IOC Report
https://flodesk.com/c/XO18L9?utm_medium=referral&utm_source=email-footer

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 13:27:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 13:27:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:00:51 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 13:27:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 13:27:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 13:27:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 224
ASCII text, with very long lines (9544)
downloaded
Chrome Cache Entry: 225
Unicode text, UTF-8 text, with very long lines (10181)
downloaded
Chrome Cache Entry: 226
ASCII text, with very long lines (4021)
dropped
Chrome Cache Entry: 227
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x963, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 228
JSON data
downloaded
Chrome Cache Entry: 229
ASCII text, with very long lines (4823), with no line terminators
dropped
Chrome Cache Entry: 230
JSON data
dropped
Chrome Cache Entry: 231
Unicode text, UTF-8 text, with very long lines (50522), with no line terminators
downloaded
Chrome Cache Entry: 232
ASCII text, with very long lines (2204), with no line terminators
dropped
Chrome Cache Entry: 233
gzip compressed data, original size modulo 2^32 6588
downloaded
Chrome Cache Entry: 234
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 235
ASCII text, with very long lines (65453), with escape sequences
downloaded
Chrome Cache Entry: 236
ASCII text, with very long lines (2200)
downloaded
Chrome Cache Entry: 237
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 238
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 239
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x745, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 240
ASCII text, with very long lines (4618)
dropped
Chrome Cache Entry: 241
ASCII text, with very long lines (2751), with no line terminators
downloaded
Chrome Cache Entry: 242
ASCII text, with very long lines (32096)
downloaded
Chrome Cache Entry: 243
HTML document, ASCII text, with very long lines (6642)
downloaded
Chrome Cache Entry: 244
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x745, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 245
ASCII text, with very long lines (14273)
dropped
Chrome Cache Entry: 246
Unicode text, UTF-8 text, with very long lines (65443)
dropped
Chrome Cache Entry: 247
JSON data
dropped
Chrome Cache Entry: 248
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 249
ASCII text, with very long lines (10955)
downloaded
Chrome Cache Entry: 250
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x745, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 251
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 252
ASCII text, with very long lines (46506)
downloaded
Chrome Cache Entry: 253
Unicode text, UTF-8 text, with very long lines (10181)
dropped
Chrome Cache Entry: 254
ASCII text, with very long lines (4765), with no line terminators
dropped
Chrome Cache Entry: 255
ASCII text, with very long lines (1925)
dropped
Chrome Cache Entry: 256
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x745, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 257
Unicode text, UTF-8 text, with very long lines (65434)
dropped
Chrome Cache Entry: 258
ASCII text, with very long lines (57671), with no line terminators
dropped
Chrome Cache Entry: 259
ASCII text, with very long lines (2302)
dropped
Chrome Cache Entry: 260
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 261
ASCII text, with very long lines (4021)
downloaded
Chrome Cache Entry: 262
Web Open Font Format (Version 2), TrueType, length 50044, version 1.328
downloaded
Chrome Cache Entry: 263
JSON data
downloaded
Chrome Cache Entry: 264
ASCII text, with very long lines (4241)
downloaded
Chrome Cache Entry: 265
PNG image data, 640 x 640, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 266
HTML document, ASCII text, with very long lines (2531), with no line terminators
downloaded
Chrome Cache Entry: 267
HTML document, ASCII text, with very long lines (2496), with no line terminators
downloaded
Chrome Cache Entry: 268
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x1245, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 269
HTML document, ASCII text, with very long lines (6642)
downloaded
Chrome Cache Entry: 270
ASCII text, with very long lines (2948)
dropped
Chrome Cache Entry: 271
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 272
ASCII text, with very long lines (4823), with no line terminators
dropped
Chrome Cache Entry: 273
TrueType Font data, digitally signed, 17 tables, 1st "DSIG", 54 names, Macintosh, 2022, Copyright by Optimo SARL. All rights reserved.FlotesqueGXRegular1.005;OPTM;FlotesqueGXVers
downloaded
Chrome Cache Entry: 274
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 275
Web Open Font Format, TrueType, length 66567, version 1.328
downloaded
Chrome Cache Entry: 276
ASCII text, with very long lines (65452)
dropped
Chrome Cache Entry: 277
ASCII text, with very long lines (9664)
dropped
Chrome Cache Entry: 278
Web Open Font Format (Version 2), TrueType, length 62375, version 1.131
downloaded
Chrome Cache Entry: 279
gzip compressed data, was "tmpogqwyg53", last modified: Wed Oct 2 13:43:43 2024, max compression, original size modulo 2^32 291882
downloaded
Chrome Cache Entry: 280
ASCII text, with very long lines (661)
downloaded
Chrome Cache Entry: 281
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 282
Unicode text, UTF-8 text, with very long lines (65443)
downloaded
Chrome Cache Entry: 283
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 284
Unicode text, UTF-8 text, with very long lines (23800), with no line terminators
downloaded
Chrome Cache Entry: 285
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x1245, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 286
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x1245, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 287
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
downloaded
Chrome Cache Entry: 288
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 289
ASCII text, with very long lines (4824), with no line terminators
dropped
Chrome Cache Entry: 290
ASCII text
downloaded
Chrome Cache Entry: 291
HTML document, ASCII text, with very long lines (2531), with no line terminators
downloaded
Chrome Cache Entry: 292
ASCII text, with very long lines (4241)
dropped
Chrome Cache Entry: 293
PNG image data, 640 x 640, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 294
ASCII text, with very long lines (2751), with no line terminators
dropped
Chrome Cache Entry: 295
gzip compressed data, was "tmpogqwyg53", last modified: Wed Oct 2 13:43:43 2024, max compression, original size modulo 2^32 291882
dropped
Chrome Cache Entry: 296
ASCII text, with very long lines (4269)
downloaded
Chrome Cache Entry: 297
TrueType Font data, digitally signed, 17 tables, 1st "DSIG", 54 names, Macintosh, 2022, Copyright by Optimo SARL. All rights reserved.FlotesqueGXRegular1.005;OPTM;FlotesqueGXVers
downloaded
Chrome Cache Entry: 298
ASCII text, with very long lines (11532)
dropped
Chrome Cache Entry: 299
JSON data
downloaded
Chrome Cache Entry: 300
RIFF (little-endian) data, Web/P image, VP8 encoding, 1080x681, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 301
ASCII text, with very long lines (9217)
downloaded
Chrome Cache Entry: 302
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x745, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 303
ASCII text, with very long lines (65451)
dropped
Chrome Cache Entry: 304
ASCII text, with very long lines (34384)
dropped
Chrome Cache Entry: 305
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x963, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 306
gzip compressed data, original size modulo 2^32 6588
dropped
Chrome Cache Entry: 307
ASCII text, with very long lines (2948)
downloaded
Chrome Cache Entry: 308
HTML document, ASCII text, with very long lines (1238)
dropped
Chrome Cache Entry: 309
Web Open Font Format, TrueType, length 66584, version 1.328
downloaded
Chrome Cache Entry: 310
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 311
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 312
JSON data
downloaded
Chrome Cache Entry: 313
JSON data
downloaded
Chrome Cache Entry: 314
ASCII text, with very long lines (44125)
downloaded
Chrome Cache Entry: 315
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x1245, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 316
ASCII text, with very long lines (2302)
downloaded
Chrome Cache Entry: 317
ASCII text, with very long lines (9544)
dropped
Chrome Cache Entry: 318
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 319
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 320
ASCII text, with very long lines (9974), with no line terminators
downloaded
Chrome Cache Entry: 321
ASCII text, with very long lines (14273)
downloaded
Chrome Cache Entry: 322
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
dropped
Chrome Cache Entry: 323
ASCII text, with very long lines (34384)
downloaded
Chrome Cache Entry: 324
Web Open Font Format (Version 2), TrueType, length 49652, version 1.328
downloaded
Chrome Cache Entry: 325
JSON data
downloaded
Chrome Cache Entry: 326
Unicode text, UTF-8 text, with very long lines (50522), with no line terminators
dropped
Chrome Cache Entry: 327
Unicode text, UTF-8 text, with very long lines (32101), with escape sequences
dropped
Chrome Cache Entry: 328
ASCII text, with very long lines (57671), with no line terminators
downloaded
Chrome Cache Entry: 329
ASCII text, with very long lines (4805), with no line terminators
downloaded
Chrome Cache Entry: 330
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 331
HTML document, ASCII text, with very long lines (1238)
downloaded
Chrome Cache Entry: 332
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
dropped
Chrome Cache Entry: 333
ASCII text, with very long lines (65453), with escape sequences
dropped
Chrome Cache Entry: 334
ASCII text, with very long lines (2200)
dropped
Chrome Cache Entry: 335
ASCII text, with very long lines (65452)
downloaded
Chrome Cache Entry: 336
ASCII text, with very long lines (4765), with no line terminators
downloaded
Chrome Cache Entry: 337
HTML document, ASCII text, with very long lines (6642)
downloaded
Chrome Cache Entry: 338
ASCII text, with very long lines (44125)
dropped
Chrome Cache Entry: 339
ASCII text, with very long lines (10955)
dropped
Chrome Cache Entry: 340
JSON data
downloaded
Chrome Cache Entry: 341
Unicode text, UTF-8 text, with very long lines (65434)
downloaded
Chrome Cache Entry: 342
HTML document, ASCII text, with very long lines (2531), with no line terminators
downloaded
Chrome Cache Entry: 343
ASCII text, with very long lines (1925)
downloaded
Chrome Cache Entry: 344
Unicode text, UTF-8 text, with very long lines (32101), with escape sequences
downloaded
Chrome Cache Entry: 345
ASCII text, with very long lines (46506)
dropped
Chrome Cache Entry: 346
ASCII text, with very long lines (4824), with no line terminators
downloaded
Chrome Cache Entry: 347
ASCII text, with very long lines (2204), with no line terminators
downloaded
Chrome Cache Entry: 348
JSON data
dropped
Chrome Cache Entry: 349
JSON data
dropped
Chrome Cache Entry: 350
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x745, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 351
JSON data
dropped
Chrome Cache Entry: 352
ASCII text, with very long lines (65201)
downloaded
Chrome Cache Entry: 353
HTML document, Unicode text, UTF-8 text, with very long lines (65530), with no line terminators
downloaded
Chrome Cache Entry: 354
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 355
ASCII text, with very long lines (65201)
dropped
Chrome Cache Entry: 356
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x1245, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 357
ASCII text, with very long lines (12824)
downloaded
Chrome Cache Entry: 358
ASCII text, with very long lines (9664)
downloaded
Chrome Cache Entry: 359
Unicode text, UTF-8 text, with very long lines (23800), with no line terminators
dropped
Chrome Cache Entry: 360
ASCII text, with very long lines (5552)
downloaded
Chrome Cache Entry: 361
ASCII text, with very long lines (9217)
dropped
Chrome Cache Entry: 362
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x1245, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 363
ASCII text, with very long lines (4823), with no line terminators
downloaded
Chrome Cache Entry: 364
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 365
ASCII text, with very long lines (5552)
dropped
Chrome Cache Entry: 366
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 367
ASCII text, with very long lines (4618)
downloaded
Chrome Cache Entry: 368
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 369
ASCII text, with very long lines (11532)
downloaded
Chrome Cache Entry: 370
ASCII text, with very long lines (661)
dropped
Chrome Cache Entry: 371
ASCII text, with very long lines (4269)
dropped
Chrome Cache Entry: 372
ASCII text
dropped
Chrome Cache Entry: 373
ASCII text, with very long lines (12824)
dropped
Chrome Cache Entry: 374
RIFF (little-endian) data, Web/P image, VP8 encoding, 1080x681, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 375
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
dropped
There are 149 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2080 --field-trial-handle=1828,i,1722524482659085407,1404821862072069460,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://flodesk.com/c/XO18L9?utm_medium=referral&utm_source=email-footer"

URLs

Name
IP
Malicious
https://flodesk.com/c/XO18L9?utm_medium=referral&utm_source=email-footer
https://td.doubleclick.net/td/buyer.wasm
unknown
https://stats.g.doubleclick.net/g/collect
unknown
https://developer.piwik.org/api-reference/tracking-javascript
unknown
https://flodesk.com/_next/static/css/2a73f0daf963b659.css
104.18.18.100
https://app.flodesk.com/9106.5d1c3f1911fe33f53423.js
104.18.19.100
https://app.flodesk.com/5407.d9d9e00610e2242d5f65.js
104.18.19.100
https://github.com/zloirock/core-js
unknown
https://flodesk.com/c/XO18L9?utm_medium=referral&utm_source=email-footer
104.18.18.100
https://www.facebook.com/privacy_sandbox/pixel/register/trigger/?id=2267297196713029&ev=PageView&dl=https%3A%2F%2Fapp.flodesk.com%2Fsign-in%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&rl=&if=false&ts=1728052087516&sw=1280&sh=1024&v=2.9.170&r=stable&ec=0&o=4126&fbp=fb.1.1728052068966.239107593471929419&cs_est=true&ler=empty&cdl=API_unavailable&it=1728052086487&coo=false&rqm=FGET
157.240.253.35
https://piwik.org/free-software/bsd/
unknown
https://flodesk.com/_next/static/media/7f235f6408f5cce6-s.p.woff2
104.18.18.100
https://www.optimo.ch/information-eula
unknown
https://fpnpmcdn.net/v3/hRU980wsbHiJY2DNQtFu/loader_v3.8.2.js
18.245.31.115
https://app.flodesk.com/9177.885cd541748092179b7d.js
104.18.19.100
https://app.flodesk.com/react.2cbf050fd3c86603071d.js
104.18.19.100
https://flodesk.com/_next/static/chunks/images/_next/static/media/Email_1.18d037ff_640_75.webp
104.18.18.100
https://flodesk.com/_next/static/media/73a3027a5887a3aa-s.p.woff2
104.18.18.100
https://www.google.com
unknown
https://www.youtube.com/iframe_api
unknown
https://sentry.io/api/1300455/envelope/?sentry_key=e4dd2cdebfb342e0a71da8a97a8516ee&sentry_version=7
35.186.247.156
https://flodesk.com/_next/static/chunks/framework-5e8ac8dd643904dd.js
104.18.18.100
https://t.co/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=55d7fc1c-082d-4378-8ca3-76a6d3421ecd&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=0086c316-25eb-4a76-b0e4-a4fc5502efa7&tw_document_href=https%3A%2F%2Fapp.flodesk.com%2Fsign-in%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&tw_iframe_status=0&txn_id=onplq&type=javascript&version=2.3.30
172.66.0.227
https://connect.facebook.net/en_US/fbevents.js
157.240.0.6
https://github.com/matomo-org/matomo/blob/master/js/piwik.js
unknown
https://www.optimo.ch/information-eula2022
unknown
https://api.lab.amplitude.com/sdk/v2/vardata?v=0
151.101.194.132
https://flodesk.com/_next/static/media/29d1cad7e28417b4-s.p.woff2
104.18.18.100
https://flodesk.com/favicon-32x32.png
104.18.18.100
https://help.flodesk.com/en/articles/8399230-how-to-add-your-custom-domain-to-flodesk-so-you-can-aut
unknown
https://flodesk.com/_next/static/chunks/main-ae2d596cb01a7225.js
104.18.18.100
https://analytics.flodesk.com
unknown
https://analytics.flodesk.com/matomo.php?action_name=Flodesk%20%7C%20Design%20emails%20people%20love%20to%20get.&idsite=1&rec=1&r=072666&h=10&m=28&s=31&url=https%3A%2F%2Fapp.flodesk.com%2Fsign-up%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&_id=24a3fabc23376a2d&_idts=1728052064&_idvc=1&_idn=0&_rcn=email-footer&_refts=1728052064&_viewts=1728052064&send_image=1&pdf=1&qt=0&realp=0&wma=0&dir=0&fla=0&java=0&gears=0&ag=0&cookie=1&res=1280x1024&gt_ms=179&pv_id=cGAQu3
13.224.189.19
https://app.flodesk.com/2178.c8fae44c504397988a27.js
104.18.19.100
https://pf.flodesk.com/YbYaq/CI0c/VQBz3yJ/n?q=hRU980wsbHiJY2DNQtFu
76.223.60.10
https://api.flodesk.com/status?v=1728052090361
52.222.214.35
https://flodesk.com/_next/static/chunks/images/_next/static/media/CheckoutArch.1e0cac6d_1080_75.webp
104.18.18.100
https://analytics.twitter.com/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=55d7fc1c-082d-4378-8ca3-76a6d3421ecd&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=0086c316-25eb-4a76-b0e4-a4fc5502efa7&tw_document_href=https%3A%2F%2Fapp.flodesk.com%2Fsign-in%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&tw_iframe_status=0&txn_id=onplq&type=javascript&version=2.3.30
104.244.42.195
https://app.flodesk.com/sign-up?fd-source=home
unknown
https://flag.lab.amplitude.com/sdk/v2/flags
151.101.2.132
https://stackoverflow.com/a/19758620
unknown
https://schema.org/Answer
unknown
https://www.google.com/pagead/1p-user-list/800541900/?random
unknown
https://analytics.twitter.com/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=05161e9b-979e-4ad7-b4fe-9227c303bf5b&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=eebea53a-51bb-4ee9-bd39-823e3d57d30b&tw_document_href=https%3A%2F%2Fapp.flodesk.com%2Fsign-up%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&tw_iframe_status=0&txn_id=onplq&type=javascript&version=2.3.30
104.244.42.195
https://analytics.flodesk.com/matomo.php?action_name=Flodesk%20%7C%20Design%20emails%20people%20love%20to%20get.&idsite=1&rec=1&r=565560&h=10&m=28&s=39&url=https%3A%2F%2Fapp.flodesk.com%2Fforgot-password&_id=24a3fabc23376a2d&_idts=1728052064&_idvc=1&_idn=0&_rcn=email-footer&_refts=1728052064&_viewts=1728052064&send_image=1&pdf=1&qt=0&realp=0&wma=0&dir=0&fla=0&java=0&gears=0&ag=0&cookie=1&res=1280x1024&gt_ms=192&pv_id=lk0ZZ1
13.224.189.19
https://flodesk.com/_next/static/chunks/pages/index-6f7a955685c77d21.js
104.18.18.100
https://api.flodesk.com/affiliate/validate
52.222.214.35
https://app.flodesk.com/emails-other.d0260ec0df6c1e873302.png
104.18.19.100
https://cct.google/taggy/agent.js
unknown
https://static.ads-twitter.com/uwt.js
146.75.52.157
https://app.flodesk.com/redux.497738e171491c2e3f45.js
104.18.19.100
https://app.flodesk.com/site.webmanifest
104.18.19.100
https://connect.facebook.net/
unknown
https://app.flodesk.com/6903.a26c32ca233718c49aff.js
104.18.19.100
https://app.flodesk.com/7104.3f8e46b5b5ae7d80c418.js
104.18.19.100
https://flodesk.com/_next/static/chunks/images/_next/static/media/Forms_1.b4bcd5eb_640_75.webp
104.18.18.100
https://flodesk.com/_next/static/chunks/images/_next/static/media/Forms_2.c932b021_640_75.webp
104.18.18.100
https://amazon-cognito-assets.us-east-1.amazoncognito.com/amazon-cognito-advanced-security-data.min.
unknown
https://help.flodesk.com/en/articles/6209662-account-suspension-overview
unknown
https://flodesk.com/_next/static/chunks/pages/_app-326b15a55d1a9386.js
104.18.18.100
https://www.facebook.com/privacy_sandbox/pixel/register/trigger/?id=2267297196713029&ev=PageView&dl=https%3A%2F%2Fapp.flodesk.com%2Fsign-up%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&rl=&if=false&ts=1728052068984&sw=1280&sh=1024&v=2.9.170&r=stable&ec=0&o=4126&fbp=fb.1.1728052068966.239107593471929419&cs_est=true&ler=empty&cdl=API_unavailable&it=1728052066092&coo=false&rqm=FGET
157.240.253.35
https://td.doubleclick.net/td/update?ig_name=4s9476498.1728052061
unknown
https://app.flodesk.com/6729.e4bb5d703e85ba7f8f7b.js
104.18.19.100
https://unpkg.com/web-vitals@2.1.4/dist/web-vitals.umd.js
104.17.249.203
https://app.flodesk.com/9372.97a53bb09a1e5c600328.js
104.18.19.100
https://www.optimo.ch/information-eulaWeight0
unknown
https://flodesk.com/_next/static/chunks/images/_next/static/media/image1.f53bfcd8_640_75.webp
104.18.18.100
https://amazon-cognito-assets.us-east-1.amazoncognito.com/amazon-cognito-advanced-security-data.min.js
13.32.121.76
https://api.flodesk.com/status
unknown
https://edge.fullstory.com/s/fs.js
35.201.112.186
https://app.flodesk.com
unknown
https://flodesk.com/_next/static/media/8eebaf1e9f2f9018-s.p.ttf
104.18.18.100
https://flodesk.com/_next/static/chunks/images/_next/static/media/Email_2.ae248f32_640_75.webp
104.18.18.100
https://api.amplitude.com/
35.164.19.139
https://app.flodesk.com/app.f680c6f9731f03917aea.css
104.18.19.100
https://flodesk.com/_next/static/-MBl1Pedj8kFDUleqqgYZ/_ssgManifest.js
104.18.18.100
https://app.flodesk.com/FlotesqueGX_v2.c9ec4c7a2afbb0ff46b6.ttf
104.18.19.100
https://api.flodesk.com/status?v=1728052113584
52.222.214.35
https://app.flodesk.com/app.8ca5a831ebeea8448b48.js
104.18.19.100
https://flodesk.com/_next/static/chunks/images/_next/static/media/SalesPages_2.ee7ab975_640_75.webp
104.18.18.100
https://api.flodesk.com/user/sign-up
52.222.214.35
https://app.flodesk.com/6458.4c9411809ce214ac931d.js
104.18.19.100
https://td.doubleclick.net/td/bts
unknown
https://t.co/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=b31ee12e-95a9-4b4e-a829-262bfecea714&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=994308d2-a375-4491-84d3-a8ebb09d0200&tw_document_href=https%3A%2F%2Fapp.flodesk.com%2Fforgot-password&tw_iframe_status=0&txn_id=onplq&type=javascript&version=2.3.30
172.66.0.227
https://app.flodesk.com/FlodeskSans-Regular.0c5d787c98fc63656ba5.woff
104.18.19.100
https://flodesk.com/site.webmanifest
104.18.18.100
https://connect.facebook.net/signals/config/2267297196713029?v=2.9.170&r=stable&domain=app.flodesk.com&hme=d82868061a8c707cd31395a3055e7449daa03bd520872727258c39e6af34523e&ex_m=70%2C120%2C106%2C110%2C61%2C4%2C99%2C69%2C16%2C96%2C88%2C51%2C54%2C171%2C174%2C186%2C182%2C183%2C185%2C29%2C100%2C53%2C77%2C184%2C166%2C169%2C179%2C180%2C187%2C130%2C41%2C34%2C142%2C15%2C50%2C193%2C192%2C132%2C18%2C40%2C1%2C43%2C65%2C66%2C67%2C71%2C92%2C17%2C14%2C95%2C91%2C90%2C107%2C52%2C109%2C39%2C108%2C30%2C93%2C26%2C167%2C170%2C139%2C28%2C11%2C12%2C13%2C6%2C7%2C25%2C22%2C23%2C57%2C62%2C64%2C75%2C101%2C27%2C76%2C9%2C8%2C80%2C48%2C21%2C103%2C102%2C104%2C97%2C10%2C20%2C3%2C38%2C74%2C19%2C85%2C56%2C83%2C33%2C73%2C0%2C94%2C32%2C82%2C87%2C47%2C46%2C86%2C37%2C5%2C89%2C81%2C44%2C35%2C84%2C2%2C36%2C63%2C42%2C105%2C45%2C79%2C68%2C111%2C60%2C59%2C31%2C98%2C58%2C55%2C49%2C78%2C72%2C24%2C112
157.240.0.6
https://www.facebook.com/privacy_sandbox/pixel/register/trigger/?id=2267297196713029&ev=PageView&dl=https%3A%2F%2Fapp.flodesk.com%2Fforgot-password&rl=&if=false&ts=1728052122236&sw=1280&sh=1024&v=2.9.170&r=stable&ec=0&o=4126&fbp=fb.1.1728052068966.239107593471929419&cs_est=true&ler=empty&cdl=API_unavailable&it=1728052120553&coo=false&rqm=FGET
157.240.253.35
https://app.flodesk.com/forgot-password
https://t.co/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=05161e9b-979e-4ad7-b4fe-9227c303bf5b&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=eebea53a-51bb-4ee9-bd39-823e3d57d30b&tw_document_href=https%3A%2F%2Fapp.flodesk.com%2Fsign-up%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&tw_iframe_status=0&txn_id=onplq&type=javascript&version=2.3.30
172.66.0.227
https://app.flodesk.com/7762.6408fc5218bf918d4c7a.js
104.18.19.100
https://www.facebook.com/tr/?id=2267297196713029&ev=PageView&dl=https%3A%2F%2Fapp.flodesk.com%2Fsign-up%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&rl=&if=false&ts=1728052068984&sw=1280&sh=1024&v=2.9.170&r=stable&ec=0&o=4126&fbp=fb.1.1728052068966.239107593471929419&cs_est=true&ler=empty&cdl=API_unavailable&it=1728052066092&coo=false&rqm=GET
157.240.253.35
https://t.co/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=6de22f66-d7c5-4a2b-a524-a4cf81498398&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=5b03c623-2f5c-48d9-8418-724e1bd43228&tw_document_href=https%3A%2F%2Fapp.flodesk.com%2Fsign-up%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&tw_iframe_status=0&txn_id=onplq&type=javascript&version=2.3.30
172.66.0.227
https://td.doubleclick.net/td/bjs
unknown
https://app.flodesk.com/FlodeskSans-Medium.f2cdf97ed2dba817824f.woff
104.18.19.100
https://analytics.flodesk.com/matomo.php?action_name=Flodesk%20%7C%20Design%20emails%20people%20love%20to%20get.&idsite=1&rec=1&r=251188&h=10&m=28&s=7&url=https%3A%2F%2Fapp.flodesk.com%2Fsign-in%3Fref%3DXO18L9%26utm_medium%3Dreferral%26utm_source%3Demail-footer&_id=24a3fabc23376a2d&_idts=1728052064&_idvc=1&_idn=0&_rcn=email-footer&_refts=1728052064&_viewts=1728052064&send_image=1&pdf=1&qt=0&realp=0&wma=0&dir=0&fla=0&java=0&gears=0&ag=0&cookie=1&res=1280x1024&gt_ms=320&pv_id=ZzILmh
13.224.189.19
https://flodesk.com/cdn-cgi/scripts/5c5dd728/cloudflare-static/email-decode.min.js
104.18.18.100
https://app.flodesk.com/favicon-32x32.png
104.18.19.100
https://app.flodesk.com/sign-in?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://flodesk.com/_next/static/chunks/images/_next/static/media/image2.6543a0af_640_75.webp
104.18.18.100
https://stackoverflow.com/a/9422689
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
platform.twitter.map.fastly.net
146.75.52.157
fp2e7a.wpc.phicdn.net
192.229.221.95
stats.g.doubleclick.net
108.177.15.155
scontent.xx.fbcdn.net
157.240.0.6
t.co
172.66.0.227
d3fr9cqnbdbvd5.cloudfront.net
52.222.214.35
www.google.com
172.217.18.100
amplitude.map.fastly.net
151.101.2.132
flodesk.com
104.18.18.100
fpnpmcdn.net
18.245.31.115
star-mini.c10r.facebook.com
157.240.253.35
use1-turn.fpjs.io
18.196.235.131
s.twitter.com
104.244.42.195
sentry.io
35.186.247.156
s-part-0017.t-0009.t-msedge.net
13.107.246.45
dna8twue3dlxq.cloudfront.net
13.32.121.50
edge.fullstory.com
35.201.112.186
ax-0001.ax-msedge.net
150.171.27.10
pf.flodesk.com
76.223.60.10
bg.microsoft.map.fastly.net
199.232.214.172
amazon-cognito-assets.us-east-1.amazoncognito.com
13.32.121.76
googleads.g.doubleclick.net
142.250.185.226
api.amplitude.com
35.164.19.139
td.doubleclick.net
142.250.184.194
analytics.google.com
142.250.181.238
app.flodesk.com
104.18.19.100
d1848pq785ug7z.cloudfront.net
13.224.189.19
unpkg.com
104.17.249.203
static.ads-twitter.com
unknown
api.flodesk.com
unknown
www.facebook.com
unknown
public.profitwell.com
unknown
connect.facebook.net
unknown
flag.lab.amplitude.com
unknown
analytics.twitter.com
unknown
api.lab.amplitude.com
unknown
analytics.flodesk.com
unknown
There are 27 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
104.18.19.100
app.flodesk.com
United States
108.177.15.155
stats.g.doubleclick.net
United States
151.101.130.132
unknown
United States
13.224.189.19
d1848pq785ug7z.cloudfront.net
United States
146.75.52.157
platform.twitter.map.fastly.net
Sweden
192.168.2.8
unknown
unknown
35.186.247.156
sentry.io
United States
142.250.185.100
unknown
United States
192.168.2.9
unknown
unknown
142.250.185.226
googleads.g.doubleclick.net
United States
13.32.121.50
dna8twue3dlxq.cloudfront.net
United States
104.18.18.100
flodesk.com
United States
76.223.60.10
pf.flodesk.com
United States
104.17.249.203
unpkg.com
United States
52.222.214.8
unknown
United States
52.222.214.35
d3fr9cqnbdbvd5.cloudfront.net
United States
162.159.140.229
unknown
United States
151.101.66.132
unknown
United States
142.250.184.194
td.doubleclick.net
United States
157.240.0.35
unknown
United States
35.164.145.173
unknown
United States
13.32.121.76
amazon-cognito-assets.us-east-1.amazoncognito.com
United States
239.255.255.250
unknown
Reserved
157.240.253.35
star-mini.c10r.facebook.com
United States
172.217.18.100
www.google.com
United States
18.196.235.131
use1-turn.fpjs.io
United States
13.32.121.105
unknown
United States
157.240.0.6
scontent.xx.fbcdn.net
United States
142.250.181.238
analytics.google.com
United States
18.245.31.115
fpnpmcdn.net
United States
35.164.19.139
api.amplitude.com
United States
13.248.176.92
unknown
United States
151.101.194.132
unknown
United States
104.17.246.203
unknown
United States
13.224.189.118
unknown
United States
142.250.185.132
unknown
United States
104.244.42.3
unknown
United States
104.244.42.195
s.twitter.com
United States
18.245.31.43
unknown
United States
216.58.206.68
unknown
United States
150.171.27.10
ax-0001.ax-msedge.net
United States
35.201.112.186
edge.fullstory.com
United States
151.101.2.132
amplitude.map.fastly.net
United States
172.66.0.227
t.co
United States
142.250.186.66
unknown
United States
There are 35 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-in?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-in?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-in?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://flodesk.com/
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/sign-up?ref=XO18L9&utm_medium=referral&utm_source=email-footer
https://app.flodesk.com/forgot-password
https://app.flodesk.com/forgot-password
https://app.flodesk.com/forgot-password
There are 6 hidden doms, click here to show them.