IOC Report
Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html

loading gif

Files

File Path
Type
Category
Malicious
Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html
HTML document, ASCII text, with very long lines (8024), with no line terminators
initial sample
malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:10:42 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 117
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 118
PNG image data, 420 x 94, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 119
Unicode text, UTF-8 text, with very long lines (65298)
downloaded
Chrome Cache Entry: 120
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1592
downloaded
Chrome Cache Entry: 121
ASCII text, with very long lines (541)
downloaded
Chrome Cache Entry: 122
ASCII text, with very long lines (505)
downloaded
Chrome Cache Entry: 123
HTML document, Unicode text, UTF-8 text, with very long lines (23174), with CRLF line terminators
downloaded
Chrome Cache Entry: 124
ASCII text, with very long lines (59832)
downloaded
Chrome Cache Entry: 125
ASCII text, with very long lines (46591)
downloaded
Chrome Cache Entry: 126
Unicode text, UTF-8 text, with very long lines (1998)
downloaded
Chrome Cache Entry: 127
ASCII text, with very long lines (42133)
dropped
Chrome Cache Entry: 128
ASCII text, with very long lines (576)
dropped
Chrome Cache Entry: 129
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1864
downloaded
Chrome Cache Entry: 130
ASCII text, with very long lines (576)
downloaded
Chrome Cache Entry: 131
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 132
Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 133
ASCII text, with very long lines (42133)
downloaded
Chrome Cache Entry: 134
Web Open Font Format (Version 2), TrueType, length 32600, version 1.0
downloaded
Chrome Cache Entry: 135
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
downloaded
Chrome Cache Entry: 136
ASCII text, with very long lines (3164)
downloaded
Chrome Cache Entry: 137
ASCII text, with very long lines (309), with no line terminators
dropped
Chrome Cache Entry: 138
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 139
ASCII text, with very long lines (512)
downloaded
Chrome Cache Entry: 140
ASCII text, with very long lines (590)
dropped
Chrome Cache Entry: 141
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 142
ASCII text, with very long lines (52717), with no line terminators
dropped
Chrome Cache Entry: 143
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 144
ASCII text, with very long lines (52717), with no line terminators
downloaded
Chrome Cache Entry: 145
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 146
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1864
dropped
Chrome Cache Entry: 147
ASCII text, with very long lines (59832)
dropped
Chrome Cache Entry: 148
ASCII text, with very long lines (442)
downloaded
Chrome Cache Entry: 149
ASCII text, with very long lines (584)
dropped
Chrome Cache Entry: 150
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 513
dropped
Chrome Cache Entry: 151
ASCII text, with very long lines (367), with no line terminators
downloaded
Chrome Cache Entry: 152
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
downloaded
Chrome Cache Entry: 153
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 154
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 155
ASCII text
downloaded
Chrome Cache Entry: 156
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 157
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 158
ASCII text, with very long lines (51734)
downloaded
Chrome Cache Entry: 159
Unicode text, UTF-8 text, with very long lines (64241)
downloaded
Chrome Cache Entry: 160
ASCII text, with very long lines (65447)
dropped
Chrome Cache Entry: 161
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 162
ASCII text, with very long lines (728)
dropped
Chrome Cache Entry: 163
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 164
ASCII text, with very long lines (367), with no line terminators
dropped
Chrome Cache Entry: 165
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 166
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
dropped
Chrome Cache Entry: 167
ASCII text, with very long lines (590)
downloaded
Chrome Cache Entry: 168
ASCII text
downloaded
Chrome Cache Entry: 169
JSON data
dropped
Chrome Cache Entry: 170
ASCII text
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (505)
dropped
Chrome Cache Entry: 172
PNG image data, 420 x 94, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 173
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 174
HTML document, Unicode text, UTF-8 text, with very long lines (5403)
downloaded
Chrome Cache Entry: 175
ASCII text, with very long lines (54108)
dropped
Chrome Cache Entry: 176
ASCII text, with very long lines (541)
dropped
Chrome Cache Entry: 177
ASCII text, with very long lines (10450)
downloaded
Chrome Cache Entry: 178
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 179
ASCII text, with very long lines (605)
downloaded
Chrome Cache Entry: 180
ASCII text, with very long lines (889)
dropped
Chrome Cache Entry: 181
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 182
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 183
ASCII text, with very long lines (512)
dropped
Chrome Cache Entry: 184
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 185
HTML document, ASCII text, with very long lines (2652), with CRLF line terminators
downloaded
Chrome Cache Entry: 186
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (7862)
dropped
Chrome Cache Entry: 188
ASCII text, with very long lines (3164)
dropped
Chrome Cache Entry: 189
ASCII text, with very long lines (728)
downloaded
Chrome Cache Entry: 190
Web Open Font Format, TrueType, length 26288, version 0.0
downloaded
Chrome Cache Entry: 191
JSON data
dropped
Chrome Cache Entry: 192
ASCII text
downloaded
Chrome Cache Entry: 193
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1592
dropped
Chrome Cache Entry: 194
ASCII text, with very long lines (7862)
downloaded
Chrome Cache Entry: 195
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 196
ASCII text, with very long lines (605)
dropped
Chrome Cache Entry: 197
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 198
Unicode text, UTF-8 text, with very long lines (1998)
dropped
Chrome Cache Entry: 199
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 200
ASCII text, with very long lines (54108)
downloaded
Chrome Cache Entry: 201
ASCII text, with very long lines (889)
downloaded
Chrome Cache Entry: 202
ASCII text, with very long lines (309), with no line terminators
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (584)
downloaded
Chrome Cache Entry: 204
ASCII text, with very long lines (46591)
dropped
There are 85 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "C:\Users\user\Desktop\Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2108 --field-trial-handle=1996,i,14975480146771935676,1470107795940181253,262144 /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=printing.mojom.PrintCompositor --lang=en-US --service-sandbox-type=print_compositor --mojo-platform-channel-handle=4368 --field-trial-handle=1996,i,14975480146771935676,1470107795940181253,262144 /prefetch:8

URLs

Name
IP
Malicious
https://github.com/mozilla/rhino/issues/346
unknown
https://login.microsoftonline.com/uxlogout?appid
unknown
https://ok4static.oktacdn.com/fs/bcg/4/gfsh9pi7jcWKJKMAs1t7
13.33.187.120
https://aka.ms/useterms
unknown
https://tc39.es/ecma262/#sec-object.prototype.tostring
unknown
https://tc39.es/ecma262/#sec-toobject
unknown
https://aka.ms/reportconcerns).
unknown
https://tc39.es/ecma262/#sec-arrayspeciescreate
unknown
https://dpm.demdex.net/ibs:dpid=477&dpuuid=dedd5ea7776f722a9de8d278bbac1b7c5ddae190d79accee7afee4ccd33d563ab0da87c991749652
54.247.166.172
https://tc39.es/ecma262/#sec-object.values
unknown
https://github.com/carhartl/jquery-cookie
unknown
https://dpm.demdex.net/ibs:dpid=30646?dpuuid=y-V.9JdRJE2pEVdriG25CH_tbn.T6kX2MxsyI-~A
54.247.166.172
https://tc39.es/ecma262/#sec-object.getownpropertydescriptor
unknown
https://github.com/zloirock/core-js
unknown
https://www.xbox.com/en-us/games/store/pc-game-pass/cfq7ttc0kgq8?icid=CNavAllPCGamePass
unknown
https://login.microsoftonline.com/savedusers?appid
unknown
https://cm.g.doubleclick.net/pixel?google_nid=adobe_dmp&google_cm=&gdpr=0&gdpr_consent=&google_hm=MTI5NTEyNzcwMTc5NTAwMDEzMjEwNDMyNjMzOTk0Mjg2ODk5MDM=&google_tc=
172.217.16.130
https://tc39.es/ecma262/#sec-object.prototype.propertyisenumerable
unknown
https://dmpsync.3lift.com/getuid?ld=1&gdpr=0&cmp_cs=&us_privacy=&redir=%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D72352%26dpuuid%3D%24UID%26gdpr%3D0%26gdpr_consent%3D
76.223.111.18
https://www.adr.org
unknown
https://tc39.es/ecma262/#sec-array.prototype.includes
unknown
https://www.mpegla.com).
unknown
https://us-u.openx.net/w/1.0/sd?cc=1&id=537148856&val=ZyBS0QAAAFfdVQO-
34.98.64.218
https://tc39.es/ecma262/#sec-array.prototype.push
unknown
https://tc39.es/ecma262/#sec-string.prototype.trim
unknown
https://analytics.twitter.com/i/adsct?p_user_id=12951277017950001321043263399428689903&p_id=38594
104.244.42.195
https://bugs.chromium.org/p/v8/issues/detail?id=12681
unknown
https://dpm.demdex.net/ibs:dpid=53196&dpuuid=Q7834580061474524464
54.247.166.172
https://tc39.es/ecma262/#sec-hasownproperty
unknown
https://www.xbox.com/en-us/legal/subscription-terms
unknown
https://gethatch.com/resources/images/hatch-logo.svg
unknown
https://github.com/tc39/proposal-array-filtering
unknown
https://ok4static.oktacdn.com/assets/loginpage/css/loginpage-theme.e0d37a504604ef874bad26435d62011f.css
13.33.187.120
https://aka.ms/taxservice
unknown
https://skype.com/go/myaccount
unknown
https://tc39.es/ecma262/#sec-array.prototype.filter
unknown
https://www.skype.com
unknown
https://tc39.es/ecma262/#sec-object.defineproperties
unknown
https://dpm.demdex.net/ibs:dpid=80742&dpuuid=355969bc-6c9d-4034-8f22-102ee733b1b1
54.247.166.172
https://tc39.es/ecma262/#sec-tointegerorinfinity
unknown
https://dc.services.visualstudio.com
unknown
https://cm.g.doubleclick.net/pixel?google_nid=adobe_dmp&google_cm&gdpr=0&gdpr_consent=&google_hm=MTI5NTEyNzcwMTc5NTAwMDEzMjEwNDMyNjMzOTk0Mjg2ODk5MDM=
172.217.16.130
https://support.xbox.com/en-US/help/subscriptions-billing/manage-subscriptions/xbox-subscription-ina
unknown
https://cdnssl.clicktale.net/www32/ptc/05d32363-d534-4d93-9b65-cde674775e71.js
unknown
https://tc39.es/ecma262/#sec-requireobjectcoercible
unknown
https://api.company-target.com/api/v2/ip.json?key=70aff8023e038d56ea636f68e5c5922b
unknown
https://cms.analytics.yahoo.com/cms?partner_id=ADOBE&_hosted_id=12951277017950001321043263399428689903&gdpr=0&gdpr_consent=
87.248.119.251
https://github.com/es-shims/es5-shim/issues/150
unknown
https://github.com/w3c/aria-practices/pull/1757
unknown
https://www.mpegla.com
unknown
https://sync.crwdcntrl.net/map/c=9828/tp=ADBE/gdpr=0/gdpr_consent=/tpid=12951277017950001321043263399428689903?https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D121998%26dpuuid%3D${profile_id}
108.128.89.118
https://axios-http.com
unknown
https://a.tribalfusion.com/i.match?p=b13&u=12951277017950001321043263399428689903&redirect=https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid=22054&dpuuid=$TF_USER_ID_ENC$
172.64.150.63
https://cdnjs.cloudflare.com/ajax/libs/jquery/3.6.1/jquery.min.js
104.17.24.14
https://keycode.info/table-of-all-keycodes
unknown
https://tc39.es/ecma262/#sec-getmethod
unknown
https://idsync.rlcdn.com/365868.gif?partner_uid=12951277017950001321043263399428689903
35.244.174.68
https://trc.taboola.com/sg/adobe/1/cm?gdpr=0&gdpr_consent=
151.101.193.44
https://mscom.demdex.net/dest5.html?d_nsid=0
34.241.19.39
https://cms.quantserve.com/pixel/p-vj4AYjBqd6VJ2.gif?idmatch=0&gdpr=0&gdpr_consent=
91.228.74.166
https://www.skype.com/en/
unknown
https://dpm.demdex.net/ibs:dpid=57282&dpuuid=16B91BBB824DB82C890258FF7B7760C2
54.247.166.172
https://msftenterprise.sc.omtrdc.net/id?d_visid_ver=4.4.0&d_fieldgroup=A&mcorgid=EA76ADE95776D2EC7F000101%40AdobeOrg&mid=12511665475573284591071386224228230880&ts=1730171598483
63.140.62.27
https://developer.mozilla.org/en-US/docs/Web/API/KeyboardEvent/key/Key_Values
unknown
https://sync.srv.stackadapt.com/sync?nid=adobe
3.211.176.3
https://www.skype.com).
unknown
https://ib.adnxs.com/getuid?https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D358%26dpuuid%3D%24UID
37.252.173.215
https://rtb.adentifi.com/CookieSyncAdobe
107.22.186.41
https://github.com/douglascrockford/JSON-js
unknown
https://s.tribalfusion.com/z/i.match?p=b13&u=12951277017950001321043263399428689903&redirect=https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid=22054&dpuuid=$TF_USER_ID_ENC$
172.64.150.63
https://github.com/axios/axios/issues
unknown
https://dpm.demdex.net/id?d_visid_ver=4.4.0&d_fieldgroup=MC&d_rtbd=json&d_ver=2&d_orgid=EA76ADE95776D2EC7F000101%40AdobeOrg&d_nsid=0&ts=1730171596941
34.241.19.39
https://tc39.es/ecma262/#sec-array.prototype.findIndex
unknown
https://elad.medium.com/css-position-sticky-how-it-really-works-54cd01dc2d46
unknown
https://tc39.es/ecma262/#sec-parseint-string-radix
unknown
https://tc39.es/ecma262/#sec-string.prototype.includes
unknown
https://dpm.demdex.net/ibs:dpid=121998&dpuuid=f429e4397c03a13d814bf2f016aa9076
54.247.166.172
https://dpm.demdex.net/ibs:dpid=358&dpuuid=601450633357855038
54.247.166.172
http://www.opensource.org/licenses/mit-license.php)
unknown
https://github.com/zloirock/core-js/issues/1130
unknown
https://jquery.com/
unknown
https://tc39.es/ecma262/#sec-array.prototype.map
unknown
https://tc39.es/ecma262/#sec-array.prototype.indexof
unknown
https://tc39.es/ecma262/#sec-tolength
unknown
https://tc39.es/ecma262/#sec-array.prototype-
unknown
https://www.skype.com/go/legal
unknown
https://ag.innovid.com/dv/sync?tid=6
3.9.67.154
https://aadcdn.msftauth.net/shared/1.0/content/images/microsoft_logo_ee5c8d9fb6248c938fd0dc19370e90bd.svg
152.199.21.175
https://breeze.aimon.applicationinsights.io
unknown
https://tc39.es/ecma262/#sec-IsHTMLDDA-internal-slot
unknown
https://tc39.es/ecma262/#sec-array.prototype.foreach
unknown
https://tc39.es/ecma262/#sec-string.prototype.trimstart
unknown
https://dpm.demdex.net/ibs:dpid=1175&gdpr=0&dpuuid=q8AwS6jFZkiwwGBP-5MvGqmSNkiwwGBK-5ZEyr0M
54.247.166.172
https://ups.analytics.yahoo.com/ups/58782/cms?partner_id=ADOBE&_hosted_id=12951277017950001321043263399428689903&gdpr=0&gdpr_consent=&uid=12951277017950001321043263399428689903&verify=true
87.248.119.252
http://schema.org/Organization
unknown
https://dpm.demdex.net/ibs:dpid=782&dpuuid=ZyBS0QAAAFfdVQO-
54.247.166.172
https://github.com/zloirock/core-js/issues/677
unknown
https://sizzlejs.com/
unknown
https://js.foundation/
unknown
https://idsync.rlcdn.com/1000.gif?memo=CKyqFhIxCi0IARCYEhomMTI5NTEyNzcwMTc5NTAwMDEzMjEwNDMyNjMzOTk0Mjg2ODk5MDMQABoNCNKlgbkGEgUI6AcQAEIASgA
35.244.174.68
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
expnascience.com
188.114.97.3
malicious
cdn.jsdelivr.net
unknown
malicious
s.tribalfusion.com
172.64.150.63
global.px.quantserve.com
91.228.74.166
eu-eb2.3lift.com
76.223.111.18
bttrack.com
192.132.33.68
adobetarget.data.adobedc.net
66.235.152.225
idsync.rlcdn.com
35.244.174.68
dualstack.tls13.taboola.map.fastly.net
151.101.193.44
sync.crwdcntrl.net
108.128.89.118
cdnjs.cloudflare.com
104.17.24.14
cm.g.doubleclick.net
172.217.16.130
sni1gl.wpc.omegacdn.net
152.199.21.175
rtb.adentifi.com
107.22.186.41
www.google.com
142.250.185.228
dcs-ups.g03.yahoodns.net
87.248.119.251
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
34.241.19.39
sync.srv.stackadapt.com
3.211.176.3
msftenterprise.sc.omtrdc.net
63.140.62.27
match.adsrvr.org
35.71.131.137
aragorn-prod-uk-acai-lb.inbake.com
3.9.67.154
star-mini.c10r.facebook.com
157.240.251.35
a.nel.cloudflare.com
35.190.80.1
us-u.openx.net
34.98.64.218
s.twitter.com
104.244.42.195
s-part-0017.t-0009.t-msedge.net
13.107.246.45
pug-lhr-bc.pubmnet.com
185.64.191.210
dsum-sec.casalemedia.com
104.18.36.155
a.tribalfusion.com
172.64.150.63
pug-ams-bc.pubmnet.com
198.47.127.205
d19d360lklgih4.cloudfront.net
13.33.187.120
ib.anycast.adnxs.com
37.252.173.215
ag.innovid.com
unknown
idpix.media6degrees.com
unknown
px.owneriq.net
unknown
ds.reson8.com
unknown
ups.analytics.yahoo.com
unknown
cm.everesttech.net
unknown
jadserve.postrelease.com
unknown
image2.pubmatic.com
unknown
dmpsync.3lift.com
unknown
dpm.demdex.net
unknown
rtd-tm.everesttech.net
unknown
servedby.flashtalking.com
unknown
www.facebook.com
unknown
rtd.tubemogul.com
unknown
aadcdn.msftauth.net
unknown
pixel.rubiconproject.com
unknown
trc.taboola.com
unknown
mscom.demdex.net
unknown
analytics.twitter.com
unknown
cms.quantserve.com
unknown
cms.analytics.yahoo.com
unknown
ok4static.oktacdn.com
unknown
ib.adnxs.com
unknown
sync.search.spotxchange.com
unknown
login.microsoftonline.com
unknown
sync-tm.everesttech.net
unknown
There are 48 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
188.114.97.3
expnascience.com
European Union
malicious
142.250.185.228
www.google.com
United States
91.228.74.166
global.px.quantserve.com
United Kingdom
13.107.246.45
s-part-0017.t-0009.t-msedge.net
United States
192.168.2.5
unknown
unknown
66.235.152.225
adobetarget.data.adobedc.net
United States
108.128.89.118
sync.crwdcntrl.net
United States
35.190.80.1
a.nel.cloudflare.com
United States
198.47.127.205
pug-ams-bc.pubmnet.com
United States
35.71.131.137
match.adsrvr.org
United States
151.101.193.44
dualstack.tls13.taboola.map.fastly.net
United States
34.241.19.39
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
United States
3.9.67.154
aragorn-prod-uk-acai-lb.inbake.com
United States
157.240.0.35
unknown
United States
172.64.150.63
s.tribalfusion.com
United States
63.140.62.17
unknown
United States
104.18.36.155
dsum-sec.casalemedia.com
United States
239.255.255.250
unknown
Reserved
13.33.187.96
unknown
United States
66.235.152.156
unknown
United States
152.199.21.175
sni1gl.wpc.omegacdn.net
United States
35.244.174.68
idsync.rlcdn.com
United States
37.252.173.215
ib.anycast.adnxs.com
European Union
185.64.191.210
pug-lhr-bc.pubmnet.com
United Kingdom
172.64.151.101
unknown
United States
63.140.62.27
msftenterprise.sc.omtrdc.net
United States
35.244.159.8
unknown
United States
87.248.119.251
dcs-ups.g03.yahoodns.net
United Kingdom
87.248.119.252
unknown
United Kingdom
192.168.2.23
unknown
unknown
34.249.23.253
unknown
United States
185.89.210.46
unknown
Germany
192.132.33.68
bttrack.com
United States
76.223.111.18
eu-eb2.3lift.com
United States
104.17.24.14
cdnjs.cloudflare.com
United States
13.33.187.120
d19d360lklgih4.cloudfront.net
United States
3.211.176.3
sync.srv.stackadapt.com
United States
104.244.42.3
unknown
United States
104.244.42.195
s.twitter.com
United States
107.22.186.41
rtb.adentifi.com
United States
216.58.206.68
unknown
United States
142.250.185.130
unknown
United States
34.98.64.218
us-u.openx.net
United States
188.114.96.3
unknown
European Union
172.217.16.130
cm.g.doubleclick.net
United States
157.240.251.35
star-mini.c10r.facebook.com
United States
54.247.166.172
unknown
United States
There are 37 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
file:///C:/Users/user/Desktop/Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html
malicious
file:///C:/Users/user/Desktop/Salary_Structure_Benefits_for_Sebastien.daveauIyNURVhUTlVNUkFORE9NMTkjIw==.html
https://www.microsoft.com/en-US/servicesagreement/
https://www.microsoft.com/en-US/servicesagreement/
https://www.microsoft.com/en-US/servicesagreement/
https://www.microsoft.com/en-US/servicesagreement/
https://www.microsoft.com/en-US/servicesagreement/
https://www.microsoft.com/en-US/servicesagreement/
https://www.microsoft.com/en-US/servicesagreement/
https://www.microsoft.com/en-US/servicesagreement/