IOC Report
https://democrats.org/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 34
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, comment: "CREATOR: gd-jpeg v1.0 (using IJG JPEG v62), quality = 82", baseline, precision 8, 1600x533, components 3
dropped
Chrome Cache Entry: 35
ASCII text, with very long lines (57765)
downloaded
Chrome Cache Entry: 36
Unicode text, UTF-8 text, with very long lines (516)
downloaded
Chrome Cache Entry: 37
RIFF (little-endian) data, Web/P image, VP8 encoding, 1269x1269, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 38
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 39
ASCII text
downloaded
Chrome Cache Entry: 40
RIFF (little-endian) data, Web/P image, VP8 encoding, 682x682, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 41
ASCII text
downloaded
Chrome Cache Entry: 42
Unicode text, UTF-8 text, with very long lines (65324)
downloaded
Chrome Cache Entry: 43
RIFF (little-endian) data, Web/P image, VP8 encoding, 1600x533, Scaling: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 44
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 45
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, comment: "CREATOR: gd-jpeg v1.0 (using IJG JPEG v62), quality = 82", baseline, precision 8, 1269x1269, components 3
dropped
Chrome Cache Entry: 46
ASCII text, with very long lines (15521), with no line terminators
downloaded
There are 4 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2504 --field-trial-handle=2480,i,14432624337751521977,12495694239076940357,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://democrats.org/"

URLs

Name
IP
Malicious
https://democrats.org/
http://typekit.com/eulas/000000000000000000010d5c
unknown
https://use.typekit.net/af/f629be/000000000000000000010d5d/27/a?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
http://typekit.com/eulas/000000000000000000010d5d
unknown
https://democrats.org/
192.0.66.105
http://typekit.com/eulas/000000000000000000010d5b
unknown
https://iwillvote.com/locate/widget-v2.css
108.138.7.103
https://p.typekit.net/p.css?s=1&k=gwo2tmd&ht=tk&f=10326.10327.10328&a=15080471&app=typekit&e=css
unknown
https://use.typekit.net/af/2d5126/000000000000000000010d5c/27/a?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
https://use.typekit.net/af/f629be/000000000000000000010d5d/27/l?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
https://democrats.org/wp-content/themes/bsdstarter/assets/img/footer-logo.svg
192.0.66.105
https://democrats.org/wp-content/uploads/2024/10/Vote-CTA-image-e1728660119427.jpg
192.0.66.105
https://use.typekit.net/af/2d5126/000000000000000000010d5c/27/l?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
https://use.typekit.net/af/9fa845/000000000000000000010d5b/27/a?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
https://democrats.org/wp-content/uploads/2024/10/Calls-CTA-image-e1728660041897.jpg
192.0.66.105
https://ak.democrats.org/samples/widget.js
52.8.222.175
https://democrats.org/wp-includes/css/dist/block-library/style.min.css?m=1725982252g
192.0.66.105
https://democrats.org/wp-content/themes/bsdstarter/style.css?m=1729089554g
192.0.66.105
https://democrats.org/wp-admin/admin-ajax.php?action=frmpro_css&ver=9242122
192.0.66.105
https://use.typekit.net/af/2d5126/000000000000000000010d5c/27/d?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
http://www.bluestatedigital.com
unknown
https://use.typekit.net/af/9fa845/000000000000000000010d5b/27/d?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
https://democrats.org/_static/??-eJzTLy/QzcxLzilNSS3WzyrWz01NyUxMzUnNTc0rQeEU5CRWphbp5qSmJyZX6uVm5uklFxfr6OPTDpRD5sM02efaGpobmVpaGBmZGgEARN0u5g==
192.0.66.105
https://democrats.org/wp-content/uploads/2024/10/51225586480_45a461ef95_o-3-1-e1728671125484.jpg
192.0.66.105
https://use.typekit.net/af/9fa845/000000000000000000010d5b/27/l?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
https://democrats.org/wp-content/themes/bsdstarter/src/js/vendor/jquery.js?m=1721416559g
192.0.66.105
https://use.typekit.net/af/f629be/000000000000000000010d5d/27/d?primer=7cdcb44be4a7db8877ffa5c0007b8
unknown
There are 16 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
bg.microsoft.map.fastly.net
199.232.210.172
democrats.org
192.0.66.105
iwillvote.com
108.138.7.103
www.google.com
172.217.23.100
dnc.clients.actionkit.com
52.8.222.175
fp2e7a.wpc.phicdn.net
192.229.221.95
cloud.typography.com
unknown
use.typekit.net
unknown
p.typekit.net
unknown
ak.democrats.org
unknown

IPs

IP
Domain
Country
Malicious
192.168.2.6
unknown
unknown
192.0.66.105
democrats.org
United States
239.255.255.250
unknown
Reserved
172.217.23.100
www.google.com
United States
108.138.7.103
iwillvote.com
United States
52.8.222.175
dnc.clients.actionkit.com
United States