IOC Report
https://mertmsk-lgbin.gitbook.io/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
Unicode text, UTF-8 text, with very long lines (29907)
downloaded
Chrome Cache Entry: 101
ASCII text, with very long lines (3227)
downloaded
Chrome Cache Entry: 102
ASCII text
downloaded
Chrome Cache Entry: 103
ASCII text, with very long lines (14941)
dropped
Chrome Cache Entry: 104
ASCII text, with very long lines (56462)
dropped
Chrome Cache Entry: 105
HTML document, Unicode text, UTF-8 text, with very long lines (34485)
dropped
Chrome Cache Entry: 106
HTML document, Unicode text, UTF-8 text, with very long lines (34485)
downloaded
Chrome Cache Entry: 107
ASCII text, with very long lines (12105)
dropped
Chrome Cache Entry: 108
ASCII text, with very long lines (25336)
dropped
Chrome Cache Entry: 109
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 110
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 111
ASCII text, with very long lines (6247)
downloaded
Chrome Cache Entry: 112
ASCII text, with very long lines (25336)
downloaded
Chrome Cache Entry: 113
ASCII text, with very long lines (6247)
dropped
Chrome Cache Entry: 114
Web Open Font Format (Version 2), TrueType, length 48556, version 1.0
downloaded
Chrome Cache Entry: 115
ASCII text, with very long lines (1146)
dropped
Chrome Cache Entry: 116
ASCII text, with very long lines (12105)
downloaded
Chrome Cache Entry: 117
ASCII text, with very long lines (3907)
downloaded
Chrome Cache Entry: 118
ASCII text
downloaded
Chrome Cache Entry: 119
ASCII text, with very long lines (34267)
dropped
Chrome Cache Entry: 120
ASCII text, with very long lines (8827)
dropped
Chrome Cache Entry: 121
ASCII text, with very long lines (8396)
downloaded
Chrome Cache Entry: 122
ASCII text, with very long lines (6926)
dropped
Chrome Cache Entry: 123
ASCII text, with very long lines (11638)
dropped
Chrome Cache Entry: 124
ASCII text, with very long lines (6926)
downloaded
Chrome Cache Entry: 125
ASCII text, with very long lines (40811)
downloaded
Chrome Cache Entry: 126
ASCII text, with very long lines (18153)
downloaded
Chrome Cache Entry: 127
Unicode text, UTF-8 text, with very long lines (59073)
downloaded
Chrome Cache Entry: 128
ASCII text, with very long lines (1146)
downloaded
Chrome Cache Entry: 129
ASCII text, with very long lines (65472)
downloaded
Chrome Cache Entry: 130
ASCII text, with very long lines (60328)
downloaded
Chrome Cache Entry: 131
ASCII text
downloaded
Chrome Cache Entry: 132
ASCII text, with very long lines (28774)
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (11638)
downloaded
Chrome Cache Entry: 134
ASCII text, with very long lines (3907)
dropped
Chrome Cache Entry: 135
ASCII text, with very long lines (40811)
dropped
Chrome Cache Entry: 81
Unicode text, UTF-8 text, with very long lines (59073)
dropped
Chrome Cache Entry: 82
ASCII text, with very long lines (3596)
dropped
Chrome Cache Entry: 83
Unicode text, UTF-8 text, with very long lines (28477)
downloaded
Chrome Cache Entry: 84
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 85
ISO Media, AVIF Image
dropped
Chrome Cache Entry: 86
ASCII text, with very long lines (3596)
downloaded
Chrome Cache Entry: 87
ASCII text, with very long lines (56462)
downloaded
Chrome Cache Entry: 88
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 89
ASCII text, with very long lines (28198)
downloaded
Chrome Cache Entry: 90
ASCII text, with very long lines (311)
downloaded
Chrome Cache Entry: 91
ASCII text, with very long lines (34267)
downloaded
Chrome Cache Entry: 92
HTML document, Unicode text, UTF-8 text, with very long lines (42157)
downloaded
Chrome Cache Entry: 93
ASCII text, with very long lines (18153)
dropped
Chrome Cache Entry: 94
ASCII text, with very long lines (14941)
downloaded
Chrome Cache Entry: 95
Unicode text, UTF-8 text, with very long lines (28477)
dropped
Chrome Cache Entry: 96
ISO Media, AVIF Image
downloaded
Chrome Cache Entry: 97
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 98
Unicode text, UTF-8 text, with very long lines (29907)
dropped
Chrome Cache Entry: 99
ASCII text, with very long lines (8827)
downloaded
There are 46 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2412 --field-trial-handle=2320,i,8353375508293425890,17195129226525861145,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mertmsk-lgbin.gitbook.io/"

URLs

Name
IP
Malicious
https://mertmsk-lgbin.gitbook.io/
https://mertmsk-lgbin.gitbook.io/us/
172.64.147.209
https://tailwindcss.com
unknown
https://mertmsk-lgbin.gitbook.io/_next/static/media/a34f9d1faa5f3315-s.woff2
172.64.147.209
https://api.gitbook.com
unknown
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/8381-2f754da8e779eeab.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/1698-e89c19bbf0c8e05d.js
172.64.147.209
https://2400190078-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FHbxjltoKgfvSM6JkX82S%2Fuploads%2FHZEBt4O7Ajzau6Dt1GW3%2Ffile.excalidraw.svg?alt=media&token=3e072fdc-d1dc-4668-afc7-7df01b81e753
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/app/(space)/error-e13e0b765fd3fff7.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/e11f1c6a6568d9ab.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/4037-4d151b686812ceb4.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/~gitbook/image?url=https%3A%2F%2F2400190078-files.gitbook.io%2F%7E%2Ffiles%2Fv0%2Fb%2Fgitbook-x-prod.appspot.com%2Fo%2Fspaces%252FHbxjltoKgfvSM6JkX82S%252Ficon%252F0t2jo0T4Up8xUDAMSiBV%252Fmetamask%2520logo.png%3Falt%3Dmedia%26token%3Dc3ae8867-d1b9-448b-9d74-2a8b82b8850c&width=32&dpr=1&quality=100&sign=261eddfc&sv=1
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/594af977d5a2878d.css
172.64.147.209
https://docs.gitbook.com/published-documentation/custom-domain/configure-dns#are-you-using-cloudflar
unknown
https://mertmsk-lgbin.gitbook.io/us/~gitbook/ogimage/iHfOkHUDe2dmLqLSs91Q
unknown
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/1dd3208c-65f236513d05994f.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/favicon.ico
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/55c273d39abae12a.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/app/(space)/layout-7ef296a0cca4ea87.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/us
https://mertmsk-lgbin.gitbook.io/_next/static/css/19ad1175bf75e201.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/bf7df5d7c6de54ec.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/webpack-ed8f5a60dc0318fb.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/3546-983d8e659994cb93.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/0f891de5863d7182.css
172.64.147.209
https://a.nel.cloudflare.com/report/v4?s=63x72eKaoU3Gn%2F2jb6oDzlT%2BThtZec5LfoadPxbIBKeSqzYwE1wBJIPDB%2BMK%2FTRJbnKjhHVAKA1QjSNmLbFuAKfTfJNWLMnYULzNYuGtl6CFizLzsh5Qv8h9ZSpYpQTVhZsfelw3RMSxZTOTCH55
35.190.80.1
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/b5d5b83b-79880c6c180a831f.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/84671c0b86c5eace.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/8731-301749ee030e10bf.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/us/favicon.ico
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/app/(space)/(content)/layout-e6c9e9cb143d3791.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/6718-c9b90b1ba43809dd.js
172.64.147.209
https://www.gitbook.com/?utm_source=content&utm_medium=trademark&utm_campaign=HbxjltoKgfvSM6
unknown
https://mertmsk-lgbin.gitbook.io/_next/static/css/c311d6484335995a.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/main-app-edf9fc05fff9a094.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/6445-f44ccdfb3d68c36a.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/app/global-error-ae0a7781226b5f7c.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/829150f9e3c1e921.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/app/(space)/(content)/%5B%5B...pathname%5D%5D/page-80dffb20e3f68740.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/2632-58a8169263096f76.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/ebf7d0073b0092ea.css
172.64.147.209
https://unpkg.com/
unknown
https://2400190078-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FHbxjltoKgfvSM
unknown
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/4377-f33ce08f4cf11496.js
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/css/026444ec630b65a2.css
172.64.147.209
https://mertmsk-lgbin.gitbook.io/_next/static/chunks/6985-24d17eba2c4006cb.js
172.64.147.209
There are 36 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.214.172
a.nel.cloudflare.com
35.190.80.1
2400190078-files.gitbook.io
172.64.147.209
www.google.com
142.250.184.228
mertmsk-lgbin.gitbook.io
172.64.147.209
fp2e7a.wpc.phicdn.net
192.229.221.95
api.gitbook.com
104.18.41.89

IPs

IP
Domain
Country
Malicious
104.18.41.89
api.gitbook.com
United States
192.168.2.4
unknown
unknown
192.168.2.6
unknown
unknown
239.255.255.250
unknown
Reserved
192.168.2.14
unknown
unknown
35.190.80.1
a.nel.cloudflare.com
United States
172.64.147.209
2400190078-files.gitbook.io
United States
142.250.184.228
www.google.com
United States

DOM / HTML

URL
Malicious
https://mertmsk-lgbin.gitbook.io/us