Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 11 21:47:19 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 11 21:47:19 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 11 21:47:19 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 11 21:47:19 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 11 21:47:19 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 100
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 101
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 102
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 103
|
ASCII text, with very long lines (37235), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 104
|
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 105
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 106
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 107
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 108
|
Unicode text, UTF-8 text, with very long lines (65532), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 109
|
PNG image data, 60 x 40, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 110
|
ASCII text, with very long lines (65536), with no line terminators, with escape sequences
|
dropped
|
||
Chrome Cache Entry: 111
|
ASCII text, with very long lines (5045), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 112
|
ASCII text, with very long lines (2345)
|
downloaded
|
||
Chrome Cache Entry: 113
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 114
|
ASCII text, with very long lines (9163), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 115
|
PNG image data, 192 x 192, 16-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 116
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 117
|
PNG image data, 60 x 40, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 118
|
ASCII text, with very long lines (10967), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 119
|
Web Open Font Format, TrueType, length 25640, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 82
|
ASCII text, with very long lines (2345)
|
dropped
|
||
Chrome Cache Entry: 83
|
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 192x192, components
3
|
dropped
|
||
Chrome Cache Entry: 84
|
PNG image data, 32 x 32, 16-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 85
|
ASCII text, with very long lines (10967), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 86
|
Unicode text, UTF-8 text, with very long lines (65512), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 87
|
ASCII text, with very long lines (9163), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 88
|
HTML document, Unicode text, UTF-8 text, with very long lines (4132), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 89
|
ASCII text, with very long lines (5945)
|
downloaded
|
||
Chrome Cache Entry: 90
|
PNG image data, 32 x 32, 16-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 91
|
HTML document, Unicode text, UTF-8 text, with very long lines (4132), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 92
|
ASCII text, with very long lines (65536), with no line terminators, with escape sequences
|
downloaded
|
||
Chrome Cache Entry: 93
|
Unicode text, UTF-8 text, with very long lines (65512), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 94
|
ASCII text, with very long lines (5945)
|
dropped
|
||
Chrome Cache Entry: 95
|
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 192x192, components
3
|
downloaded
|
||
Chrome Cache Entry: 96
|
PNG image data, 16 x 11, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 97
|
PNG image data, 16 x 11, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 98
|
ASCII text, with very long lines (5045), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 99
|
PNG image data, 192 x 192, 16-bit/color RGB, non-interlaced
|
downloaded
|
There are 35 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2084 --field-trial-handle=2040,i,8715672199010500521,11103056614966783630,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://link.adultspace.com/link/67097a59d79290df75176b77/aHR0cHM6Ly93d3cuZnVja2Jvb2tkYXRpbmcubmV0L2VuL2Fib3V0L3ByaXZhY3k=?linkId=link_6"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://link.adultspace.com/link/67097a59d79290df75176b77/aHR0cHM6Ly93d3cuZnVja2Jvb2tkYXRpbmcubmV0L2VuL2Fib3V0L3ByaXZhY3k=?linkId=link_6
|
|||
https://1118660075.rsc.cdn77.org/layout/375/1728566628/img/select2/select2.png
|
212.102.56.178
|
||
https://1118660075.rsc.cdn77.org/layout/en/375/1728566628/img/meta/square-32.png
|
212.102.56.178
|
||
https://stats.g.doubleclick.net/g/collect
|
unknown
|
||
https://1118660075.rsc.cdn77.org/vendor-js/en/375/1728566628/after-body.js
|
212.102.56.178
|
||
https://1118660075.rsc.cdn77.org/layout/375/1728566628/img/checkbox.svg
|
212.102.56.178
|
||
https://1118660075.rsc.cdn77.org/vendor-css/en/375/1728566628/all.css
|
212.102.56.178
|
||
https://1118660075.rsc.cdn77.org/static/font/icon-webfont.woff?1728566628
|
212.102.56.178
|
||
https://1118660075.rsc.cdn77.org/vendor-js/en/375/1728566628/before-body.js
|
212.102.56.178
|
||
https://1118660075.rsc.cdn77.org/layout/en/375/1728566628/img/meta/square-512.png
|
unknown
|
||
https://cdn.onesignal.com/sdks/OneSignalPageSDKES6.js?v=151606
|
104.17.111.223
|
||
https://onesignal.com/sdks/OneSignalSDKStyles.css?v=2
|
104.16.160.145
|
||
https://onesignal.com/api/v1/sync/346d6c64-a34e-450b-b449-1cadd50dce6e/web?callback=__jp0
|
104.16.160.145
|
||
https://1118660075.rsc.cdn77.org/layout/en/375/1728566628/img/meta/square-192.png
|
212.102.56.178
|
||
https://cct.google/taggy/agent.js
|
unknown
|
||
https://1118660075.rsc.cdn77.org/library-js/en/375/1728566628/library.js
|
212.102.56.178
|
||
https://www.fuckbookdating.net/layout/en/375/1728566628/manifest.json
|
13.59.133.144
|
||
http://link.adultspace.com/link/67097a59d79290df75176b77/aHR0cHM6Ly93d3cuZnVja2Jvb2tkYXRpbmcubmV0L2VuL2Fib3V0L3ByaXZhY3k=?linkId=link_6
|
213.32.27.206
|
||
https://www.fuckbookdating.net/
|
unknown
|
||
https://www.google.com
|
unknown
|
||
https://1118660075.rsc.cdn77.org/library-css/en/375/1728566628/all.css
|
212.102.56.178
|
||
https://onesignal.com/api/v1/apps/346d6c64-a34e-450b-b449-1cadd50dce6e/icon
|
104.16.160.145
|
||
https://www.fuckbookdating.net/ajax/en
|
13.59.133.144
|
||
https://td.doubleclick.net
|
unknown
|
||
https://www.merchant-center-analytics.goog
|
unknown
|
||
https://cdn.onesignal.com/sdks/OneSignalSDK.js
|
104.17.111.223
|
||
https://1118660075.rsc.cdn77.org/layout/en/375/1728566628/img/flags/us.png
|
212.102.56.178
|
||
https://1118660075.rsc.cdn77.org/library-js/en/375/1728566628/translations/1707205467.js
|
212.102.56.178
|
||
https://www.fuckbookdating.net/en/about/privacy
|
|||
https://img.onesignal.com/permanent/19855516-6423-49c6-b11f-cd1eeb3ff17b
|
104.16.160.145
|
||
https://adservice.google.com/pagead/regclk?
|
unknown
|
There are 20 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
sk-reverseproxy-1413648145.us-east-2.elb.amazonaws.com
|
13.59.133.144
|
||
cdn.onesignal.com
|
104.17.111.223
|
||
link.sndmart.net
|
213.32.27.206
|
||
onesignal.com
|
104.16.160.145
|
||
1118660075.rsc.cdn77.org
|
212.102.56.178
|
||
s-part-0017.t-0009.t-msedge.net
|
13.107.246.45
|
||
www.google.com
|
142.250.186.132
|
||
img.onesignal.com
|
104.16.160.145
|
||
fp2e7a.wpc.phicdn.net
|
192.229.221.95
|
||
link.adultspace.com
|
unknown
|
||
www.fuckbookdating.net
|
unknown
|
There are 1 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
213.32.27.206
|
link.sndmart.net
|
France
|
||
13.59.133.144
|
sk-reverseproxy-1413648145.us-east-2.elb.amazonaws.com
|
United States
|
||
104.17.111.223
|
cdn.onesignal.com
|
United States
|
||
104.16.160.145
|
onesignal.com
|
United States
|
||
192.168.2.4
|
unknown
|
unknown
|
||
192.168.2.5
|
unknown
|
unknown
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
212.102.56.178
|
1118660075.rsc.cdn77.org
|
Italy
|
||
142.250.186.132
|
www.google.com
|
United States
|
||
207.211.211.26
|
unknown
|
United States
|
||
3.128.228.77
|
unknown
|
United States
|
There are 1 hidden IPs, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://www.fuckbookdating.net/en/about/privacy
|
||
https://www.fuckbookdating.net/en/about/privacy
|
||
https://www.fuckbookdating.net/en/about/privacy
|
||
https://www.fuckbookdating.net/en/about/privacy
|
||
https://www.fuckbookdating.net/en/about/privacy
|