IOC Report
https://dashboard.greshamupholstery.com/

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 10:47:55 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 10:47:55 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 10:47:55 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 10:47:55 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 10:47:55 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 141
ASCII text, with very long lines (2345)
downloaded
Chrome Cache Entry: 142
Web Open Font Format (Version 2), TrueType, length 19600, version 1.0
downloaded
Chrome Cache Entry: 143
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 144
ASCII text, with very long lines (65466)
downloaded
Chrome Cache Entry: 145
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 146
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 147
HTML document, Unicode text, UTF-8 text, with very long lines (17856)
downloaded
Chrome Cache Entry: 148
C source, ASCII text, with very long lines (754)
downloaded
Chrome Cache Entry: 149
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 150
ASCII text, with very long lines (2452), with no line terminators
downloaded
Chrome Cache Entry: 151
JSON data
downloaded
Chrome Cache Entry: 152
Web Open Font Format (Version 2), TrueType, length 30480, version 1.0
downloaded
Chrome Cache Entry: 153
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 154
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 155
JSON data
downloaded
Chrome Cache Entry: 156
C source, ASCII text, with very long lines (754)
dropped
Chrome Cache Entry: 157
ASCII text, with very long lines (65469)
dropped
Chrome Cache Entry: 158
PNG image data, 1500 x 600, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 159
ASCII text, with very long lines (12701)
dropped
Chrome Cache Entry: 160
ASCII text, with very long lines (26356)
downloaded
Chrome Cache Entry: 161
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 162
JSON data
downloaded
Chrome Cache Entry: 163
ASCII text, with very long lines (65469)
downloaded
Chrome Cache Entry: 164
gzip compressed data, original size modulo 2^32 792809
downloaded
Chrome Cache Entry: 165
ASCII text, with very long lines (65466)
dropped
Chrome Cache Entry: 166
ASCII text, with very long lines (613)
dropped
Chrome Cache Entry: 167
Web Open Font Format (Version 2), TrueType, length 34852, version 1.0
downloaded
Chrome Cache Entry: 168
ASCII text, with very long lines (4031)
downloaded
Chrome Cache Entry: 169
HTML document, Unicode text, UTF-8 text, with very long lines (18406)
downloaded
Chrome Cache Entry: 170
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 7751
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (65472)
dropped
Chrome Cache Entry: 172
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 173
ASCII text, with very long lines (396), with no line terminators
downloaded
Chrome Cache Entry: 174
ASCII text, with very long lines (2528)
dropped
Chrome Cache Entry: 175
HTML document, Unicode text, UTF-8 text, with very long lines (17074)
downloaded
Chrome Cache Entry: 176
ASCII text, with very long lines (56876), with no line terminators
downloaded
Chrome Cache Entry: 177
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 24134
downloaded
Chrome Cache Entry: 178
ASCII text
dropped
Chrome Cache Entry: 179
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 180
HTML document, ASCII text, with very long lines (7995)
downloaded
Chrome Cache Entry: 181
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 182
ASCII text, with very long lines (723), with no line terminators
downloaded
Chrome Cache Entry: 183
gzip compressed data, was "tmpwpxf9m60", last modified: Thu Sep 26 19:05:56 2024, max compression, original size modulo 2^32 43575
downloaded
Chrome Cache Entry: 184
JSON data
downloaded
Chrome Cache Entry: 185
ASCII text, with very long lines (396), with no line terminators
dropped
Chrome Cache Entry: 186
ASCII text, with very long lines (1879)
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 188
ASCII text, with very long lines (1879)
dropped
Chrome Cache Entry: 189
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 190
ASCII text, with very long lines (723), with no line terminators
dropped
Chrome Cache Entry: 191
HTML document, ASCII text, with very long lines (1559)
downloaded
Chrome Cache Entry: 192
gzip compressed data, original size modulo 2^32 792809
dropped
Chrome Cache Entry: 193
ASCII text, with very long lines (20050), with no line terminators
downloaded
Chrome Cache Entry: 194
ASCII text, with very long lines (2343)
dropped
Chrome Cache Entry: 195
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 24134
dropped
Chrome Cache Entry: 196
ASCII text, with very long lines (18381), with no line terminators
downloaded
Chrome Cache Entry: 197
JSON data
downloaded
Chrome Cache Entry: 198
gzip compressed data, was "tmpwpxf9m60", last modified: Thu Sep 26 19:05:56 2024, max compression, original size modulo 2^32 43575
dropped
Chrome Cache Entry: 199
JSON data
dropped
Chrome Cache Entry: 200
ASCII text, with very long lines (2452), with no line terminators
dropped
Chrome Cache Entry: 201
gzip compressed data, was "tmpogqwyg53", last modified: Wed Oct 2 13:43:43 2024, max compression, original size modulo 2^32 291882
dropped
Chrome Cache Entry: 202
JSON data
dropped
Chrome Cache Entry: 203
JSON data
downloaded
Chrome Cache Entry: 204
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 205
ASCII text, with very long lines (12701)
downloaded
Chrome Cache Entry: 206
ASCII text, with very long lines (38064)
dropped
Chrome Cache Entry: 207
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 55734
dropped
Chrome Cache Entry: 208
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 209
HTML document, Unicode text, UTF-8 text, with very long lines (15543)
downloaded
Chrome Cache Entry: 210
HTML document, ASCII text, with very long lines (8009)
downloaded
Chrome Cache Entry: 211
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 212
JSON data
downloaded
Chrome Cache Entry: 213
ASCII text, with very long lines (3833)
downloaded
Chrome Cache Entry: 214
Web Open Font Format (Version 2), TrueType, length 19684, version 1.0
downloaded
Chrome Cache Entry: 215
ASCII text, with very long lines (21556)
dropped
Chrome Cache Entry: 216
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 217
HTML document, ASCII text, with very long lines (7959)
downloaded
Chrome Cache Entry: 218
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 219
ASCII text, with very long lines (4026), with no line terminators
downloaded
Chrome Cache Entry: 220
Web Open Font Format (Version 2), TrueType, length 103388, version 1.0
downloaded
Chrome Cache Entry: 221
HTML document, ASCII text, with very long lines (8009)
downloaded
Chrome Cache Entry: 222
Unicode text, UTF-8 text, with very long lines (65527), with no line terminators
downloaded
Chrome Cache Entry: 223
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 224
PNG image data, 1500 x 600, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 225
ASCII text, with very long lines (4026), with no line terminators
dropped
Chrome Cache Entry: 226
ASCII text, with very long lines (2528)
downloaded
Chrome Cache Entry: 227
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 228
JSON data
downloaded
Chrome Cache Entry: 229
ASCII text
dropped
Chrome Cache Entry: 230
ASCII text
downloaded
Chrome Cache Entry: 231
HTML document, ASCII text, with very long lines (8007)
downloaded
Chrome Cache Entry: 232
ASCII text, with very long lines (38064)
downloaded
Chrome Cache Entry: 233
HTML document, Unicode text, UTF-8 text, with very long lines (17872)
downloaded
Chrome Cache Entry: 234
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 235
ASCII text
dropped
Chrome Cache Entry: 236
PNG image data, 48 x 48, 4-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 237
gzip compressed data, was "tmpogqwyg53", last modified: Wed Oct 2 13:43:43 2024, max compression, original size modulo 2^32 291882
downloaded
Chrome Cache Entry: 238
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 239
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
dropped
Chrome Cache Entry: 240
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 55734
downloaded
Chrome Cache Entry: 241
ASCII text, with very long lines (2345)
dropped
Chrome Cache Entry: 242
ASCII text
downloaded
Chrome Cache Entry: 243
HTML document, Unicode text, UTF-8 text, with very long lines (16388)
downloaded
Chrome Cache Entry: 244
ASCII text, with very long lines (1879)
downloaded
Chrome Cache Entry: 245
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 246
ASCII text, with very long lines (1879)
dropped
Chrome Cache Entry: 247
PNG image data, 48 x 48, 4-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 248
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 249
HTML document, ASCII text, with very long lines (7993)
downloaded
Chrome Cache Entry: 250
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 251
HTML document, ASCII text, with very long lines (14200)
downloaded
Chrome Cache Entry: 252
ASCII text, with very long lines (613)
downloaded
Chrome Cache Entry: 253
ASCII text, with very long lines (21556)
downloaded
Chrome Cache Entry: 254
ASCII text
dropped
Chrome Cache Entry: 255
ASCII text
downloaded
Chrome Cache Entry: 256
HTML document, ASCII text, with very long lines (7993)
downloaded
Chrome Cache Entry: 257
ASCII text
dropped
Chrome Cache Entry: 258
ASCII text, with very long lines (65472)
downloaded
Chrome Cache Entry: 259
GIF image data, version 89a, 1 x 1
dropped
There are 116 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2504 --field-trial-handle=1908,i,14006805165311992213,1977883239639595513,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://dashboard.greshamupholstery.com/"

URLs

Name
IP
Malicious
https://dashboard.greshamupholstery.com/
https://www.google.com/adsense/domains/caf.js?abp=1&adsdeli=true
142.250.186.100
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=qkdwcojoc1yj&aqid=Ftb_ZsmlG5HTovsPkNLw-Q4&psid=7840396037&pbt=bs&adbx=366.5&adby=144&adbh=1386&adbw=530&adbah=506%2C439%2C439&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=245%7C0%7C1279%7C3%7C1177&lle=0&ifv=1&hpt=1
142.250.185.110
https://dashboard.greshamupholstery.com/
185.53.179.172
https://dashboard.greshamupholstery.com/ls.php?t=66ffd60b&token=5e2064eb6a071cf13363f9269ed32e123d9d9594
185.53.179.172
https://dashboard.greshamupholstery.com/ls.php?t=66ffd62f&token=62c2ddff4a4b5e40cb30fc3b9b76d7c9247ceb79
185.53.179.172
https://syndicatedsearch.goog
https://widget.trustpilot.com/fonts/ubuntu/4iCs6KVjbNBYlgoKfA72j00.woff2)
unknown
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqn5OkbVrpDFWjrbrtqqWt51km_XC
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCxCvjsGyN.woff2)
unknown
https://widget.trustpilot.com/fonts/ubuntu.css
52.222.236.60
https://rs.fullstory.com/rec/bundle?OrgId=YKBRC&UserId=6190429460312064&SessionId=2437968585816338444&PageId=4334449162433034195&Seq=2&ClientTime=1728042516573&PageStart=1728042509410&PrevBundleTime=1728042513878&IsNewSession=true&DeltaT=2705&ContentEncoding=gzip
35.186.194.58
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCxCvjtGyNL4U.woff2)
unknown
https://www.godaddy.com
unknown
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqkMuvhveIA24ZxSTGrRHxYRScEeY
unknown
https://ampcid.google.com/v1/publisher:getClientId
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCjC3jsGyN.woff2)
unknown
https://www.trustpilot.com/evaluate/embed/www.godaddy.com
unknown
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrql69u_3JMnE3XvQpNsitsC1Pwtrp
unknown
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=6b9e1nohbs1t&aqid=Itb_ZqnMO6qPhcIP54mN-Q0&psid=7840396037&pbt=bv&adbx=366.5&adby=144&adbh=1368&adbw=530&adbah=506%2C439%2C421&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=39%7C0%7C1778%7C3%7C1286&lle=0&ifv=1&hpt=1
142.250.185.110
https://dashboard.greshamupholstery.com
https://www.geltman.com/
unknown
https://www.google.com
unknown
https://dashboard.greshamupholstery.com/ls.php?t=66ffd621&token=c02d3417505e901309d49087474d21d19f2f628f
185.53.179.172
https://dashboard.greshamupholstery.com/track.php?domain=greshamupholstery.com&caf=1&toggle=answercheck&answer=yes&uid=MTcyODA0MjU0My4yNTY0OmY2OWUwMWNmMjRhYzhiZDlmMzE2NWI1ZTYxOWQ2NjM0ZDI5NjI0ZjBkZDE0ZmY4MjM3Njg3NjYxMWExM2FjMzQ6NjZmZmQ2MmYzZTk5Mg%3D%3D
185.53.179.172
https://dashboard.greshamupholstery.com/track.php?domain=greshamupholstery.com&toggle=browserjs&uid=MTcyODA0MjQ3Ni4zNDk0OmRiN2RjZWJmMDBmZjU2MGJjMmYyMzczMjUxN2Y0YTc5M2UyNjI3YTRiNWZhZmJhZmU5MjE1ZWE2YzAyMTRlZjE6NjZmZmQ1ZWM1NTRmMg%3D%3D
185.53.179.172
http://c.parkingcrew.net/scripts/sale_form.js
unknown
https://www.google.com/images/afs/snowman.png
142.250.184.196
https://dashboard.greshamupholstery.com/ls.php?t=66ffd614&token=6c7b2fb3d4d3f8629dc77b0b4b5b4ac97a5fb260
185.53.179.172
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqlJT0_W5cDqd3Fc1Qmmho1N5Ft8K
unknown
https://dashboard.greshamupholstery.com/ls.php?t=66ffd603&token=1ceb0e2c8f33d4b7511c69492b7e44303b533dd4
185.53.179.172
https://github.com/krux/postscribe/blob/master/LICENSE.
unknown
https://stats.g.doubleclick.net/j/collect
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCs6KVjbNBYlgoKew72j00.woff2)
unknown
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=hgi6ud3xfp0&aqid=Ktb_ZryDDMWVovsP04ruiA8&psid=7840396037&pbt=bs&adbx=366.5&adby=144&adbh=1355&adbw=530&adbah=475%2C439%2C439&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=23%7C0%7C1276%7C3%7C1155&lle=0&ifv=1&hpt=1
142.250.185.110
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=umxtd1f8p84w&aqid=MNb_ZrX3L-yvovsPjPLhuQ4&psid=7840396037&pbt=bv&adbx=366.5&adby=144&adbh=1386&adbw=530&adbah=475%2C439%2C470&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=52%7C0%7C1568%7C3%7C1021&lle=0&ifv=1&hpt=1
142.250.185.110
http://domainnamesales.com/lander?d=greshamupholstery.com&source=parkingcrew
13.248.169.48
https://syndicatedsearch.goog/afs/ads/i/iframe.html
142.250.184.238
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqlty-1Ez28_QM1ST7HnUVkK-uK3S
unknown
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqlg1_N4lwl-QiPoXo9RP5NUWEytu
unknown
http://www.chaircaningmaster.com/
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCxCvjvmyNL4U.woff2)
unknown
https://widget.trustpilot.com
https://www.google.com/pagead/1p-conversion/16521530460/?gad_source=1&adview_type=5
unknown
https://rs.fullstory.com/rec/bundle?OrgId=YKBRC&UserId=6190429460312064&SessionId=2437968585816338444&PageId=4334449162433034195&Seq=1&ClientTime=1728042512063&PageStart=1728042509410&PrevBundleTime=0&LastActivity=3292&IsNewSession=true&ContentEncoding=gzip
35.186.194.58
https://widget.trustpilot.com/trustboxes/5419b637fa0340045cd0c936/main.js
52.222.236.60
https://edge.fullstory.com/datalayer/v4/latest.js
35.201.112.186
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqkAfw69e3d0KvZGuCFQjw3EQDyzm
unknown
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=f77uup1hii6u&aqid=Ftb_ZsmlG5HTovsPkNLw-Q4&psid=7840396037&pbt=bv&adbx=366.5&adby=144&adbh=1386&adbw=530&adbah=506%2C439%2C439&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=245%7C0%7C1279%7C3%7C1177&lle=0&ifv=1&hpt=1
142.250.185.110
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqm8dUxdrpAzhOcLuIAznUWaGk4TZ
unknown
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=sn2y4bceadrz&aqid=MNb_ZrX3L-yvovsPjPLhuQ4&psid=7840396037&pbt=bs&adbx=366.5&adby=144&adbh=1386&adbw=530&adbah=475%2C439%2C470&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=52%7C0%7C1568%7C3%7C1021&lle=0&ifv=1&hpt=1
142.250.185.110
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=xbd2v7t8vsje&aqid=Bdb_Zua3B_2UiM0Py52dwAQ&psid=7840396037&pbt=bv&adbx=366.5&adby=144&adbh=1368&adbw=530&adbah=506%2C439%2C421&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=11%7C0%7C1708%7C34%7C1743&lle=0&ifv=1&hpt=1
142.250.185.110
https://dashboard.greshamupholstery.com/track.php?domain=greshamupholstery.com&toggle=browserjs&uid=MTcyODA0MjUyOS4zMDc4OjdjNzk3NTI4NTM5MDNiMWMxZmNhMjgzOWE5NThiMjIzMGRhYmVhOTE4MDA5NWE1N2QzODQwYWY2NDE1Y2Q4Zjg6NjZmZmQ2MjE0YjI1OQ%3D%3D
185.53.179.172
https://dashboard.greshamupholstery.com/ls.php?t=66ffd628&token=8235c51fca1d7a741cb0391dd4574e630d8684eb
185.53.179.172
https://cct.google/taggy/agent.js
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCs6KVjbNBYlgoKfw72.woff2
52.222.236.60
https://dashboard.greshamupholstery.com/?ts=fENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMTEsYnVja2V0MDg4LGJ1Y2tldDA4OSxidWNrZXQwNzd8fHx8fHw2NmZmZDVlYzU1NGMyfHx8MTcyODA0MjQ3Ni4zNzA0fGRjYmNmYmNkYmUxOTMzZTUyODliMzI4ZTI5OTRkOGNhNTFlMGEzNWV8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fHx8MHwwfHwwfHx8MHwwfFcxMD18fDF8VzEwPXwzODMyY2FlMjVlOTQ5YWFhZWY2ODJiNzNlODZlZTk3NWU1ZjkxN2ZmfDB8ZHAtbW9iaWxlLXRlYW1pbnRlcm5ldDAxfDB8MHx8fA%3D%3D&query=Furniture+Re+Upholstery&afdToken=ChMI2fuT8dP0iAMVhNACBx284TOxEm0BlLqpj4ykWvpnhndpGDo3qeOcyMhT7CN35mWgrwgqJwMG70JK91zSJ_hjqGbPSzQKHyHGEBCEpF9angmi2QsUBWy1Kd6zJiCky8Kuwig5_EHtWs_ZzYq4IX93ng5iN5l3aQwyYSJkbb4yRhDy&pcsa=false
185.53.179.172
https://edge.fullstory.com/s/settings/YKBRC/v1/web
35.201.112.186
https://rs.fullstory.com/rec/page
35.186.194.58
https://dashboard.greshamupholstery.com/favicon.ico
185.53.179.172
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqnW---ijjnuU-I-4gi-ZEfENGlcx
unknown
https://dashboard.greshamupholstery.com/track.php?domain=greshamupholstery.com&caf=1&toggle=answercheck&answer=yes&uid=MTcyODA0MjQ5OS4zMDM4OmExZjFkZWU4MzljMTVkY2RmN2VmNDVlM2ViOWIzODIzN2FhOWIzNGNkYzVjNjZiMTk0NmNiMTE1ZTI4NDNmOWM6NjZmZmQ2MDM0YTI4Ng%3D%3D
185.53.179.172
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqkzRKhU49NfJmXTsXUDTyToNFE2S
unknown
https://www.google.%/ads/ga-audiences
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCjC3jvGyNL4U.woff2)
unknown
https://syndicatedsearch.goog/adsense/domains/caf.js?pac=0
142.250.184.238
https://dashboard.greshamupholstery.com/track.php?domain=greshamupholstery.com&caf=1&toggle=answercheck&answer=yes&uid=MTcyODA0MjQ3Ni4zNDk0OmRiN2RjZWJmMDBmZjU2MGJjMmYyMzczMjUxN2Y0YTc5M2UyNjI3YTRiNWZhZmJhZmU5MjE1ZWE2YzAyMTRlZjE6NjZmZmQ1ZWM1NTRmMg%3D%3D
185.53.179.172
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=459mioy3of4y&aqid=79X_ZuKCHsCQxdwP9LPe8AQ&psid=7840396037&pbt=bv&adbx=375&adby=128&adbh=496&adbw=530&adbah=160%2C160%2C160&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=11%7C0%7C1606%7C1325%7C1020&lle=0&ifv=1&hpt=1
142.250.185.110
https://dashboard.greshamupholstery.com/?ts=fENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMTEsYnVja2V0MDg4LGJ1Y2tldDA4OSxidWNrZXQwNzd8fHx8fHw2NmZmZDVlYzU1NGMyfHx8MTcyODA0MjQ3Ni4zNzA0fGRjYmNmYmNkYmUxOTMzZTUyODliMzI4ZTI5OTRkOGNhNTFlMGEzNWV8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fHx8MHwwfHwwfHx8MHwwfFcxMD18fDF8VzEwPXwzODMyY2FlMjVlOTQ5YWFhZWY2ODJiNzNlODZlZTk3NWU1ZjkxN2ZmfDB8ZHAtbW9iaWxlLXRlYW1pbnRlcm5ldDAxfDB8MHx8fA%3D%3D&query=Best+Upholstery+Fabric&afdToken=ChMI2fuT8dP0iAMVhNACBx284TOxEm0BlLqpj3KXoOOieSsu8OiI_MNqrh3fmHmp4dNt5YUltqcFXbRDx9uFZDSFkdC6WuPXx5YnkZMpwKowJLHLJBZJ4zpy2TXEB912P9CwbFSduswoX2ddWPEM50WOYtyzFNcH4aaZqG09av60z8AL&pcsa=false
185.53.179.172
https://rs.fullstory.com/rec/bundle?OrgId=YKBRC&UserId=6190429460312064&SessionId=2437968585816338444&PageId=4334449162433034195&Seq=2&ClientTime=1728042513869&PageStart=1728042509410&PrevBundleTime=1728042513878&IsNewSession=true&SkipResponseBody=true
35.186.194.58
https://afs.googleusercontent.com/ad_icons/standard/publisher_icon_image/search.svg?c=%23ffffff
142.250.181.225
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=rvbin3bv0u6j&aqid=Bdb_Zua3B_2UiM0Py52dwAQ&psid=7840396037&pbt=bs&adbx=366.5&adby=144&adbh=1368&adbw=530&adbah=506%2C439%2C421&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=11%7C0%7C1708%7C34%7C1743&lle=0&ifv=1&hpt=1
142.250.185.110
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=4djnhxrlvs4t&aqid=Itb_ZqnMO6qPhcIP54mN-Q0&psid=7840396037&pbt=bs&adbx=366.5&adby=144&adbh=1368&adbw=530&adbah=506%2C439%2C421&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=39%7C0%7C1778%7C3%7C1286&lle=0&ifv=1&hpt=1
142.250.185.110
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrql6sP1cpsrQla_hGlyaAbkHfmm9X
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCs6KVjbNBYlgoKcg72j00.woff2)
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCjC3jtGyNL4U.woff2)
unknown
https://www.clscustom.com/
unknown
https://domainnamesales.com/lander?d=greshamupholstery.com&source=parkingcrew
13.248.169.48
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCjC3jsGyN.woff2
52.222.236.60
https://rs.fullstory.com/rec/bundle?OrgId=YKBRC&UserId=6190429460312064&SessionId=2437968585816338444&PageId=4334449162433034195&Seq=2&ClientTime=1728042513873&PageStart=1728042509410&PrevBundleTime=1728042513878&LastActivity=5156&IsNewSession=true&ContentEncoding=gzip
35.186.194.58
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=tn7qvt498c1s&aqid=Ddb_ZsKpJsvimLAP4py70Qc&psid=7840396037&pbt=bs&adbx=366.5&adby=144&adbh=1350&adbw=530&adbah=506%2C421%2C421&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=38%7C0%7C1543%7C2%7C1402&lle=0&ifv=1&hpt=1
142.250.185.110
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCjC3js2yNL4U.woff2)
unknown
https://service.force.com/embeddedservice/5.0/esw.min.js
160.8.186.13
https://edge.fullstory.com/s/fs.js
35.201.112.186
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCxCvjvGyNL4U.woff2)
unknown
https://widget.trustpilot.com/stats/TrustboxView?locale=en-US&styleHeight=20px&styleWidth=fit-content&theme=light&fontFamily=Ubuntu&url=https%3A%2F%2Fwww.afternic.com%2Fforsale%2Fdomainnamesales.com%3Futm_source%3DTDFS_DASLNC%26utm_medium%3Dparkedpages%26utm_campaign%3Dx_corp_tdfs-daslnc_base%26traffic_type%3DTDFS_DASLNC%26traffic_id%3Ddaslnc%26d%3Dgreshamupholstery.com%26source%3Dparkingcrew&referrer=http%3A%2F%2Fdomainnamesales.com%2F&userAgent=Mozilla%2F5.0%20(Windows%20NT%2010.0%3B%20Win64%3B%20x64)%20AppleWebKit%2F537.36%20(KHTML%2C%20like%20Gecko)%20Chrome%2F117.0.0.0%20Safari%2F537.36&language=en-US&platform=Win32&nosettings=1&businessUnitId=483fd2b90000640005029919&widgetId=5419b637fa0340045cd0c936
52.222.236.60
https://dashboard.greshamupholstery.com/?ts=fENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMTEsYnVja2V0MDg4LGJ1Y2tldDA4OSxidWNrZXQwNzd8fHx8fHw2NmZmZDVlYzU1NGMyfHx8MTcyODA0MjQ3Ni4zNzA0fGRjYmNmYmNkYmUxOTMzZTUyODliMzI4ZTI5OTRkOGNhNTFlMGEzNWV8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fHx8MHwwfHwwfHx8MHwwfFcxMD18fDF8VzEwPXwzODMyY2FlMjVlOTQ5YWFhZWY2ODJiNzNlODZlZTk3NWU1ZjkxN2ZmfDB8ZHAtbW9iaWxlLXRlYW1pbnRlcm5ldDAxfDB8MHx8fA%3D%3D&query=Sofa+Upholstery&afdToken=ChMI2fuT8dP0iAMVhNACBx284TOxEm0BlLqpj-Uyipd8OUAbb-9p48tzGtSFAP2nFl5VXGRPlc6jDErNnUvX1TE-9Sza1_ODYrxZbRMYkKsjRmYka5q34cbG57h_wZHrndlOoRsWVv6otH8oqHGfkh_GonFKTcJtaAOdiOO9NKE4vqXY&pcsa=false
185.53.179.172
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCjC3jvWyNL4U.woff2)
unknown
https://dashboard.greshamupholstery.com/?ts=fENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMTEsYnVja2V0MDg4LGJ1Y2tldDA4OSxidWNrZXQwNzd8fHx8fHw2NmZmZDVlYzU1NGMyfHx8MTcyODA0MjQ3Ni4zNzA0fGRjYmNmYmNkYmUxOTMzZTUyODliMzI4ZTI5OTRkOGNhNTFlMGEzNWV8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fHx8MHwwfHwwfHx8MHwwfFcxMD18fDF8VzEwPXwzODMyY2FlMjVlOTQ5YWFhZWY2ODJiNzNlODZlZTk3NWU1ZjkxN2ZmfDB8ZHAtbW9iaWxlLXRlYW1pbnRlcm5ldDAxfDB8MHx8fA%3D%3D&query=Best+Upholstery+Fabric&afdToken=ChMI2fuT8dP0iAMVhNACBx284TOxEm0BlLqpj3KXoOOieSsu8OiI_MNqrh3fmHmp4dNt5YUltqcFXbRDx9uFZDSFkdC6WuPXx5YnkZMpwKowJLHLJBZJ4zpy2TXEB912P9CwbFSduswoX2ddWPEM50WOYtyzFNcH4aaZqG09av60z8AL&pcsa=false&nb=0&nm=3
185.53.179.172
https://dashboard.greshamupholstery.com/track.php?domain=greshamupholstery.com&toggle=browserjs&uid=MTcyODA0MjQ5OS4zMDM4OmExZjFkZWU4MzljMTVkY2RmN2VmNDVlM2ViOWIzODIzN2FhOWIzNGNkYzVjNjZiMTk0NmNiMTE1ZTI4NDNmOWM6NjZmZmQ2MDM0YTI4Ng%3D%3D
185.53.179.172
https://syndicatedsearch.goog/afs/gen_204?client=dp-mobile-teaminternet01&output=uds_ads_only&zx=64r58ppqw4t6&aqid=Ddb_ZsKpJsvimLAP4py70Qc&psid=7840396037&pbt=bv&adbx=366.5&adby=144&adbh=1350&adbw=530&adbah=506%2C421%2C421&adbn=master-1&eawp=partner-dp-mobile-teaminternet01&errv=681010707&csala=38%7C0%7C1543%7C2%7C1402&lle=0&ifv=1&hpt=1
142.250.185.110
http://domainnamesales.com
http://code.google.com/p/episodes/
unknown
https://afs.googleusercontent.com/ad_icons/standard/publisher_icon_image/chevron.svg?c=%23ffffff
142.250.181.225
https://widget.trustpilot.com/fonts/ubuntu/4iCv6KVjbNBYlgoCxCvjs2yNL4U.woff2)
unknown
https://www.stapleheadquarters.com/
unknown
https://widget.trustpilot.com/fonts/ubuntu/4iCs6KVjbNBYlgoKcQ72j00.woff2)
unknown
https://dashboard.greshamupholstery.com/track.php?domain=greshamupholstery.com&toggle=browserjs&uid=MTcyODA0MjUzNi42ODI6NWYwOGM4ODBmMmM1YTNlNTNlMTk1ZjYwMTEyODM4OTAyYWRhOTA3ZDc4YzUzMTI3MzEwZTRmYjIyYmY5ZmM5ZDo2NmZmZDYyOGE2ODE2
185.53.179.172
https://adssettings.google.com/whythisad?source=afs_3p&reasons=AXRXrqmsjKZuKCn7XqVo_0mzbTa_9beey
unknown
https://rs.fullstory.com/rec/bundle?OrgId=YKBRC&UserId=6190429460312064&SessionId=2437968585816338444&PageId=4334449162433034195&Seq=3&ClientTime=1728042519574&PageStart=1728042509410&PrevBundleTime=1728042515581&LastActivity=10862&IsNewSession=true&ContentEncoding=gzip
35.186.194.58
https://www.trustpilot.com/review/www.godaddy.com
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
syndicatedsearch.goog
142.250.185.110
s-part-0017.t-0009.t-msedge.net
13.107.246.45
edge.fullstory.com
35.201.112.186
fp2e7a.wpc.phicdn.net
192.229.221.95
domainnamesales.com
13.248.169.48
rs.fullstory.com
35.186.194.58
www.google.com
142.250.186.100
location.l.force.com
160.8.186.13
widget.trustpilot.com
52.222.236.94
dashboard.greshamupholstery.com
185.53.179.172
googlehosted.l.googleusercontent.com
142.250.181.225
d38psrni17bvxu.cloudfront.net
18.66.121.138
s-part-0032.t-0009.t-msedge.net
13.107.246.60
img1.wsimg.com
unknown
events.api.secureserver.net
unknown
afs.googleusercontent.com
unknown
www.afternic.com
unknown
gui.afternic.com
unknown
ds-aksb-a.akamaihd.net
unknown
img6.wsimg.com
unknown
service.force.com
unknown
csp.secureserver.net
unknown
There are 12 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
18.66.121.138
d38psrni17bvxu.cloudfront.net
United States
35.186.194.58
rs.fullstory.com
United States
185.53.179.172
dashboard.greshamupholstery.com
Germany
192.168.2.5
unknown
unknown
18.66.121.69
unknown
United States
52.222.236.60
unknown
United States
160.8.186.13
location.l.force.com
Sweden
142.250.184.196
unknown
United States
142.250.185.68
unknown
United States
13.248.169.48
domainnamesales.com
United States
142.250.184.193
unknown
United States
160.8.188.31
unknown
Sweden
142.250.185.110
syndicatedsearch.goog
United States
142.250.181.225
googlehosted.l.googleusercontent.com
United States
35.201.112.186
edge.fullstory.com
United States
239.255.255.250
unknown
Reserved
52.222.236.94
widget.trustpilot.com
United States
142.250.186.100
www.google.com
United States
142.250.184.238
unknown
United States
142.250.65.164
unknown
United States
There are 10 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://dashboard.greshamupholstery.com
https://dashboard.greshamupholstery.com
https://dashboard.greshamupholstery.com
https://dashboard.greshamupholstery.com
https://dashboard.greshamupholstery.com
https://dashboard.greshamupholstery.com
https://dashboard.greshamupholstery.com
https://dashboard.greshamupholstery.com
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
https://syndicatedsearch.goog
http://domainnamesales.com
https://www.afternic.com
https://www.afternic.com
https://www.afternic.com
https://www.afternic.com
https://widget.trustpilot.com
https://widget.trustpilot.com
There are 24 hidden doms, click here to show them.