Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 12:41:36 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 12:41:35 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 12:41:35 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 12:41:35 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Aug 29 12:41:35 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://u14209785.ct.sendgrid.net/ls/click?upn=u001.7INBLi-2BpMtquNhvHXoCTQDs4I8fdKE9GOHSvdTryAC4Jf8wSL7zb5H0ZnqCjZAt-2F1j83IUTpCWU-2BCE96c2OJADou8yqyu1sJPvhv6OyP86E-3DfLgy_Nwar0Hwv34Fi8ApqVdPooBmurvWE692aiC1-2FIQPWEEhBZriwlo0xSIu-2F63Xu23T6CGzb06GlgFXFK5sNwaiuy8EH6GULjDLKuEoYJzzPNwrYd-2BO28MValb4xW-2FIxl50YbR9Vs1b-2Ff6140kW8-2BGmb9ispg52zIInbQceYXMesE0NQc1aD5DRo5CG16lWdD7JLnOfE8C8hNLzIQO-2BwUgFjyRYe5Vapo1ExJXLNP0hI5f3m1fIIABGe4ZMtZpUpBZrXo-2FeBZ6R-2Bu-2BrIyoQOsRiZEVB6EmMFCLRqUD-2Fc8xe41AY-3D
|
|||
https://pp-wfe-100.advancedmd.com/155109/account/logon
|
|||
https://pp-wfe-100.advancedmd.com/patientforms/index?lk=155109
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
api2.heartlandportico.com
|
35.211.11.79
|
||
plus.l.google.com
|
216.58.206.78
|
||
www.google.com
|
142.250.185.100
|
||
u14209785.ct.sendgrid.net
|
167.89.115.121
|
||
d1nn1qnqm7ih5y.cloudfront.net
|
18.65.39.83
|
||
d11ag707s7acdq.cloudfront.net
|
13.35.58.97
|
||
d1he4b11razhen.cloudfront.net
|
13.224.189.37
|
||
patientportal.advancedmd.com
|
unknown
|
||
amds-material-dev.advancedmd.com
|
unknown
|
||
apis.google.com
|
unknown
|
||
pp-wfe-100.advancedmd.com
|
unknown
|
There are 1 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
142.250.185.99
|
unknown
|
United States
|
||
142.250.185.206
|
unknown
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
216.58.206.74
|
unknown
|
United States
|
||
74.125.133.84
|
unknown
|
United States
|
||
172.217.16.206
|
unknown
|
United States
|
||
216.58.206.78
|
plus.l.google.com
|
United States
|
||
35.211.11.79
|
api2.heartlandportico.com
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
13.224.189.37
|
d1he4b11razhen.cloudfront.net
|
United States
|
||
167.89.115.121
|
u14209785.ct.sendgrid.net
|
United States
|
||
142.250.185.100
|
www.google.com
|
United States
|
||
18.65.39.83
|
d1nn1qnqm7ih5y.cloudfront.net
|
United States
|
||
18.65.39.114
|
unknown
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
13.35.58.97
|
d11ag707s7acdq.cloudfront.net
|
United States
|
||
172.217.16.195
|
unknown
|
United States
|
There are 7 hidden IPs, click here to show them.