IOC Report
https://f120987.pages.dev/

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Oct 13 17:24:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Oct 13 17:24:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Oct 13 17:24:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Oct 13 17:24:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sun Oct 13 17:24:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 164
JSON data
dropped
Chrome Cache Entry: 165
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 166
JSON data
dropped
Chrome Cache Entry: 167
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 168
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 169
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 170
PNG image data, 128 x 128, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 171
Unicode text, UTF-8 text, with very long lines (59934)
dropped
Chrome Cache Entry: 172
ASCII text, with very long lines (24745), with no line terminators
dropped
Chrome Cache Entry: 173
JSON data
dropped
Chrome Cache Entry: 174
JSON data
downloaded
Chrome Cache Entry: 175
ASCII text, with very long lines (65448)
downloaded
Chrome Cache Entry: 176
JSON data
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (19948), with no line terminators
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (514)
downloaded
Chrome Cache Entry: 179
ASCII text, with very long lines (65432)
dropped
Chrome Cache Entry: 180
PNG image data, 96 x 96, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 181
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 182
ASCII text, with very long lines (1297), with no line terminators
dropped
Chrome Cache Entry: 183
ASCII text, with very long lines (606)
downloaded
Chrome Cache Entry: 184
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 185
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 186
ASCII text, with very long lines (12331)
dropped
Chrome Cache Entry: 187
ASCII text, with very long lines (21229)
downloaded
Chrome Cache Entry: 188
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 189
JSON data
downloaded
Chrome Cache Entry: 190
PNG image data, 666 x 87, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 191
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 192
ASCII text, with very long lines (7711)
downloaded
Chrome Cache Entry: 193
ASCII text, with very long lines (16817), with no line terminators
downloaded
Chrome Cache Entry: 194
PNG image data, 2163 x 1128, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 195
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 196
ASCII text, with very long lines (3138)
dropped
Chrome Cache Entry: 197
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 198
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 199
ASCII text, with very long lines (47459)
downloaded
Chrome Cache Entry: 200
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 201
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 202
PNG image data, 96 x 96, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 203
ASCII text, with very long lines (1297), with no line terminators
downloaded
Chrome Cache Entry: 204
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 205
Unicode text, UTF-8 text, with very long lines (6820)
downloaded
Chrome Cache Entry: 206
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 207
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 208
ASCII text, with very long lines (19948), with no line terminators
dropped
Chrome Cache Entry: 209
JSON data
dropped
Chrome Cache Entry: 210
ASCII text, with very long lines (57671), with no line terminators
dropped
Chrome Cache Entry: 211
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 212
HTML document, ASCII text
downloaded
Chrome Cache Entry: 213
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 214
ASCII text, with very long lines (32740)
downloaded
Chrome Cache Entry: 215
JSON data
dropped
Chrome Cache Entry: 216
JSON data
downloaded
Chrome Cache Entry: 217
C source, Unicode text, UTF-8 (with BOM) text, with very long lines (573)
downloaded
Chrome Cache Entry: 218
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 219
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 220
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 221
Unicode text, UTF-8 text, with very long lines (65528), with no line terminators
dropped
Chrome Cache Entry: 222
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 223
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 224
ASCII text, with very long lines (47459)
dropped
Chrome Cache Entry: 225
PNG image data, 311 x 174, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 226
ASCII text, with very long lines (42716)
downloaded
Chrome Cache Entry: 227
PNG image data, 2163 x 1128, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 228
JSON data
downloaded
Chrome Cache Entry: 229
Unicode text, UTF-8 text, with very long lines (41169)
downloaded
Chrome Cache Entry: 230
HTML document, ASCII text, with very long lines (394)
dropped
Chrome Cache Entry: 231
PNG image data, 54 x 54, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 232
JSON data
downloaded
Chrome Cache Entry: 233
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 234
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 235
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 236
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 237
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 238
JSON data
downloaded
Chrome Cache Entry: 239
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 240
ASCII text, with very long lines (36066)
dropped
Chrome Cache Entry: 241
JSON data
downloaded
Chrome Cache Entry: 242
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 243
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 244
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 245
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 246
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 247
JSON data
dropped
Chrome Cache Entry: 248
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 249
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 250
ASCII text, with very long lines (32757)
dropped
Chrome Cache Entry: 251
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 252
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 253
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 254
Unicode text, UTF-8 text, with very long lines (65528), with no line terminators
downloaded
Chrome Cache Entry: 255
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 256
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 257
JSON data
dropped
Chrome Cache Entry: 258
PNG image data, 54 x 54, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 259
JSON data
downloaded
Chrome Cache Entry: 260
JSON data
dropped
Chrome Cache Entry: 261
Unicode text, UTF-8 text, with very long lines (8379)
dropped
Chrome Cache Entry: 262
ASCII text, with very long lines (6371), with no line terminators
dropped
Chrome Cache Entry: 263
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 264
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 265
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 266
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 267
ASCII text, with very long lines (514)
dropped
Chrome Cache Entry: 268
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 269
ASCII text, with very long lines (65448)
dropped
Chrome Cache Entry: 270
JSON data
downloaded
Chrome Cache Entry: 271
ASCII text, with very long lines (7711)
dropped
Chrome Cache Entry: 272
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 273
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 274
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 275
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 276
PNG image data, 1018 x 118, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 277
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 278
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 279
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
dropped
Chrome Cache Entry: 280
ASCII text, with very long lines (10998)
dropped
Chrome Cache Entry: 281
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 282
JSON data
dropped
Chrome Cache Entry: 283
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 284
ASCII text, with very long lines (65432)
downloaded
Chrome Cache Entry: 285
HTML document, Unicode text, UTF-8 text, with very long lines (49841)
downloaded
Chrome Cache Entry: 286
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 287
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 288
ASCII text, with very long lines (1993), with no line terminators
dropped
Chrome Cache Entry: 289
ASCII text, with very long lines (10998)
downloaded
Chrome Cache Entry: 290
JSON data
downloaded
Chrome Cache Entry: 291
Unicode text, UTF-8 text, with very long lines (50522), with no line terminators
downloaded
Chrome Cache Entry: 292
ASCII text, with very long lines (65451)
dropped
Chrome Cache Entry: 293
ASCII text, with very long lines (19713), with no line terminators
downloaded
Chrome Cache Entry: 294
ASCII text, with very long lines (3138)
downloaded
Chrome Cache Entry: 295
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 296
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 297
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 298
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 299
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 300
JSON data
dropped
Chrome Cache Entry: 301
ASCII text, with very long lines (32740)
dropped
Chrome Cache Entry: 302
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 303
JSON data
downloaded
Chrome Cache Entry: 304
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 305
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
dropped
Chrome Cache Entry: 306
ASCII text, with very long lines (606)
dropped
Chrome Cache Entry: 307
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 308
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 309
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 310
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 311
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 312
ASCII text, with very long lines (57671), with no line terminators
downloaded
Chrome Cache Entry: 313
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 314
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 315
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 316
Unicode text, UTF-8 text, with very long lines (35750), with CRLF line terminators
downloaded
Chrome Cache Entry: 317
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 318
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 319
Unicode text, UTF-8 text, with very long lines (11967), with no line terminators
downloaded
Chrome Cache Entry: 320
Unicode text, UTF-8 text, with very long lines (59934)
downloaded
Chrome Cache Entry: 321
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 322
ASCII text, with very long lines (16817), with no line terminators
dropped
Chrome Cache Entry: 323
HTML document, ASCII text, with very long lines (394)
downloaded
Chrome Cache Entry: 324
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 325
Unicode text, UTF-8 text, with very long lines (50522), with no line terminators
dropped
Chrome Cache Entry: 326
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 327
C source, Unicode text, UTF-8 (with BOM) text, with very long lines (573)
dropped
Chrome Cache Entry: 328
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 329
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 330
Unicode text, UTF-8 text, with very long lines (41169)
dropped
Chrome Cache Entry: 331
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 332
HTML document, ASCII text, with very long lines (394)
downloaded
Chrome Cache Entry: 333
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 334
ASCII text, with very long lines (19713), with no line terminators
dropped
Chrome Cache Entry: 335
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 336
PNG image data, 134 x 21, 8-bit gray+alpha, non-interlaced
dropped
Chrome Cache Entry: 337
ASCII text, with very long lines (42716)
dropped
Chrome Cache Entry: 338
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 339
ASCII text, with very long lines (24745), with no line terminators
downloaded
Chrome Cache Entry: 340
ASCII text, with very long lines (4201)
downloaded
Chrome Cache Entry: 341
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 342
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 343
PNG image data, 310 x 205, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 344
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 345
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 346
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 347
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 348
ASCII text, with very long lines (1888), with no line terminators
downloaded
Chrome Cache Entry: 349
ASCII text, with very long lines (32757)
downloaded
Chrome Cache Entry: 350
Unicode text, UTF-8 text, with very long lines (11967), with no line terminators
dropped
Chrome Cache Entry: 351
JSON data
dropped
Chrome Cache Entry: 352
Unicode text, UTF-8 text, with very long lines (35750), with CRLF line terminators
dropped
Chrome Cache Entry: 353
ASCII text, with very long lines (4201)
dropped
Chrome Cache Entry: 354
ASCII text, with very long lines (24050)
downloaded
Chrome Cache Entry: 355
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 356
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 357
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 358
ASCII text, with very long lines (21229)
dropped
Chrome Cache Entry: 359
JSON data
dropped
Chrome Cache Entry: 360
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 361
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 362
ASCII text, with very long lines (36066)
downloaded
Chrome Cache Entry: 363
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 364
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 365
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 366
ASCII text, with very long lines (6371), with no line terminators
downloaded
Chrome Cache Entry: 367
ASCII text, with very long lines (12331)
downloaded
Chrome Cache Entry: 368
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 369
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 370
ASCII text, with no line terminators
downloaded
There are 204 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2560 --field-trial-handle=2532,i,9825063790222401735,111876384917188754,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://f120987.pages.dev/"

URLs

Name
IP
Malicious
https://f120987.pages.dev/
malicious
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://cf-assets.www.cloudflare.com/slt3lc6tev37/6XVeELky7fceWRpfBvN8qr/4e13aa3d8dd73e1f091f3de966fdc9cb/logo_shopify_trusted-by_gray.svg
104.16.123.96
https://static.cloudflareinsights.com/beacon.min.js/vcd15cbe7772f49c399c6a5babf22c1241717689176015
104.16.79.73
https://stats.g.doubleclick.net/g/collect
unknown
https://www.cloudflare.com/network-services/solutions/network-monitoring-tools/
unknown
https://www.cloudflare.com/page-data/learning/access-management/what-is-identity-and-access-management/page-data.json
104.16.124.96
https://p16999.cedexis-test.com/img/16999/r20-100KB.png?r=24322117
152.195.34.116
https://713-xsc-918.mktoresp.com/webevents/clickLink?_mchNc=1728843922061&_mchHr=https%3A%2F%2Fwww.cloudflare.com%2Funder-attack-hotline%2F&_mchId=713-XSC-918&_mchTk=_mch-cloudflare.com-1728843878689-15412&_mchCn=&_mchHo=www.cloudflare.com&_mchPo=&_mchRu=%2Fplans%2Fenterprise%2Fcontact%2F&_mchPc=https%3A&_mchVr=163&_mchEcid=8AD56F28618A50850A495FB6%40AdobeOrg%3A6%3A32988604158031379004608095413727684421&
192.28.144.124
https://cf-assets.www.cloudflare.com/slt3lc6tev37/78RmfBmlwmzHeGK2Aqj65M/369cfa6b2402b7e6007941839e0
unknown
https://px.ads.linkedin.com/collect/?pid=28851&fmt=gif
unknown
https://www.cloudflare.com/network-services/solutions/enterprise-network-security/
unknown
https://cloudflareinc.demdex.net/dest5.html?d_nsid=0
18.203.182.68
https://cf-assets.www.cloudflare.com/slt3lc6tev37/78RmfBmlwmzHeGK2Aqj65M/369cfa6b2402b7e6007941839e0c763f/target.svg
104.16.123.96
https://stats.g.doubleclick.net/g/collect?t=dc&aip=1&_r=3&v=1&_v=j86&tid=G-PGV1K2BN4M&cid=d70e969f-30a3-4887-bc53-835854cc3c84&_u=KGDAAEADQAAAAC%7E&z=2011708554
173.194.76.156
https://challenges.cloudflare.com/turnstile/v0/b/62ec4f065604/api.js
104.18.95.41
https://www.cloudflare.com/application-services/products/argo-smart-routing/)
unknown
https://alb.reddit.com/rp.gif?event=PageVisit&id=t2_1upmecjq&ts=1728843877488&uuid=ce8a7a53-837c-4d55-b694-1414f0d11ab3&integration=reddit&opt_out=0&v=rdt_65e23bc4&sh=1024&sw=1280
151.101.193.140
https://www.cloudflare.com/saas/)
unknown
https://w3-reporting-nel.reddit.com/reports
151.101.65.140
https://www.cloudflare.com/static/z/i.js
104.16.124.96
https://assets.adobedtm.com/extensions/EPc7341b33570d4c988798fc9f0093d4b2/AppMeasurement_Module_Acti
unknown
https://a.nel.cloudflare.com/report/v4?s=ikPQS%2BsvNg30wy90ZbeIylVtDtIYhF%2BNApvGYi%2Bh%2BcHcnofCrpe0gCjYpaXSWlAruUCc9PM80SusQWr5WIEVgcB3lziGiYWzzzPu6FizurK7Plv2DSb0cBjGWhgXCtX8ZS43Ug%3D%3D
35.190.80.1
https://www.cloudflare.com/page-data/under-attack-hotline/page-data.json
104.16.124.96
https://stats.g.doubleclick.net/g/collect?t=dc&aip=1&_r=3&v=1&_v=j86&tid=G-PGV1K2BN4M&cid=d70e969f-30a3-4887-bc53-835854cc3c84&_u=KGDAAEADQAAAAC%7E&z=841439200
173.194.76.156
https://cf-assets.www.cloudflare.com/slt3lc6tev37/4sfL2iS6H10uq2waT6ehym/ad18b77fa469ce07f23d22e19ab
unknown
https://www.cloudflare.com/application-services/solutions/certificate-lifecycle-management/)
unknown
https://www.cloudflare.com/learning/security/glossary/what-is-zero-trust/
unknown
https://www.cloudflare.com/ddos/)
unknown
https://cdn.bizible.com/ipv?_biz_r=https%3A%2F%2Fwww.cloudflare.com%2Fplans%2Fenterprise%2Fcontact%2F&_biz_h=-1777624096&_biz_u=6ca2ef92742b4f64eec8fd6938172c46&_biz_l=https%3A%2F%2Fwww.cloudflare.com%2Funder-attack-hotline%2F&_biz_t=1728843923881&_biz_i=Website%20Under%20Attack%3F%20%7C%20Get%2024%2F7%20Emergency%20Support%20%7C%20Cloudflare&_biz_n=5&rnd=526243&cdn_o=a&_biz_z=1728843923882
152.195.15.58
https://www.cloudflare.com/learning/access-management/how-to-implement-zero-trust/
unknown
https://cf-assets.www.cloudflare.com/slt3lc6tev37/68TLXIuB6HOZo3RgLAp1Ji/6a953e33858490426d4e2ca753bea3ad/documentation-list.svg
104.16.123.96
https://cf-assets.www.cloudflare.com/slt3lc6tev37/2TfcZ86qvZor2xtI2z4Vvr/ef54112582296119f4296869c34ba025/logo_23andme_color_32px-wrapper.svg
104.16.123.96
https://f120987.pages.dev/cdn-cgi/styles/cf.errors.css
188.114.97.3
https://www.cloudflare.com/component---src-components-page-page-template-tsx-e8f402608db957d80aa4.js
104.16.124.96
https://www.cloudflare.com/page-data/plans/page-data.json
104.16.124.96
https://cf-assets.www.cloudflare.com/slt3lc6tev37/OMwO1Fr8BxHVum0iBbatc/979c1807f5810edc903d4b07c18e0cb0/logo_ibm_trusted-by_gray.svg
104.16.123.96
https://stats.g.doubleclick.net/g/collect?t=dc&aip=1&_r=3&v=1&_v=j86&tid=G-PGV1K2BN4M&cid=d70e969f-30a3-4887-bc53-835854cc3c84&_u=KGDAAEADQAAAAC%7E&z=107913414
173.194.76.156
https://glovoapp.com/)
unknown
https://stats.g.doubleclick.net/g/collect?t=dc&aip=1&_r=3&v=1&_v=j86&tid=G-PGV1K2BN4M&cid=d70e969f-30a3-4887-bc53-835854cc3c84&_u=KGDAAEADQAAAAC%7E&z=1679472800
173.194.76.156
https://www.pedidosya.com/)
unknown
https://edge.adobedc.net/ee/irl1/v1/interact?configId=715c679b-19c8-4402-8093-423571ad58c4&requestId=1b1e16fa-e476-4486-9038-f1dfc2f16caa
63.140.62.27
https://www.deliveryhero.com/)
unknown
https://f120987.pages.dev/favicon.ico
188.114.97.3
https://partners.tremorhub.com/sync?UIDM=7733be8e-f421-44e3-a5d7-afd14b2aa875
44.194.70.0
https://analytics.twitter.com/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=e904231e-b331-4a3c-92f2-0f5f9820757e&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=048d530f-7927-4cd1-8678-2d207dcdc2f0&restricted_data_use=restrict_optimization&tw_document_href=https%3A%2F%2Fwww.cloudflare.com%2Flearning%2Faccess-management%2Fphishing-attack%2F&tw_iframe_status=0&txn_id=nvldc&type=javascript&version=2.3.30
104.244.42.67
https://www.cloudflare.com/img/learning/security/threats/phishing-attack/diagram-phishing-attack.png
104.16.124.96
https://cf-assets.www.cloudflare.com/slt3lc6tev37/7dreyVsx0FLF3WjCQvWrVT/a9bb912272cd7f8bc9a294f768b
unknown
https://api.www.cloudflare.com/api/v1/marketo/form/4116
104.16.123.96
https://blog.cloudflare.com/cloudflare-waap-named-leader-gartner-magic-quadrant-2022/
unknown
https://713-xsc-918.mktoresp.com/webevents/clickLink?_mchNc=1728843880977&_mchHr=https%3A%2F%2Fwww.cloudflare.com%2Fplans%2Fenterprise%2Fcontact%2F&_mchId=713-XSC-918&_mchTk=_mch-cloudflare.com-1728843878689-15412&_mchCn=&_mchHo=www.cloudflare.com&_mchPo=&_mchRu=%2Flearning%2Faccess-management%2Fphishing-attack%2F&_mchPc=https%3A&_mchVr=163&_mchEcid=8AD56F28618A50850A495FB6%40AdobeOrg%3A6%3A32988604158031379004608095413727684421&
192.28.144.124
https://cf-assets.www.cloudflare.com/slt3lc6tev37/6bNeiYhSx0RGvbzxS5Fi8c/3ff83bcc36e86e85170201f8264
unknown
https://cf-assets.www.cloudflare.com/slt3lc6tev37/1W5s21iEz5Zk92rEr9cGr3/729e55fb2d26df7970d1c04d6040ffca/cloudflare-spectrum.svg
104.16.123.96
https://www.cloudflare.com/static/z/s.js?z=
unknown
https://api.www.cloudflare.com/api/v1/marketo/form/1639
104.16.123.96
https://www.yemeksepeti.com/)
unknown
https://ipv4-check-perf.radar.cloudflare.com/api/info?r=26447789
104.18.30.78
https://www.cloudflare.com/5xx-error-landing
unknown
https://www.cloudflare.com/learning/bots/what-is-bot-management/)
unknown
https://pixel.rubiconproject.com/tap.php?nid=5578&put=7733be8e-f421-44e3-a5d7-afd14b2aa875&v
unknown
https://www.cloudflare.com/connectivity-cloud/)
unknown
https://713-xsc-918.mktoresp.com/webevents/clickLink?_mchNc=1728843894552&_mchHr=https%3A%2F%2Fwww.cloudflare.com%2Funder-attack-hotline%2F&_mchId=713-XSC-918&_mchTk=_mch-cloudflare.com-1728843878689-15412&_mchCn=&_mchHo=www.cloudflare.com&_mchPo=&_mchRu=%2Fplans%2Fenterprise%2Fcontact%2F&_mchPc=https%3A&_mchVr=163&_mchEcid=8AD56F28618A50850A495FB6%40AdobeOrg%3A6%3A32988604158031379004608095413727684421&
192.28.144.124
https://developers.marketo.com/MunchkinLicense.pdf
unknown
https://edge.adobedc.net/ee/irl1/v1/interact?configId=715c679b-19c8-4402-8093-423571ad58c4&requestId=e78d97d6-6ed6-4326-b53c-d2f6a6c49fa5
63.140.62.27
https://www.cloudflare.com/learning/ddos/glossary/web-application-firewall-waf/)
unknown
https://cf-assets.www.cloudflare.com/slt3lc6tev37/3jxszSMXRhwiwHDa1VPXFw/cc6439cd93a107bd0986bb6d5dc
unknown
https://github.com/js-cookie/js-cookie
unknown
https://cf-assets.www.cloudflare.com/slt3lc6tev37/5YRPa33UFrfL2zoZd2AXTq/658995f16c7ee4818875c254c18573d3/logo_zendesk_gray_32px-wrapper.svg
104.16.123.96
https://stats.g.doubleclick.net/g/collect?t=dc&aip=1&_r=3&v=1&_v=j86&tid=G-PGV1K2BN4M&cid=d70e969f-30a3-4887-bc53-835854cc3c84&_u=KGDAAEADQAAAAC%7E&z=244951726
173.194.76.156
https://cf-assets.www.cloudflare.com/slt3lc6tev37/2yRCuqitoxUATzrEEpNPeA/49494485e77713ddfaf56b7b338
unknown
https://staging.mrk.cfdata.org/mrk/redwood-blade-repository/
unknown
https://edge.adobedc.net/ee/irl1/v1/interact?configId=715c679b-19c8-4402-8093-423571ad58c4&requestId=55b8eefa-284f-49ba-a973-f6facfcd429f
63.140.62.27
https://stats.g.doubleclick.net/g/collect?t=dc&aip=1&_r=3&v=1&_v=j86&tid=G-PGV1K2BN4M&cid=d70e969f-30a3-4887-bc53-835854cc3c84&_u=KGDAAEADQAAAAC%7E&z=1303770292
173.194.76.156
https://ws6.qualified.com/cable?wv=9&token=37pXYrro6wCZbsU7&vu=f90393e8-f3e5-4c1b-bd6a-282b0cd8b935&wu=80120dee-5ab7-48d3-b6cc-8b8c40c70dc1&ca=2024-10-13T18%3A24%3A38.158Z&tz=America%2FNew_York&bis=5&referrer=https%3A%2F%2Ff120987.pages.dev%2F&pv=1&fv=2024-10-13-0ff1e48010&iml=false&ic=false
104.18.17.5
https://adobedc.demdex.net/ee/v1/identity/acquire?configId=715c679b-19c8-4402-8093-423571ad58c4&requestId=d4f3cbf8-f0ea-4c66-8511-bd6ebde9ef36
63.140.62.222
http://www.cloudflare.com/lp/esg-zero-trust-considerations-2024
unknown
https://cf-assets.www.cloudflare.com/slt3lc6tev37/3Vjcj5r39nYQK9FAZ6tx1i/15048294cd989a6e460a61e56ad
unknown
https://www.cloudflare.com/cdn-cgi/rum?
104.16.124.96
https://www.cloudflare.com/page-data/sq/d/3199558980.json
104.16.124.96
https://jsdelivr.b-cdn.net/gh/jimaek/testobjects@0.0.1/r20-100KB.png?r=66103290
169.150.247.37
https://cf-assets.www.cloudflare.com/slt3lc6tev37/1W5s21iEz5Zk92rEr9cGr3/729e55fb2d26df7970d1c04d604
unknown
https://js.qualified.com
unknown
https://www.cloudflare.com/learning/security/what-is-an-attack-surface/)
unknown
https://cf-assets.www.cloudflare.com/slt3lc6tev37/2MwUTWYt0psg5xd55Vkvfo/7822687bbbf2b0738c770e183b7
unknown
https://www.foodpanda.com/)
unknown
https://www.google.com/ads/ga-audiences?t=sr&aip=1&_r=4&v=1&_v=j86&tid=G-PGV1K2BN4M&cid=d70e969f-30a3-4887-bc53-835854cc3c84&_u=KGDAAEADQAAAAC%7E&z=989147939&slf_rd=1
142.250.185.100
https://www.cloudflare.com/page-data/learning/access-management/what-is-sase/page-data.json
104.16.124.96
https://assets.adobedtm.com/f597f8065f97/065ba81630d7/launch-efab6d095ce0.js
unknown
https://js.qualified.com/qualified.js?token=37pXYrro6wCZbsU7
104.18.16.5
https://edge.adobedc.net/ee/irl1/v1/collect?configId=715c679b-19c8-4402-8093-423571ad58c4&requestId=c6e508e4-1acd-4d45-b571-db7190986646
63.140.62.27
https://cdn.bizibly.com/u?_biz_u=6ca2ef92742b4f64eec8fd6938172c46&_biz_l=https%3A%2F%2Fwww.cloudflare.com%2Flearning%2Faccess-management%2Fphishing-attack%2F&_biz_t=1728843877880&_biz_i=What%20is%20a%20phishing%20attack%3F%20%7C%20Cloudflare&rnd=544925&cdn_o=a&_biz_z=1728843877880
152.195.15.58
https://cf-assets.www.cloudflare.com/slt3lc6tev37/2fMg89go9MegG1EDg39mNy/5a42817cd388ae352f77f56e53b1ff81/card-new.png
104.16.123.96
https://app.qualified.com
unknown
https://ot.www.cloudflare.com/public/vendor/onetrust/scripttemplates/otSDKStub.js
104.16.123.96
https://www.cloudflare.com/plans/enterprise/contact/
https://ot.www.cloudflare.com/public/vendor/onetrust/scripttemplates/202407.2.0/assets/otCommonStyles.css
104.16.123.96
https://edge.adobedc.net/ee/irl1/v1/interact?configId=715c679b-19c8-4402-8093-423571ad58c4&requestId=d3a77ec5-cb49-4619-af65-445c0d13f812
63.140.62.27
https://www.cloudflare.com/under-attack-hotline/
https://713-xsc-918.mktoresp.com/webevents/visitWebPage?_mchNc=1728843878693&_mchCn=&_mchId=713-XSC-918&_mchTk=_mch-cloudflare.com-1728843878689-15412&_mchHo=www.cloudflare.com&_mchPo=&_mchRu=%2Flearning%2Faccess-management%2Fphishing-attack%2F&_mchPc=https%3A&_mchVr=163&_mchEcid=8AD56F28618A50850A495FB6%40AdobeOrg%3A6%3A32988604158031379004608095413727684421&_mchHa=&_mchRe=https%3A%2F%2Ff120987.pages.dev%2F&_mchQp=
192.28.144.124
https://cf-assets.www.cloudflare.com/slt3lc6tev37/6vZgJjE7OFLINDHPAGZ3PJ/30ff0ceac9ad2088a52f4ad43ac
unknown
https://cf-assets.www.cloudflare.com/slt3lc6tev37/1AsuJijKk8EMH5s1ae56nx/b13406881aa864b7e17b2233a0d090ef/logo_labcorp_trusted-by_gray.svg
104.16.123.96
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
benchmark.1e100cdn.net
35.190.26.57
prod-default.lb.logrocket.network
104.198.23.205
s.dsp-prod.demandbase.com
34.96.71.22
platform.twitter.map.fastly.net
199.232.188.157
stats.g.doubleclick.net
173.194.76.156
ot.www.cloudflare.com
104.16.123.96
t.co
162.159.140.229
performance.radar.cloudflare.com
104.18.31.78
ipv4-check-perf.radar.cloudflare.com
104.18.30.78
www.google.com
142.250.186.100
f120987.pages.dev
188.114.97.3
cf-assets.www.cloudflare.com
104.16.123.96
id.rlcdn.com
35.244.174.68
s.twitter.com
104.244.42.67
cs486.wpc.edgecastcdn.net
152.195.34.116
bg.microsoft.map.fastly.net
199.232.214.172
analytics-alv.google.com
216.239.32.181
di.rlcdn.com
35.244.174.68
p36.cedexis-test.com.wsoversea.com
163.171.133.124
cdn.logr-ingest.com
188.114.97.3
reddit.map.fastly.net
151.101.193.140
googleads.g.doubleclick.net
216.58.206.66
challenges.cloudflare.com
104.18.95.41
td.doubleclick.net
142.250.185.66
partners-alb-1113315349.us-east-1.elb.amazonaws.com
44.194.70.0
s-part-0032.t-0009.t-msedge.net
13.107.246.60
static.cloudflareinsights.com
104.16.79.73
benchmarks.cdn.compute-pipe.com
104.18.30.19
adservice.google.com
142.250.186.162
fp2e7a.wpc.phicdn.net
192.229.221.95
jsdelivr.b-cdn.net
169.150.247.37
tag.demandbase.com
18.245.46.89
demdex.net.ssl.sc.omtrdc.net
63.140.62.222
api.www.cloudflare.com
104.16.123.96
d1inq1x5xtur5k.cloudfront.net
3.161.82.15
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
18.202.39.134
tag-logger.demandbase.com
18.239.18.62
a.nel.cloudflare.com
35.190.80.1
ad.doubleclick.net
172.217.18.6
js.qualified.com
104.18.16.5
ws6.qualified.com
104.18.17.5
prod.cedexis-ssl.map.fastly.net
151.101.2.6
default.qdr.p1.ds-c7110-microsoft.global.dns.qwilted-cds.cqloud.com
84.201.210.23
ax-0001.ax-msedge.net
150.171.27.10
www.cloudflare.com
104.16.124.96
dsum-sec.casalemedia.com
104.18.36.155
adobedc.net.ssl.sc.omtrdc.net
63.140.62.27
api.company-target.com
18.66.102.98
fp2c5c.wac.kappacdn.net
152.195.15.58
713-xsc-918.mktoresp.com
192.28.144.124
alb.reddit.com
unknown
static.ads-twitter.com
unknown
p36.cedexis-test.com
unknown
cm.everesttech.net
unknown
adobedc.demdex.net
unknown
p16999.cedexis-test.com
unknown
s.company-target.com
unknown
assets.adobedtm.com
unknown
pixel.rubiconproject.com
unknown
px.ads.linkedin.com
unknown
munchkin.marketo.net
unknown
r.logr-ingest.com
unknown
p29.cedexis-test.com
unknown
partners.tremorhub.com
unknown
ipv6-check-perf.radar.cloudflare.com
unknown
p17003.cedexis-test.com
unknown
w3-reporting-nel.reddit.com
unknown
cdn.bizibly.com
unknown
cloudflareinc.demdex.net
unknown
cdn.bizible.com
unknown
dpm.demdex.net
unknown
www.linkedin.com
unknown
analytics.twitter.com
unknown
snap.licdn.com
unknown
fastly.cedexis-test.com
unknown
analytics.google.com
unknown
edge.adobedc.net
unknown
There are 67 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
173.194.76.156
stats.g.doubleclick.net
United States
18.66.102.98
api.company-target.com
United States
192.28.144.124
713-xsc-918.mktoresp.com
United States
18.239.18.62
tag-logger.demandbase.com
United States
142.250.185.100
unknown
United States
169.150.247.38
unknown
United States
192.168.2.6
unknown
unknown
192.168.2.5
unknown
unknown
104.16.80.73
unknown
United States
169.150.247.37
jsdelivr.b-cdn.net
United States
151.101.193.140
reddit.map.fastly.net
United States
104.198.23.205
prod-default.lb.logrocket.network
United States
63.140.62.222
demdex.net.ssl.sc.omtrdc.net
United States
151.101.65.140
unknown
United States
13.227.219.83
unknown
United States
104.18.30.78
ipv4-check-perf.radar.cloudflare.com
United States
18.173.205.127
unknown
United States
35.190.80.1
a.nel.cloudflare.com
United States
18.245.46.44
unknown
United States
104.16.124.96
www.cloudflare.com
United States
18.245.46.89
tag.demandbase.com
United States
18.203.182.68
unknown
United States
142.250.185.66
td.doubleclick.net
United States
162.159.140.229
t.co
United States
142.250.186.36
unknown
United States
18.202.39.134
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
United States
34.96.71.22
s.dsp-prod.demandbase.com
United States
216.239.32.181
analytics-alv.google.com
United States
172.217.18.6
ad.doubleclick.net
United States
104.18.95.41
challenges.cloudflare.com
United States
104.18.36.155
dsum-sec.casalemedia.com
United States
63.140.62.17
unknown
United States
104.18.16.5
js.qualified.com
United States
239.255.255.250
unknown
Reserved
188.114.97.3
f120987.pages.dev
European Union
151.101.194.6
unknown
United States
35.190.26.57
benchmark.1e100cdn.net
United States
104.18.31.78
performance.radar.cloudflare.com
United States
199.232.188.157
platform.twitter.map.fastly.net
United States
142.250.186.100
www.google.com
United States
35.244.174.68
id.rlcdn.com
United States
152.195.15.58
fp2c5c.wac.kappacdn.net
United States
46.137.145.4
unknown
Ireland
152.195.34.116
cs486.wpc.edgecastcdn.net
United States
3.161.82.15
d1inq1x5xtur5k.cloudfront.net
United States
216.58.206.38
unknown
United States
44.194.70.0
partners-alb-1113315349.us-east-1.elb.amazonaws.com
United States
63.140.62.27
adobedc.net.ssl.sc.omtrdc.net
United States
151.101.2.6
prod.cedexis-ssl.map.fastly.net
United States
163.171.133.124
p36.cedexis-test.com.wsoversea.com
European Union
104.18.30.19
benchmarks.cdn.compute-pipe.com
United States
52.207.158.69
unknown
United States
104.16.79.73
static.cloudflareinsights.com
United States
142.250.186.162
adservice.google.com
United States
104.244.42.67
s.twitter.com
United States
216.58.206.66
googleads.g.doubleclick.net
United States
104.244.42.195
unknown
United States
150.171.27.10
ax-0001.ax-msedge.net
United States
104.18.17.5
ws6.qualified.com
United States
18.239.83.12
unknown
United States
188.114.96.3
unknown
European Union
104.16.123.96
ot.www.cloudflare.com
United States
104.18.31.19
unknown
United States
142.250.186.66
unknown
United States
There are 54 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://f120987.pages.dev/
malicious
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/learning/access-management/phishing-attack/
https://www.cloudflare.com/plans/enterprise/contact/
https://www.cloudflare.com/plans/enterprise/contact/
https://www.cloudflare.com/plans/enterprise/contact/
https://www.cloudflare.com/plans/enterprise/contact/
https://www.cloudflare.com/under-attack-hotline/
https://www.cloudflare.com/under-attack-hotline/
https://www.cloudflare.com/under-attack-hotline/
https://www.cloudflare.com/under-attack-hotline/
There are 7 hidden doms, click here to show them.