IOC Report
https://pre-support.sharefile.com/d-s91413eb0f5a74296ac3b5217e09ba034

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\Desktop\ShareFile.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:14:50 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
malicious
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ShareFile.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:15:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:14:41 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:14:41 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:00:51 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\ShareFile.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:15:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:14:41 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:14:41 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 4 14:14:41 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 170
JSON data
downloaded
Chrome Cache Entry: 171
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 172
ASCII text, with very long lines (65472)
dropped
Chrome Cache Entry: 173
Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
downloaded
Chrome Cache Entry: 174
ASCII text, with very long lines (65476)
downloaded
Chrome Cache Entry: 175
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 176
ASCII text, with very long lines (53925)
downloaded
Chrome Cache Entry: 177
JSON data
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (65473)
downloaded
Chrome Cache Entry: 179
ASCII text, with very long lines (65473)
dropped
Chrome Cache Entry: 180
ASCII text, with very long lines (65475)
downloaded
Chrome Cache Entry: 181
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 182
Web Open Font Format (Version 2), TrueType, length 41268, version 1.0
downloaded
Chrome Cache Entry: 183
Unicode text, UTF-8 text, with very long lines (65240)
dropped
Chrome Cache Entry: 184
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
downloaded
Chrome Cache Entry: 185
ASCII text, with very long lines (6378)
downloaded
Chrome Cache Entry: 186
Web Open Font Format (Version 2), TrueType, length 38228, version 1.0
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (65472)
downloaded
Chrome Cache Entry: 188
ASCII text, with very long lines (724)
dropped
Chrome Cache Entry: 189
Unicode text, UTF-8 text, with very long lines (65399)
dropped
Chrome Cache Entry: 190
ASCII text, with very long lines (65476)
dropped
Chrome Cache Entry: 191
JSON data
dropped
Chrome Cache Entry: 192
ASCII text, with very long lines (65476)
downloaded
Chrome Cache Entry: 193
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 194
ASCII text, with very long lines (65479)
downloaded
Chrome Cache Entry: 195
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 196
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 197
ASCII text, with very long lines (65474)
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (43516)
dropped
Chrome Cache Entry: 199
ASCII text
dropped
Chrome Cache Entry: 200
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 201
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 202
ASCII text, with very long lines (65310)
dropped
Chrome Cache Entry: 204
JSON data
dropped
Chrome Cache Entry: 205
ASCII text, with very long lines (724)
downloaded
Chrome Cache Entry: 206
ASCII text
downloaded
Chrome Cache Entry: 207
Unicode text, UTF-8 text, with very long lines (13545), with no line terminators
downloaded
Chrome Cache Entry: 208
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
dropped
Chrome Cache Entry: 209
Unicode text, UTF-8 text, with very long lines (65471)
dropped
Chrome Cache Entry: 210
ASCII text, with very long lines (1456)
downloaded
Chrome Cache Entry: 211
ASCII text, with very long lines (65473)
downloaded
Chrome Cache Entry: 212
Unicode text, UTF-8 text, with very long lines (65453)
dropped
Chrome Cache Entry: 213
ASCII text, with very long lines (32010)
downloaded
Chrome Cache Entry: 214
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 215
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 216
ASCII text, with very long lines (65473)
dropped
Chrome Cache Entry: 217
Web Open Font Format (Version 2), TrueType, length 36944, version 1.0
downloaded
Chrome Cache Entry: 218
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
dropped
Chrome Cache Entry: 219
JSON data
dropped
Chrome Cache Entry: 220
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 221
Unicode text, UTF-8 text, with very long lines (65464)
dropped
Chrome Cache Entry: 222
Unicode text, UTF-8 text, with very long lines (44068)
downloaded
Chrome Cache Entry: 223
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 224
ASCII text, with very long lines (65479)
dropped
Chrome Cache Entry: 225
ASCII text, with very long lines (18082)
dropped
Chrome Cache Entry: 226
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
downloaded
Chrome Cache Entry: 227
ASCII text, with very long lines (65473)
dropped
Chrome Cache Entry: 228
ASCII text, with very long lines (1808), with no line terminators
dropped
Chrome Cache Entry: 229
Unicode text, UTF-8 text, with very long lines (13545), with no line terminators
dropped
Chrome Cache Entry: 230
ASCII text, with very long lines (65477)
downloaded
Chrome Cache Entry: 231
ASCII text, with very long lines (65474)
dropped
Chrome Cache Entry: 232
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 233
ASCII text, with very long lines (65475)
downloaded
Chrome Cache Entry: 234
ASCII text, with very long lines (65480)
dropped
Chrome Cache Entry: 235
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 236
Unicode text, UTF-8 text, with very long lines (65399)
downloaded
Chrome Cache Entry: 237
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 238
ASCII text, with very long lines (65477)
downloaded
Chrome Cache Entry: 239
ASCII text, with very long lines (724)
downloaded
Chrome Cache Entry: 240
Unicode text, UTF-8 text, with very long lines (61276), with no line terminators
downloaded
Chrome Cache Entry: 241
ASCII text, with very long lines (65480)
downloaded
Chrome Cache Entry: 242
ASCII text, with very long lines (18082)
downloaded
Chrome Cache Entry: 243
ASCII text, with very long lines (65479)
downloaded
Chrome Cache Entry: 244
ASCII text, with very long lines (65474)
downloaded
Chrome Cache Entry: 245
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 246
ASCII text, with very long lines (65475)
downloaded
Chrome Cache Entry: 247
Unicode text, UTF-8 text, with very long lines (65402)
downloaded
Chrome Cache Entry: 248
ASCII text, with very long lines (65477)
dropped
Chrome Cache Entry: 249
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 250
ASCII text, with very long lines (65479)
dropped
Chrome Cache Entry: 251
Unicode text, UTF-8 text, with very long lines (61276), with no line terminators
dropped
Chrome Cache Entry: 252
ASCII text, with very long lines (43516)
downloaded
Chrome Cache Entry: 253
ASCII text, with very long lines (65479)
downloaded
Chrome Cache Entry: 254
ASCII text, with very long lines (65476)
dropped
Chrome Cache Entry: 255
ASCII text, with very long lines (65475)
dropped
Chrome Cache Entry: 256
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 257
ASCII text, with very long lines (65473)
downloaded
Chrome Cache Entry: 258
Unicode text, UTF-8 text, with very long lines (65455)
downloaded
Chrome Cache Entry: 259
ASCII text, with very long lines (46254)
dropped
Chrome Cache Entry: 260
Unicode text, UTF-8 text, with very long lines (65455)
dropped
Chrome Cache Entry: 261
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 262
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
downloaded
Chrome Cache Entry: 263
Unicode text, UTF-8 text, with very long lines (65240)
downloaded
Chrome Cache Entry: 264
ASCII text, with very long lines (65475)
dropped
Chrome Cache Entry: 265
Unicode text, UTF-8 text, with very long lines (65455)
downloaded
Chrome Cache Entry: 266
ASCII text, with very long lines (65310)
downloaded
Chrome Cache Entry: 267
Unicode text, UTF-8 text, with very long lines (65471)
downloaded
Chrome Cache Entry: 268
ASCII text, with very long lines (1808), with no line terminators
downloaded
Chrome Cache Entry: 269
Unicode text, UTF-8 text, with very long lines (65464)
downloaded
Chrome Cache Entry: 270
Unicode text, UTF-8 text, with very long lines (65455)
dropped
Chrome Cache Entry: 271
ASCII text, with very long lines (65476)
dropped
Chrome Cache Entry: 272
ASCII text, with very long lines (6378)
dropped
Chrome Cache Entry: 273
ASCII text
dropped
Chrome Cache Entry: 274
JSON data
downloaded
Chrome Cache Entry: 275
ASCII text, with very long lines (65475)
dropped
Chrome Cache Entry: 276
ASCII text, with very long lines (65476)
downloaded
Chrome Cache Entry: 277
ASCII text, with very long lines (32010)
dropped
Chrome Cache Entry: 278
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
dropped
Chrome Cache Entry: 279
Unicode text, UTF-8 text, with very long lines (65402)
dropped
Chrome Cache Entry: 280
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 281
ASCII text, with very long lines (46254)
downloaded
Chrome Cache Entry: 282
Unicode text, UTF-8 text, with very long lines (65453)
downloaded
There are 112 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2088 --field-trial-handle=1892,i,9490259384004493072,9291639158426716425,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://pre-support.sharefile.com/d-s91413eb0f5a74296ac3b5217e09ba034"
malicious

URLs

Name
IP
Malicious
https://pre-support.sharefile.com/d-s91413eb0f5a74296ac3b5217e09ba034
https://www.recaptcha.net/recaptcha/api2/reload?k=6LeTagYpAAAAAPxN9Jk8quK1sIZt5F8tT5fN7F5W
142.250.185.99
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-doc-gen-pilet/1.2.88/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-projects-pilet/2.0.29/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-request-list-pilet/1.9.18/package/dist/index.js
13.224.189.108
https://pre-support.sharefile.com/android-chrome-512x512.png
13.248.193.251
https://developers.google.com/recaptcha/docs/faq#localhost_support
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-task-mgt-pilet/1.7.0/package/dist/index.js
13.224.189.108
https://support.google.com/recaptcha#6262736
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-task-aggregator-pilet/1.0.3/package/dist/index.js
13.224.189.108
https://pre-support.sharefile.com/bundles/0cb5966d89da1ff67768.js
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-publisher-pilet/0.17.11/package/dist/index.js
13.224.189.108
https://citrix-sharefile-content.customer.pendo.io/guide-content/wotSbq5SNToNGIBxeYKbdsIn35Q
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-tenant-mgt-pilet/1.2.0/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-threatalert-mgt-pilet/1.14.0/package/dist/index.js
13.224.189.108
https://pre-support.sharefile.com/bundles/8a39cf7f7873f1eeb609.js
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-client-dashboard/0.162.0/package/dist/index.js
13.224.189.108
https://support.google.com/recaptcha/?hl=en#6223828
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-resourcegen-pilet/0.1.36/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-templates-pilet/0.107.6/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-client-pilet/0.8.16/package/dist/main.css
13.224.189.108
https://citrix-sharefile-content.customer.pendo.io/guide-content/u6RYL2wEa9xrpUJMTeOXl41AeJI/qrJmWADnkufXgGqv6M-p2xBSYIU/xBPyrN0M2r6IFxno71T0shlp-Qc.dom.json?sha256=OG9P3pymuWfB-ZaKqljhBPBaH2alktLkYBmVTjLKrSQ
34.111.138.51
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-fileviewer-pilet/1.29.0/package/dist/index.js
13.224.189.108
https://events.launchdarkly.com/events/diagnostic/5f33f5d44f29ea099db90d2a
35.171.73.226
https://www.recaptcha.net/recaptcha/api2/bframe?hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&k=6LeTagYpAAAAAPxN9Jk8quK1sIZt5F8tT5fN7F5W
142.250.185.99
https://www.recaptcha.net/recaptcha/api2/
unknown
https://pre-support.sharefile.com/bundles/2df17ec2f6eaff4d4417.js
13.248.193.251
https://support.google.com/recaptcha/#6175971
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-actions-pilet/1.15.0/package/dist/index.js
13.224.189.108
https://agent.pendo.io/licenses
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-resourcegen-pilet/0.1.36/package/dist/main.css
13.224.189.108
https://support.google.com/recaptcha
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-rubicon-pilet/0.33.3/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-tenant-mgt-pilet/1.2.0/package/dist/main.css
13.224.189.108
https://bam.nr-data.net/events/1/fd14b65b5e?a=594432325&sa=1&v=1216.487a282&t=Unnamed%20Transaction&rst=42735&ck=1&ref=https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
162.247.243.29
https://pre-support.sharefile.com/css/spinner.css
13.248.193.251
https://pre-support.sharefile.com/d-s91413eb0f5a74296ac3b5217e09ba034
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-dc-pilet/1.379.0/package/dist/index.js
13.224.189.108
https://pre-support.sharefile.com/styles/images/76865312-2be7-4feb-b0c2-467bf1051f4c.png
13.248.193.251
https://pre-support.sharefile.com/styles/images/427315bc-50fc-4e1f-bc18-473b2bc37bb9.png
13.248.193.251
https://pre-support.sharefile.com/bundles/5be3ba1b444ac539eaf5.js
13.248.193.251
https://citrix-sharefile-content.customer.pendo.io/guide-content/u6RYL2wEa9xrpUJMTeOXl41AeJI/qrJmWAD
unknown
https://pre-support.sharefile.com/bundles/index.465cc3cee3e0958aab88.js
13.248.193.251
https://pre-support.sharefile.com/bundles/7ba6967109e88a8ecd8d.js
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-dynamic-forms-pilet/1.25.0/package/dist/af15e31c70fab7cfd55c.woff2
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-billing-pilet/0.1.121/package/dist/index.js
13.224.189.108
https://citrix-sharefile-content.customer.pendo.io/guide-content/qgx_AaYBkGN6StQWJLhgBhCmZsY/ZEFqtCH
unknown
https://bam.nr-data.net/events/1/fd14b65b5e?a=594432325&sa=1&v=1216.487a282&t=Unnamed%20Transaction&rst=72745&ck=1&ref=https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
162.247.243.29
https://citrix-sharefile-content.customer.pendo.io/guide-content/kRiIYerdgZdzqYlUiCx61iLjnBU/vJf7TMD
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-act-hist-pilet/1.7.0/package/dist/index.js
13.224.189.108
https://0093b71e39a6.11de9b12.us-east-1.token.awswaf.com/0093b71e39a6/478ed03bbf12/verify
18.173.205.91
https://citrix-sharefile-content.customer.pendo.io/guide-content/DGXiXepNeRvpgcvqVVwgerMyl9c/FzHL74W
unknown
https://citrix-sharefile-content.customer.pendo.io/guide-content/z6GAMp5KCypHWLnasLOIn0RVcPQ/vzuAMPt
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-view-engine-pilet/1.8.0/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-dynamic-forms-pilet/1.25.0/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-audit-collector-pilet/0.11.0/package/dist/index.js
13.224.189.108
https://0093b71e39a6.11de9b12.us-east-1.token.awswaf.com/0093b71e39a6/478ed03bbf12/telemetry
18.173.205.91
https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
unknown
https://play.google.com/log?format=json&hasfast=true
unknown
https://0093b71e39a6.11de9b12.us-east-1.token.awswaf.com/0093b71e39a6/478ed03bbf12/challenge.js
18.173.205.91
https://pre-support.sharefile.com/android-chrome-192x192.png
13.248.193.251
https://citrix-sharefile-content.customer.pendo.io/guide-content/freMllnYvBAwsP7Q8plLkQuQk9o/iIvmdJJ
unknown
https://pre-support.sharefile.com/bundles/c3b78c86faf44765071f.js
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-permissions-pilet/1.118.31/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-integrations-pilet/0.0.175/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-notification-center/0.58.0/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-workflows-pilet/0.119.14/package/dist/index.js
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-storage-plugin-pilet/1.280.0/package/dist/main.css
13.224.189.108
https://citrix-sharefile-data.customer.pendo.io/data/guide.json/74b07336-7560-45fc-7cd1-95032a784d52?id=12&jzb=eJyNkEFv4yAQhf8L59hgjO3iW6X00Ms20nZ7WVXW2AwJXWIoxq6iKv89OIeseql6g-G9ee_jkyxmMtGFR0Va0u0efm2fuufuvV528vRWqbt_ZENgGNw8xqsEtJRMsjqruMBM6EZlAHWfNdXQoNBQ8FInyxxsEh9i9FNLqQ-YTbP3LsR8OkBAbSzmgzvS640uBj_oJAtRlNgzXUEjuKxhKPuKFw0y2QMrRVrrrHr533ecrd2QI0ZQEIG0N5j1aL4BsjDuZ9hjUuDY_flNzjfI1Qreb90RzJjev9RN1uvaH36CRohzwIm0f4kr6yqNcBzCyUdUmPZb8pqCfQoY4_0tPo0SztqNCVowyhlf0RcMk3FrJZ5zIfOi88Epcj5fAFhLjfQ&v=2.249.1_prod&ct=1728054914871
34.107.204.85
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-threatalert-mgt-pilet/1.14.0/package/dist/citrite-citrix-ui.js
13.224.189.108
https://www.google.com/js/bg/zEg4NaMiOUeKKZ2pqXY4HMvMf5VCq4avNU_6WgNs2Cw.js
216.58.206.36
https://citrix-sharefile-content.customer.pendo.io/agent/static/74b07336-7560-45fc-7cd1-95032a784d52
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-audit-collector-pilet/0.11.0/package/dist/main.css
13.224.189.108
https://pre-support.sf-api.com/sf/v3/Accounts/Preferences
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-view-engine-pilet/1.8.0/package/dist/main.css
13.224.189.108
https://www.recaptcha.net/recaptcha/api2/userverify?k=6LeTagYpAAAAAPxN9Jk8quK1sIZt5F8tT5fN7F5W
142.250.185.99
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-dynamic-forms-pilet/1.25.0/package/dist/index.js
13.224.189.108
https://pre-support.sharefile.com/share/view/s91413eb0f5a74296ac3b5217e09ba034
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-rubicon-pilet/0.33.3/package/dist/main.css
13.224.189.108
https://citrix-sharefile-data.customer.pendo.io/data/guide.gif/74b07336-7560-45fc-7cd1-95032a784d52?jzb=eJwFwIEIAAAAwDDQd3-N1QABFQC5&ct=1728054914872&v=2.249.1_prod
34.107.204.85
https://citrix-sharefile-content.customer.pendo.io/guide.-323232.1622565221517.css
34.111.138.51
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-entitlements-pilet/0.1.54/package/dist/index.js
13.224.189.108
https://pre-support.sf-api.com/sf/v3/Accounts/Branding
13.248.193.251
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-billing-pilet/0.1.121/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-user-actions-pilet/1.15.0/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-permissions-pilet/1.118.31/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-esign-pilet/1.218.0/package/dist/main.css
13.224.189.108
https://pre-support.sharefile.com/bundles/1c992ae0c14e95098d9a.js
13.248.193.251
https://cloud.google.com/contact
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-dynamic-forms-pilet/1.25.0/package/dist/d8fcf3851ba79b1d138a.woff2
13.224.189.108
https://citrix-sharefile-content.customer.pendo.io/guide-content/moENhVNGkRpdnhKRCzqkG8MUQPk/Mp9uRb2
unknown
https://pre-support.sharefile.com/bundles/b79627b64df3ab63890d.js
13.248.193.251
https://citrix-sharefile-content.customer.pendo.io/guide-content/WPvkzGkOrfIvp3qkN5N54f_1PEk/YiOA-0Y
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-notification-center/0.58.0/package/dist/main.css
13.224.189.108
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-storage-plugin-pilet/1.280.0/package/dist/index.js
13.224.189.108
https://www.recaptcha.net/recaptcha/api2/anchor?ar=1&k=6LeTagYpAAAAAPxN9Jk8quK1sIZt5F8tT5fN7F5W&co=aHR0cHM6Ly9wcmUtc3VwcG9ydC5zaGFyZWZpbGUuY29tOjQ0Mw..&hl=en&v=xds0rzGrktR88uEZ2JUvdgOY&size=normal&cb=7tieziaz9qp6
142.250.185.99
https://citrix-sharefile-data.customer.pendo.io/data/ptm.gif/74b07336-7560-45fc-7cd1-95032a784d52?v=2.249.1_prod&ct=1728054917974&jzb=eJw1kG9v8iAUxb8Lr62FlpbiS_c_WWrdTMyTJ0sDLUy0LRWoixq_u1g33l3Oub-cc_-fgTv2AsxAo1kNJoAb_WOFKZ1q_S8iUQYTTBGhBE7AQVnltClV7RfK4il_XJSrcp8eCnrcJnW28wBWVXro3N3DJKWQwjRIIiwCLEkdMJbygCQVEVgyFMXS7wym8eaNc72dhWFvRGCHvtfGTe2GGSFVI6aVbsNxCr-FU53UoaUIo1hwKBNGcERTVsU8iRARkHIGY-zJvdG9BbPzWO-3VIxoTKYR_Hvo4n0e3LkV428-djc0zQS4-wCUrj7f16_LU55_POyL3FOlYa0YRb7LlvQfPlmy4fOX4nZBK6xVuhtlty0Ou3a9tQvF6POcjvJ-EF11y-GvfXTCx4szdPm6AjQte0c
34.107.204.85
http://pre-support.sharefile.com/share/view/s91413eb0f5a74296ac3b5217e09ba034
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-integrations-pilet/0.0.175/package/dist/index.js
13.224.189.108
https://www.google.com/recaptcha/api2/
unknown
https://piletfeed-cdn.sharefile.io/sharefile-web/sharefiledev-client-pilet/0.8.16/package/dist/index.js
13.224.189.108
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
fastly-tls12-bam.nr-data.net
162.247.243.29
0093b71e39a6.us-east-1.sdk.awswaf.com
13.32.121.91
js-agent.newrelic.com
162.247.243.39
www.recaptcha.net
172.217.16.131
events.launchdarkly.com
35.171.73.226
pre-support.sharefile.com
13.248.193.251
pre-support.sf-api.com
13.248.193.251
piletfeed-cdn.sharefile.io
13.224.189.108
0093b71e39a6.11de9b12.us-east-1.token.awswaf.com
18.173.205.91
fp2e7a.wpc.phicdn.net
192.229.221.95
51.138.111.34.bc.googleusercontent.com
34.111.138.51
s-part-0036.t-0009.t-msedge.net
13.107.246.64
www.google.com
142.250.185.132
85.204.107.34.bc.googleusercontent.com
34.107.204.85
app.launchdarkly.com
unknown
citrix-sharefile-content.customer.pendo.io
unknown
bam.nr-data.net
unknown
citrix-sharefile-data.customer.pendo.io
unknown
There are 8 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
35.171.73.226
events.launchdarkly.com
United States
142.250.185.99
unknown
United States
18.173.205.91
0093b71e39a6.11de9b12.us-east-1.token.awswaf.com
United States
13.224.189.108
piletfeed-cdn.sharefile.io
United States
192.168.2.8
unknown
unknown
13.32.121.91
0093b71e39a6.us-east-1.sdk.awswaf.com
United States
216.58.206.36
unknown
United States
13.248.193.251
pre-support.sharefile.com
United States
18.173.205.26
unknown
United States
162.247.243.39
js-agent.newrelic.com
United States
34.107.204.85
85.204.107.34.bc.googleusercontent.com
United States
142.250.185.132
www.google.com
United States
216.58.206.68
unknown
United States
34.111.138.51
51.138.111.34.bc.googleusercontent.com
United States
239.255.255.250
unknown
Reserved
13.224.189.90
unknown
United States
162.247.243.29
fastly-tls12-bam.nr-data.net
United States
172.217.16.131
www.recaptcha.net
United States
There are 8 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://pre-support.sharefile.com/d-s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/view/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
https://pre-support.sharefile.com/share/getinfo/s91413eb0f5a74296ac3b5217e09ba034
There are 1 hidden doms, click here to show them.