IOC Report
http://yandex.com/clck/click

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:36:03 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:36:03 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:36:03 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:36:03 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 02:36:02 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 170
ASCII text, with very long lines (65280)
downloaded
Chrome Cache Entry: 171
ASCII text, with very long lines (2299), with no line terminators
dropped
Chrome Cache Entry: 172
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 173
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 174
Unicode text, UTF-8 text, with very long lines (17688), with no line terminators
dropped
Chrome Cache Entry: 175
ASCII text, with very long lines (7522), with no line terminators
downloaded
Chrome Cache Entry: 176
Unicode text, UTF-8 text, with very long lines (23121), with NEL line terminators
downloaded
Chrome Cache Entry: 177
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 178
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 179
ASCII text, with very long lines (65453)
downloaded
Chrome Cache Entry: 180
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 181
ASCII text, with very long lines (24211), with no line terminators
dropped
Chrome Cache Entry: 182
ASCII text, with very long lines (15178), with no line terminators
dropped
Chrome Cache Entry: 183
ASCII text, with very long lines (4269), with no line terminators
dropped
Chrome Cache Entry: 184
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 185
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 186
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 187
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 188
ASCII text, with very long lines (65482), with CRLF line terminators
downloaded
Chrome Cache Entry: 189
ASCII text, with very long lines (19420), with no line terminators
downloaded
Chrome Cache Entry: 190
Unicode text, UTF-8 text, with very long lines (65226)
dropped
Chrome Cache Entry: 191
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 192
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 193
Unicode text, UTF-8 text, with very long lines (65388)
dropped
Chrome Cache Entry: 194
HTML document, Unicode text, UTF-8 text, with very long lines (11982), with no line terminators
downloaded
Chrome Cache Entry: 195
Unicode text, UTF-8 text, with very long lines (23696), with no line terminators
downloaded
Chrome Cache Entry: 196
ASCII text, with very long lines (7524)
downloaded
Chrome Cache Entry: 197
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 198
ASCII text, with very long lines (7143), with no line terminators
downloaded
Chrome Cache Entry: 199
ASCII text, with very long lines (8279), with no line terminators
dropped
Chrome Cache Entry: 200
ASCII text, with very long lines (9780), with no line terminators
dropped
Chrome Cache Entry: 201
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 202
ASCII text, with very long lines (19420), with no line terminators
dropped
Chrome Cache Entry: 203
Unicode text, UTF-8 text, with very long lines (19808), with no line terminators
downloaded
Chrome Cache Entry: 204
Unicode text, UTF-8 text, with very long lines (27127), with no line terminators
dropped
Chrome Cache Entry: 205
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 206
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 207
ASCII text, with very long lines (16237)
downloaded
Chrome Cache Entry: 208
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 209
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 210
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 211
HTML document, Unicode text, UTF-8 text, with very long lines (19621)
downloaded
Chrome Cache Entry: 212
Unicode text, UTF-8 text, with very long lines (65442), with no line terminators
dropped
Chrome Cache Entry: 213
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 214
Unicode text, UTF-8 text, with very long lines (17797), with LF, NEL line terminators
downloaded
Chrome Cache Entry: 215
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 216
JSON data
downloaded
Chrome Cache Entry: 217
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 218
ASCII text, with very long lines (65482), with CRLF line terminators
dropped
Chrome Cache Entry: 219
ASCII text, with very long lines (8279), with no line terminators
downloaded
Chrome Cache Entry: 220
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 221
Unicode text, UTF-8 text, with very long lines (23883), with no line terminators
downloaded
Chrome Cache Entry: 222
Unicode text, UTF-8 (with BOM) text, with very long lines (553)
dropped
Chrome Cache Entry: 223
ASCII text, with very long lines (23103), with no line terminators
downloaded
Chrome Cache Entry: 224
JSON data
dropped
Chrome Cache Entry: 225
PNG image data, 10 x 8, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 226
ASCII text, with very long lines (61145)
dropped
Chrome Cache Entry: 227
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 228
Unicode text, UTF-8 text, with very long lines (27127), with no line terminators
downloaded
Chrome Cache Entry: 229
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 230
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 231
ASCII text, with very long lines (20516), with no line terminators
downloaded
Chrome Cache Entry: 232
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 233
ASCII text, with very long lines (9780), with no line terminators
downloaded
Chrome Cache Entry: 234
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 235
ASCII text, with very long lines (15178), with no line terminators
downloaded
Chrome Cache Entry: 236
Unicode text, UTF-8 text, with very long lines (28231), with no line terminators
dropped
Chrome Cache Entry: 237
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 238
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 239
Unicode text, UTF-8 text, with very long lines (65442), with no line terminators
downloaded
Chrome Cache Entry: 240
ASCII text, with very long lines (30619)
dropped
Chrome Cache Entry: 241
ASCII text, with very long lines (4269), with no line terminators
downloaded
Chrome Cache Entry: 242
ASCII text, with very long lines (6332), with no line terminators
dropped
Chrome Cache Entry: 243
ASCII text, with very long lines (35552), with no line terminators
dropped
Chrome Cache Entry: 244
ASCII text, with very long lines (7522), with no line terminators
dropped
Chrome Cache Entry: 245
Unicode text, UTF-8 text, with very long lines (65226)
downloaded
Chrome Cache Entry: 246
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 247
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 248
ASCII text, with very long lines (25528), with no line terminators
dropped
Chrome Cache Entry: 249
Unicode text, UTF-8 (with BOM) text, with very long lines (570)
downloaded
Chrome Cache Entry: 250
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 251
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 252
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 253
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 254
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 255
Unicode text, UTF-8 text, with very long lines (28231), with no line terminators
downloaded
Chrome Cache Entry: 256
ASCII text, with very long lines (7143), with no line terminators
dropped
Chrome Cache Entry: 257
ASCII text, with very long lines (35552), with no line terminators
downloaded
Chrome Cache Entry: 258
Unicode text, UTF-8 text, with very long lines (19808), with no line terminators
dropped
Chrome Cache Entry: 259
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 260
ASCII text, with very long lines (2266), with no line terminators
dropped
Chrome Cache Entry: 261
ASCII text, with very long lines (65452)
downloaded
Chrome Cache Entry: 262
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 263
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 264
PNG image data, 192 x 240, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 265
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 266
ASCII text, with very long lines (61145)
downloaded
Chrome Cache Entry: 267
Unicode text, UTF-8 text, with very long lines (17797), with LF, NEL line terminators
dropped
Chrome Cache Entry: 268
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 269
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 270
Unicode text, UTF-8 text, with very long lines (43150), with no line terminators
dropped
Chrome Cache Entry: 271
Unicode text, UTF-8 text, with very long lines (62581), with no line terminators
dropped
Chrome Cache Entry: 272
ASCII text
downloaded
Chrome Cache Entry: 273
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 274
Unicode text, UTF-8 text, with very long lines (65388)
downloaded
Chrome Cache Entry: 275
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 276
Unicode text, UTF-8 text, with very long lines (52752), with no line terminators
dropped
Chrome Cache Entry: 277
PNG image data, 360 x 270, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 278
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 279
ASCII text, with very long lines (9022), with no line terminators
downloaded
Chrome Cache Entry: 280
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 281
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 282
ASCII text, with very long lines (8827), with no line terminators
dropped
Chrome Cache Entry: 283
ASCII text, with very long lines (2299), with no line terminators
downloaded
Chrome Cache Entry: 284
ASCII text, with very long lines (25528), with no line terminators
downloaded
Chrome Cache Entry: 285
Unicode text, UTF-8 text, with very long lines (23696), with no line terminators
dropped
Chrome Cache Entry: 286
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 287
ASCII text
dropped
Chrome Cache Entry: 288
ASCII text, with very long lines (65452)
dropped
Chrome Cache Entry: 289
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 290
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 291
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 292
ASCII text, with very long lines (2266), with no line terminators
downloaded
Chrome Cache Entry: 293
ASCII text, with very long lines (605)
dropped
Chrome Cache Entry: 294
Unicode text, UTF-8 (with BOM) text, with very long lines (553)
downloaded
Chrome Cache Entry: 295
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 296
ASCII text, with very long lines (7524)
dropped
Chrome Cache Entry: 297
Unicode text, UTF-8 text, with very long lines (62581), with no line terminators
downloaded
Chrome Cache Entry: 298
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 299
Unicode text, UTF-8 text, with very long lines (43150), with no line terminators
downloaded
Chrome Cache Entry: 300
Unicode text, UTF-8 text, with very long lines (25493), with no line terminators
dropped
Chrome Cache Entry: 301
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 302
Unicode text, UTF-8 text, with very long lines (25493), with no line terminators
downloaded
Chrome Cache Entry: 303
PNG image data, 360 x 270, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 304
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 305
Unicode text, UTF-8 text, with very long lines (7469), with no line terminators
dropped
Chrome Cache Entry: 306
Web Open Font Format, TrueType, length 63932, version 0.0
downloaded
Chrome Cache Entry: 307
Web Open Font Format, TrueType, length 63964, version 0.0
downloaded
Chrome Cache Entry: 308
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 309
Unicode text, UTF-8 text, with very long lines (7469), with no line terminators
downloaded
Chrome Cache Entry: 310
ASCII text, with very long lines (20516), with no line terminators
dropped
Chrome Cache Entry: 311
Unicode text, UTF-8 text, with very long lines (33682)
dropped
Chrome Cache Entry: 312
Unicode text, UTF-8 text, with very long lines (27515), with no line terminators
downloaded
Chrome Cache Entry: 313
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 314
ASCII text, with very long lines (9022), with no line terminators
dropped
Chrome Cache Entry: 315
PNG image data, 192 x 240, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 316
Unicode text, UTF-8 text, with very long lines (33682)
downloaded
Chrome Cache Entry: 317
ASCII text, with very long lines (23103), with no line terminators
dropped
Chrome Cache Entry: 318
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 319
ASCII text, with very long lines (65280)
dropped
Chrome Cache Entry: 320
ASCII text, with very long lines (65453)
dropped
Chrome Cache Entry: 321
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 322
ASCII text, with very long lines (24211), with no line terminators
downloaded
Chrome Cache Entry: 323
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 324
PNG image data, 10 x 8, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 325
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 326
Unicode text, UTF-8 text, with very long lines (17688), with no line terminators
downloaded
Chrome Cache Entry: 327
ASCII text, with very long lines (8827), with no line terminators
downloaded
Chrome Cache Entry: 328
ASCII text, with very long lines (30619)
downloaded
Chrome Cache Entry: 329
Web Open Font Format, TrueType, length 53700, version 0.0
downloaded
Chrome Cache Entry: 330
Unicode text, UTF-8 text, with very long lines (23883), with no line terminators
dropped
Chrome Cache Entry: 331
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 332
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 333
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 334
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 335
ASCII text, with very long lines (605)
downloaded
Chrome Cache Entry: 336
Unicode text, UTF-8 text, with very long lines (52752), with no line terminators
downloaded
Chrome Cache Entry: 337
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 338
Unicode text, UTF-8 text, with very long lines (27515), with no line terminators
dropped
Chrome Cache Entry: 339
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 340
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 341
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 342
ASCII text, with very long lines (6332), with no line terminators
downloaded
Chrome Cache Entry: 343
Unicode text, UTF-8 (with BOM) text, with very long lines (570)
dropped
Chrome Cache Entry: 344
Unicode text, UTF-8 text, with very long lines (23121), with NEL line terminators
dropped
There are 172 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2280 --field-trial-handle=2176,i,15852805493778645784,7896297678584490210,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://yandex.com/clck/click"

URLs

Name
IP
Malicious
http://yandex.com/clck/click
https://yastatic.net/s3/lpc/renderer/_/8868/8868.30ecb853b8855099d8a6.js
178.154.131.215
https://yastatic.net/s3/home-static/_/38/388dc28d49a881fdda6f64bfce1f56e1.png
unknown
https://yastatic.net/s3/home-static/portal-any/_/8yV_5w-yGmytoc2OgmXsTg8uUv8.css
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/8565/8565.5d353f4f8f1a94b7c0b0.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/2592/2592.a5afda03b0522b227c44.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/LcGroup/LcGroup.8af7d304adbc1501bb79.js
178.154.131.215
https://avatars.mds.yandex.net/get-lpc/10116223/a4110731-0be2-4f72-96c2-e83e72e9f2a9/orig);
unknown
https://yastatic.net/s3/lpc/renderer/_/9184/9184.3f5278b13d9e342900c0.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/display-light.woff
unknown
https://yastatic.net/s3/home-static/portal-any/_/e8/e83adb549cb3f9874a3839011a4fb53b.svg
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/9614/9614.57f4367fa394c7e2b301.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/9595/9595.82aea53648d3b7fda4a5.js
178.154.131.215
https://mc.yandex.
unknown
https://yastatic.net/s3/lpc/renderer/_/LcModerationJs/LcModerationJs.a3e40d4334c9484563d3.js
178.154.131.215
https://avatars.mds.yandex.net/get-lpc/9736426/1815dc6a-06b1-4f4a-97e2-b3cb55f8ac74/orig
87.250.247.183
https://yastatic.net/s3/home/fonts/ys/4/text-light-italic.woff
unknown
https://yastatic.net/s3/lpc/renderer/_/603/603.096b15f6ac83fd46ab8c.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/1/display-heavy.woff
unknown
https://yastatic.net/s3/lpc/renderer/_/init-bundle/init-bundle.490576f34ecc0435650c.js
178.154.131.215
https://mc.yandex.ru/webvisor/12626671?wv-part=1&wv-type=7&wmode=0&wv-hit=341901091&page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&rn=98763405&browser-info=we%3A1%3Aet%3A1730173022%3Aw%3A1263x907%3Av%3A1491%3Az%3A-240%3Ai%3A20241028233701%3Au%3A173017296945836377%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Ast%3A1730173022&t=gdpr(3-0)ti(1)
93.158.134.119
https://yastatic.net/s3/home/fonts/ys/4/text-bold.woff2
unknown
https://avatars.mds.yandex.net/get-lpc/1635340/9782f606-bab1-4a50-ae13-5bbedd613cef/orig);
unknown
https://swiperjs.com
unknown
https://yastatic.net/s3/home/fonts/ys/4/display-medium.woff2
unknown
https://yastatic.net/s3/lpc/renderer/_/9423/9423.ff0ffac8303a741f8cbb.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/9383/9383.de46b0ca6ffc402c0728.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/8251/8251.3aacaf1852a15ca64ff6.js
178.154.131.215
https://avatars.mds.yandex.net/get-lpc/1635340/b62af77d-e750-43fe-81ba-0ff3c0ef34de/orig
87.250.247.183
https://mc.yandex.ru/webvisor/12626671?wv-part=4&wv-type=7&wmode=0&wv-hit=341901091&page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&rn=1016266118&browser-info=bt%3A1%3Awe%3A1%3Aet%3A1730173028%3Aw%3A1263x907%3Av%3A1491%3Az%3A-240%3Ai%3A20241028233708%3Au%3A173017296945836377%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Ast%3A1730173028&t=gdpr(3-0)ti(1)
93.158.134.119
https://yastatic.net/s3/lpc/renderer/_/LcCustomHtml/LcCustomHtml.44f7c5df2f6d8979c1a4.js
178.154.131.215
https://yastatic.net/jquery/1.8.3/jquery.min.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/8924/8924.18626c6fddc083cfd54a.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/display-medium.woff
unknown
https://yastatic.net/s3/lpc/renderer/_/8413/8413.3afad19e5e3049a8c6f4.js
178.154.131.215
https://mc.yandex.ru/watch/12626671/1?wmode=7&page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&page-ref=https%3A%2F%2Fyandex.ru%2F&charset=utf-8&site-info=%7B%7D&ut=noindex&uah=chu%0A%22Google%20Chrome%22%3Bv%3D%22117%22%2C%22Not%3BA%3DBrand%22%3Bv%3D%228%22%2C%22Chromium%22%3Bv%3D%22117%22%0Acha%0Ax86%0Achb%0A64%0Achf%0A117.0.5938.132%0Achl%0A%22Google%20Chrome%22%3Bv%3D%22117.0.5938.132%22%2C%22Not%3BA%3DBrand%22%3Bv%3D%228.0.0.0%22%2C%22Chromium%22%3Bv%3D%22117.0.5938.132%22%0Achm%0A%3F0%0Achp%0AWindows%0Achv%0A10.0.0&browser-info=pv%3A1%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Afu%3A0%3Aen%3Autf-8%3Ala%3Aen-US%3Av%3A1491%3Acn%3A1%3Adp%3A0%3Als%3A690088337535%3Ahid%3A341901091%3Az%3A-240%3Ai%3A20241028233655%3Aet%3A1730173016%3Ac%3A1%3Arn%3A297093817%3Arqn%3A1%3Au%3A173017296945836377%3Aw%3A1263x907%3As%3A1280x1024x24%3Ask%3A1%3Afp%3A4993%3Awv%3A2%3Ads%3A0%2C171%2C1053%2C2470%2C1350%2C1347%2C1%2C13555%2C1%2C%2C%2C%2C18600%3Aco%3A0%3Acpf%3A1%3Aeu%3A0%3Ans%3A1730172992047%3Aadb%3A2%3Arqnl%3A1%3Ast%3A1730173016%3At%3APunto%20Switcher%20%E2%80%94%20%D0%BF%D1%80%D0%BE%D0%B3%D1%80%D0%B0%D0%BC%D0%BC%D0%B0%20%D0%B4%D0%BB%D1%8F%20%D0%BF%D0%B5%D1%80%D0%B5%D0%BA%D0%BB%D1%8E%D1%87%D0%B5%D0%BD%D0%B8%D1%8F%20%D1%80%D0%B0%D1%81%D0%BA%D0%BB%D0%B0%D0%B4%D0%BA%D0%B8&t=gdpr%283-0%29clc%280-0-0%29rqnt%281%29aw%281%29rcm%281%29yu%282684202331730172967%29cdl%28na%29eco%2842017284%29ti%281%29
93.158.134.119
http://yandex.com/clck/click
77.88.44.55
https://yastatic.net/s3/lpc/renderer/_/4805/4805.8e12b16da8276ca8331a.js
178.154.131.215
https://yandex.ru/soft/punto/
77.88.55.88
https://yastatic.net/s3/home-static/portal-any/_/ljf3HVKDfmjJcMfltL4FO67oDpY.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/text-medium-italic.woff
unknown
https://yastatic.net/islands/_/R2Zsv_mKc3-ral8dLDRhT9dPzxc.woff2
unknown
https://yastatic.net/s3/lpc/renderer/_/9062/9062.971fe5aeced95c72fa2a.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/6193/6193.8f77058e197e538a4ce4.js
178.154.131.215
https://mc.yandex.ru/webvisor/12626671?wv-part=3&wv-type=7&wmode=0&wv-hit=341901091&page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&rn=1021541735&browser-info=we%3A1%3Aet%3A1730173030%3Aw%3A1263x907%3Av%3A1491%3Az%3A-240%3Ai%3A20241028233710%3Au%3A173017296945836377%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Ast%3A1730173030&t=gdpr(3-0)ti(1)
93.158.134.119
https://s3.mds.yandex.net/internal-metrika-betas
unknown
https://yastatic.net/s3/home/fonts/ys/4/display-regular.woff
unknown
https://avatars.mds.yandex.net/get-lpc/1635340/6882d09f-99f8-4fe6-b1b5-4cde1448c710/width_360_q70
87.250.247.183
https://yastatic.net/s3/home-static/_/21/213b7d745e28ebdb29d654ef909665d3.png
unknown
https://yastatic.net/s3/home-static/_/2b/2b005a5047864fb2c2845379a6a081dc.png
unknown
https://mc.yandex.ru/metrika/tag.js
93.158.134.119
https://yastatic.net/s3/metrika
unknown
https://yastatic.net/s3/lpc/renderer/_/6023/6023.a48aba07b9c86382fef4.js
178.154.131.215
https://avatars.mds.yandex.net/get-lpc/1635340/4256e04e-e0f6-43ae-980a-ca65e3199ef2/orig
87.250.247.183
https://mc.yandex.md/cc
unknown
https://yastatic.net/s3/home/fonts/ys/4/text-light.woff2
unknown
https://yastatic.net/islands/_/W-dKLp7z2fg5Z5GTIuesTs2joBg.woff2
unknown
https://yandex.com/an/sync_cookie
unknown
https://mc.yandex.ru/webvisor/12626671?wv-part=6&wv-type=7&wmode=0&wv-hit=341901091&page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&rn=887033349&browser-info=bt%3A1%3Awe%3A1%3Aet%3A1730173039%3Aw%3A1263x907%3Av%3A1491%3Az%3A-240%3Ai%3A20241028233718%3Au%3A173017296945836377%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Ast%3A1730173039&t=gdpr(3-0)ti(1)
93.158.134.119
https://schema.org/Article
unknown
https://yastatic.net/s3/home/fonts/ys/4/text-regular-italic.woff2
unknown
https://yastatic.net/s3/home-static/_/14/1410b0b14a719d54eb3cc1ca9e2f5645.png
unknown
https://yastatic.net/s3/lpc/renderer/_/1878/1878.14afe9770394651325d4.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/text-light-italic.woff2
unknown
https://avatars.mds.yandex.net/get-lpc/1635340/6882d09f-99f8-4fe6-b1b5-4cde1448c710/lqip_q70
87.250.247.183
https://yastatic.net/s3/home-static/_/48/48b513a247e826382d4664515af51975.png
unknown
https://yandex.ru/404.html
https://yastatic.net/q/logoaas/v2/%D0%AF%D0%BD%D0%B4%D0%B5%D0%BA%D1%81.svg?size=25&color=000
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/4706/4706.e1eeffd8566035b86c04.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/1669/1669.f809b4d151e06508295b.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/8164/8164.ec1514523df6540bdaa7.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/display-light.woff2
unknown
https://csp.yandex.net/csp?project=morda&from=morda.error404.ru&showid=1730172967409100-8572518561768420233-balancer-l7leveler-kubr-yp-sas-225-BAL&h=stable-portal-any-5.sas.yp-c.yandex.net&yandexuid=2684202331730172967&version=2024-10-27-110
87.250.250.104
https://avatars.mds.yandex.net/get-lpc/1635340/0bb288fc-47ae-4feb-ac49-807c0920df6f/orig
87.250.247.183
https://mc.yandex.ru/webvisor/12626671?wv-part=2&wv-type=7&wmode=0&wv-hit=341901091&page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&rn=645773667&browser-info=bt%3A1%3Awe%3A1%3Aet%3A1730173023%3Aw%3A1263x907%3Av%3A1491%3Az%3A-240%3Ai%3A20241028233702%3Au%3A173017296945836377%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Ast%3A1730173023&t=gdpr(3-0)ti(1)
93.158.134.119
https://yastatic.net/s3/lpc/renderer/_/9368/9368.ff205761ac2e99b96e4c.js
178.154.131.215
https://yastatic.net/islands/_/9336akGC8KRkdWO-oCYyKx1T6nM.woff
unknown
https://yastatic.net/s3/lpc/renderer/_/1415/1415.597a88741f14028cc202.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/display-thin.woff2
unknown
https://yastatic.net/islands/_/_Ocpq376VVJdR5aDIq4WkfWF6Gg.woff2
unknown
https://yastatic.net/islands/_/k-KIcXeskhlPQuDTLLTeyNmYur4.woff2
unknown
https://mc.yandex.com/sync_cookie_image_decide?token=10536.8wEj5DWdXfPsh9e4nJ5CmP1RwXR7LUWIJRYXbfFcP0OuBFpvnzLYw-rQx-23xxskgCX2KgqHprF9RBFdJlfC6SiJ0izXefSgftsfsaCoj2q7z9uEFZkmc1tonUpVDGy4l8CFpThhAUZJ7_uWCmf1izHr5sRMICSZy3Z_TWwEUfGn6ZQfdB0xZpHw4JDRSXuQnZo6qPkIBv6EmtxA5fnKfSYu9eMnfsmLo6dzEFpw7jo%2C.V2licQPdtBqyxFHim_o_QSe60N4%2C
87.250.250.119
https://yastatic.net/react/17.0.2/react-with-dom.min.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/6246/6246.0721deed920aaee5a271.js
178.154.131.215
https://avatars.mds.yandex.net/get-lpc/1635340/d35658df-b818-47ad-8ea6-2e6273ad1ed7/orig
87.250.247.183
https://yastatic.net/s3/lpc/renderer/_/LcPage/LcPage.f361a4bf19573f407c50.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/text-regular.woff2
unknown
https://yastatic.net/s3/lpc/renderer/_/3193/3193.35f8ec64afe47681e93b.js
178.154.131.215
https://mc.yandex.ru/watch/12626671?page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&charset=utf-8&ut=noindex&hittoken=1730173019_68cd2a62abaa6f5b5509e98a8f9a5d876127e375a1d5e0cf1feb30079ff00ea3&browser-info=nb%3A1%3Acl%3A2612%3Aar%3A1%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Afu%3A1%3Aen%3Autf-8%3Ala%3Aen-US%3Av%3A1491%3Acn%3A1%3Adp%3A1%3Als%3A690088337535%3Ahid%3A341901091%3Az%3A-240%3Ai%3A20241028233710%3Aet%3A1730173031%3Ac%3A1%3Arn%3A800489451%3Arqn%3A3%3Au%3A173017296945836377%3Aw%3A1263x907%3As%3A1280x1024x24%3Ask%3A1%3Awv%3A2%3Aco%3A0%3Acpf%3A1%3Aeu%3A2%3Ans%3A1730172992047%3Aadb%3A2%3Arqnl%3A1%3Ast%3A1730173031&t=gdpr(3-0)mc(g-2)clc(0-0-0)rqnt(3)aw(1)rcm(1)yu(2684202331730172967)cdl(na)eco(42017284)dss(1)ti(0)&force-urlencoded=1
93.158.134.119
https://yastatic.net/islands/_/GPAudYaE9SJRxVYtzzYqFv0idnQ.woff
unknown
http://ogp.me/ns#
unknown
https://avatars.mds.yandex.net/get-lpc/1635340/75885839-a21d-4f34-8319-51254258a68e/orig
87.250.247.183
https://mc.yandex.ru/webvisor/12626671?wv-part=5&wv-type=7&wmode=0&wv-hit=341901091&page-url=https%3A%2F%2Fyandex.ru%2Fsoft%2Fpunto%2Fwin%2F&rn=296790439&browser-info=bt%3A1%3Awe%3A1%3Aet%3A1730173033%3Aw%3A1263x907%3Av%3A1491%3Az%3A-240%3Ai%3A20241028233712%3Au%3A173017296945836377%3Avf%3A1f7b5mkfsgu9w9timet0o9oco9n%3Ast%3A1730173033&t=gdpr(3-0)ti(1)
93.158.134.119
https://dr.yandex.net/nel
93.158.134.242
https://yastatic.net/s3/lpc/renderer/_/778/778.32a455257eabf8c93abc.js
178.154.131.215
https://yastatic.net/s3/lpc/renderer/_/index/index.ca8584f456ca490531fa.js
178.154.131.215
https://yastatic.net/s3/home/fonts/ys/4/display-thin.woff
unknown
https://yastatic.net/s3/lpc/custom-js/2537.js
178.154.131.215
https://avatars.mds.yandex.net/get-lpc/1635340/b62af77d-e750-43fe-81ba-0ff3c0ef34de/orig);
unknown
https://yastatic.net/s3/lpc/renderer/_/2683/2683.6004b4c4b2598ad2979b.js
178.154.131.215
https://yastatic.net/s3/lpc-ext/static/_lib/swiper/8.4.6/swiper-bundle.min.css
178.154.131.215
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
mc.yandex.ru
93.158.134.119
dr.yandex.net
93.158.134.242
yandex.ru
77.88.44.55
yabs.yandex.ru
87.250.250.91
s-part-0017.t-0009.t-msedge.net
13.107.246.45
fp2e7a.wpc.phicdn.net
192.229.221.95
bg.microsoft.map.fastly.net
199.232.214.172
avatars.mds.yandex.net
87.250.247.183
an.yandex.ru
93.158.134.90
www.google.com
142.250.186.68
yandex.com
77.88.44.55
s-part-0032.t-0009.t-msedge.net
13.107.246.60
yastatic.net
178.154.131.215
csp.yandex.net
87.250.250.104
mc.yandex.com
unknown
There are 5 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
142.250.186.68
www.google.com
United States
142.250.184.196
unknown
United States
5.255.255.77
unknown
Russian Federation
93.158.134.91
unknown
Russian Federation
77.88.44.55
yandex.ru
Russian Federation
87.250.250.104
csp.yandex.net
Russian Federation
93.158.134.90
an.yandex.ru
Russian Federation
87.250.250.119
unknown
Russian Federation
192.168.2.5
unknown
unknown
178.154.131.215
yastatic.net
Russian Federation
87.250.250.91
yabs.yandex.ru
Russian Federation
87.250.247.182
unknown
Russian Federation
87.250.247.183
avatars.mds.yandex.net
Russian Federation
239.255.255.250
unknown
Reserved
93.158.134.119
mc.yandex.ru
Russian Federation
77.88.21.119
unknown
Russian Federation
77.88.55.88
unknown
Russian Federation
87.250.251.119
unknown
Russian Federation
93.158.134.242
dr.yandex.net
Russian Federation
There are 9 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://yandex.ru/404.html
https://yandex.ru/soft/punto/win/
https://yandex.ru/soft/punto/win/
https://yandex.ru/soft/punto/win/
https://yandex.ru/soft/punto/win/