IOC Report
http://www.facebook.com/seamless

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
ASCII text, with very long lines (16754)
downloaded
Chrome Cache Entry: 101
ASCII text, with very long lines (11455)
dropped
Chrome Cache Entry: 102
PNG image data, 40 x 40, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 103
ASCII text, with very long lines (20226)
downloaded
Chrome Cache Entry: 104
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1618x540, components 3
downloaded
Chrome Cache Entry: 105
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
dropped
Chrome Cache Entry: 106
ASCII text, with very long lines (6194)
dropped
Chrome Cache Entry: 107
ASCII text, with very long lines (21440)
dropped
Chrome Cache Entry: 108
PNG image data, 40 x 40, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 109
ASCII text, with very long lines (3558)
downloaded
Chrome Cache Entry: 110
ASCII text, with very long lines (10048)
downloaded
Chrome Cache Entry: 111
ASCII text, with very long lines (6544)
dropped
Chrome Cache Entry: 112
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 320x107, components 3
downloaded
Chrome Cache Entry: 113
ASCII text, with very long lines (3558)
dropped
Chrome Cache Entry: 114
ASCII text, with very long lines (5177)
downloaded
Chrome Cache Entry: 115
ASCII text, with very long lines (21440)
downloaded
Chrome Cache Entry: 116
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 117
ASCII text, with very long lines (20226)
dropped
Chrome Cache Entry: 118
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
dropped
Chrome Cache Entry: 119
ASCII text, with very long lines (45939)
dropped
Chrome Cache Entry: 120
ASCII text, with very long lines (11455)
downloaded
Chrome Cache Entry: 121
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 960x320, components 3
dropped
Chrome Cache Entry: 122
exported SGML document, ASCII text, with very long lines (29519)
downloaded
Chrome Cache Entry: 123
ASCII text, with very long lines (16754)
dropped
Chrome Cache Entry: 124
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 158x158, components 3
dropped
Chrome Cache Entry: 125
ASCII text, with very long lines (6237)
downloaded
Chrome Cache Entry: 126
ASCII text, with very long lines (20634)
downloaded
Chrome Cache Entry: 127
ASCII text, with very long lines (62770)
downloaded
Chrome Cache Entry: 128
ASCII text, with very long lines (11041)
dropped
Chrome Cache Entry: 129
ASCII text, with very long lines (4869)
downloaded
Chrome Cache Entry: 130
ASCII text, with very long lines (10048)
dropped
Chrome Cache Entry: 131
ASCII text, with very long lines (5177)
dropped
Chrome Cache Entry: 132
ASCII text, with very long lines (3721)
dropped
Chrome Cache Entry: 133
ASCII text, with very long lines (3721)
downloaded
Chrome Cache Entry: 134
PNG image data, 192 x 192, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 135
ASCII text, with very long lines (6079)
downloaded
Chrome Cache Entry: 136
PNG image data, 192 x 192, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 137
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
dropped
Chrome Cache Entry: 138
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 320x107, components 3
dropped
Chrome Cache Entry: 139
ASCII text, with very long lines (6474)
downloaded
Chrome Cache Entry: 140
ASCII text, with very long lines (6544)
downloaded
Chrome Cache Entry: 141
ASCII text, with very long lines (59401)
downloaded
Chrome Cache Entry: 142
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
dropped
Chrome Cache Entry: 143
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
downloaded
Chrome Cache Entry: 144
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 960x320, components 3
downloaded
Chrome Cache Entry: 145
exported SGML document, ASCII text, with very long lines (29519)
dropped
Chrome Cache Entry: 146
ASCII text, with very long lines (6354)
dropped
Chrome Cache Entry: 147
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
dropped
Chrome Cache Entry: 148
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
downloaded
Chrome Cache Entry: 149
ASCII text, with very long lines (6354)
downloaded
Chrome Cache Entry: 150
ASCII text, with very long lines (45939)
downloaded
Chrome Cache Entry: 151
ASCII text, with very long lines (6079)
dropped
Chrome Cache Entry: 152
ASCII text, with very long lines (6194)
downloaded
Chrome Cache Entry: 153
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 152x152, components 3
dropped
Chrome Cache Entry: 154
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 155
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 152x152, components 3
downloaded
Chrome Cache Entry: 156
ASCII text, with very long lines (6237)
dropped
Chrome Cache Entry: 157
ASCII text, with very long lines (4869)
dropped
Chrome Cache Entry: 158
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 158x158, components 3
downloaded
Chrome Cache Entry: 159
ASCII text, with very long lines (62770)
dropped
Chrome Cache Entry: 160
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
dropped
Chrome Cache Entry: 161
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
dropped
Chrome Cache Entry: 162
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
downloaded
Chrome Cache Entry: 163
ASCII text, with very long lines (21587)
downloaded
Chrome Cache Entry: 164
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
downloaded
Chrome Cache Entry: 165
ASCII text, with very long lines (8477)
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (8477)
dropped
Chrome Cache Entry: 167
ASCII text, with very long lines (21587)
dropped
Chrome Cache Entry: 168
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
downloaded
Chrome Cache Entry: 169
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1618x540, components 3
dropped
Chrome Cache Entry: 170
ASCII text, with very long lines (7868)
dropped
Chrome Cache Entry: 171
ASCII text, with very long lines (7868)
downloaded
Chrome Cache Entry: 172
ASCII text, with very long lines (20634)
dropped
Chrome Cache Entry: 173
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
downloaded
Chrome Cache Entry: 174
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 160x160, components 3
downloaded
Chrome Cache Entry: 175
ASCII text, with very long lines (11041)
downloaded
There are 67 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2176 --field-trial-handle=2016,i,1515569472833866323,11069543165772475496,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.facebook.com/seamless"

URLs

Name
IP
Malicious
http://www.facebook.com/seamless
https://optout.aboutads.info/
unknown
https://static.xx.fbcdn.net/rsrc.php/v3i7p24/yJ/l/en_US/jHJAjim4V1x.js
157.240.253.1
https://scontent-msp1-1.xx.fbcdn.net/v/t1.6435-9/156254899_3800202790062990_5938084631917675421_n.jpg?stp=dst-jpg_s160x160&_nc_cat=111&ccb=1-7&_nc_sid=e8b6d3&_nc_ohc=Dx6zlbIhDkwQ7kNvgHV9aGP&_nc_ht=scontent-msp1-1.xx&_nc_gid=A0DTSdg1AjK72RHTBHAC-Fb&oh=00_AYAXtUWTpCSUrHEJgoSxJ0kY0JqZDBJyImWLjvol9SISuA&oe=672B525F
157.240.26.27
https://www.facebook.com/seamless
https://static.xx.fbcdn.net/rsrc.php/v3/yc/r/cGxo7_n9cky.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3i7M54/yu/l/en_US/8HvRXKI8vmj.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3iKPN4/yR/l/en_US/A8Lgl7A-fEI.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3ixMQ4/yq/l/en_US/RWW1xLyXeWH.js
157.240.253.1
https://www.internalfb.com/intern/invariant/
unknown
https://static.xx.fbcdn.net/rsrc.php/v3/yd/r/_at8rCNG77_.js
157.240.253.1
https://scontent-msp1-1.xx.fbcdn.net/v/t1.6435-9/162465997_3848595305223738_2317866673105470207_n.jpg?stp=dst-jpg_s160x160&_nc_cat=107&ccb=1-7&_nc_sid=e8b6d3&_nc_ohc=9moqvMGe2xQQ7kNvgEhGb0H&_nc_ht=scontent-msp1-1.xx&_nc_gid=A0DTSdg1AjK72RHTBHAC-Fb&oh=00_AYANe55AjmneyR--2sVdXnW6_0EZQKuqK-C_YW2eEfA_yA&oe=672B70CB
157.240.26.27
https://static.xx.fbcdn.net/rsrc.php/v3i5LF4/yT/l/en_US/ASrdXq8cdcWcFM497l2EmPdNTQDzvldaWYT7n1sgH1lvgzWUsT3tt8dwbNi_gkVbIeDYvatkvPhoOj4HpWSpmeH0LA6iNwcmDR0CAMTEtK_gX60HD9f1e4NOJ05J9hlFW4JdBHmXqH9QsJUxews8Qjb9PD_JiGR1Rg9YzAh15ylU6MiaUNNplwE91K61Rdzuzi16ygUxs8hLIFx3Mau-LZbAjemuBYSMYpkKhgxhV_-BvmtDG8E1hHt3E_efmsiw35CCrugTp55HfXW__mMzi95_wmB-512pEQn4HVER6bYupQ0yi8wH.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3iVSE4/yN/l/en_US/tI3_Q-GwvRfopwoDiq4buWL1GU69Jw7jBERz6pNGhHp8vz5mf-dl_pi.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3i0Wo4/y9/l/en_US/nNL7PF1mRol.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3i7Ku4/yi/l/en_US/oxYVG_qU2061eSu3JOVPWSQwJdwCK2disyYzNCS20pX2EqDyDgBHX59ol1dA1B68PMfQyywdzwm6JAUzCfulZcjVHjg5w1Pn2se2nUBekK0DyChaUJEsOKpEDGWQA3FFx8w89RMV0fymdJeZZVnk6hKaAGgjGuUw5DNdebYVSPEwPSwNMnOwfiBaqD5XFIJJ5uqTCESs82tgvNbwpH1vFq71BZL-.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3ivXI4/y7/l/en_US/jT50sB3hQgh.js
157.240.253.1
https://youradchoices.ca/
unknown
https://www.facebook.com/ajax/qm/?__a=1&__user=0&__comet_req=15&jazoest=21012
157.240.252.35
https://static.xx.fbcdn.net/rsrc.php/v3isGH4/y0/l/en_US/wkMO7tNA5gC.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3iU434/y6/l/en_US/O_G_Fjn5dPUDWgNJlhkVgFlhkmfuF2oJ3as64TSP8wM6vDTYVEPk4NQifvbVJ53oEaF36SvuREqdowsk8rqKGhsd6TgkAsYj0WDEOWZEH93_TY5x7HXut1XD2YIPKuext8SgsyPEDVVRyCvDBZate7zICWwnsI7sqAkEt.js
157.240.253.1
https://scontent-msp1-1.xx.fbcdn.net/v/t1.6435-9/152029212_3764536806962922_2628279626185263697_n.jpg?stp=dst-jpg_s160x160&_nc_cat=107&ccb=1-7&_nc_sid=e8b6d3&_nc_ohc=QY8CtPN7mtMQ7kNvgGijNLm&_nc_ht=scontent-msp1-1.xx&_nc_gid=A0DTSdg1AjK72RHTBHAC-Fb&oh=00_AYBff3g5Z5Y6utKoaIcQcGRketmAd-NdkoJE6UDSL5VLwQ&oe=672B8185
157.240.26.27
https://static.xx.fbcdn.net/rsrc.php/v3/yQ/l/0,cross/LlGPVEkBzalVWgg-YkpZuD.css
157.240.253.1
https://scontent-msp1-1.xx.fbcdn.net/v/t39.30808-6/337402796_958193908505954_6631275625612385243_n.jpg?stp=dst-jpg_p180x540&_nc_cat=106&ccb=1-7&_nc_sid=cc71e4&_nc_ohc=LCdINKPn1hoQ7kNvgGus6vt&_nc_ht=scontent-msp1-1.xx&_nc_gid=AAr7mH-Vm_NJcKrqfJjIzoP&oh=00_AYCPWypkdUZDQuLFcJSc2g2CkKFYs49f7XdrhbrtWEr8lg&oe=6709BB4D
157.240.26.27
https://scontent-msp1-1.xx.fbcdn.net/v/t1.18169-9/524883_10151287160880362_1345474240_n.jpg?stp=c120.0.720.720a_dst-jpg_s160x160&_nc_cat=101&ccb=1-7&_nc_sid=5ed88f&_nc_ohc=oHbfJTPx16oQ7kNvgGef4rg&_nc_ht=scontent-msp1-1.xx&oh=00_AYC-ecMyVCpGxLgHRx7U_PSavIUg2Wmg1sag941kmizhiA&oe=672B5819
157.240.26.27
https://scontent-msp1-1.xx.fbcdn.net/v/t1.18169-9/317534_10150508066702802_2010095875_n.jpg?stp=c38.0.152.152a_dst-jpg_p228x119&_nc_cat=102&ccb=1-7&_nc_sid=5ed88f&_nc_ohc=gz-3q76OPxsQ7kNvgG4IzgN&_nc_ht=scontent-msp1-1.xx&oh=00_AYDGg_qVMpmxaFZi-wGUXEgPWeL-_FLnFJkbeHIPA_dOTQ&oe=672B5607
157.240.26.27
https://www.youronlinechoices.com/
unknown
https://scontent-msp1-1.xx.fbcdn.net/v/t39.30808-6/337402796_958193908505954_6631275625612385243_n.jpg?stp=dst-jpg_fb50_s320x320&_nc_cat=106&ccb=1-7&_nc_sid=cc71e4&_nc_ohc=LCdINKPn1hoQ7kNvgGus6vt&_nc_ht=scontent-msp1-1.xx&_nc_gid=Aw__UpbN7tOTpfns8RodVxf&oh=00_AYCvmIuAW_nyTIjffi0oTiflB2SsxisTSg1q44YCAQMTNQ&oe=6709BB4D
157.240.26.27
https://static.xx.fbcdn.net/rsrc.php/v3/yF/r/sIUfioK8p73.js
157.240.253.1
https://scontent-msp1-1.xx.fbcdn.net/v/t31.18172-8/21740927_10214289126807990_9089768303997285436_o.jpg?stp=c448.0.1152.1152a_dst-jpg_s160x160&_nc_cat=103&ccb=1-7&_nc_sid=612081&_nc_ohc=LK1cneCc56UQ7kNvgFVqJ36&_nc_ht=scontent-msp1-1.xx&_nc_gid=A0DTSdg1AjK72RHTBHAC-Fb&oh=00_AYC4yZEOYUMUlyhhz55R7JY6e4osX6RIQrs5DlJNW8Z23w&oe=672B7932
157.240.26.27
https://fburl.com/comet_preloading
unknown
https://fburl.com/dialog-provider).
unknown
https://support.google.com/chrome/answer/95647
unknown
https://static.xx.fbcdn.net/rsrc.php/v3idBq4/yk/l/en_US/UD1PwnXkH_D.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3isKK4/yZ/l/en_US/N7BJNurDwp0.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3igdi4/yo/l/en_US/K_dPDLjwRPX.js
157.240.253.1
http://www.facebook.com/seamless
157.240.0.35
https://static.xx.fbcdn.net/rsrc.php/v3iDZ_4/y9/l/en_US/mkSNTHwG7mx.js
157.240.253.1
https://www.facebook.com/data/manifest/
157.240.252.35
https://fburl.com/wiki/m19zmtlh
unknown
https://scontent-msp1-1.xx.fbcdn.net/v/t39.30808-6/337402796_958193908505954_6631275625612385243_n.jpg?stp=dst-jpg_s960x960&_nc_cat=106&ccb=1-7&_nc_sid=cc71e4&_nc_ohc=LCdINKPn1hoQ7kNvgGus6vt&_nc_ht=scontent-msp1-1.xx&_nc_gid=Aw__UpbN7tOTpfns8RodVxf&oh=00_AYCr1mK0L2CmPnX5ovR_KmHlcZGbz6Ocj0sf47ZEth0RLw&oe=6709BB4D
157.240.26.27
https://static.xx.fbcdn.net/rsrc.php/v3iMRp4/yt/l/en_US/DLKAL5fUAnr.js
157.240.253.1
https://lexical.dev/docs/error?
unknown
https://static.xx.fbcdn.net/rsrc.php/v3/yf/r/9d7M9_-wAcd.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/yT/r/aGT3gskzWBf.ico
157.240.253.1
https://scontent-msp1-1.xx.fbcdn.net/v/t1.18169-9/403176_10150543604107823_1511225123_n.jpg?stp=c0.22.158.158a_dst-jpg_p75x225&_nc_cat=101&ccb=1-7&_nc_sid=5ed88f&_nc_ohc=8xRtFOy7wdIQ7kNvgGoZnkY&_nc_ht=scontent-msp1-1.xx&oh=00_AYAqC6bz0110Rk8VDgU4c7-_AoxZrHN1-ZcedD9-tN3KqQ&oe=672B65D8
157.240.26.27
https://fburl.com/wiki/xrzohrqb
unknown
https://scontent-msp1-1.xx.fbcdn.net/v/t1.6435-9/71082193_2548232842079454_7212047442072567808_n.jpg?stp=c103.0.544.544a_dst-jpg_s160x160&_nc_cat=102&ccb=1-7&_nc_sid=14ed46&_nc_ohc=h643KHpVyowQ7kNvgERY7ov&_nc_ht=scontent-msp1-1.xx&_nc_gid=A0DTSdg1AjK72RHTBHAC-Fb&oh=00_AYAuTgW7elu87UPZlaZVf0p7Hr2yaXBn68o-zsqevUE8yQ&oe=672B4EFF
157.240.26.27
https://scontent.xx.fbcdn.net/hads-ak-prn2/1487645_6012475414660_1439393861_n.png
unknown
https://static.xx.fbcdn.net/rsrc.php/v3ie974/yq/l/en_US/fbI1vKnc9QM.js
157.240.253.1
https://static.xx.fbcdn.net/rsrc.php/v3ij3t4/yd/l/en_US/vBqJAb5a0V2.js
157.240.253.1
https://scontent-msp1-1.xx.fbcdn.net/v/t39.30808-1/240585649_10159656032583816_3578251711769595625_n.png?stp=cp0_dst-png_s40x40&_nc_cat=110&ccb=1-7&_nc_sid=f4b9fd&_nc_ohc=_4r_rcFMrfcQ7kNvgEiEsWz&_nc_ht=scontent-msp1-1.xx&_nc_gid=AAr7mH-Vm_NJcKrqfJjIzoP&oh=00_AYCj2EmLDHObYr6BfU52Y40YRhgDRQVb-SHUlDxChRnfYw&oe=6709DB70
157.240.26.27
https://static.xx.fbcdn.net/rsrc.php/v3/y0/r/eFZD1KABzRA.png
157.240.253.1
There are 42 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
star-mini.c10r.facebook.com
157.240.0.35
scontent.xx.fbcdn.net
157.240.253.1
video.xx.fbcdn.net
157.240.251.2
www.google.com
142.250.185.100
scontent-msp1-1.xx.fbcdn.net
157.240.26.27
www.facebook.com
unknown
static.xx.fbcdn.net
unknown

IPs

IP
Domain
Country
Malicious
157.240.0.35
star-mini.c10r.facebook.com
United States
192.168.2.7
unknown
unknown
142.250.185.100
www.google.com
United States
192.168.2.6
unknown
unknown
157.240.251.9
unknown
United States
239.255.255.250
unknown
Reserved
157.240.253.1
scontent.xx.fbcdn.net
United States
157.240.26.27
scontent-msp1-1.xx.fbcdn.net
United States
157.240.252.35
unknown
United States

DOM / HTML

URL
Malicious
https://www.facebook.com/seamless
https://www.facebook.com/seamless