IOC Report
http://144.126.159.102

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 01:27:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 01:27:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 01:27:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 01:27:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 01:27:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 151
PNG image data, 556 x 490, 8-bit/color RGB, interlaced
downloaded
Chrome Cache Entry: 152
PNG image data, 600 x 426, 8-bit/color RGB, interlaced
dropped
Chrome Cache Entry: 153
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 154
ASCII text, with very long lines (17998)
dropped
Chrome Cache Entry: 155
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 156
JSON data
dropped
Chrome Cache Entry: 157
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 158
JSON data
dropped
Chrome Cache Entry: 159
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 250x250, components 3
dropped
Chrome Cache Entry: 160
ASCII text, with very long lines (17998)
downloaded
Chrome Cache Entry: 161
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
dropped
Chrome Cache Entry: 162
ASCII text, with very long lines (46884)
dropped
Chrome Cache Entry: 163
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=4, xresolution=62, yresolution=70, resolutionunit=2, software=Paint.NET v3.5.10], baseline, precision 8, 59x59, components 3
downloaded
Chrome Cache Entry: 164
ASCII text, with very long lines (724)
dropped
Chrome Cache Entry: 165
PNG image data, 140 x 540, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 166
PNG image data, 601 x 424, 8-bit/color RGB, interlaced
dropped
Chrome Cache Entry: 167
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 168
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 250x250, components 3
dropped
Chrome Cache Entry: 169
HTML document, ASCII text, with very long lines (801), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 170
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
dropped
Chrome Cache Entry: 171
PNG image data, 16 x 16, 4-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 172
JSON data
dropped
Chrome Cache Entry: 173
ASCII text, with very long lines (65410)
downloaded
Chrome Cache Entry: 174
PNG image data, 648 x 346, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 175
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 176
Unicode text, UTF-8 text, with very long lines (492), with CRLF line terminators
downloaded
Chrome Cache Entry: 177
JSON data
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (1417), with no line terminators
downloaded
Chrome Cache Entry: 179
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=6, orientation=upper-left, xresolution=86, yresolution=94, resolutionunit=2], baseline, precision 8, 1000x300, components 3
downloaded
Chrome Cache Entry: 180
PNG image data, 89 x 19, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 181
ASCII text, with very long lines (65397)
downloaded
Chrome Cache Entry: 182
ASCII text, with very long lines (33677), with no line terminators
dropped
Chrome Cache Entry: 183
ASCII text, with very long lines (4589), with no line terminators
dropped
Chrome Cache Entry: 184
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 185
PNG image data, 94 x 70, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 186
ASCII text, with very long lines (52717), with no line terminators
dropped
Chrome Cache Entry: 187
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 188
PNG image data, 610 x 48, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 189
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 190
ASCII text, with very long lines (724)
downloaded
Chrome Cache Entry: 191
PNG image data, 89 x 19, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 192
PNG image data, 513 x 496, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 193
Web Open Font Format (Version 2), TrueType, length 19360, version 1.0
downloaded
Chrome Cache Entry: 194
PNG image data, 960 x 600, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 195
PNG image data, 94 x 70, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 196
ASCII text, with very long lines (52717), with no line terminators
dropped
Chrome Cache Entry: 197
ASCII text, with very long lines (52717), with no line terminators
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (724)
downloaded
Chrome Cache Entry: 199
ASCII text, with very long lines (1434), with no line terminators
downloaded
Chrome Cache Entry: 200
PNG image data, 610 x 48, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 201
PNG image data, 513 x 496, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 202
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, comment: "Created with GIMP on a Mac", progressive, precision 8, 320x55, components 3
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (26336), with CRLF line terminators
dropped
Chrome Cache Entry: 204
JPEG image data, Exif standard: [TIFF image data, big-endian, direntries=6, orientation=upper-left, xresolution=86, yresolution=94, resolutionunit=2], baseline, precision 8, 1000x300, components 3
dropped
Chrome Cache Entry: 205
HTML document, Unicode text, UTF-8 text, with very long lines (3128), with CRLF line terminators
downloaded
Chrome Cache Entry: 206
HTML document, ASCII text, with very long lines (508), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 207
HTML document, ASCII text, with very long lines (516), with CRLF line terminators
downloaded
Chrome Cache Entry: 208
ASCII text, with very long lines (33677), with no line terminators
downloaded
Chrome Cache Entry: 209
HTML document, ASCII text, with very long lines (17272), with no line terminators
downloaded
Chrome Cache Entry: 210
PNG image data, 657 x 163, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 211
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 250x250, components 3
downloaded
Chrome Cache Entry: 212
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
downloaded
Chrome Cache Entry: 213
HTML document, ASCII text, with very long lines (639), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 214
JSON data
dropped
Chrome Cache Entry: 215
JSON data
downloaded
Chrome Cache Entry: 216
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 217
PNG image data, 728 x 90, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 218
ASCII text, with very long lines (1434), with no line terminators
dropped
Chrome Cache Entry: 219
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 220
PNG image data, 960 x 600, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 221
PNG image data, 300 x 250, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 222
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=4, xresolution=62, yresolution=70, resolutionunit=2, software=Paint.NET v3.5.10], baseline, precision 8, 59x59, components 3
dropped
Chrome Cache Entry: 223
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
dropped
Chrome Cache Entry: 224
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 225
PNG image data, 728 x 90, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 226
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
downloaded
Chrome Cache Entry: 227
JSON data
downloaded
Chrome Cache Entry: 228
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 229
JSON data
dropped
Chrome Cache Entry: 230
Unicode text, UTF-8 text, with very long lines (16246), with CRLF line terminators
downloaded
Chrome Cache Entry: 231
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 232
PNG image data, 252 x 209, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 233
ASCII text, with very long lines (52717), with no line terminators
downloaded
Chrome Cache Entry: 234
Unicode text, UTF-8 (with BOM) text, with very long lines (65070)
downloaded
Chrome Cache Entry: 235
ASCII text, with very long lines (46884)
downloaded
Chrome Cache Entry: 236
HTML document, Unicode text, UTF-8 text, with very long lines (10759), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 237
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
downloaded
Chrome Cache Entry: 238
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 250x250, components 3
downloaded
Chrome Cache Entry: 239
ASCII text, with very long lines (59893)
downloaded
Chrome Cache Entry: 240
PNG image data, 252 x 209, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 241
HTML document, ASCII text, with very long lines (630), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 242
JSON data
dropped
Chrome Cache Entry: 243
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 244
Unicode text, UTF-8 text, with very long lines (65449)
dropped
Chrome Cache Entry: 245
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 246
PNG image data, 604 x 426, 8-bit/color RGB, interlaced
dropped
Chrome Cache Entry: 247
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 248
PNG image data, 604 x 426, 8-bit/color RGB, interlaced
downloaded
Chrome Cache Entry: 249
PNG image data, 601 x 424, 8-bit/color RGB, interlaced
downloaded
Chrome Cache Entry: 250
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 251
ASCII text, with very long lines (65397)
dropped
Chrome Cache Entry: 252
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
dropped
Chrome Cache Entry: 253
PNG image data, 657 x 163, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 254
ASCII text, with very long lines (26336), with CRLF line terminators
downloaded
Chrome Cache Entry: 255
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 256
ASCII text, with very long lines (59893)
dropped
Chrome Cache Entry: 257
PNG image data, 556 x 490, 8-bit/color RGB, interlaced
dropped
Chrome Cache Entry: 258
PNG image data, 140 x 540, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 259
ASCII text, with very long lines (4589), with no line terminators
downloaded
Chrome Cache Entry: 260
Unicode text, UTF-8 text, with very long lines (65449)
downloaded
Chrome Cache Entry: 261
PNG image data, 300 x 250, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 262
ASCII text, with very long lines (65451)
dropped
Chrome Cache Entry: 263
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
downloaded
Chrome Cache Entry: 264
PNG image data, 600 x 426, 8-bit/color RGB, interlaced
downloaded
Chrome Cache Entry: 265
PNG image data, 16 x 16, 4-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 266
JSON data
downloaded
Chrome Cache Entry: 267
PNG image data, 648 x 346, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 268
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, comment: "Created with GIMP on a Mac", progressive, precision 8, 320x55, components 3
dropped
There are 115 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2320 --field-trial-handle=2280,i,759447292481035484,14919719059576153653,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://144.126.159.102"

URLs

Name
IP
Malicious
http://144.126.159.102
malicious
https://blogs.iis.net/mvolo/Fixing-W3WPexe-memory-leaks-is-easier-than-you-think
malicious
http://144.126.159.102/iis-85.png
144.126.159.102
malicious
http://144.126.159.102/favicon.ico
144.126.159.102
malicious
https://effectus.nui.media/pipeline/680044/0/vc?z=effectus&dim=668296&kw=&click=&abr=$imginiframe
unknown
http://caniuse.com/#feat=http2
unknown
https://effectus.nui.media/pipeline/668290/0/vc?z=effectus&dim=668283&kw=&click=&abr=$imginiframe
unknown
https://blogs.iis.net/davidso/rss
unknown
https://developers.google.com/recaptcha/docs/faq#localhost_support
unknown
https://effectus.nui.media/pipeline/680043/0/vh?z=effectus&dim=668296&kw=&click=
unknown
https://effectus.nui.media/pipeline/674040/0/cc?z=effectus
unknown
https://support.google.com/recaptcha#6262736
unknown
https://crap2.com"
unknown
https://www.linkedin.com/cws/share?url=$
unknown
https://effectus.nui.media/pipeline/680043/0/cc?z=effectus
unknown
https://github.com/MicrosoftDocs/iis-docs/blob/live/iis/configuration/index.md
unknown
https://js.monitor.azure.com/scripts/c/ms.analytics-web-3.min.js
13.107.246.45
http://www.asp.net/terms-of-use
unknown
https://github.com/neusamir
unknown
https://aka.ms/msignite_docs_banner
unknown
https://support.google.com/recaptcha/?hl=en#6223828
unknown
https://videoencodingpublic-hgeaeyeba8gycee3.b01.azurefd.net/public-b4da8140-92cf-421c-8b7b-e471d5b9
unknown
http://polymer.github.io/AUTHORS.txt
unknown
https://effectus.nui.media/pipeline/680044/0/vh?ajecscp=1728008888705&z=effectus&dim=668296&kw=&click=
52.200.70.191
https://blogs.iis.net/favicon.ico
13.107.246.51
https://management.azure.com/subscriptions?api-version=2016-06-01
unknown
https://www.twitter.com/inetsrv/
unknown
https://github.com/twbs/bootstrap/graphs/contributors)
unknown
https://blogs.iis.net/iisteam/introducing-iis-cors-1-0
https://aka.ms/pshelpmechoose
unknown
https://support.google.com/recaptcha/#6175971
unknown
https://twitter.com/inetsrv
unknown
https://contoso.com/ab%2fde/.
unknown
https://github.com/MicrosoftDocs/iis-docs/blob/main/iis/configuration/index.md
unknown
https://learn-video.azurefd.net/vod/player
unknown
https://twitter.com/intent/tweet?original_referer=$
unknown
https://effectus.nui.media/pipeline/668290/0/vh?z=effectus&dim=668283&kw=&click=
52.200.70.191
https://www.iis.net/favicon.ico
13.107.246.60
https://effectus.nui.media/pipeline/668682/0/vh?z=effectus&dim=668296&kw=&click=
unknown
https://channel9.msdn.com/Events/Build/2015/3-88
unknown
https://manage.iis.net
unknown
https://contoso.com/ab%2fde/
unknown
https://twitter.com/barcod
unknown
https://support.google.com/recaptcha
unknown
https://effectus.nui.media/pipeline/680044/0/cc?z=effectus
unknown
https://management.azure.com/providers/Microsoft.Portal/consoles/default?api-version=2017-12-01-prev
unknown
https://effectus.nui.media/pipeline/668682/0/vh?ajecscp=1728008902030&z=effectus&dim=668296&kw=&click=
52.200.70.191
https://effectus.nui.media/pipeline/674040/0/vh?z=effectus&dim=602457&kw=&click=
unknown
https://testing.test.com/a_page_that_returns_a_302.aspx
unknown
http://polymer.github.io/PATENTS.txt
unknown
https://www.iis.net/downloads/microsoft/iis-compression
https://js.monitor.azure.com/scripts/c/ms.jsll-4.min.js
13.107.246.45
https://github.com/terrimorton
unknown
https://schema.org
unknown
http://polymer.github.io/LICENSE.txt
unknown
https://effectus.nui.media/pipeline/674039/0/vj?z=effectus&dim=602464&kw=&click=&abr=$scriptiniframe
unknown
https://effectus.nui.media/pipeline/680043/0/vc?z=effectus&dim=668296&kw=&click=&abr=$imginiframe
unknown
https://img.nui.media/banners/media/60/602446/66/668282/1645518142624_Microsoft_728_House_May14_-_Microsoft_Azure_AEB84987C.png
18.245.86.33
https://www.google.com/recaptcha/api2/webworker.js?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY
142.250.184.196
https://effectus.nui.media/pipeline/674040/0/vc?z=effectus&dim=602457&kw=&click=&abr=$imginiframe
unknown
https://effectus.nui.media/pipeline/680044/0/vh?z=effectus&dim=668296&kw=&click=
unknown
https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
unknown
https://authoring-docs-microsoft.poolparty.biz/devrel/5e8ad6db-8b8c-452c-b81a-f285ec58edd4
unknown
https://play.google.com/log?format=json&hasfast=true
unknown
https://effectus.nui.media/pipeline/668290/0/vh?ajecscp=1728008888706&z=effectus&dim=668283&kw=&click=
52.200.70.191
https://blogs.iis.net/
unknown
https://www.iis.net/downloads/microsoft/url- …
unknown
https://effectus.nui.media/pipeline/680044/0/vj?z=effectus&dim=668296&kw=&click=&abr=$scriptiniframe
unknown
https://effectus.nui.media/pipeline/674039/0/vc?z=effectus&dim=602464&kw=&click=&abr=$imginiframe
unknown
https://octokit.github.io/rest.js/#throttling
unknown
https://www.iis.net/Content/downloads.css
13.107.246.60
https://blogs.iis.net/iisteam/rss
unknown
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://www.iis.net/downloads/microsoft/url-rewrite
unknown
https://github.com/js-cookie/js-cookie
unknown
https://effectus.nui.media/pipeline/668682/0/vh?z=effectus&dim=668296&kw=&click=
52.200.70.191
http://schema.org/Organization
unknown
http://www.orchardproject.net
unknown
https://github.com/dotnet/try
unknown
https://www.google.com/js/bg/dubcxWuhhbqw8uaLSFFGvELnk5WmffD3wjoYeQZ33gk.js
142.250.184.196
https://blogs.iis.net/davidso/http2
https://authoring-docs-microsoft.poolparty.biz/devrel/d9ae8460-71b5-48c9-9de5-509be092445b
unknown
https://github.com/MicrosoftDocs/iis-docs/blob/22f8c6108ea9ed9330333ede82568276a3162b34/iis/configur
unknown
https://effectus.nui.media/pipeline/680043/0/vh?z=effectus&dim=668296&kw=&click=
52.200.70.191
https://img.nui.media/banners/media/60/602446/66/668282/1631935228275_Microsoft_Home_Page_Promo_610x48_MSDN1_May14.png
18.245.86.33
https://www.effectusmedia.com/?site=iis#contactus
unknown
https://effectus.nui.media/pipeline/668682/0/cc?z=effectus
unknown
https://effectus.nui.media/pipeline/674039/0/cc?z=effectus
unknown
http://powershell.org
unknown
https://blogs.iis.net/bariscaglar/iisadministration-powershell-cmdlets-new-feature-in-windows-10-ser
unknown
https://cloud.google.com/contact
unknown
https://blogs.iis.net/feed/recent-posts.xml
13.107.246.51
https://effectus.nui.media/pipeline/674040/0/vh?ajecscp=1728008929206&z=effectus&dim=602457&kw=&click=
52.200.70.191
https://blogs.iis.net/bariscaglar/rss
unknown
https://www.iis.net/Content/home.css
13.107.246.60
https://img.nui.media/banners/media/60/602446/60/602447/1640645301370_EMG_320x55_system_default_placeholder.jpg
18.245.86.33
https://crap2.com
unknown
https://www.google.com/recaptcha/api.js
142.250.186.132
https://effectus.nui.media/pipeline/674040/0/vh?ajecscp=1728008902032&z=effectus&dim=602457&kw=&click=
52.200.70.191
https://effectus.nui.media/pipeline/674040/0/vj?z=effectus&dim=602457&kw=&click=&abr=$scriptiniframe
unknown
https://blogs.iis.net/iisteam/url-rewrite-v2-1
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
s-part-0023.t-0009.t-msedge.net
13.107.246.51
mvolo.com
104.26.14.193
nuimedia-re-1928154753.us-east-1.elb.amazonaws.com
52.200.70.191
d1dbivni9lj17y.cloudfront.net
18.245.86.33
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.186.132
s-part-0032.t-0009.t-msedge.net
13.107.246.60
js.monitor.azure.com
unknown
iis-umbraco.azurewebsites.net
unknown
c.s-microsoft.com
unknown
www.iis.net
unknown
effectus.nui.media
unknown
img.nui.media
unknown
consentdeliveryfd.azurefd.net
unknown
ajax.aspnetcdn.com
unknown
blogs.iis.net
unknown
There are 6 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
13.107.246.45
s-part-0017.t-0009.t-msedge.net
United States
13.107.246.60
s-part-0032.t-0009.t-msedge.net
United States
192.168.2.5
unknown
unknown
142.250.186.132
www.google.com
United States
142.250.184.196
unknown
United States
52.200.70.191
nuimedia-re-1928154753.us-east-1.elb.amazonaws.com
United States
18.245.86.33
d1dbivni9lj17y.cloudfront.net
United States
13.107.246.51
s-part-0023.t-0009.t-msedge.net
United States
104.26.14.193
mvolo.com
United States
18.245.86.107
unknown
United States
216.58.206.68
unknown
United States
144.126.159.102
unknown
United States
239.255.255.250
unknown
Reserved
There are 3 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
http://144.126.159.102/
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://blogs.iis.net/iisteam/url-rewrite-v2-1
https://blogs.iis.net/iisteam/introducing-iis-cors-1-0
https://blogs.iis.net/bariscaglar/iisadministration-powershell-cmdlets-new-feature-in-windows-10-server-2016
https://blogs.iis.net/davidso/http2
https://www.iis.net/downloads/microsoft/iis-compression
https://www.iis.net/downloads/microsoft/iis-compression
https://www.iis.net/downloads/microsoft/iis-compression
https://learn.microsoft.com/en-us/iis/configuration/
https://learn.microsoft.com/en-us/iis/configuration/
https://blogs.iis.net/mvolo/Fixing-W3WPexe-memory-leaks-is-easier-than-you-think
There are 8 hidden doms, click here to show them.