IOC Report
http://round-puma-h6za.squarespace.com

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 109
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 110
ASCII text, with very long lines (53553)
dropped
Chrome Cache Entry: 111
Unicode text, UTF-8 text, with very long lines (2258)
dropped
Chrome Cache Entry: 112
ASCII text, with very long lines (53286)
dropped
Chrome Cache Entry: 113
ASCII text, with very long lines (52594)
dropped
Chrome Cache Entry: 114
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 115
ASCII text, with very long lines (52594)
downloaded
Chrome Cache Entry: 116
ASCII text, with very long lines (12150)
dropped
Chrome Cache Entry: 117
ASCII text
downloaded
Chrome Cache Entry: 118
ASCII text, with very long lines (14665)
dropped
Chrome Cache Entry: 119
ASCII text, with very long lines (65467)
dropped
Chrome Cache Entry: 120
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 121
ASCII text, with very long lines (15152)
dropped
Chrome Cache Entry: 122
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 123
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 124
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 125
ASCII text, with very long lines (11322)
downloaded
Chrome Cache Entry: 126
Web Open Font Format (Version 2), TrueType, length 20940, version 1.0
downloaded
Chrome Cache Entry: 127
ASCII text, with very long lines (24769)
downloaded
Chrome Cache Entry: 128
ASCII text, with very long lines (65467)
downloaded
Chrome Cache Entry: 129
ASCII text, with very long lines (12150)
downloaded
Chrome Cache Entry: 130
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 131
ASCII text, with very long lines (41086)
downloaded
Chrome Cache Entry: 132
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (39474)
dropped
Chrome Cache Entry: 134
ASCII text, with very long lines (15152)
downloaded
Chrome Cache Entry: 135
ASCII text
downloaded
Chrome Cache Entry: 136
ASCII text, with very long lines (451), with no line terminators
dropped
Chrome Cache Entry: 137
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 138
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 139
ASCII text, with very long lines (53553)
downloaded
Chrome Cache Entry: 140
JPEG image data, progressive, precision 8, 1500x695, components 3
dropped
Chrome Cache Entry: 141
Unicode text, UTF-8 text, with very long lines (7601)
downloaded
Chrome Cache Entry: 142
Web Open Font Format (Version 2), CFF, length 26832, version 1.0
downloaded
Chrome Cache Entry: 143
Unicode text, UTF-8 text, with very long lines (43878), with NEL line terminators
downloaded
Chrome Cache Entry: 144
ASCII text, with very long lines (24769)
dropped
Chrome Cache Entry: 145
Web Open Font Format (Version 2), CFF, length 26496, version 1.0
downloaded
Chrome Cache Entry: 146
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 147
Web Open Font Format (Version 2), CFF, length 26132, version 1.0
downloaded
Chrome Cache Entry: 148
ASCII text, with very long lines (2356), with no line terminators
downloaded
Chrome Cache Entry: 149
Unicode text, UTF-8 text, with very long lines (43878), with NEL line terminators
dropped
Chrome Cache Entry: 150
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 151
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 152
ASCII text, with very long lines (39915)
dropped
Chrome Cache Entry: 153
ASCII text, with very long lines (52749)
downloaded
Chrome Cache Entry: 154
ASCII text, with very long lines (52749)
dropped
Chrome Cache Entry: 155
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 156
ASCII text, with very long lines (14665)
downloaded
Chrome Cache Entry: 157
ASCII text, with very long lines (11023)
downloaded
Chrome Cache Entry: 158
Unicode text, UTF-8 text, with very long lines (7601)
dropped
Chrome Cache Entry: 159
ASCII text, with very long lines (11023)
dropped
Chrome Cache Entry: 160
ASCII text, with very long lines (53286)
downloaded
Chrome Cache Entry: 161
Unicode text, UTF-8 text, with very long lines (2258)
downloaded
Chrome Cache Entry: 162
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 163
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 164
HTML document, ASCII text, with very long lines (18338)
downloaded
Chrome Cache Entry: 165
Web Open Font Format (Version 2), CFF, length 26044, version 1.0
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (451), with no line terminators
downloaded
Chrome Cache Entry: 167
ASCII text, with very long lines (41086)
dropped
Chrome Cache Entry: 168
ASCII text, with very long lines (39915)
downloaded
Chrome Cache Entry: 169
ASCII text, with very long lines (39474)
downloaded
Chrome Cache Entry: 170
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 171
JPEG image data, progressive, precision 8, 1500x695, components 3
downloaded
Chrome Cache Entry: 172
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 173
ASCII text, with very long lines (14338), with no line terminators
downloaded
Chrome Cache Entry: 174
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 175
ASCII text, with very long lines (11322)
dropped
Chrome Cache Entry: 176
ASCII text, with very long lines (14116), with no line terminators
downloaded
There are 59 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2300 --field-trial-handle=2212,i,15844273460905522671,9679072684031585860,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://round-puma-h6za.squarespace.com"

URLs

Name
IP
Malicious
http://round-puma-h6za.squarespace.com
malicious
http://round-puma-h6za.squarespace.com/
198.185.159.177
malicious
https://round-puma-h6za.squarespace.com/
malicious
https://round-puma-h6za.squarespace.com/api/census/RecordHit
198.185.159.177
malicious
https://github.com/baryon
unknown
https://github.com/xsoh
unknown
https://assets.squarespace.com/universal/scripts-compressed/68076-3a3654702faa9ec3cabc-min.en-US.js
151.101.128.237
https://github.com/noureddinem
unknown
https://github.com/TalAter
unknown
https://github.com/zloirock/core-js
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/bb8e8d560d28ed6bfba92c286
unknown
https://github.com/ebraminio
unknown
https://github.com/jonashdown
unknown
https://assets.squarespace.com/universal/scripts-compressed/cldr-resource-pack-187e2495562332a04d43-min.en-US.js
151.101.128.237
https://github.com/ryanhart2
unknown
https://assets.squarespace.com/universal/styles-compressed/2e97305ccd1708b3407c-min.en-US.css
151.101.128.237
http://yuilibrary.com/license/
unknown
https://github.com/kalehv
unknown
https://github.com/crnjakovic
unknown
https://github.com/aliem
unknown
https://github.com/Manfre98
unknown
https://github.com/evoL
unknown
https://github.com/vnathalye
unknown
https://assets.squarespace.com/universal/scripts-compressed/99401-a4dea24da7ac412088e4-min.en-US.js
151.101.128.237
https://github.com/le0tan
unknown
https://github.com/narainsagar
unknown
https://assets.squarespace.com/universal/scripts-compressed/async-visitor-forms-82da6469e8b2a0e09098-min.en-US.js
151.101.128.237
https://github.com/ElFadiliY
unknown
https://github.com/ashwoolford
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/c2e675d2ea5c324d8fea64c2b
unknown
https://github.com/hagmandan
unknown
https://github.com/jbleduigou
unknown
https://github.com/muminoff
unknown
https://openjsf.org/
unknown
https://assets.squarespace.com/@sqs/polyfiller/1.6/modern.js
151.101.128.237
https://github.com/jatinag22
unknown
https://github.com/hehachris
unknown
https://github.com/jarcoal
unknown
https://github.com/jcfranco
unknown
https://github.com/mayanksinghal
unknown
https://assets.squarespace.com/universal/scripts-compressed/32915-07ac01e2eb32e9e734c8-min.en-US.js
151.101.128.237
https://performance.squarespace.com/api/v1/records
35.186.236.0
https://github.com/andela-batolagbe
unknown
https://github.com/forabi
unknown
https://github.com/bleadof
unknown
https://round-puma-h6za.squarespace.com
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/7c12de03bf7245cb12379a7c6
unknown
https://github.com/boyaq
unknown
https://github.com/passatgt
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/d575b07aaa3d6a1bf5a013156
unknown
https://github.com/naderio
unknown
https://github.com/kaushikgandhi
unknown
https://github.com/B0k0
unknown
https://assets.squarespace.com/universal/scripts-compressed/90846-e3290c7abb465088e51e-min.en-US.js
151.101.128.237
https://github.com/middagj
unknown
http://underscorejs.org/LICENSE
unknown
https://github.com/javkhaanj7
unknown
https://github.com/mweimerskirch
unknown
https://github.com/kruyvanna
unknown
https://github.com/suvash
unknown
https://github.com/andrewhood125
unknown
https://assets.squarespace.com/universal/scripts-compressed/common-vendors-stable-b03dd66b7c78e5e40bc7-min.en-US.js
151.101.128.237
https://github.com/ShahramMebashar
unknown
https://github.com/soniasimoes
unknown
https://github.com/BYK
unknown
https://github.com/skakri
unknown
https://use.typekit.net/af/2011b6/00000000000000003b9b00c1/27/
unknown
https://github.com/jalex79
unknown
https://github.com/kraz
unknown
https://github.com/nusretparlak
unknown
https://github.com/sigurdga
unknown
https://github.com/nostalgiaz
unknown
https://github.com/sampathsris
unknown
https://github.com/ulmus
unknown
https://github.com/gurdiga
unknown
https://npms.io/search?q=ponyfill.
unknown
https://github.com/orif-jr
unknown
https://assets.squarespace.com/universal/scripts-compressed/user-account-core-4c019daa1459fcf6b2ac-min.en-US.js
151.101.128.237
https://github.com/johnideal
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/e0298cb37692f059ba8bb6292
unknown
https://assets.squarespace.com/universal/default-favicon.ico
151.101.128.237
https://github.com/bmarkovic
unknown
https://github.com/sedovsek
unknown
https://github.com/k2s
unknown
https://github.com/caio-ribeiro-pereira
unknown
https://github.com/jfroffice
unknown
https://assets.squarespace.com/universal/scripts-compressed/common-vendors-41ebc5fd2998540f5074-min.en-US.js
151.101.128.237
https://github.com/hinrik
unknown
https://github.com/chrisgedrim
unknown
https://github.com/chienkira
unknown
https://github.com/colindean
unknown
https://github.com/Oire
unknown
https://github.com/chriscartlidge
unknown
https://github.com/mechuwind
unknown
https://github.com/miestasmia
unknown
https://github.com/MadMG
unknown
https://github.com/bkyceh
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/dcfa0780722693c9ed4459b63
unknown
https://github.com/fadsel
unknown
https://assets.squarespace.com/universal/styles-compressed/user-account-core-b6e8cafbf34b05da5c2b-min.en-US.css
151.101.128.237
https://static1.squarespace.com/static/vta/5c5a519771c10ba3470d8101/versioned-assets/1723477145961-94DMEB5QNH7AFG5EXE5V/static.css
151.101.0.238
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
round-puma-h6za.squarespace.com
198.185.159.177
malicious
bg.microsoft.map.fastly.net
199.232.214.172
performance.squarespace.com
35.186.236.0
static.squarespace.map.fastly.net
151.101.128.237
www.google.com
142.250.185.100
squarespace.map.fastly.net
151.101.64.238
prod.squarespace.map.fastly.net
151.101.0.238
fp2e7a.wpc.phicdn.net
192.229.221.95
use.typekit.net
unknown
103.169.127.40.in-addr.arpa
unknown
p.typekit.net
unknown
images.squarespace-cdn.com
unknown
18.31.95.13.in-addr.arpa
unknown
assets.squarespace.com
unknown
static1.squarespace.com
unknown
There are 5 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
198.185.159.177
round-puma-h6za.squarespace.com
United States
malicious
151.101.64.238
squarespace.map.fastly.net
United States
151.101.192.238
unknown
United States
142.250.185.100
www.google.com
United States
151.101.0.237
unknown
United States
151.101.0.238
prod.squarespace.map.fastly.net
United States
192.168.2.6
unknown
unknown
151.101.128.237
static.squarespace.map.fastly.net
United States
239.255.255.250
unknown
Reserved
142.250.186.164
unknown
United States
35.186.236.0
performance.squarespace.com
United States
There are 1 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://round-puma-h6za.squarespace.com/
malicious
https://round-puma-h6za.squarespace.com/
https://round-puma-h6za.squarespace.com/#page