Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html
|
HTML document, ASCII text, with very long lines (8024), with no line terminators
|
initial sample
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 117
|
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 118
|
PNG image data, 420 x 94, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 119
|
Unicode text, UTF-8 text, with very long lines (65298)
|
downloaded
|
||
Chrome Cache Entry: 120
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1592
|
downloaded
|
||
Chrome Cache Entry: 121
|
ASCII text, with very long lines (541)
|
downloaded
|
||
Chrome Cache Entry: 122
|
ASCII text, with very long lines (505)
|
downloaded
|
||
Chrome Cache Entry: 123
|
HTML document, Unicode text, UTF-8 text, with very long lines (23174), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 124
|
ASCII text, with very long lines (59832)
|
downloaded
|
||
Chrome Cache Entry: 125
|
ASCII text, with very long lines (46591)
|
downloaded
|
||
Chrome Cache Entry: 126
|
Unicode text, UTF-8 text, with very long lines (1998)
|
downloaded
|
||
Chrome Cache Entry: 127
|
ASCII text, with very long lines (42133)
|
dropped
|
||
Chrome Cache Entry: 128
|
ASCII text, with very long lines (576)
|
dropped
|
||
Chrome Cache Entry: 129
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1864
|
downloaded
|
||
Chrome Cache Entry: 130
|
ASCII text, with very long lines (576)
|
downloaded
|
||
Chrome Cache Entry: 131
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 132
|
Unicode text, UTF-8 text
|
downloaded
|
||
Chrome Cache Entry: 133
|
ASCII text, with very long lines (42133)
|
downloaded
|
||
Chrome Cache Entry: 134
|
Web Open Font Format (Version 2), TrueType, length 32600, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 135
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
|
downloaded
|
||
Chrome Cache Entry: 136
|
ASCII text, with very long lines (3164)
|
downloaded
|
||
Chrome Cache Entry: 137
|
ASCII text, with very long lines (309), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 138
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 139
|
ASCII text, with very long lines (512)
|
downloaded
|
||
Chrome Cache Entry: 140
|
ASCII text, with very long lines (590)
|
dropped
|
||
Chrome Cache Entry: 141
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 142
|
ASCII text, with very long lines (52717), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 143
|
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 144
|
ASCII text, with very long lines (52717), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 145
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 146
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1864
|
dropped
|
||
Chrome Cache Entry: 147
|
ASCII text, with very long lines (59832)
|
dropped
|
||
Chrome Cache Entry: 148
|
ASCII text, with very long lines (442)
|
downloaded
|
||
Chrome Cache Entry: 149
|
ASCII text, with very long lines (584)
|
dropped
|
||
Chrome Cache Entry: 150
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
|
dropped
|
||
Chrome Cache Entry: 151
|
ASCII text, with very long lines (367), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 152
|
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
|
downloaded
|
||
Chrome Cache Entry: 153
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 154
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 155
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 156
|
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 157
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 158
|
ASCII text, with very long lines (51734)
|
downloaded
|
||
Chrome Cache Entry: 159
|
Unicode text, UTF-8 text, with very long lines (64241)
|
downloaded
|
||
Chrome Cache Entry: 160
|
ASCII text, with very long lines (65447)
|
dropped
|
||
Chrome Cache Entry: 161
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 162
|
ASCII text, with very long lines (728)
|
dropped
|
||
Chrome Cache Entry: 163
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 164
|
ASCII text, with very long lines (367), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 165
|
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 166
|
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
|
dropped
|
||
Chrome Cache Entry: 167
|
ASCII text, with very long lines (590)
|
downloaded
|
||
Chrome Cache Entry: 168
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 169
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 170
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 171
|
ASCII text, with very long lines (505)
|
dropped
|
||
Chrome Cache Entry: 172
|
PNG image data, 420 x 94, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 173
|
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 174
|
HTML document, Unicode text, UTF-8 text, with very long lines (5403)
|
downloaded
|
||
Chrome Cache Entry: 175
|
ASCII text, with very long lines (54108)
|
dropped
|
||
Chrome Cache Entry: 176
|
ASCII text, with very long lines (541)
|
dropped
|
||
Chrome Cache Entry: 177
|
ASCII text, with very long lines (10450)
|
downloaded
|
||
Chrome Cache Entry: 178
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 179
|
ASCII text, with very long lines (605)
|
downloaded
|
||
Chrome Cache Entry: 180
|
ASCII text, with very long lines (889)
|
dropped
|
||
Chrome Cache Entry: 181
|
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 182
|
ASCII text, with very long lines (65447)
|
downloaded
|
||
Chrome Cache Entry: 183
|
ASCII text, with very long lines (512)
|
dropped
|
||
Chrome Cache Entry: 184
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 185
|
HTML document, ASCII text, with very long lines (2652), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 186
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 187
|
ASCII text, with very long lines (7862)
|
dropped
|
||
Chrome Cache Entry: 188
|
ASCII text, with very long lines (3164)
|
dropped
|
||
Chrome Cache Entry: 189
|
ASCII text, with very long lines (728)
|
downloaded
|
||
Chrome Cache Entry: 190
|
Web Open Font Format, TrueType, length 26288, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 191
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 192
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 193
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1592
|
dropped
|
||
Chrome Cache Entry: 194
|
ASCII text, with very long lines (7862)
|
downloaded
|
||
Chrome Cache Entry: 195
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 196
|
ASCII text, with very long lines (605)
|
dropped
|
||
Chrome Cache Entry: 197
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 198
|
Unicode text, UTF-8 text, with very long lines (1998)
|
dropped
|
||
Chrome Cache Entry: 199
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 200
|
ASCII text, with very long lines (54108)
|
downloaded
|
||
Chrome Cache Entry: 201
|
ASCII text, with very long lines (889)
|
downloaded
|
||
Chrome Cache Entry: 202
|
ASCII text, with very long lines (309), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 203
|
ASCII text, with very long lines (584)
|
downloaded
|
||
Chrome Cache Entry: 204
|
ASCII text, with very long lines (46591)
|
dropped
|
There are 85 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "C:\Users\user\Desktop\Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2108 --field-trial-handle=1996,i,14975480146771935676,1470107795940181253,262144
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=printing.mojom.PrintCompositor --lang=en-US
--service-sandbox-type=print_compositor --mojo-platform-channel-handle=4368 --field-trial-handle=1996,i,14975480146771935676,1470107795940181253,262144
/prefetch:8
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://github.com/mozilla/rhino/issues/346
|
unknown
|
||
https://login.microsoftonline.com/uxlogout?appid
|
unknown
|
||
https://ok4static.oktacdn.com/fs/bcg/4/gfsh9pi7jcWKJKMAs1t7
|
13.33.187.120
|
||
https://aka.ms/useterms
|
unknown
|
||
https://tc39.es/ecma262/#sec-object.prototype.tostring
|
unknown
|
||
https://tc39.es/ecma262/#sec-toobject
|
unknown
|
||
https://aka.ms/reportconcerns).
|
unknown
|
||
https://tc39.es/ecma262/#sec-arrayspeciescreate
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=477&dpuuid=dedd5ea7776f722a9de8d278bbac1b7c5ddae190d79accee7afee4ccd33d563ab0da87c991749652
|
54.247.166.172
|
||
https://tc39.es/ecma262/#sec-object.values
|
unknown
|
||
https://github.com/carhartl/jquery-cookie
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=30646?dpuuid=y-V.9JdRJE2pEVdriG25CH_tbn.T6kX2MxsyI-~A
|
54.247.166.172
|
||
https://tc39.es/ecma262/#sec-object.getownpropertydescriptor
|
unknown
|
||
https://github.com/zloirock/core-js
|
unknown
|
||
https://www.xbox.com/en-us/games/store/pc-game-pass/cfq7ttc0kgq8?icid=CNavAllPCGamePass
|
unknown
|
||
https://login.microsoftonline.com/savedusers?appid
|
unknown
|
||
https://cm.g.doubleclick.net/pixel?google_nid=adobe_dmp&google_cm=&gdpr=0&gdpr_consent=&google_hm=MTI5NTEyNzcwMTc5NTAwMDEzMjEwNDMyNjMzOTk0Mjg2ODk5MDM=&google_tc=
|
172.217.16.130
|
||
https://tc39.es/ecma262/#sec-object.prototype.propertyisenumerable
|
unknown
|
||
https://dmpsync.3lift.com/getuid?ld=1&gdpr=0&cmp_cs=&us_privacy=&redir=%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D72352%26dpuuid%3D%24UID%26gdpr%3D0%26gdpr_consent%3D
|
76.223.111.18
|
||
https://www.adr.org
|
unknown
|
||
https://tc39.es/ecma262/#sec-array.prototype.includes
|
unknown
|
||
https://www.mpegla.com).
|
unknown
|
||
https://us-u.openx.net/w/1.0/sd?cc=1&id=537148856&val=ZyBS0QAAAFfdVQO-
|
34.98.64.218
|
||
https://tc39.es/ecma262/#sec-array.prototype.push
|
unknown
|
||
https://tc39.es/ecma262/#sec-string.prototype.trim
|
unknown
|
||
https://analytics.twitter.com/i/adsct?p_user_id=12951277017950001321043263399428689903&p_id=38594
|
104.244.42.195
|
||
https://bugs.chromium.org/p/v8/issues/detail?id=12681
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=53196&dpuuid=Q7834580061474524464
|
54.247.166.172
|
||
https://tc39.es/ecma262/#sec-hasownproperty
|
unknown
|
||
https://www.xbox.com/en-us/legal/subscription-terms
|
unknown
|
||
https://gethatch.com/resources/images/hatch-logo.svg
|
unknown
|
||
https://github.com/tc39/proposal-array-filtering
|
unknown
|
||
https://ok4static.oktacdn.com/assets/loginpage/css/loginpage-theme.e0d37a504604ef874bad26435d62011f.css
|
13.33.187.120
|
||
https://aka.ms/taxservice
|
unknown
|
||
https://skype.com/go/myaccount
|
unknown
|
||
https://tc39.es/ecma262/#sec-array.prototype.filter
|
unknown
|
||
https://www.skype.com
|
unknown
|
||
https://tc39.es/ecma262/#sec-object.defineproperties
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=80742&dpuuid=355969bc-6c9d-4034-8f22-102ee733b1b1
|
54.247.166.172
|
||
https://tc39.es/ecma262/#sec-tointegerorinfinity
|
unknown
|
||
https://dc.services.visualstudio.com
|
unknown
|
||
https://cm.g.doubleclick.net/pixel?google_nid=adobe_dmp&google_cm&gdpr=0&gdpr_consent=&google_hm=MTI5NTEyNzcwMTc5NTAwMDEzMjEwNDMyNjMzOTk0Mjg2ODk5MDM=
|
172.217.16.130
|
||
https://support.xbox.com/en-US/help/subscriptions-billing/manage-subscriptions/xbox-subscription-ina
|
unknown
|
||
https://cdnssl.clicktale.net/www32/ptc/05d32363-d534-4d93-9b65-cde674775e71.js
|
unknown
|
||
https://tc39.es/ecma262/#sec-requireobjectcoercible
|
unknown
|
||
https://api.company-target.com/api/v2/ip.json?key=70aff8023e038d56ea636f68e5c5922b
|
unknown
|
||
https://cms.analytics.yahoo.com/cms?partner_id=ADOBE&_hosted_id=12951277017950001321043263399428689903&gdpr=0&gdpr_consent=
|
87.248.119.251
|
||
https://github.com/es-shims/es5-shim/issues/150
|
unknown
|
||
https://github.com/w3c/aria-practices/pull/1757
|
unknown
|
||
https://www.mpegla.com
|
unknown
|
||
https://sync.crwdcntrl.net/map/c=9828/tp=ADBE/gdpr=0/gdpr_consent=/tpid=12951277017950001321043263399428689903?https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D121998%26dpuuid%3D${profile_id}
|
108.128.89.118
|
||
https://axios-http.com
|
unknown
|
||
https://a.tribalfusion.com/i.match?p=b13&u=12951277017950001321043263399428689903&redirect=https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid=22054&dpuuid=$TF_USER_ID_ENC$
|
172.64.150.63
|
||
https://cdnjs.cloudflare.com/ajax/libs/jquery/3.6.1/jquery.min.js
|
104.17.24.14
|
||
https://keycode.info/table-of-all-keycodes
|
unknown
|
||
https://tc39.es/ecma262/#sec-getmethod
|
unknown
|
||
https://idsync.rlcdn.com/365868.gif?partner_uid=12951277017950001321043263399428689903
|
35.244.174.68
|
||
https://trc.taboola.com/sg/adobe/1/cm?gdpr=0&gdpr_consent=
|
151.101.193.44
|
||
https://mscom.demdex.net/dest5.html?d_nsid=0
|
34.241.19.39
|
||
https://cms.quantserve.com/pixel/p-vj4AYjBqd6VJ2.gif?idmatch=0&gdpr=0&gdpr_consent=
|
91.228.74.166
|
||
https://www.skype.com/en/
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=57282&dpuuid=16B91BBB824DB82C890258FF7B7760C2
|
54.247.166.172
|
||
https://msftenterprise.sc.omtrdc.net/id?d_visid_ver=4.4.0&d_fieldgroup=A&mcorgid=EA76ADE95776D2EC7F000101%40AdobeOrg&mid=12511665475573284591071386224228230880&ts=1730171598483
|
63.140.62.27
|
||
https://developer.mozilla.org/en-US/docs/Web/API/KeyboardEvent/key/Key_Values
|
unknown
|
||
https://sync.srv.stackadapt.com/sync?nid=adobe
|
3.211.176.3
|
||
https://www.skype.com).
|
unknown
|
||
https://ib.adnxs.com/getuid?https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D358%26dpuuid%3D%24UID
|
37.252.173.215
|
||
https://rtb.adentifi.com/CookieSyncAdobe
|
107.22.186.41
|
||
https://github.com/douglascrockford/JSON-js
|
unknown
|
||
https://s.tribalfusion.com/z/i.match?p=b13&u=12951277017950001321043263399428689903&redirect=https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid=22054&dpuuid=$TF_USER_ID_ENC$
|
172.64.150.63
|
||
https://github.com/axios/axios/issues
|
unknown
|
||
https://dpm.demdex.net/id?d_visid_ver=4.4.0&d_fieldgroup=MC&d_rtbd=json&d_ver=2&d_orgid=EA76ADE95776D2EC7F000101%40AdobeOrg&d_nsid=0&ts=1730171596941
|
34.241.19.39
|
||
https://tc39.es/ecma262/#sec-array.prototype.findIndex
|
unknown
|
||
https://elad.medium.com/css-position-sticky-how-it-really-works-54cd01dc2d46
|
unknown
|
||
https://tc39.es/ecma262/#sec-parseint-string-radix
|
unknown
|
||
https://tc39.es/ecma262/#sec-string.prototype.includes
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=121998&dpuuid=f429e4397c03a13d814bf2f016aa9076
|
54.247.166.172
|
||
https://dpm.demdex.net/ibs:dpid=358&dpuuid=601450633357855038
|
54.247.166.172
|
||
http://www.opensource.org/licenses/mit-license.php)
|
unknown
|
||
https://github.com/zloirock/core-js/issues/1130
|
unknown
|
||
https://jquery.com/
|
unknown
|
||
https://tc39.es/ecma262/#sec-array.prototype.map
|
unknown
|
||
https://tc39.es/ecma262/#sec-array.prototype.indexof
|
unknown
|
||
https://tc39.es/ecma262/#sec-tolength
|
unknown
|
||
https://tc39.es/ecma262/#sec-array.prototype-
|
unknown
|
||
https://www.skype.com/go/legal
|
unknown
|
||
https://ag.innovid.com/dv/sync?tid=6
|
3.9.67.154
|
||
https://aadcdn.msftauth.net/shared/1.0/content/images/microsoft_logo_ee5c8d9fb6248c938fd0dc19370e90bd.svg
|
152.199.21.175
|
||
https://breeze.aimon.applicationinsights.io
|
unknown
|
||
https://tc39.es/ecma262/#sec-IsHTMLDDA-internal-slot
|
unknown
|
||
https://tc39.es/ecma262/#sec-array.prototype.foreach
|
unknown
|
||
https://tc39.es/ecma262/#sec-string.prototype.trimstart
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=1175&gdpr=0&dpuuid=q8AwS6jFZkiwwGBP-5MvGqmSNkiwwGBK-5ZEyr0M
|
54.247.166.172
|
||
https://ups.analytics.yahoo.com/ups/58782/cms?partner_id=ADOBE&_hosted_id=12951277017950001321043263399428689903&gdpr=0&gdpr_consent=&uid=12951277017950001321043263399428689903&verify=true
|
87.248.119.252
|
||
http://schema.org/Organization
|
unknown
|
||
https://dpm.demdex.net/ibs:dpid=782&dpuuid=ZyBS0QAAAFfdVQO-
|
54.247.166.172
|
||
https://github.com/zloirock/core-js/issues/677
|
unknown
|
||
https://sizzlejs.com/
|
unknown
|
||
https://js.foundation/
|
unknown
|
||
https://idsync.rlcdn.com/1000.gif?memo=CKyqFhIxCi0IARCYEhomMTI5NTEyNzcwMTc5NTAwMDEzMjEwNDMyNjMzOTk0Mjg2ODk5MDMQABoNCNKlgbkGEgUI6AcQAEIASgA
|
35.244.174.68
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
expnascience.com
|
188.114.97.3
|
||
cdn.jsdelivr.net
|
unknown
|
||
s.tribalfusion.com
|
172.64.150.63
|
||
global.px.quantserve.com
|
91.228.74.166
|
||
eu-eb2.3lift.com
|
76.223.111.18
|
||
bttrack.com
|
192.132.33.68
|
||
adobetarget.data.adobedc.net
|
66.235.152.225
|
||
idsync.rlcdn.com
|
35.244.174.68
|
||
dualstack.tls13.taboola.map.fastly.net
|
151.101.193.44
|
||
sync.crwdcntrl.net
|
108.128.89.118
|
||
cdnjs.cloudflare.com
|
104.17.24.14
|
||
cm.g.doubleclick.net
|
172.217.16.130
|
||
sni1gl.wpc.omegacdn.net
|
152.199.21.175
|
||
rtb.adentifi.com
|
107.22.186.41
|
||
www.google.com
|
142.250.185.228
|
||
dcs-ups.g03.yahoodns.net
|
87.248.119.251
|
||
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
|
34.241.19.39
|
||
sync.srv.stackadapt.com
|
3.211.176.3
|
||
msftenterprise.sc.omtrdc.net
|
63.140.62.27
|
||
match.adsrvr.org
|
35.71.131.137
|
||
aragorn-prod-uk-acai-lb.inbake.com
|
3.9.67.154
|
||
star-mini.c10r.facebook.com
|
157.240.251.35
|
||
a.nel.cloudflare.com
|
35.190.80.1
|
||
us-u.openx.net
|
34.98.64.218
|
||
s.twitter.com
|
104.244.42.195
|
||
s-part-0017.t-0009.t-msedge.net
|
13.107.246.45
|
||
pug-lhr-bc.pubmnet.com
|
185.64.191.210
|
||
dsum-sec.casalemedia.com
|
104.18.36.155
|
||
a.tribalfusion.com
|
172.64.150.63
|
||
pug-ams-bc.pubmnet.com
|
198.47.127.205
|
||
d19d360lklgih4.cloudfront.net
|
13.33.187.120
|
||
ib.anycast.adnxs.com
|
37.252.173.215
|
||
ag.innovid.com
|
unknown
|
||
idpix.media6degrees.com
|
unknown
|
||
px.owneriq.net
|
unknown
|
||
ds.reson8.com
|
unknown
|
||
ups.analytics.yahoo.com
|
unknown
|
||
cm.everesttech.net
|
unknown
|
||
jadserve.postrelease.com
|
unknown
|
||
image2.pubmatic.com
|
unknown
|
||
dmpsync.3lift.com
|
unknown
|
||
dpm.demdex.net
|
unknown
|
||
rtd-tm.everesttech.net
|
unknown
|
||
servedby.flashtalking.com
|
unknown
|
||
www.facebook.com
|
unknown
|
||
rtd.tubemogul.com
|
unknown
|
||
aadcdn.msftauth.net
|
unknown
|
||
pixel.rubiconproject.com
|
unknown
|
||
trc.taboola.com
|
unknown
|
||
mscom.demdex.net
|
unknown
|
||
analytics.twitter.com
|
unknown
|
||
cms.quantserve.com
|
unknown
|
||
cms.analytics.yahoo.com
|
unknown
|
||
ok4static.oktacdn.com
|
unknown
|
||
ib.adnxs.com
|
unknown
|
||
sync.search.spotxchange.com
|
unknown
|
||
login.microsoftonline.com
|
unknown
|
||
sync-tm.everesttech.net
|
unknown
|
There are 48 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
188.114.97.3
|
expnascience.com
|
European Union
|
||
142.250.185.228
|
www.google.com
|
United States
|
||
91.228.74.166
|
global.px.quantserve.com
|
United Kingdom
|
||
13.107.246.45
|
s-part-0017.t-0009.t-msedge.net
|
United States
|
||
192.168.2.5
|
unknown
|
unknown
|
||
66.235.152.225
|
adobetarget.data.adobedc.net
|
United States
|
||
108.128.89.118
|
sync.crwdcntrl.net
|
United States
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
198.47.127.205
|
pug-ams-bc.pubmnet.com
|
United States
|
||
35.71.131.137
|
match.adsrvr.org
|
United States
|
||
151.101.193.44
|
dualstack.tls13.taboola.map.fastly.net
|
United States
|
||
34.241.19.39
|
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
|
United States
|
||
3.9.67.154
|
aragorn-prod-uk-acai-lb.inbake.com
|
United States
|
||
157.240.0.35
|
unknown
|
United States
|
||
172.64.150.63
|
s.tribalfusion.com
|
United States
|
||
63.140.62.17
|
unknown
|
United States
|
||
104.18.36.155
|
dsum-sec.casalemedia.com
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
13.33.187.96
|
unknown
|
United States
|
||
66.235.152.156
|
unknown
|
United States
|
||
152.199.21.175
|
sni1gl.wpc.omegacdn.net
|
United States
|
||
35.244.174.68
|
idsync.rlcdn.com
|
United States
|
||
37.252.173.215
|
ib.anycast.adnxs.com
|
European Union
|
||
185.64.191.210
|
pug-lhr-bc.pubmnet.com
|
United Kingdom
|
||
172.64.151.101
|
unknown
|
United States
|
||
63.140.62.27
|
msftenterprise.sc.omtrdc.net
|
United States
|
||
35.244.159.8
|
unknown
|
United States
|
||
87.248.119.251
|
dcs-ups.g03.yahoodns.net
|
United Kingdom
|
||
87.248.119.252
|
unknown
|
United Kingdom
|
||
192.168.2.23
|
unknown
|
unknown
|
||
34.249.23.253
|
unknown
|
United States
|
||
185.89.210.46
|
unknown
|
Germany
|
||
192.132.33.68
|
bttrack.com
|
United States
|
||
76.223.111.18
|
eu-eb2.3lift.com
|
United States
|
||
104.17.24.14
|
cdnjs.cloudflare.com
|
United States
|
||
13.33.187.120
|
d19d360lklgih4.cloudfront.net
|
United States
|
||
3.211.176.3
|
sync.srv.stackadapt.com
|
United States
|
||
104.244.42.3
|
unknown
|
United States
|
||
104.244.42.195
|
s.twitter.com
|
United States
|
||
107.22.186.41
|
rtb.adentifi.com
|
United States
|
||
216.58.206.68
|
unknown
|
United States
|
||
142.250.185.130
|
unknown
|
United States
|
||
34.98.64.218
|
us-u.openx.net
|
United States
|
||
188.114.96.3
|
unknown
|
European Union
|
||
172.217.16.130
|
cm.g.doubleclick.net
|
United States
|
||
157.240.251.35
|
star-mini.c10r.facebook.com
|
United States
|
||
54.247.166.172
|
unknown
|
United States
|
There are 37 hidden IPs, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
file:///C:/Users/user/Desktop/Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html
|
||
file:///C:/Users/user/Desktop/Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html
|
||
https://www.microsoft.com/en-US/servicesagreement/
|
||
https://www.microsoft.com/en-US/servicesagreement/
|
||
https://www.microsoft.com/en-US/servicesagreement/
|
||
https://www.microsoft.com/en-US/servicesagreement/
|
||
https://www.microsoft.com/en-US/servicesagreement/
|
||
https://www.microsoft.com/en-US/servicesagreement/
|
||
https://www.microsoft.com/en-US/servicesagreement/
|
||
https://www.microsoft.com/en-US/servicesagreement/
|