache Entry: 203
HTML document, ASCII text
dropped
Chrome Cache Entry: 204
HTML document, ASCII text
dropped
Chrome Cache Entry: 205
HTML document, ASCII text
dropped
Chrome Cache Entry: 206
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=7, description=Two people holding both of each others hands in a supporting way], baseline, precision 8, 800x533, components 3
downloaded
Chrome Cache Entry: 207
ASCII text, with very long lines (455)
dropped
Chrome Cache Entry: 208
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=7, description=A carer assisting an elderly person with documentation, sitting in a chair in a kitchen], baseline, precision 8, 800x533, components 3
downloaded
Chrome Cache Entry: 209
ASCII text, with very long lines (32058)
dropped
Chrome Cache Entry: 210
ASCII text, with very long lines (1629)
dropped
Chrome Cache Entry: 211
ASCII text, with very long lines (2022), with no line terminators
downloaded
Chrome Cache Entry: 212
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=1, description=Person holding smart mobile phone in their right hand with a phishing text message displayed on the screen with a big red 'scam], baseline, precision 8, 800x533, components 3
dropped
Chrome Cache Entry: 213
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 214
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 215
Web Open Font Format (Version 2), TrueType, length 18596, version 1.0
downloaded
Chrome Cache Entry: 216
ASCII text, with very long lines (32058)
downloaded
Chrome Cache Entry: 217
HTML document, ASCII text
dropped
Chrome Cache Entry: 218
HTML document, Unicode text, UTF-8 text, with very long lines (21867)
downloaded
Chrome Cache Entry: 219
HTML document, ASCII text
dropped
Chrome Cache Entry: 220
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 221
HTML document, ASCII text
dropped
Chrome Cache Entry: 222
HTML document, ASCII text
dropped
Chrome Cache Entry: 223
HTML document, ASCII text
dropped
Chrome Cache Entry: 224
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 225
Web Open Font Format (Version 2), TrueType, length 18588, version 1.0
downloaded
Chrome Cache Entry: 226
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 227
ASCII text, with very long lines (649)
downloaded
Chrome Cache Entry: 228
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 229
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 230
HTML document, ASCII text
dropped
Chrome Cache Entry: 231
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 232
Unicode text, UTF-8 text, with very long lines (38888)
downloaded
Chrome Cache Entry: 233
PNG image data, 177 x 37, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 234
HTML document, ASCII text
dropped
Chrome Cache Entry: 235
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 236
Web Open Font Format (Version 2), TrueType, length 15860, version 1.0
downloaded
Chrome Cache Entry: 237
ASCII text
downloaded
Chrome Cache Entry: 238
MS Windows icon resource - 5 icons, 16x16, 32 bits/pixel, 24x24, 32 bits/pixel
downloaded
Chrome Cache Entry: 239
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=7, description=A carer assisting an elderly person with documentation, sitting in a chair in a kitchen], baseline, precision 8, 800x533, components 3
dropped
Chrome Cache Entry: 240
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 241
HTML document, ASCII text
dropped
Chrome Cache Entry: 242
ASCII text, with very long lines (985), with no line terminators
downloaded
Chrome Cache Entry: 243
Unicode text, UTF-8 text, with very long lines (1608)
downloaded
Chrome Cache Entry: 244
HTML document, Unicode text, UTF-8 text, with very long lines (21867)
downloaded
Chrome Cache Entry: 245
HTML document, ASCII text
dropped
Chrome Cache Entry: 246
ASCII text, with very long lines (32740)
downloaded
Chrome Cache Entry: 247
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=1, description=Person working at a desk holding a paper receipt in their left hand while their right hand is resting on the keyboard of a lapt], baseline, precision 8, 800x533, components 3
dropped
Chrome Cache Entry: 248
Web Open Font Format (Version 2), TrueType, length 15744, version 1.0
downloaded
Chrome Cache Entry: 249
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 250
HTML document, ASCII text
dropped
Chrome Cache Entry: 251
ASCII text, with very long lines (1629)
downloaded
Chrome Cache Entry: 252
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 1360x765, components 3
dropped
Chrome Cache Entry: 253
MS Windows icon resource - 5 icons, 16x16, 32 bits/pixel, 24x24, 32 bits/pixel
dropped
There are 122 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2420 --field-trial-handle=2340,i,10831307283212544128,12976316321271097588,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://onoff.vn/blog/wp-content/builds/app/smserror2.php"

URLs

Name
IP
Malicious
https://onoff.vn/blog/wp-content/builds/app/smserror2.php
malicious
https://onoff.vn/LoginServices/main/rb_6de8e2e9-6719-45b3-86be-7effcb9f6525?type=js3&sn=v_4_srv_-2D54_sn_P0GPFT08UPLD2CTJS1GKRQ2BT20L3IT9&svrid=-54&flavor=post&vi=CPHUAPMSUUPVMTPUIDTOTKQKPVKQNTKT-0&modifiedSince=1664408259780&rf=https%3A%2F%2Fonoff.vn%2Fblog%2Fwp-content%2Fbuilds%2Fapp%2Fsmserror2.php&bp=3&app=5f15dc81410a75c1&crc=2982975378&en=gpalpirq&end=1
103.157.218.106
malicious
https://my.gov.au/en/about/copyright
https://my.gov.au/content/dam/mygov/icons/shared/mygov-icons//logo_you_tube.svg
18.239.36.116
https://login.my.gov.au/mga/sps/apiauthsvc/policy/virtualassistant"
unknown
https://my.gov.au/en/services/health-and-disability/caring-for-someone/_jcr_content/_cq_featuredimage.coreimg.82.1360.jpeg/1718156894250/caring-for-someone-life-event.jpeg
18.239.36.116
https://my.gov.au/etc/clientlibs/dtm-reactor/ENa69e9337c93f4637bb73b8b41a20e64d/6e780ef169d7/db51359
unknown
https://my.gov.au/etc.clientlibs/mygov-common/clientlibs/mygov.gui.kit.min.ACSHASH37bccdc1c1507a2f2318eb949d0233eb.js
18.239.36.116
https://login.my.gov.au/mygov/content/mgv2/icons/favicon-32x32.png
161.146.235.204
https://my.gov.au
unknown
https://my.gov.au/logout-redirect
unknown
http://brandtoolbox.com.au2022:10:12
unknown
https://my.gov.au/etc.clientlibs/servicesaustralia-fed/clientlibs/imported.min.ACSHASH20a1bb90d979328008a55bc417ce6374.js
18.239.36.116
https://my.gov.au/en/services/work/currently-employed/tax-when-you-work/getting-ready-for-tax-time/_jcr_content/_cq_featuredimage.coreimg.82.1360.jpeg/1718674836196/getting-ready-for-tax-time-feature-tile.jpeg
18.239.36.116
https://login.my.gov.au/las/mygov-login?execution=e1s2
161.146.235.204
https://login.my.gov.au
unknown
https://ampcid.google.com/v1/publisher:getClientId
unknown
https://login.my.gov.au/mga/sps/authsvc/policy/slo
unknown
https://my.gov.au/
https://www.google.com
unknown
https://www.youtube.com/iframe_api
unknown
https://my.gov.au/content/dam/mygov/images/brand/logos/myGov-logo-cobranded-black.svg
18.239.36.116
https://twitter.com/mygovau
unknown
https://onoff.vn/blog/wp-content/builds/app/smsone_files/css
103.157.218.106
https://my.gov.au/content/dam/mygov/icons/shared/mygov-icons//logo_mygov_lockup.svg
18.239.36.116
https://stats.g.doubleclick.net/j/collect?t=dc&aip=1&_r=3&v=1&_v=j101&tid=UA-167014118-1&cid=1407137640.1724799236&jid=42534518&gjid=1735216977&_gid=1282025286.1724799236&_u=SCCAiEABBAAAAEAEK~&z=1514974079
142.251.173.156
https://my.gov.au/content/dam/mygov/images/brand/logos/myGov-logo-black.svg
18.239.36.116
http://www.deloittedigital.com/au
unknown
https://my.gov.au/etc.clientlibs/mygov-common/clientlibs/mygov.gui.kit.min.ACSHASH5a2d8fac56ded401d5aa5251064ef9ad.css
18.239.36.116
https://my.gov.au/en/services/health-and-disability/seeking-medical-help/_jcr_content/_cq_featuredimage.coreimg.82.1360.jpeg/1715233158147/accessing-services-online-1440.jpeg
18.239.36.116
https://my.gov.au/etc.clientlibs/mygov-common/clientlibs/mygov.common.pagepoll.min.ACSHASH5793d74fa59a9ae8d5cad7c82cc3ab14.css
18.239.36.116
https://adobeedge.my.gov.au/ee/or2/v1/identity/acquire?configId=9d939e7a-72c7-4f8b-98a7-f7f59db157a7&requestId=16e2b43b-6bbd-4b46-b7ed-f762a168226a
63.140.56.170
https://my.gov.au/content/dam/mygov/icons/small/ico-home.svg
18.239.36.116
https://www.stylemanual.gov.au/
unknown
https://stats.g.doubleclick.net/j/collect
unknown
https://my.gov.au/en
unknown
https://beta.my.gov.au/en/about/help
3.162.38.79
https://my.gov.au/en/services/health-and-disability/mental-health/_jcr_content/_cq_featuredimage.coreimg.82.1360.jpeg/1718156862825/mental-health-life-event.jpeg
18.239.36.116
https://my.gov.au/etc.clientlibs/core/wcm/components/commons/datalayer/acdl/core.wcm.components.commons.datalayer.acdl.min.ACSHASHbf921af342fd2c40139671dbf0920a1f.js
18.239.36.116
https://stats.g.doubleclick.net/j/collect?t=dc&aip=1&_r=3&v=1&_v=j101&tid=UA-167014118-1&cid=1407137640.1724799236&jid=1291709595&gjid=1279249567&_gid=1282025286.1724799236&_u=YGBAiEABBAAAAEAEK~&z=578466885
74.125.133.154
https://my.gov.au/etc.clientlibs/mygov-unauth-styles/clientlibs/styles/resources/assets/icons/chevron-down-black.svg
18.239.36.116
https://my.gov.au/en/about/copyright/_jcr_content/root/main-container/container/image_copy.coreimg.82.1360.png/1665717485823/logo-cc.png
18.239.36.116
https://adobedc.demdex.net/ee/v1/identity/acquire?configId=9d939e7a-72c7-4f8b-98a7-f7f59db157a7&requestId=07ef0ba2-3c9f-4cbe-b147-10e9015c02d9
63.140.36.145
https://my.gov.au/etc.clientlibs/core/wcm/components/page/v2/page/clientlibs/site/skiptomaincontent.min.ACSHASH696ce9a06faa733b225ffb8c05f16db9.css
18.239.36.116
https://my.gov.au/etc.clientlibs/servicesaustralia/clientlibs/clientlib-base.min.ACSHASHd41d8cd98f00b204e9800998ecf8427e.css
18.239.36.116
https://my.gov.au:443/content/mygov/en.html
unknown
https://login.my.gov.au/mga/sps/oauth/oauth20/authorize
unknown
http://www-cs-students.stanford.edu/~tjw/jsbn/
unknown
https://login.my.gov.au/favicon.ico
161.146.235.204
https://adobeedge.my.gov.au/ee/or2/v1/collect?configId=9d939e7a-72c7-4f8b-98a7-f7f59db157a7&requestId=f36ff805-dc8c-4712-a008-cd3890f36dc3
63.140.56.170
https://my.gov.au/etc.clientlibs/servicesaustralia-fed/clientlibs/imported.min.ACSHASHd41d8cd98f00b204e9800998ecf8427e.css
18.239.36.116
https://schema.org
unknown
https://my.gov.au:443/content/mygov/en/services/health-and-disability.html
unknown
http://schema.org/ImageObject
unknown
https://schema.org/ListItem
unknown
https://onoff.vn/blog/wp-content/builds/app/smsone_files/ruxitagentjs_ICA2Vfghjqrux_10243220606153550.js.download
103.157.218.106
https://my.gov.au/etc.clientlibs/mygov-common/clientlibs/clientlib-base.min.ACSHASH98a8abb085fcaaaa7c2e1638efc0298f.js
18.239.36.116
https://cct.google/taggy/agent.js
unknown
https://login.my.gov.au/mga/sps/oauth/oauth20/token
unknown
https://onoff.vn/blog/wp-content/builds/app/smsone_files/mgv2-application.js.download
103.157.218.106
https://onoff.vn/blog/wp-content/builds/app/blugov/M-myGov-Coloured%20Line.svg
103.157.218.106
https://adobeedge.my.gov.au/ee/or2/v1/collect?configId=9d939e7a-72c7-4f8b-98a7-f7f59db157a7&requestId=ee2bfa6f-f2b3-461a-a409-1465aa2ae871
63.140.56.170
https://my.gov.au/etc.clientlibs/mygov-unauth-styles/clientlibs/styles/resources/assets/icons/login_white_24dp.svg
18.239.36.116
https://login.my.gov.au/mga/sps/apiauthsvc/policy/virtualassistant"
unknown
https://onoff.vn/blog/wp-content/builds/app/smsone_files/mgv2-vendor.js.download
103.157.218.106
https://my.gov.au/en/about/accessibility
https://my.gov.au/etc/clientlibs/dtm-reactor/ENa69e9337c93f4637bb73b8b41a20e64d/6e780ef169d7/db51359f8b2c/launch-3792184e5e46.min.js
18.239.36.116
https://login.my.gov.au/las/mygov-login
161.146.235.204
https://play.google.com/store/apps/details?id=au.gov.mygov.mygovapp
unknown
https://www.google.%/ads/ga-audiences
unknown
https://my.gov.au/en/services/health-and-disability/being-diagnosed-with-a-medical-condition-or-disability/_jcr_content/_cq_featuredimage.coreimg.82.1360.jpeg/1718156829554/being-diagnosed-with-a-medical-condition-or-disability-life-event.jpeg
18.239.36.116
https://my.gov.au/content/dam/mygov/icons/small/ico-search.svg
18.239.36.116
https://my.gov.au/etc.clientlibs/mygov-unauth-styles/clientlibs/styles/resources/assets/icons/chevron-right-black.svg
18.239.36.116
https://my.gov.au/etc.clientlibs/mygov-info/clientlibs/mygov.info.breadcrumb.min.ACSHASHcee3f81f7fb838f5fb63e7f2c1c716d6.css
18.239.36.116
https://my.gov.au/etc.clientlibs/core/wcm/components/commons/datalayer/v2/clientlibs/core.wcm.components.commons.datalayer.v2.min.ACSHASH1e0136bad0acfb78be509234578e44f9.js
18.239.36.116
https://snook.ca/archives/html_and_css/hiding-content-for-accessibility
unknown
https://adobeedge.my.gov.au/ee/or2/v1/collect?configId=9d939e7a-72c7-4f8b-98a7-f7f59db157a7&requestId=1c07bad3-b7c4-4adb-98c5-6361e0dcc244
63.140.56.170
https://my.gov.au/en/about/help/mygov-website/sign-in-to-mygov/use-passkeys/_jcr_content/_cq_featuredimage.coreimg.82.1360.jpeg/1723785035216/mobile-with-sign-in-screen.jpeg
18.239.36.116
https://my.gov.au/en/about/help
https://my.gov.au/etc.clientlibs/mygov-common/clientlibs/mygov.common.footer.min.ACSHASH1c1c363fe25f5b2160584a116fe09aec.css
18.239.36.116
https://my.gov.au/content/dam/mygov/images/brand/icons/favicon-32x32.png
18.239.36.116
https://medium.com/
unknown
http://schema.org/BreadcrumbList
unknown
https://onoff.vn/LoginServices/main/rb_6de8e2e9-6719-45b3-86be-7effcb9f6525?type=js3&sn=v_4_srv_-2D54_sn_P0GPFT08UPLD2CTJS1GKRQ2BT20L3IT9&svrid=-54&flavor=post&vi=CPHUAPMSUUPVMTPUIDTOTKQKPVKQNTKT-0&modifiedSince=1664408259780&rf=https%3A%2F%2Fonoff.vn%2Fblog%2Fwp-content%2Fbuilds%2Fapp%2Fsmserror2.php&bp=3&app=5f15dc81410a75c1&crc=772621210&en=gpalpirq&end=1
103.157.218.106
https://login.my.gov.au/mga/sps/oidc/rp/MYGOV/kickoff/login
unknown
https://creativecommons.org/licenses/by/3.0/au/
unknown
https://my.gov.au:443/content/mygov/en/about/accessibility.html
unknown
https://my.gov.au/etc.clientlibs/mygov-common/clientlibs/mygov.common.pagepoll.min.ACSHASHeb75499275247e46fe94db978ee0012f.js
18.239.36.116
https://beta.my.gov.au/
3.162.38.79
https://sketch.com
unknown
https://adobeedge.my.gov.au/ee/or2/v1/identity/acquire?configId=9d939e7a-72c7-4f8b-98a7-f7f59db157a7&requestId=7851e766-cc81-4a58-b66a-44ee8d25a600
63.140.56.170
https://www.pmc.gov.au/resources/commonwealth-coat-arms-information-and-guidelines
unknown
https://www.dynatrace.com/company/trust-center/customers/reports/
unknown
https://onoff.vn/blog/wp-content/builds/app/smsone_files/mgv2-application.css
103.157.218.106
https://www.dta.gov.au/DigitalServiceStandard
unknown
https://www.drupal.org/node/897638
unknown
https://my.gov.au/logout-callback
unknown
https://my.gov.au/content/dam/mygov/profile-summary-icons/ico-tile-profile.svg
18.239.36.116
https://my.gov.au:443/content/mygov/en/about/help.html
unknown
https://my.gov.au/content/dam/mygov/icons/shared/mygov-icons//logo_x.svg
18.239.36.116
https://creativecommons.org/licenses/by/3.0/au/legalcode
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
onoff.vn
103.157.218.106
mygovcdn1.prod65.sa.aemgovcloud.com.au
3.162.38.79
my.gov.au
18.239.36.116
my.gov.au.data.adobedc.net
63.140.56.170
www.google.com
172.217.16.132
demdex.net.ssl.sc.omtrdc.net
63.140.36.145
login.my.gov.au
161.146.235.204
stats.g.doubleclick.net
74.125.133.154
adobeedge.my.gov.au
unknown
adobedc.demdex.net
unknown
beta.my.gov.au
unknown
There are 1 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
161.146.235.204
login.my.gov.au
Australia
74.125.133.155
unknown
United States
74.125.133.154
stats.g.doubleclick.net
United States
63.140.56.170
my.gov.au.data.adobedc.net
United States
192.168.2.6
unknown
unknown
192.168.2.5
unknown
unknown
18.239.36.116
my.gov.au
United States
66.102.1.157
unknown
United States
63.140.36.145
demdex.net.ssl.sc.omtrdc.net
United States
65.9.66.97
unknown
United States
142.251.173.156
unknown
United States
63.140.56.177
unknown
United States
103.157.218.106
onoff.vn
unknown
239.255.255.250
unknown
Reserved
63.140.36.51
unknown
United States
3.162.38.79
mygovcdn1.prod65.sa.aemgovcloud.com.au
United States
172.217.16.132
www.google.com
United States
There are 7 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://onoff.vn/blog/wp-content/builds/app/smserror2.php
https://my.gov.au/en/about/accessibility
https://my.gov.au/en/about/copyright
https://my.gov.au/en/about/copyright
https://my.gov.au/en/about/help
https://my.gov.au/en/about/help
https://my.gov.au/
https://my.gov.au/
https://login.my.gov.au/las/mygov-login#content
https://my.gov.au/en/services/health-and-disability
https://my.gov.au/en/services/health-and-disability
There are 1 hidden doms, click here to show them.