IOC Report
https://us-west-2.protection.sophos.com/?d=sharefile.com&u=aHR0cHM6Ly9jaW1leGNvbnRyb2wuc2hhcmVmaWxlLmNvbS9wdWJsaWMvc2hhcmUvd2ViLWM3ODg1ZDIxY2ExZDRhMzY=&p=m&i=NjVjNTQ0OGE0ZWZhMmU3ZjY4MzI4ZTU2&t=WlovSUNTcHprM1VEM3d0TWlBT2lsU0RVRW1WUVBxMkdVN3M3blVHZW1OYz0=&h=a909c205dbf34e088aa1370e562ae3b8&s=AVNPUEhUT

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 134
JSON data
downloaded
Chrome Cache Entry: 135
ASCII text, with very long lines (65473)
dropped
Chrome Cache Entry: 136
ASCII text, with very long lines (65472)
dropped
Chrome Cache Entry: 137
Unicode text, UTF-8 text, with very long lines (61280), with no line terminators
dropped
Chrome Cache Entry: 138
ASCII text, with very long lines (65474)
downloaded
Chrome Cache Entry: 139
PDF document, version 1.7, 1 pages
downloaded
Chrome Cache Entry: 140
JSON data
downloaded
Chrome Cache Entry: 141
ASCII text, with very long lines (65477)
dropped
Chrome Cache Entry: 142
ASCII text, with very long lines (65481)
dropped
Chrome Cache Entry: 143
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 144
Unicode text, UTF-8 text, with very long lines (46123)
downloaded
Chrome Cache Entry: 145
ASCII text, with very long lines (65475)
dropped
Chrome Cache Entry: 146
ASCII text, with very long lines (65477)
dropped
Chrome Cache Entry: 147
ASCII text, with very long lines (65476)
dropped
Chrome Cache Entry: 148
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 149
ASCII text, with very long lines (65477)
dropped
Chrome Cache Entry: 150
ASCII text, with very long lines (65479)
dropped
Chrome Cache Entry: 151
ASCII text, with very long lines (6378)
downloaded
Chrome Cache Entry: 152
Web Open Font Format (Version 2), TrueType, length 37752, version 1.0
downloaded
Chrome Cache Entry: 153
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 154
ASCII text, with very long lines (65472)
downloaded
Chrome Cache Entry: 155
Unicode text, UTF-8 text, with very long lines (58657)
dropped
Chrome Cache Entry: 156
Unicode text, UTF-8 text, with very long lines (61280), with no line terminators
downloaded
Chrome Cache Entry: 157
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 158
Unicode text, UTF-8 text, with very long lines (65399)
dropped
Chrome Cache Entry: 159
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 160
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 161
ASCII text, with very long lines (65479)
dropped
Chrome Cache Entry: 162
ASCII text, with very long lines (65479)
downloaded
Chrome Cache Entry: 163
ASCII text, with very long lines (65473)
downloaded
Chrome Cache Entry: 164
ASCII text, with very long lines (65477)
downloaded
Chrome Cache Entry: 165
Unicode text, UTF-8 text, with very long lines (65452), with no line terminators
dropped
Chrome Cache Entry: 166
ASCII text, with very long lines (65475)
downloaded
Chrome Cache Entry: 167
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 168
ASCII text
dropped
Chrome Cache Entry: 169
ASCII text, with very long lines (44999)
downloaded
Chrome Cache Entry: 170
ASCII text, with very long lines (65476)
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 172
ASCII text, with very long lines (65310)
dropped
Chrome Cache Entry: 173
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 174
Unicode text, UTF-8 text, with very long lines (58657)
downloaded
Chrome Cache Entry: 175
ASCII text
downloaded
Chrome Cache Entry: 176
Unicode text, UTF-8 text, with very long lines (13545), with no line terminators
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (65472)
downloaded
Chrome Cache Entry: 178
Unicode text, UTF-8 text, with very long lines (65455)
dropped
Chrome Cache Entry: 179
ASCII text, with very long lines (65475)
downloaded
Chrome Cache Entry: 180
ASCII text, with very long lines (65415)
downloaded
Chrome Cache Entry: 181
JSON data
dropped
Chrome Cache Entry: 182
ASCII text, with very long lines (65479)
dropped
Chrome Cache Entry: 183
ASCII text, with very long lines (475)
downloaded
Chrome Cache Entry: 184
ASCII text, with very long lines (32010)
downloaded
Chrome Cache Entry: 185
ASCII text, with very long lines (65473)
dropped
Chrome Cache Entry: 186
ASCII text, with very long lines (65477)
downloaded
Chrome Cache Entry: 187
PDF document, version 1.7, 1 pages
dropped
Chrome Cache Entry: 188
JSON data
dropped
Chrome Cache Entry: 189
Unicode text, UTF-8 text, with very long lines (65452), with no line terminators
downloaded
Chrome Cache Entry: 190
Unicode text, UTF-8 text, with very long lines (13545), with no line terminators
dropped
Chrome Cache Entry: 191
ASCII text, with very long lines (65477)
downloaded
Chrome Cache Entry: 192
ASCII text, with very long lines (65474)
dropped
Chrome Cache Entry: 193
ASCII text, with very long lines (65422)
dropped
Chrome Cache Entry: 194
ASCII text, with very long lines (65475)
downloaded
Chrome Cache Entry: 195
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 196
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 197
Unicode text, UTF-8 text, with very long lines (65399)
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (65415)
dropped
Chrome Cache Entry: 199
Unicode text, UTF-8 text, with very long lines (65240)
downloaded
Chrome Cache Entry: 200
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 201
ASCII text, with very long lines (65476)
downloaded
Chrome Cache Entry: 202
ASCII text, with very long lines (65474)
downloaded
Chrome Cache Entry: 203
Unicode text, UTF-8 text, with very long lines (65471)
dropped
Chrome Cache Entry: 204
Unicode text, UTF-8 text, with very long lines (65402)
downloaded
Chrome Cache Entry: 205
ASCII text, with very long lines (65422)
downloaded
Chrome Cache Entry: 206
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 207
ASCII text, with very long lines (65476)
dropped
Chrome Cache Entry: 208
ASCII text, with very long lines (44999)
dropped
Chrome Cache Entry: 209
Web Open Font Format (Version 2), TrueType, length 36944, version 1.0
downloaded
Chrome Cache Entry: 210
ASCII text, with very long lines (65475)
dropped
Chrome Cache Entry: 211
ASCII text, with very long lines (65481)
downloaded
Chrome Cache Entry: 212
JSON data
downloaded
Chrome Cache Entry: 213
ASCII text, with very long lines (1456)
downloaded
Chrome Cache Entry: 214
ASCII text, with very long lines (65473)
downloaded
Chrome Cache Entry: 215
ASCII text, with very long lines (65479)
downloaded
Chrome Cache Entry: 216
Unicode text, UTF-8 text, with very long lines (65240)
dropped
Chrome Cache Entry: 217
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 218
ASCII text, with very long lines (65479)
downloaded
Chrome Cache Entry: 219
JSON data
dropped
Chrome Cache Entry: 220
ASCII text, with very long lines (65310)
downloaded
Chrome Cache Entry: 221
Web Open Font Format (Version 2), TrueType, length 41268, version 1.0
downloaded
Chrome Cache Entry: 222
ASCII text, with very long lines (6378)
dropped
Chrome Cache Entry: 223
Unicode text, UTF-8 text, with very long lines (65471)
downloaded
Chrome Cache Entry: 224
ASCII text, with very long lines (65475)
dropped
Chrome Cache Entry: 225
ASCII text, with very long lines (32010)
dropped
Chrome Cache Entry: 226
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 227
Unicode text, UTF-8 text, with very long lines (65402)
dropped
Chrome Cache Entry: 228
Unicode text, UTF-8 text, with very long lines (65455)
downloaded
Chrome Cache Entry: 229
ASCII text, with very long lines (65472)
dropped
There are 87 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2060 --field-trial-handle=1972,i,3454855097439043113,16859177218353601384,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://us-west-2.protection.sophos.com/?d=sharefile.com&u=aHR0cHM6Ly9jaW1leGNvbnRyb2wuc2hhcmVmaWxlLmNvbS9wdWJsaWMvc2hhcmUvd2ViLWM3ODg1ZDIxY2ExZDRhMzY=&p=m&i=NjVjNTQ0OGE0ZWZhMmU3ZjY4MzI4ZTU2&t=WlovSUNTcHprM1VEM3d0TWlBT2lsU0RVRW1WUVBxMkdVN3M3blVHZW1OYz0=&h=a909c205dbf34e088aa1370e562ae3b8&s=AVNPUEhUT0NFTkNSWVBUSVaeeO1PeU8FWzC37dtfaLaARl9QCAs8-WgronPt006GTL2q9mKeY1exhDt7A9nYyTislrrDcCqWvHyVmjLYyzcSP4OX-x7NdYywGLTM6NWNWw"

URLs

Name
IP
Malicious
https://us-west-2.protection.sophos.com/?d=sharefile.com&u=aHR0cHM6Ly9jaW1leGNvbnRyb2wuc2hhcmVmaWxlLmNvbS9wdWJsaWMvc2hhcmUvd2ViLWM3ODg1ZDIxY2ExZDRhMzY=&p=m&i=NjVjNTQ0OGE0ZWZhMmU3ZjY4MzI4ZTU2&t=WlovSUNTcHprM1VEM3d0TWlBT2lsU0RVRW1WUVBxMkdVN3M3blVHZW1OYz0=&h=a909c205dbf34e088aa1370e562ae3b8&s=AVNPUEhUT0NFTkNSWVBUSVaeeO1PeU8FWzC37dtfaLaARl9QCAs8-WgronPt006GTL2q9mKeY1exhDt7A9nYyTislrrDcCqWvHyVmjLYyzcSP4OX-x7NdYywGLTM6NWNWw
https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-task-mgt-pilet/1.7.0/package/dist/index.js
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-publisher-pilet/0.17.11/package/dist/index.js
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/45fbd3259a5617dcc421.js
76.223.1.166
https://citrix-sharefile-content.customer.pendo.io/guide-content/wotSbq5SNToNGIBxeYKbdsIn35Q
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-tenant-mgt-pilet/1.38.0/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-act-hist-pilet/1.38.0/package/dist/index.js
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-threatalert-mgt-pilet/1.14.0/package/dist/index.js
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/1c992ae0c14e95098d9a.js
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-resourcegen-pilet/0.1.36/package/dist/index.js
13.224.189.115
https://citrix-sharefile-content.customer.pendo.io/guide-content/u6RYL2wEa9xrpUJMTeOXl41AeJI/qrJmWADnkufXgGqv6M-p2xBSYIU/xBPyrN0M2r6IFxno71T0shlp-Qc.dom.json?sha256=OG9P3pymuWfB-ZaKqljhBPBaH2alktLkYBmVTjLKrSQ
34.111.138.51
https://bam.nr-data.net/events/1/fd14b65b5e?a=594432325&sa=1&v=1216.487a282&t=Unnamed%20Transaction&rst=92536&ck=1&ref=https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
162.247.243.29
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-permissions-pilet/1.115.0/package/dist/index.js
13.224.189.115
https://cimexcontrol.sf-api.com/sf/v3/Shares(c7885d21ca1d4a36)/Items(fi724e63-1f43-1cec-e29c-d789ac7989b7)?canCreateRootFolder=false&fileBox=false
13.248.193.251
https://events.launchdarkly.com/events/diagnostic/5f33f5d44f29ea099db90d2a
34.198.76.125
https://cimexcontrol.sharefile.com/bundles/2efeefafc2bb68a97d33.js
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-actions-pilet/1.15.0/package/dist/index.js
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-esign-pilet/1.207.0/package/dist/index.js
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/2bd6acf87747a8fbd76a.gif
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-client-pilet/0.4.0/package/dist/index.js
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-projects-pilet/2.0.4/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-doc-gen-pilet/1.2.80/package/dist/main.css
13.224.189.115
https://cimexcontrol.sharefile.com/public/share/web-c7885d21ca1d4a36
https://agent.pendo.io/licenses
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-resourcegen-pilet/0.1.36/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-conversations-pilet/1.6.0/package/dist/main.css
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/7488daef17576ccaa0dd.js
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-rubicon-pilet/0.32.7/package/dist/index.js
13.224.189.115
https://o49063.ingest.sentry.io/api/4506735163932672/envelope/?sentry_key=0be0069dd70d0ce2c63c650418f56fa6&sentry_version=7&sentry_client=sentry.javascript.react%2F7.100.1
34.120.195.249
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-client-dashboard/0.149.0/package/dist/index.js
13.224.189.115
https://cimexcontrol.sharefile.com/manifest.json
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-dynamic-forms-pilet/1.7.0/package/dist/402b74053d26323596b3.woff2
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/5be3ba1b444ac539eaf5.js
76.223.1.166
https://citrix-sharefile-content.customer.pendo.io/guide-content/u6RYL2wEa9xrpUJMTeOXl41AeJI/qrJmWAD
unknown
https://citrix-sharefile-content.customer.pendo.io/guide-content/qgx_AaYBkGN6StQWJLhgBhCmZsY/ZEFqtCH
unknown
https://cimexcontrol.sharefile.com/bundles/ba7dfd1a6326f1b75478.js
76.223.1.166
https://citrix-sharefile-content.customer.pendo.io/guide-content/kRiIYerdgZdzqYlUiCx61iLjnBU/vJf7TMD
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-billing-pilet/0.64.0/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-request-list-pilet/0.22.0/package/dist/index.js
13.224.189.115
https://0093b71e39a6.11de9b12.us-east-1.token.awswaf.com/0093b71e39a6/478ed03bbf12/verify
18.245.31.29
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-task-mgt-pilet/1.7.0/package/dist/main.css
13.224.189.115
https://citrix-sharefile-content.customer.pendo.io/guide-content/DGXiXepNeRvpgcvqVVwgerMyl9c/FzHL74W
unknown
https://citrix-sharefile-content.customer.pendo.io/guide-content/z6GAMp5KCypHWLnasLOIn0RVcPQ/vzuAMPt
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-audit-collector-pilet/0.11.0/package/dist/index.js
13.224.189.115
https://0093b71e39a6.11de9b12.us-east-1.token.awswaf.com/0093b71e39a6/478ed03bbf12/telemetry
18.245.31.29
https://cimexcontrol.sharefile.com/bundles/index.320250c85159db3d203e.js
76.223.1.166
https://0093b71e39a6.11de9b12.us-east-1.token.awswaf.com/0093b71e39a6/478ed03bbf12/challenge.js
18.245.31.29
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-storage-plugin-pilet/1.235.0/package/dist/index.js
13.224.189.115
https://citrix-sharefile-content.customer.pendo.io/guide-content/freMllnYvBAwsP7Q8plLkQuQk9o/iIvmdJJ
unknown
https://cimexcontrol.sharefile.com/android-chrome-192x192.png
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-integrations-pilet/0.0.175/package/dist/main.css
13.224.189.115
https://cimexcontrol.sf-api.com/sf/v3/Items/ContentViewer
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-templates-pilet/0.93.12/package/dist/index.js
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-notification-center/0.58.0/package/dist/index.js
13.224.189.115
https://sf-cv.sharefile.com/service/contentviewer/eventpipeline/preview?r=eyJhbGciOiJkaXIiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2In0..YwMcA3zpeIV8jgC6O8DE2w.08dXvdNEbOlICShPh48yOjTueM9OjQbW1RzzO4o6xHfWFBWCWNUUTBjCluQP85uDllu8mDHIss6GPCqJpFhx6IbvfQquU2U0vA2eL32o4kbg1Gi-B1Z5-QYNRnSpYJaZV9GYUQC5qNnhKIIyAnF-2FCUkWJyKUU4j6z6g1U055KGIGBORzGugFmrWk-rvZomte5lFb6Sx2tZVTKRyLt-JVYNUCY2lqLTWXZvuMn75nOQryMOLzp1-WsLjkT3cOR84zPSSa0OvG_JuVtwtl_fxOVnMYIWAioj50S1DHQ2cIZmjGlsIpz8Z3BEe3ftikFMsqPoBmRxvWiCXDuSizI5vuD1jpTk3G-V_vDNke55wo95fwqt_DXWUchmvUqPq6UFLVQ0GPZKfdYFre9kuS6aK-BYTuJXqlatvugMIwGunYWB8Grf_X7zmSyyR6RbcS2O.JbVljcTQNIJ4xz-IDD1gkQ
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-client-dashboard/0.149.0/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-storage-plugin-pilet/1.235.0/package/dist/main.css
13.224.189.115
https://citrix-sharefile-content.customer.pendo.io/agent/static/74b07336-7560-45fc-7cd1-95032a784d52
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-audit-collector-pilet/0.11.0/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-rubicon-pilet/0.32.7/package/dist/main.css
13.224.189.115
https://cimexcontrol.sf-api.com/sf/v3/Capabilities
13.248.193.251
https://cimexcontrol.sharefile.com/bundles/c3b78c86faf44765071f.js
76.223.1.166
http://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-request-list-pilet/0.22.0/package/dist/main.css
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/d178f6eceb0126b1e292.js
76.223.1.166
https://bam.nr-data.net/jserrors/1/fd14b65b5e?a=594432325&sa=1&v=1216.487a282&t=Unnamed%20Transaction&rst=92533&ck=1&ref=https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
162.247.243.29
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-esign-pilet/1.207.0/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-billing-pilet/0.64.0/package/dist/index.js
13.224.189.115
https://citrix-sharefile-content.customer.pendo.io/guide.-323232.1622565221517.css
34.111.138.51
https://bam.nr-data.net/1/fd14b65b5e?a=594432325&sa=1&v=1216.487a282&t=Unnamed%20Transaction&rst=30053&ck=1&ref=https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36&be=3157&fe=29358&dc=8904&af=err,xhr,stn,ins,spa&perf=%7B%22timing%22:%7B%22of%22:1724944693436,%22n%22:0,%22f%22:2159,%22dn%22:2162,%22dne%22:2201,%22c%22:2201,%22s%22:2201,%22ce%22:2889,%22rq%22:2890,%22rp%22:3043,%22rpe%22:3202,%22dl%22:3076,%22di%22:8730,%22ds%22:8903,%22de%22:8904,%22dc%22:29357,%22l%22:29357,%22le%22:29361%7D,%22navigation%22:%7B%7D%7D&fp=4775&fcp=5453&jsonp=NREUM.setToken
162.247.243.29
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-conversations-pilet/1.6.0/package/dist/index.js
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-actions-pilet/1.15.0/package/dist/main.css
13.224.189.115
https://bam.nr-data.net/events/1/fd14b65b5e?a=594432325&sa=1&v=1216.487a282&t=Unnamed%20Transaction&rst=40065&ck=1&ref=https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
162.247.243.29
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-act-hist-pilet/1.38.0/package/dist/citrite-citrix-ui.js
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/3aa33bb6fffd83a61c47.svg
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-doc-gen-pilet/1.2.80/package/dist/index.js
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-permissions-pilet/1.115.0/package/dist/main.css
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/22a601d65471e8503ea9.js
76.223.1.166
https://cimexcontrol.sf-api.com/sf/v3/Accounts/Branding
13.248.193.251
https://citrix-sharefile-content.customer.pendo.io/guide-content/moENhVNGkRpdnhKRCzqkG8MUQPk/Mp9uRb2
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-tenant-mgt-pilet/1.38.0/package/dist/index.js
13.224.189.115
https://citrix-sharefile-content.customer.pendo.io/guide-content/WPvkzGkOrfIvp3qkN5N54f_1PEk/YiOA-0Y
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-templates-pilet/0.93.12/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-notification-center/0.58.0/package/dist/main.css
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-client-pilet/0.4.0/package/dist/sharefiledev-flow-web.js
13.224.189.115
https://api.ipify.org/?format=json
104.26.13.205
https://us-west-2.protection.sophos.com/?d=sharefile.com&u=aHR0cHM6Ly9jaW1leGNvbnRyb2wuc2hhcmVmaWxlLmNvbS9wdWJsaWMvc2hhcmUvd2ViLWM3ODg1ZDIxY2ExZDRhMzY=&p=m&i=NjVjNTQ0OGE0ZWZhMmU3ZjY4MzI4ZTU2&t=WlovSUNTcHprM1VEM3d0TWlBT2lsU0RVRW1WUVBxMkdVN3M3blVHZW1OYz0=&h=a909c205dbf34e088aa1370e562ae3b8&s=AVNPUEhUT0NFTkNSWVBUSVaeeO1PeU8FWzC37dtfaLaARl9QCAs8-WgronPt006GTL2q9mKeY1exhDt7A9nYyTislrrDcCqWvHyVmjLYyzcSP4OX-x7NdYywGLTM6NWNWw
13.227.219.111
https://sf-cv.sharefile.com/service/contentviewer/document/sessionurl
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-integrations-pilet/0.0.175/package/dist/index.js
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/5626aad50bfaf67fedc0.js
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-act-hist-pilet/1.38.0/package/dist/main.css
13.224.189.115
https://citrix-sharefile-content.customer.pendo.io/agent/static/74b07336-7560-45fc-7cd1-95032a784d52/pendo.js
34.111.138.51
https://cimexcontrol.sharefile.com/bundles/2c61db7618456a4b4ea2.js
76.223.1.166
https://citrix-sharefile-data.customer.pendo.io/data/guide.gif/74b07336-7560-45fc-7cd1-95032a784d52?jzb=eJwFwIEIAAAAwDDQd3-N1QABFQC5&ct=1724944725873&v=2.243.2_prod
34.107.204.85
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-dynamic-forms-pilet/1.7.0/package/dist/af15e31c70fab7cfd55c.woff2
13.224.189.115
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-publisher-pilet/0.17.11/package/dist/main.css
13.224.189.115
https://cimexcontrol.sharefile.com/bundles/619191a94fa9750fb03e.js
76.223.1.166
https://cimexcontrol.sharefile.com/css/spinner.css
76.223.1.166
https://cimexcontrol.sharefile.com/bundles/92fe442fb8f2d1f7093b.js
76.223.1.166
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-remediation-pilet/1.3.0/package/dist/main.css
13.224.189.115
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
fastly-tls12-bam.nr-data.net
162.247.243.29
sf-renderx-us-east-1.sharefile.com
3.33.222.159
0093b71e39a6.us-east-1.sdk.awswaf.com
18.239.83.113
cimexcontrol.sf-api.com
13.248.193.251
js-agent.newrelic.com
162.247.243.39
events.launchdarkly.com
34.198.76.125
sf-cv.sharefile.com
13.248.193.251
piletfeed-cdn.sharefile.io
13.224.189.115
0093b71e39a6.11de9b12.us-east-1.token.awswaf.com
18.245.31.29
fp2e7a.wpc.phicdn.net
192.229.221.95
s3-w.us-east-1.amazonaws.com
52.216.43.33
cimexcontrol.sharefile.com
76.223.1.166
bg.microsoft.map.fastly.net
199.232.214.172
51.138.111.34.bc.googleusercontent.com
34.111.138.51
d2t07dpvw9bt1v.cloudfront.net
13.227.219.111
o49063.ingest.sentry.io
34.120.195.249
www.google.com
142.250.186.164
api.ipify.org
104.26.13.205
85.204.107.34.bc.googleusercontent.com
34.107.204.85
us-west-2.protection.sophos.com
unknown
app.launchdarkly.com
unknown
citrix-sharefile-content.customer.pendo.io
unknown
bam.nr-data.net
unknown
citrix-sharefile-data.customer.pendo.io
unknown
sf-temp-us-east-1-production.s3.amazonaws.com
unknown
There are 15 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
192.168.2.18
unknown
unknown
192.168.2.4
unknown
unknown
13.227.219.111
d2t07dpvw9bt1v.cloudfront.net
United States
13.248.193.251
cimexcontrol.sf-api.com
United States
52.216.43.33
s3-w.us-east-1.amazonaws.com
United States
162.247.243.39
js-agent.newrelic.com
United States
104.26.13.205
api.ipify.org
United States
18.245.175.33
unknown
United States
13.224.189.115
piletfeed-cdn.sharefile.io
United States
34.107.204.85
85.204.107.34.bc.googleusercontent.com
United States
18.239.83.113
0093b71e39a6.us-east-1.sdk.awswaf.com
United States
34.198.76.125
events.launchdarkly.com
United States
34.111.138.51
51.138.111.34.bc.googleusercontent.com
United States
18.245.31.46
unknown
United States
3.33.222.159
sf-renderx-us-east-1.sharefile.com
United States
239.255.255.250
unknown
Reserved
18.245.31.29
0093b71e39a6.11de9b12.us-east-1.token.awswaf.com
United States
142.250.186.164
www.google.com
United States
162.247.243.29
fastly-tls12-bam.nr-data.net
United States
76.223.1.166
cimexcontrol.sharefile.com
United States
34.120.195.249
o49063.ingest.sentry.io
United States
There are 11 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://cimexcontrol.sharefile.com/public/share/web-c7885d21ca1d4a36
https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36
https://cimexcontrol.sharefile.com/share/view/c7885d21ca1d4a36