IOC Report
http://ynstbc.xyz.webplus7.a2hosted.com/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 147
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 148
JSON data
downloaded
Chrome Cache Entry: 149
JSON data
dropped
Chrome Cache Entry: 150
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 151
HTML document, ASCII text
downloaded
Chrome Cache Entry: 152
JSON data
dropped
Chrome Cache Entry: 153
HTML document, Unicode text, UTF-8 text, with very long lines (61243)
dropped
Chrome Cache Entry: 154
HTML document, Unicode text, UTF-8 text, with very long lines (61243)
downloaded
Chrome Cache Entry: 155
JSON data
downloaded
Chrome Cache Entry: 156
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 157
ASCII text, with very long lines (53030)
dropped
Chrome Cache Entry: 158
ASCII text, with very long lines (3391)
downloaded
Chrome Cache Entry: 159
ASCII text
downloaded
Chrome Cache Entry: 160
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 161
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 162
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 163
ASCII text, with very long lines (2360), with no line terminators
downloaded
Chrome Cache Entry: 164
JSON data
dropped
Chrome Cache Entry: 165
ASCII text, with very long lines (543)
dropped
Chrome Cache Entry: 166
Unicode text, UTF-8 text, with very long lines (62031), with no line terminators
downloaded
Chrome Cache Entry: 167
JSON data
dropped
Chrome Cache Entry: 168
RIFF (little-endian) data, Web/P image, VP8 encoding, 1280x720, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 169
JSON data
dropped
Chrome Cache Entry: 170
ASCII text, with very long lines (45960)
dropped
Chrome Cache Entry: 171
Unicode text, UTF-8 text, with very long lines (41169)
downloaded
Chrome Cache Entry: 172
Unicode text, UTF-8 text, with very long lines (65463)
downloaded
Chrome Cache Entry: 173
ASCII text
downloaded
Chrome Cache Entry: 174
ASCII text, with very long lines (60850)
downloaded
Chrome Cache Entry: 175
JSON data
downloaded
Chrome Cache Entry: 176
ASCII text, with very long lines (1143)
downloaded
Chrome Cache Entry: 177
JSON data
dropped
Chrome Cache Entry: 178
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 179
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 180
ASCII text, with very long lines (45960)
downloaded
Chrome Cache Entry: 181
ASCII text, with very long lines (568)
dropped
Chrome Cache Entry: 182
ASCII text, with very long lines (57671), with no line terminators
dropped
Chrome Cache Entry: 183
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 184
Unicode text, UTF-8 text, with very long lines (65416)
dropped
Chrome Cache Entry: 185
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 186
ASCII text, with very long lines (568)
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (51110)
dropped
Chrome Cache Entry: 188
JSON data
downloaded
Chrome Cache Entry: 189
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 190
Web Open Font Format (Version 2), TrueType, length 44544, version 3.66
downloaded
Chrome Cache Entry: 191
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 192
gzip compressed data, from Unix, original size modulo 2^32 1570694
dropped
Chrome Cache Entry: 193
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 194
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 195
gzip compressed data, from Unix, original size modulo 2^32 43386
dropped
Chrome Cache Entry: 196
Unicode text, UTF-8 text, with very long lines (65447)
dropped
Chrome Cache Entry: 197
JSON data
downloaded
Chrome Cache Entry: 198
JSON data
downloaded
Chrome Cache Entry: 199
ASCII text, with very long lines (53030)
downloaded
Chrome Cache Entry: 200
JSON data
dropped
Chrome Cache Entry: 201
ASCII text, with very long lines (65417)
dropped
Chrome Cache Entry: 202
JSON data
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (9188)
dropped
Chrome Cache Entry: 204
ASCII text, with very long lines (65454)
downloaded
Chrome Cache Entry: 205
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 206
JSON data
downloaded
Chrome Cache Entry: 207
JSON data
downloaded
Chrome Cache Entry: 208
JSON data
dropped
Chrome Cache Entry: 209
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 210
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 211
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 212
ASCII text, with very long lines (4717)
downloaded
Chrome Cache Entry: 213
JSON data
downloaded
Chrome Cache Entry: 214
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 215
JSON data
dropped
Chrome Cache Entry: 216
HTML document, Unicode text, UTF-8 text, with very long lines (49238)
downloaded
Chrome Cache Entry: 217
PNG image data, 192 x 192, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 218
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 219
ASCII text, with very long lines (57671), with no line terminators
downloaded
Chrome Cache Entry: 220
HTML document, Unicode text, UTF-8 text, with very long lines (49217)
downloaded
Chrome Cache Entry: 221
JSON data
downloaded
Chrome Cache Entry: 222
Web Open Font Format (Version 2), TrueType, length 45196, version 3.66
downloaded
Chrome Cache Entry: 223
Unicode text, UTF-8 text, with very long lines (65253)
dropped
Chrome Cache Entry: 224
ASCII text, with very long lines (6187)
downloaded
Chrome Cache Entry: 225
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 226
ASCII text, with very long lines (543)
downloaded
Chrome Cache Entry: 227
ASCII text, with very long lines (561)
downloaded
Chrome Cache Entry: 228
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 229
ASCII text, with very long lines (1159)
downloaded
Chrome Cache Entry: 230
ASCII text, with very long lines (65454)
dropped
Chrome Cache Entry: 231
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 232
gzip compressed data, from Unix, original size modulo 2^32 43386
downloaded
Chrome Cache Entry: 233
Unicode text, UTF-8 text, with very long lines (65447)
downloaded
Chrome Cache Entry: 234
PNG image data, 107 x 100, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 235
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 236
gzip compressed data, from Unix, original size modulo 2^32 1570694
downloaded
Chrome Cache Entry: 238
ASCII text, with very long lines (3391)
dropped
Chrome Cache Entry: 239
ASCII text, with very long lines (3570)
downloaded
Chrome Cache Entry: 240
JSON data
dropped
Chrome Cache Entry: 241
ASCII text, with very long lines (561)
dropped
Chrome Cache Entry: 242
Unicode text, UTF-8 text, with very long lines (65463)
dropped
Chrome Cache Entry: 243
ASCII text, with very long lines (65448)
dropped
Chrome Cache Entry: 244
ASCII text, with very long lines (6187)
dropped
Chrome Cache Entry: 245
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 246
ASCII text, with very long lines (9188)
downloaded
Chrome Cache Entry: 247
JSON data
dropped
Chrome Cache Entry: 248
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 249
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 250
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 251
JSON data
dropped
Chrome Cache Entry: 252
JSON data
dropped
Chrome Cache Entry: 253
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 254
ASCII text, with very long lines (65417)
downloaded
Chrome Cache Entry: 255
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 256
ASCII text, with very long lines (5945)
downloaded
Chrome Cache Entry: 257
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 258
JSON data
downloaded
Chrome Cache Entry: 259
HTML document, Unicode text, UTF-8 text, with very long lines (65532), with no line terminators
dropped
Chrome Cache Entry: 260
Unicode text, UTF-8 text, with very long lines (62031), with no line terminators
dropped
Chrome Cache Entry: 261
JSON data
downloaded
Chrome Cache Entry: 262
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian, direntries=1, software=Picasa], baseline, precision 8, 68x68, components 3
downloaded
Chrome Cache Entry: 263
ASCII text, with very long lines (501)
dropped
Chrome Cache Entry: 264
JSON data
dropped
Chrome Cache Entry: 265
Unicode text, UTF-8 text, with very long lines (35970), with no line terminators
downloaded
Chrome Cache Entry: 266
ASCII text, with very long lines (4891)
downloaded
Chrome Cache Entry: 267
ASCII text, with very long lines (3595)
dropped
Chrome Cache Entry: 268
gzip compressed data, truncated
dropped
Chrome Cache Entry: 269
ASCII text, with very long lines (3537)
downloaded
Chrome Cache Entry: 270
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 271
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 272
JSON data
dropped
Chrome Cache Entry: 273
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 274
JSON data
dropped
Chrome Cache Entry: 275
ASCII text, with very long lines (1159)
dropped
Chrome Cache Entry: 276
JSON data
downloaded
Chrome Cache Entry: 277
gzip compressed data, truncated
downloaded
Chrome Cache Entry: 278
JSON data
downloaded
Chrome Cache Entry: 279
Unicode text, UTF-8 text, with very long lines (41169)
dropped
Chrome Cache Entry: 280
ASCII text, with very long lines (5945)
dropped
Chrome Cache Entry: 281
RIFF (little-endian) data, Web/P image, VP8 encoding, 1280x720, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 282
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 283
ASCII text, with very long lines (51110)
downloaded
Chrome Cache Entry: 284
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 285
RIFF (little-endian) data, Web/P image, VP8 encoding, 640x480, Scaling: [none]x[none], YUV color, decoders should clamp
dropped
Chrome Cache Entry: 286
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 287
ASCII text, with very long lines (4717)
dropped
Chrome Cache Entry: 288
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 289
JSON data
dropped
Chrome Cache Entry: 290
ASCII text, with very long lines (65448)
downloaded
Chrome Cache Entry: 291
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 292
HTML document, Unicode text, UTF-8 text, with very long lines (65532), with no line terminators
downloaded
Chrome Cache Entry: 293
Unicode text, UTF-8 text, with very long lines (35970), with no line terminators
dropped
Chrome Cache Entry: 294
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 295
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 296
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 297
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 298
ASCII text, with very long lines (3595)
downloaded
Chrome Cache Entry: 299
Unicode text, UTF-8 text, with very long lines (65416)
downloaded
Chrome Cache Entry: 300
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 301
HTML document, ASCII text
downloaded
Chrome Cache Entry: 302
JSON data
dropped
Chrome Cache Entry: 303
ASCII text, with very long lines (501)
downloaded
Chrome Cache Entry: 304
JSON data
dropped
Chrome Cache Entry: 305
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 306
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 307
JSON data
dropped
Chrome Cache Entry: 308
PNG image data, 107 x 100, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 309
ASCII text, with very long lines (2360), with no line terminators
dropped
Chrome Cache Entry: 310
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 311
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 312
JSON data
downloaded
Chrome Cache Entry: 313
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 314
Unicode text, UTF-8 text, with very long lines (65253)
downloaded
Chrome Cache Entry: 315
JSON data
dropped
Chrome Cache Entry: 316
JSON data
dropped
Chrome Cache Entry: 317
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 318
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 319
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 320
JSON data
downloaded
Chrome Cache Entry: 321
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 322
JSON data
downloaded
Chrome Cache Entry: 323
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 324
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 325
JSON data
dropped
Chrome Cache Entry: 326
ASCII text, with very long lines (60850)
dropped
Chrome Cache Entry: 327
Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
downloaded
Chrome Cache Entry: 328
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 329
JSON data
dropped
Chrome Cache Entry: 330
ASCII text, with very long lines (4891)
dropped
Chrome Cache Entry: 331
gzip compressed data, from Unix, original size modulo 2^32 3647
downloaded
There are 175 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2376 --field-trial-handle=2224,i,7777873063539310155,10025080832523710383,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://ynstbc.xyz.webplus7.a2hosted.com/"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://metamask.app.link/connect?channelId=9dd56e58-f297-4833-a2f3-b6fbb5712891&comm=socket&pubkey=025e4852a2fc89c0fc7274b12d59738a75a7851756b844894c8c841ad51d41baa4&t=q
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2072 --field-trial-handle=1960,i,1247407262260799078,15463333480389557747,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=4060 --field-trial-handle=2224,i,7777873063539310155,10025080832523710383,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=5916 --field-trial-handle=2224,i,7777873063539310155,10025080832523710383,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8

URLs

Name
IP
Malicious
http://ynstbc.xyz.webplus7.a2hosted.com/
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZUBS&sid=DlvzNKjxS5q9VLNoAX2s
3.12.80.70
https://stats.g.doubleclick.net/g/collect
unknown
https://redux.js.org/tutorials/fundamentals/part-4-store#creating-a-store-with-enhancers
unknown
https://track.hubspot.com/__ptq.gif?k=1&sd=1280x1024&cd=24-bit&cs=UTF-8&ln=en-us&bfp=471034161&v=1.1&a=4795067&po=%2Fdownload%2F&rcu=https%3A%2F%2Fmetamask.io%2Fdownload%2F&pu=https%3A%2F%2Fmetamask.io%2Fdownload%2F&t=Download+MetaMask%3A+The+Premier+Blockchain+Wallet+App+and+Browser+Extension&cts=1728213516573&vi=d9edd62ee9a580ccd8a8517007ed4ace&nc=false&u=83560777.d9edd62ee9a580ccd8a8517007ed4ace.1728213507438.1728213507438.1728213507438.1&b=83560777.2.1728213507438&cc=15
104.16.118.116
https://images.ctfassets.net/9sy2a0egs6zh/6ngCUoU36ABPjs6cDNnuoK/afa5457c7b903a2b8475b62398f1310b/extension-mm.png?w=1328&h=677&q=80&fm=webp
13.33.187.25
https://images.ctfassets.net/9sy2a0egs6zh/5XRhOQHkOJNsBU8z6O8Jbv/546cc006d9b0dd1064e1aefd36ad1034/Built_for_Developers_Image.png?w=948&h=545&q=80&fm=webp
13.33.187.25
https://www.redditstatic.com/ads/pixel.js
151.101.129.140
https://metamask.io/app-e8f79ac0cc7bc8d80b20.js
185.199.108.153
https://metamask.io/component---src-templates-contentful-layout-js-f815d363dbc5d478ebfb.js
185.199.108.153
https://js.usemessages.com/conversations-embed.js
104.16.78.142
https://cdn.acsbapp.com/config/metamask.io/config.json?page=%2Fsnaps%2F
104.22.1.204
https://images.ctfassets.net/9sy2a0egs6zh/6s2QdWY6B2hn9CpLPIATfM/3de399182681002500876c14689845fc/Transparency-icon.svg
13.33.187.102
https://github.com/MetaMask/snaps/discussions/343
unknown
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZGvS&sid=a0e_am9TAvHo88rZAX2V
18.118.251.107
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZO6v&sid=P4el_q1Hi8tRvWNDAX2Y
18.118.251.107
https://cdn.jsdelivr.net/npm/country-flag-emoji-polyfill
unknown
https://metamask.io/94726e6d-2344f285723a35d06894.js
185.199.108.153
https://w3-reporting-nel.reddit.com/reports
151.101.129.140
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZgn5&sid=PsN31GdubZxjVi_KAX3D
3.12.80.70
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZG1H&sid=CH8q76lkak1jq-TNAX2Q
18.118.251.107
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZEDg&sid=OkOrtzLnN6FvJUUGAX2L
18.118.251.107
https://www.youtube.com
unknown
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZEDd&sid=OkOrtzLnN6FvJUUGAX2L
18.118.251.107
https://admin.youtube.com
unknown
https://metamask.io/page-data/sq/d/3000541721.json
185.199.108.153
https://www.youtube.com/youtubei/v1/log_event?alt=json&key=AIzaSyAO_FJ2SlqU8Q4STEHLGCilw_Y9_11qcW8
142.250.184.238
https://metamask.io/images/arrow-right-black.svg
185.199.108.153
https://analytics.twitter.com/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=7dae8d1b-b5c0-44e2-97d8-afeed8190203&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=885bd101-f403-428f-9d47-a811954dd98b&tw_document_href=https%3A%2F%2Fmetamask.io%2Fdownload%2F&tw_iframe_status=0&txn_id=oert2&type=javascript&version=2.3.30
104.244.42.131
https://api.hubapi.com/hs-script-loader-public/v1/config/pixels-and-events/json?portalId=4795067
104.18.241.108
https://metamask.io/page-data/sdk/page-data.json
185.199.111.153
https://metamask.io/es/download/
unknown
https://redux.js.org/tutorials/fundamentals/part-4-store#middleware
unknown
https://alb.reddit.com/rp.gif?ts=1728213598678&id=t2_vjeg7kke&event=PageVisit&m.itemCount=undefined&m.value=&m.valueDecimal=undefined&m.currency=undefined&m.transactionId=&m.customEventName=&m.products=&m.conversionId=&uuid=4c29d9ff-5407-4a84-93ab-517b18eaff59&aaid=&em=&external_id=&idfa=&integration=gtm&opt_out=0&sh=1280&sw=1024&v=rdt_5afed25b&dpm=&dpcc=&dprc=
151.101.193.140
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZCw7&sid=iGIs9zB12O5pTPdEAX2I
18.118.251.107
https://googleads.g.doubleclick.net/pagead/id?slf_rd=1
142.250.186.98
https://images.ctfassets.net/9sy2a0egs6zh/4WVycyyYvlfuRrArPRjj1d/32b6ef0b5c61f7b58e940293f4d549ad/Firefox_1Firefox.png
13.33.187.102
http://ynstbc.xyz.webplus7.a2hosted.com/favicon.ico
106.0.62.84
https://consensys.io/privacy-policy
unknown
https://images.ctfassets.net/9sy2a0egs6zh/3McTuB2d7jvQHBNiG18EMl/bcf5050c3c99abd976dc28cbbb82deca/SDK_connect_to_this_site.png?w=1920&h=456&q=80&fm=webp
13.33.187.25
https://track.hubspot.com/__ptq.gif?k=1&sd=1280x1024&cd=24-bit&cs=UTF-8&ln=en-us&bfp=471034161&v=1.1&a=4795067&po=%2Fsdk%2F&rcu=https%3A%2F%2Fmetamask.io%2Fsdk%2F&pu=https%3A%2F%2Fmetamask.io%2Fsdk%2F&t=MetaMask+SDK%3A+Empowering+Developers+in+the+Web3+Space&cts=1728213600083&vi=d9edd62ee9a580ccd8a8517007ed4ace&nc=false&u=83560777.d9edd62ee9a580ccd8a8517007ed4ace.1728213507438.1728213507438.1728213507438.1&b=83560777.3.1728213507438&cc=15
104.16.117.116
https://yurt.corp.google.com
unknown
https://www.youtube.com/embed/mneNl4Dr8sM?&rel=0&sub_confirmation=1&enablejsapi=1&origin=https%3A%2F%2Fmetamask.io
142.250.184.238
https://px.ads.linkedin.com/collect/?pid=451393&fmt=gif
unknown
https://www.youtube.com/generate_204?cpn=
unknown
https://metamask.io/component---src-templates-contentful-download-layout-js-d6e237f8213960cd27c9.js
185.199.108.153
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZHYZ&sid=a0e_am9TAvHo88rZAX2V
18.118.251.107
https://pixel-config.reddit.com/pixels/t2_vjeg7kke/config
151.101.65.140
https://images.ctfassets.net/9sy2a0egs6zh/5jvtW3hNUeup0ujcdxLvSP/d4c16befbd02b2e3642bc33e91f66371/Vector.png
13.33.187.25
https://www.youtube.com/embed/mneNl4Dr8sM?&rel=0&sub_confirmation=1
142.250.184.238
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZgZ1&sid=PsN31GdubZxjVi_KAX3D
3.12.80.70
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZEhF&sid=OkOrtzLnN6FvJUUGAX2L
18.118.251.107
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZFck&sid=CH8q76lkak1jq-TNAX2Q
18.118.251.107
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZE1u
18.118.251.107
https://events.launchdarkly.com/events/bulk/655b78d71cea7812f535fa91
54.146.115.196
https://images.ctfassets.net/9sy2a0egs6zh/6paTnfbCMReB0sxoFZxXFW/533976659059da0d4c2008e88822bb7c/FA-paper.png
13.33.187.25
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZCbv&sid=iGIs9zB12O5pTPdEAX2I
18.118.251.107
https://www.youtube.com/s/player/96d06116/www-player.css
142.250.184.238
https://metamask.consensys.io/buy-crypto/
unknown
https://metamask.app.link/connect?channelId=9dd56e58-f297-4833-a2f3-b6fbb5712891&comm=socket&pubkey=025e4852a2fc89c0fc7274b12d59738a75a7851756b844894c8c841ad51d41baa4&t=q
99.86.4.94
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZHMf&sid=a0e_am9TAvHo88rZAX2V
18.118.251.107
https://forms.hubspot.com/lead-flows-config/v1/config/json?portalId=4795067&utk=d9edd62ee9a580ccd8a8517007ed4ace&__hstc=83560777.d9edd62ee9a580ccd8a8517007ed4ace.1728213507438.1728213507438.1728213507438.1&__hssc=83560777.2.1728213507438&currentUrl=https%3A%2F%2Fmetamask.io%2Fdownload%2F
104.16.118.116
https://alb.reddit.com/rp.gif?ts=1728213484717&id=t2_ffiwr7tji&event=PageVisit&m.itemCount=undefined&m.value=&m.valueDecimal=undefined&m.currency=undefined&m.transactionId=&m.customEventName=&m.products=&m.conversionId=&uuid=4c29d9ff-5407-4a84-93ab-517b18eaff59&aaid=&em=&external_id=&idfa=&integration=gtm&opt_out=0&sh=1280&sw=1024&v=rdt_5afed25b&dpm=&dpcc=&dprc=
151.101.129.140
https://alb.reddit.com/rp.gif?ts=1728213484721&id=t2_8mqvi05zf&event=PageVisit&m.itemCount=undefined&m.value=&m.valueDecimal=undefined&m.currency=undefined&m.transactionId=&m.customEventName=&m.products=&m.conversionId=&uuid=4c29d9ff-5407-4a84-93ab-517b18eaff59&aaid=&em=&external_id=&idfa=&integration=gtm&opt_out=0&sh=1280&sw=1024&v=rdt_5afed25b&dpm=&dpcc=&dprc=
151.101.129.140
https://www.youtube.com/s/player/96d06116/www-embed-player.vflset/www-embed-player.js
142.250.184.238
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZbWs&sid=DlvzNKjxS5q9VLNoAX2s
3.12.80.70
https://metamask.io/buy-crypto/
unknown
http://tools.ietf.org/html/rfc1950
unknown
https://images.ctfassets.net/9sy2a0egs6zh/5La6Qfk1GS7lGJ3YDKrA9m/13a3ab8ae99330436fcdff666061d786/snaps-bg-2.svg
13.33.187.102
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZO6J&sid=P4el_q1Hi8tRvWNDAX2Y
18.118.251.107
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=websocket&sid=PsN31GdubZxjVi_KAX3D
3.12.80.70
https://metamask.io/favicon-32x32.png?v=48400a28770e10dd52a8c0e539aeb282
185.199.108.153
https://metamask.io/page-data/sq/d/3155062165.json
185.199.108.153
https://images.ctfassets.net/9sy2a0egs6zh/2d2flEUgc4JvmJ0wf5a32l/81dc72a67e85d0c6040dbed24e28c9d8/Interoperability-icon.svg
13.33.187.102
https://metamask.io/pcm-NG/download/
unknown
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZgCQ
3.12.80.70
http://www.hubspot.com
unknown
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZgZ2&sid=PsN31GdubZxjVi_KAX3D
3.12.80.70
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZESg&sid=OkOrtzLnN6FvJUUGAX2L
18.118.251.107
https://forms.hubspot.com/lead-flows-config/v1/config/json?portalId=4795067&utk=d9edd62ee9a580ccd8a8517007ed4ace&__hstc=83560777.d9edd62ee9a580ccd8a8517007ed4ace.1728213507438.1728213507438.1728213507438.1&__hssc=83560777.3.1728213507438&currentUrl=https%3A%2F%2Fmetamask.io%2Fsdk%2F
104.16.118.116
https://support.google.com/youtube/?p=report_playback
unknown
https://angular.dev/license
unknown
https://cmp.osano.com/
18.245.31.78
https://cmp.osano.com/AzZMxHTbQDOQD8c1J/a2e89f0e-f467-4542-bfea-30ea2c1a6648/en.json
18.245.31.112
https://developers.google.com/youtube/iframe_api_reference#Events
unknown
https://metamask.io/commons-a7906cd0ab6f1602da01.js
185.199.108.153
http://youtube.com/streaming/metadata/segment/102015
unknown
https://youtu.be/
unknown
https://metamask.io/download/
https://track.hubspot.com/__ptq.gif?k=1&sd=1280x1024&cd=24-bit&cs=UTF-8&ln=en-us&bfp=471034161&v=1.1&a=4795067&po=%2Fsnaps%2F&rcu=https%3A%2F%2Fmetamask.io%2Fsnaps%2F&pu=https%3A%2F%2Fmetamask.io%2Fsnaps%2F&t=Customize+your+wallet+with+MetaMask+Snaps&cts=1728213507452&vi=d9edd62ee9a580ccd8a8517007ed4ace&nc=true&u=83560777.d9edd62ee9a580ccd8a8517007ed4ace.1728213507438.1728213507438.1728213507438.1&b=83560777.1.1728213507438&cc=15
104.16.118.116
https://api.hubspot.com/livechat-public/v1/message/public?portalId=4795067&conversations-embed=static-1.18177&mobile=false&messagesUtk=b871dc13bcea4e278b3828f35195fca8&traceId=b871dc13bcea4e278b3828f35195fca8&hubspotUtk=d9edd62ee9a580ccd8a8517007ed4ace&__hstc=83560777.d9edd62ee9a580ccd8a8517007ed4ace.1728213507438.1728213507438.1728213507438.1&__hssc=83560777.2.1728213507438
104.16.117.116
https://images.ctfassets.net/9sy2a0egs6zh/6mBaW9xju4VcttJuyfnTjr/11ac410cdf0c87183c381cea68848057/In
unknown
https://metamask.io/ru/download/
unknown
https://metamask.io/zh-CN/download/
unknown
https://cdn.acsbapp.com/config/metamask.io/config.json?page=%2Fsdk%2F
104.22.1.204
https://metamask-sdk-socket.metafi.codefi.network/socket.io/?EIO=4&transport=polling&t=P9XZFpF&sid=CH8q76lkak1jq-TNAX2Q
18.118.251.107
https://analytics.twitter.com/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=1a646930-b9fe-4cc8-a0b0-ae445f869a91&integration=gtm&p_id=Twitter&p_user_id=0&pl_id=a4a8252e-364b-4a1b-b8dd-6c433fa6b432&tw_document_href=https%3A%2F%2Fmetamask.io%2Fsdk%2F&tw_iframe_status=0&txn_id=oert2&type=javascript&version=2.3.30
104.244.42.195
https://www.youtube.com/s/player/96d06116/player_ias.vflset/en_US/embed.js
142.250.184.238
https://yt3.ggpht.com/ytc/AIdro_mFdxuLZaDyVB2zzq6GPFGkJsnJirgqoJWkI082xhKo1Q=s68-c-k-c0x00ffffff-no-rj
142.250.184.193
https://metamask.io/fonts/EuclidCircularB-Regular-WebXL.woff2
185.199.108.153
https://youtube.com/api/drm/fps?ek=uninitialized
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
www.metamask.io
104.18.40.75
d3orhvfyxudxxq.cloudfront.net
13.33.187.102
metamask.io
185.199.108.153
forms.hubspot.com
104.16.118.116
i.ytimg.com
142.250.186.54
ynstbc.xyz.webplus7.a2hosted.com
106.0.62.84
events.launchdarkly.com
54.146.115.196
js.hs-analytics.net
104.17.175.201
metamask.app.link
99.86.4.94
fp2e7a.wpc.phicdn.net
192.229.221.95
platform.twitter.map.fastly.net
146.75.120.157
t.co
162.159.140.229
track.hubspot.com
104.16.118.116
js.hs-scripts.com
104.16.140.209
photos-ugc.l.googleusercontent.com
142.250.184.193
www.google.com
142.250.184.196
js.usemessages.com
104.16.78.142
js.hs-banner.com
104.18.40.240
a.nel.cloudflare.com
35.190.80.1
s.twitter.com
104.244.42.131
clientstream-ga.launchdarkly.com
3.33.235.18
s-part-0017.t-0009.t-msedge.net
13.107.246.45
js.hsadspixel.net
104.17.223.152
metamask-sdk-geo.cx.metamask.io
18.118.251.107
static.doubleclick.net
142.250.185.134
js.hsleadflows.net
104.18.139.17
dualstack.reddit.map.fastly.net
151.101.129.140
youtube-ui.l.google.com
142.250.184.206
cdn.acsbapp.com
104.22.1.204
api.hubspot.com
104.16.117.116
reddit.map.fastly.net
151.101.65.140
googleads.g.doubleclick.net
142.250.186.98
play.google.com
142.250.185.238
api.hubapi.com
104.18.241.108
d2gt2ux04o03l1.cloudfront.net
18.245.31.112
consent.api.osano.com
18.245.60.30
acsbapp.com
172.67.11.155
s-part-0032.t-0009.t-msedge.net
13.107.246.60
alb.reddit.com
unknown
static.ads-twitter.com
unknown
yt3.ggpht.com
unknown
w3-reporting-nel.reddit.com
unknown
pixel-config.reddit.com
unknown
www.youtube.com
unknown
metamask-sdk-socket.metafi.codefi.network
unknown
clientstream.launchdarkly.com
unknown
www.redditstatic.com
unknown
app.launchdarkly.com
unknown
www.linkedin.com
unknown
images.ctfassets.net
unknown
px.ads.linkedin.com
unknown
cmp.osano.com
unknown
analytics.twitter.com
unknown
snap.licdn.com
unknown
There are 44 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
18.245.60.30
consent.api.osano.com
United States
142.250.185.228
unknown
United States
104.18.137.17
unknown
United States
99.86.4.94
metamask.app.link
United States
192.168.2.4
unknown
unknown
18.245.31.78
unknown
United States
185.199.111.153
unknown
Netherlands
13.33.187.16
unknown
United States
192.168.2.6
unknown
unknown
192.168.2.5
unknown
unknown
104.16.118.116
forms.hubspot.com
United States
142.250.186.118
unknown
United States
106.0.62.84
ynstbc.xyz.webplus7.a2hosted.com
Bangladesh
151.101.193.140
unknown
United States
104.18.40.240
js.hs-banner.com
United States
104.16.78.142
js.usemessages.com
United States
151.101.65.140
reddit.map.fastly.net
United States
35.190.80.1
a.nel.cloudflare.com
United States
142.250.184.196
www.google.com
United States
162.159.140.229
t.co
United States
142.250.184.230
unknown
United States
104.16.140.209
js.hs-scripts.com
United States
142.250.184.193
photos-ugc.l.googleusercontent.com
United States
104.18.241.108
api.hubapi.com
United States
104.244.42.131
s.twitter.com
United States
142.250.185.238
play.google.com
United States
18.245.31.100
unknown
United States
104.17.175.201
js.hs-analytics.net
United States
239.255.255.250
unknown
Reserved
13.33.187.102
d3orhvfyxudxxq.cloudfront.net
United States
104.18.242.108
unknown
United States
104.16.141.209
unknown
United States
146.75.120.157
platform.twitter.map.fastly.net
Sweden
185.199.108.153
metamask.io
Netherlands
142.250.184.238
unknown
United States
104.18.139.17
js.hsleadflows.net
United States
18.118.251.107
metamask-sdk-geo.cx.metamask.io
United States
216.58.206.78
unknown
United States
3.33.235.18
clientstream-ga.launchdarkly.com
United States
99.86.4.77
unknown
United States
216.58.206.36
unknown
United States
54.146.115.196
events.launchdarkly.com
United States
172.64.147.16
unknown
United States
18.245.31.112
d2gt2ux04o03l1.cloudfront.net
United States
142.250.184.206
youtube-ui.l.google.com
United States
172.67.11.155
acsbapp.com
United States
142.250.186.54
i.ytimg.com
United States
142.250.186.98
googleads.g.doubleclick.net
United States
104.18.40.75
www.metamask.io
United States
104.22.0.204
unknown
United States
104.244.42.67
unknown
United States
142.250.185.134
static.doubleclick.net
United States
13.33.187.25
unknown
United States
151.101.1.140
unknown
United States
3.12.80.70
unknown
United States
104.22.1.204
cdn.acsbapp.com
United States
142.250.184.214
unknown
United States
104.16.76.142
unknown
United States
151.101.129.140
dualstack.reddit.map.fastly.net
United States
104.17.223.152
js.hsadspixel.net
United States
104.16.117.116
api.hubspot.com
United States
There are 51 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
http://ynstbc.xyz.webplus7.a2hosted.com/
https://metamask.io/download/
https://metamask.io/download/
https://metamask.io/download/
https://metamask.io/snaps/
https://metamask.io/snaps/
https://metamask.io/snaps/
https://metamask.io/snaps/
https://metamask.io/snaps/
https://metamask.io/snaps/
https://metamask.io/snaps/
https://metamask.io/sdk/
https://metamask.io/sdk/
There are 3 hidden doms, click here to show them.