IOC Report
https://proposal-request.squarespace.com/

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 8 04:45:52 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 8 04:45:52 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 8 04:45:52 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 8 04:45:52 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 8 04:45:51 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 100
HTML document, ASCII text
downloaded
Chrome Cache Entry: 101
ASCII text
downloaded
Chrome Cache Entry: 102
ASCII text, with very long lines (451), with no line terminators
dropped
Chrome Cache Entry: 103
ASCII text, with very long lines (53553)
downloaded
Chrome Cache Entry: 104
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 105
Unicode text, UTF-8 text, with very long lines (7601)
downloaded
Chrome Cache Entry: 106
Unicode text, UTF-8 text, with very long lines (43878), with NEL line terminators
downloaded
Chrome Cache Entry: 107
gzip compressed data, from Unix, original size modulo 2^32 4747
downloaded
Chrome Cache Entry: 108
ASCII text, with very long lines (2356), with no line terminators
downloaded
Chrome Cache Entry: 109
PNG image data, 513 x 171, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 110
MS Windows icon resource - 3 icons, 16x16, 8 bits/pixel, 32x32, 8 bits/pixel
dropped
Chrome Cache Entry: 111
Unicode text, UTF-8 text, with very long lines (43878), with NEL line terminators
dropped
Chrome Cache Entry: 112
HTML document, ASCII text
downloaded
Chrome Cache Entry: 113
HTML document, ASCII text, with very long lines (18630)
downloaded
Chrome Cache Entry: 114
ASCII text, with very long lines (41931)
downloaded
Chrome Cache Entry: 115
ASCII text, with very long lines (53553)
dropped
Chrome Cache Entry: 116
ASCII text, with very long lines (53025)
dropped
Chrome Cache Entry: 117
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 118
Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 119
Unicode text, UTF-8 text, with very long lines (7601)
dropped
Chrome Cache Entry: 120
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 121
ASCII text
dropped
Chrome Cache Entry: 122
HTML document, ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 123
ASCII text, with very long lines (451), with no line terminators
downloaded
Chrome Cache Entry: 124
ASCII text, with very long lines (634)
downloaded
Chrome Cache Entry: 125
ASCII text
downloaded
Chrome Cache Entry: 126
Web Open Font Format (Version 2), TrueType, length 17468, version 1.0
downloaded
Chrome Cache Entry: 127
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 128
ASCII text, with very long lines (65447)
dropped
Chrome Cache Entry: 129
ASCII text, with very long lines (40035)
dropped
Chrome Cache Entry: 130
Web Open Font Format (Version 2), TrueType, length 27976, version 1.0
downloaded
Chrome Cache Entry: 131
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 132
PNG image data, 513 x 171, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 133
PNG image data, 100 x 33, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 134
HTML document, ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 135
MS Windows icon resource - 3 icons, 16x16, 8 bits/pixel, 32x32, 8 bits/pixel
downloaded
Chrome Cache Entry: 136
PNG image data, 513 x 171, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 137
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 91
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 92
ASCII text, with very long lines (40035)
downloaded
Chrome Cache Entry: 93
ASCII text, with very long lines (65467)
downloaded
Chrome Cache Entry: 94
Web Open Font Format (Version 2), TrueType, length 27120, version 1.0
downloaded
Chrome Cache Entry: 95
ASCII text, with very long lines (53025)
downloaded
Chrome Cache Entry: 96
PNG image data, 100 x 33, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 97
ASCII text, with very long lines (65467)
dropped
Chrome Cache Entry: 98
ASCII text, with very long lines (41931)
dropped
Chrome Cache Entry: 99
PNG image data, 513 x 171, 8-bit/color RGBA, non-interlaced
downloaded
There are 44 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2196 --field-trial-handle=1876,i,10167124012260493082,16431478365616821536,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://proposal-request.squarespace.com/"

URLs

Name
IP
Malicious
https://proposal-request.squarespace.com/
https://github.com/baryon
unknown
https://github.com/xsoh
unknown
https://github.com/noureddinem
unknown
https://github.com/TalAter
unknown
https://github.com/zloirock/core-js
unknown
https://github.com/ebraminio
unknown
https://github.com/jonashdown
unknown
https://www.iana.org/_img/bookmark_icon.ico
192.0.46.8
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/1f40df38f76ddb520857fbc20
unknown
https://github.com/ryanhart2
unknown
http://yuilibrary.com/license/
unknown
https://github.com/kalehv
unknown
https://github.com/crnjakovic
unknown
https://github.com/aliem
unknown
https://github.com/Manfre98
unknown
https://github.com/evoL
unknown
https://github.com/vnathalye
unknown
https://github.com/le0tan
unknown
https://github.com/narainsagar
unknown
https://assets.squarespace.com/universal/scripts-compressed/common-vendors-stable-61293f01d648eef165fc-min.en-US.js
151.101.0.237
https://github.com/ElFadiliY
unknown
https://github.com/ashwoolford
unknown
https://github.com/hagmandan
unknown
https://github.com/jbleduigou
unknown
https://github.com/muminoff
unknown
https://openjsf.org/
unknown
https://assets.squarespace.com/@sqs/polyfiller/1.6/modern.js
151.101.0.237
https://github.com/jatinag22
unknown
https://github.com/hehachris
unknown
https://github.com/jarcoal
unknown
https://github.com/jcfranco
unknown
https://github.com/mayanksinghal
unknown
https://performance.squarespace.com/api/v1/records
35.186.236.0
https://github.com/andela-batolagbe
unknown
https://github.com/forabi
unknown
https://github.com/bleadof
unknown
https://assets.squarespace.com/universal/scripts-compressed/extract-css-runtime-10b3da92d80fb56aa773-min.en-US.js
151.101.0.237
https://github.com/boyaq
unknown
https://github.com/passatgt
unknown
https://github.com/naderio
unknown
https://github.com/kaushikgandhi
unknown
https://github.com/B0k0
unknown
https://github.com/middagj
unknown
http://underscorejs.org/LICENSE
unknown
https://github.com/javkhaanj7
unknown
https://github.com/mweimerskirch
unknown
https://github.com/kruyvanna
unknown
https://github.com/suvash
unknown
https://github.com/andrewhood125
unknown
https://proposal-request.squarespace.com
unknown
https://github.com/ShahramMebashar
unknown
https://github.com/soniasimoes
unknown
https://github.com/BYK
unknown
https://github.com/skakri
unknown
https://www.iana.org/_js/jquery.js
192.0.46.8
https://github.com/jalex79
unknown
https://github.com/kraz
unknown
https://github.com/nusretparlak
unknown
https://github.com/sigurdga
unknown
https://github.com/nostalgiaz
unknown
https://github.com/sampathsris
unknown
https://github.com/ulmus
unknown
https://github.com/gurdiga
unknown
https://github.com/orif-jr
unknown
https://github.com/johnideal
unknown
https://github.com/bmarkovic
unknown
https://github.com/sedovsek
unknown
https://github.com/k2s
unknown
https://github.com/caio-ribeiro-pereira
unknown
https://github.com/jfroffice
unknown
https://github.com/hinrik
unknown
https://github.com/chrisgedrim
unknown
https://github.com/chienkira
unknown
https://github.com/colindean
unknown
https://github.com/Oire
unknown
https://github.com/chriscartlidge
unknown
https://github.com/mechuwind
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/34b27b07f88d77b43ccdab3e6
unknown
https://github.com/miestasmia
unknown
https://github.com/MadMG
unknown
https://github.com/bkyceh
unknown
https://sourcemaps.squarespace.net/universal/scripts-compressed/sourcemaps/3978c0c2aa2735b7412720c37
unknown
https://github.com/fadsel
unknown
https://assets.squarespace.com/universal/styles-compressed/user-account-core-b6e8cafbf34b05da5c2b-min.en-US.css
151.101.0.237
https://github.com/Amine27
unknown
https://static1.squarespace.com/static/vta/5c5a519771c10ba3470d8101/scripts/site-bundle.65e26242174e7f2d8845e29aa884ad31.js
151.101.0.238
https://github.com/weldan
unknown
https://github.com/estellecomment
unknown
https://github.com/liabru/matter-wrap
unknown
https://github.com/avaly
unknown
https://github.com/lantip
unknown
https://www.example.com/
https://github.com/amaranthrose
unknown
https://github.com/mergehez
unknown
https://images.squarespace-cdn.com/content/v1/66fed1bfcc18be6b088cd2f3/ecbdaef0-0f0c-4286-9a9b-80b01
unknown
https://github.com/cepem
unknown
https://static1.squarespace.com/static/vta/5c5a519771c10ba3470d8101/scripts/site-bundle.65e26242174e
unknown
https://www.iana.org/_img/2022/fonts/NotoSans-Bold.woff
192.0.46.8
https://github.com/nicolaidavies
unknown
https://github.com/gholadr
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
performance.squarespace.com
35.186.236.0
proposal-request.squarespace.com
198.185.159.177
or4t.iednationusa.com
188.114.97.3
static.squarespace.map.fastly.net
151.101.0.237
www.google.com
172.217.16.196
squarespace.map.fastly.net
151.101.128.238
prod.squarespace.map.fastly.net
151.101.0.238
www.example.com
93.184.215.14
ianawww.vip.icann.org
192.0.33.8
images.squarespace-cdn.com
unknown
www.iana.org
unknown
assets.squarespace.com
unknown
static1.squarespace.com
unknown
There are 3 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
192.0.46.8
unknown
United States
192.0.33.8
ianawww.vip.icann.org
United States
192.168.2.16
unknown
unknown
151.101.0.237
static.squarespace.map.fastly.net
United States
151.101.0.238
prod.squarespace.map.fastly.net
United States
151.101.128.238
squarespace.map.fastly.net
United States
198.185.159.177
proposal-request.squarespace.com
United States
239.255.255.250
unknown
Reserved
188.114.97.3
or4t.iednationusa.com
European Union
93.184.215.14
www.example.com
European Union
172.217.16.196
www.google.com
United States
35.186.236.0
performance.squarespace.com
United States
There are 2 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://proposal-request.squarespace.com/
malicious
https://www.example.com/
http://www.iana.org/help/example-domains