IOC Report
https://www.travelmatkanner.com/clips

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 08:31:17 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 08:31:16 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 08:31:16 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 08:31:17 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 08:31:16 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 172
ASCII text, with very long lines (10260), with no line terminators
downloaded
Chrome Cache Entry: 173
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 174
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 175
ASCII text
dropped
Chrome Cache Entry: 176
Web Open Font Format (Version 2), TrueType, length 17556, version 1.0
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (57765)
downloaded
Chrome Cache Entry: 178
ASCII text, with very long lines (4272)
downloaded
Chrome Cache Entry: 179
ASCII text, with very long lines (40972)
downloaded
Chrome Cache Entry: 180
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 181
ASCII text, with very long lines (6169)
dropped
Chrome Cache Entry: 182
ASCII text
downloaded
Chrome Cache Entry: 183
ASCII text
downloaded
Chrome Cache Entry: 184
ASCII text, with very long lines (23659), with no line terminators
dropped
Chrome Cache Entry: 185
ASCII text, with very long lines (9272)
downloaded
Chrome Cache Entry: 186
ASCII text, with very long lines (21258), with CRLF line terminators
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (25493), with no line terminators
downloaded
Chrome Cache Entry: 188
data
dropped
Chrome Cache Entry: 189
Unicode text, UTF-8 text, with very long lines (8189)
dropped
Chrome Cache Entry: 190
Web Open Font Format (Version 2), TrueType, length 17624, version 1.0
downloaded
Chrome Cache Entry: 191
ASCII text, with very long lines (25006)
dropped
Chrome Cache Entry: 192
Web Open Font Format (Version 2), TrueType, length 17716, version 1.0
downloaded
Chrome Cache Entry: 193
ASCII text, with very long lines (33555), with no line terminators
downloaded
Chrome Cache Entry: 194
ASCII text, with very long lines (42747)
downloaded
Chrome Cache Entry: 195
ASCII text, with very long lines (24285), with no line terminators
downloaded
Chrome Cache Entry: 196
ASCII text, with very long lines (4957)
downloaded
Chrome Cache Entry: 197
PNG image data, 280 x 92, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 198
ASCII text, with very long lines (42747)
dropped
Chrome Cache Entry: 199
PNG image data, 270 x 89, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 200
ASCII text
dropped
Chrome Cache Entry: 201
ASCII text, with very long lines (41281)
dropped
Chrome Cache Entry: 202
ASCII text, with very long lines (23659), with no line terminators
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (25006)
downloaded
Chrome Cache Entry: 204
ASCII text, with very long lines (65496)
downloaded
Chrome Cache Entry: 205
ASCII text, with very long lines (1320)
dropped
Chrome Cache Entry: 206
ASCII text, with very long lines (6169)
downloaded
Chrome Cache Entry: 207
ASCII text, with very long lines (560)
downloaded
Chrome Cache Entry: 208
ASCII text
downloaded
Chrome Cache Entry: 209
ASCII text, with very long lines (65496)
dropped
Chrome Cache Entry: 210
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 211
ASCII text, with very long lines (24285), with no line terminators
dropped
Chrome Cache Entry: 212
ASCII text, with very long lines (16214)
downloaded
Chrome Cache Entry: 213
HTML document, ASCII text, with very long lines (62454), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 214
PNG image data, 270 x 89, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 215
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 216
ASCII text, with very long lines (7068), with no line terminators
downloaded
Chrome Cache Entry: 217
ASCII text, with very long lines (4561), with no line terminators
downloaded
Chrome Cache Entry: 218
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 219
ASCII text, with very long lines (6617), with no line terminators
downloaded
Chrome Cache Entry: 220
ASCII text, with very long lines (33555), with no line terminators
dropped
Chrome Cache Entry: 221
Web Open Font Format (Version 2), TrueType, length 24656, version 1.0
downloaded
Chrome Cache Entry: 222
ASCII text, with very long lines (13479)
dropped
Chrome Cache Entry: 223
ASCII text, with very long lines (41281)
downloaded
Chrome Cache Entry: 224
ASCII text, with very long lines (664)
downloaded
Chrome Cache Entry: 225
ASCII text, with very long lines (5895), with no line terminators
downloaded
Chrome Cache Entry: 226
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 227
PNG image data, 280 x 92, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 228
ASCII text
downloaded
Chrome Cache Entry: 229
HTML document, ASCII text, with very long lines (60789), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 230
ASCII text, with very long lines (2558)
downloaded
Chrome Cache Entry: 231
Unicode text, UTF-8 text, with very long lines (8189)
downloaded
Chrome Cache Entry: 232
ASCII text, with very long lines (4957)
dropped
Chrome Cache Entry: 233
ASCII text, with very long lines (1320)
downloaded
Chrome Cache Entry: 234
ASCII text, with very long lines (6617), with no line terminators
dropped
Chrome Cache Entry: 235
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 236
ASCII text, with very long lines (13479)
downloaded
Chrome Cache Entry: 237
ASCII text, with very long lines (973), with no line terminators
downloaded
Chrome Cache Entry: 238
ASCII text
dropped
Chrome Cache Entry: 239
ASCII text
downloaded
Chrome Cache Entry: 240
ASCII text
downloaded
Chrome Cache Entry: 241
ASCII text, with very long lines (21258), with CRLF line terminators
dropped
Chrome Cache Entry: 242
ASCII text, with very long lines (4272)
dropped
Chrome Cache Entry: 243
ASCII text, with very long lines (65447)
dropped
Chrome Cache Entry: 244
ASCII text
downloaded
Chrome Cache Entry: 245
ASCII text, with very long lines (4835)
downloaded
Chrome Cache Entry: 246
ASCII text, with very long lines (60665)
downloaded
Chrome Cache Entry: 247
data
downloaded
There are 73 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2248 --field-trial-handle=2204,i,15948746731007804007,8032980050056187492,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.travelmatkanner.com/clips"

URLs

Name
IP
Malicious
https://www.travelmatkanner.com/clips
https://travelmatkanner.com/magic-starts-the-blog/austria/
unknown
https://travelmatkanner.com/tag/natural-swimming/
unknown
https://travelmatkanner.com/wp-content/uploads/2024/02/Urbanist-SemiBold.woff2
192.250.229.44
https://travelmatkanner.com/tag/museums/
unknown
https://travelmatkanner.com/clips
https://travelmatkanner.com/wp-content/uploads/astra-addon/astra-addon-6718e8d5779e17-70790840.js
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/elementor/assets/lib/animations/styles/e-animation-float.min.css
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/js/eventp
unknown
https://travelmatkanner.com/wp-content/uploads/astra-addon/astra-addon-6718e8d5775432-75790795.css
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/elementor-pro/assets/js/frontend.min.js
192.250.229.44
https://travelmatkanner.com/tag/activity-centers/
unknown
https://travelmatkanner.com/tag/educational-farms/
unknown
https://travelmatkanner.com/wp-content/uploads/2024/02/tmk_footer_bg.webp
192.250.229.44
https://webintro.gr
unknown
https://swiperjs.com
unknown
https://www.instagram.com/travelmatkanner/
unknown
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/js/toast-message.js
192.250.229.44
https://travelmatkanner.com/tag/self-picking-farms/
unknown
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/css/jquery.toast.min.css
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/css/ep-ma
unknown
http://www.gnu.org/licenses/gpl-2.0.html
unknown
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/css/ep-material-fonts-icon.css
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/elementor/assets/lib/swiper/v8/css/swiper.min.css
192.250.229.44
https://travelmatkanner.com/wp-includes/js/jquery/jquery.min.js
192.250.229.44
https://travelmatkanner.com/our-services/
unknown
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/js/jquery.toast.min.js
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/css/jquer
unknown
https://travelmatkanner.com/wp-content/plugins/elementor/assets/js/webpack.runtime.min.js
192.250.229.44
https://travelmatkanner.com/tag/outdoor-playgrounds/
unknown
https://travelmatkanner.com/wp-content/plugins/astra-addon/assets/js/minified/purify.min.js
192.250.229.44
https://travelmatkanner.com/wp-content/uploads/2024/03/travelmatkanner_main_logo.png
192.250.229.44
https://travelmatkanner.com/magic-starts-the-blog/belgium/
unknown
https://api.jqueryui.com/position/
unknown
https://travelmatkanner.com/our-story/
unknown
https://travelmatkanner.com/wp-content/plugins/elementor-pro/assets/js/webpack-pro.runtime.min.js
192.250.229.44
https://travelmatkanner.com/privacy-policy/#breadcrumb
unknown
https://travelmatkanner.com/our-services/for-businesses-and-collaborations/
unknown
https://travelmatkanner.com/magic-starts-the-blog/france/
unknown
https://travelmatkanner.com/wp-content/plugins/elementor/assets/css/widget-social-icons.min.css
192.250.229.44
https://schema.org
unknown
https://travelmatkanner.com/
unknown
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/css/event
unknown
https://travelmatkanner.com/tag/outdoor-theme-parks/
unknown
https://travelmatkanner.com/?p=202
unknown
https://travelmatkanner.com/tag/arts-and-crafts/
unknown
https://travelmatkanner.com/favicon.ico
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/elementor/assets/css/conditionals/apple-webkit.min.css
192.250.229.44
https://travelmatkanner.com/tag/science-centers/
unknown
https://schema.org/WPHeader
unknown
https://travelmatkanner.com/tag/indoor-water-parks/
unknown
https://schema.org/CreativeWork
unknown
https://travelmatkanner.com/wp-json/
unknown
https://travelmatkanner.com/magic-starts-the-blog/germany/
unknown
https://travelmatkanner.com/wp-content/plugins/beautiful-and-responsive-cookie-consent/public/cookieNSCconsent.min.js
192.250.229.44
https://travelmatkanner.com/listings/
unknown
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/js/eventprime-event-calendar-management-public.js
192.250.229.44
https://travelmatkanner.com/wp-json/wp/v2/pages/202
unknown
https://travelmatkanner.com/our-services/get-your-guide/
unknown
https://travelmatkanner.com/our-story/#tmktestimonials
unknown
https://travelmatkanner.com/wp-includes/css/dist/block-library/style.min.css
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/elementor/assets/js/frontend.min.js
192.250.229.44
https://schema.org/Organization
unknown
https://travelmatkanner.com/magic-starts-the-blog/netherlands/
unknown
https://travelmatkanner.com/tag/miscellaneous/
unknown
https://travelmatkanner.com/wp-content/uploads/2024/02/travelmatkanner_logo.png
192.250.229.44
https://travelmatkanner.com/wp-includes/js/jquery/ui/core.min.js
192.250.229.44
https://travelmatkanner.com/wp-content/themes/astra/assets/js/minified/flexibility.min.js
unknown
https://travelmatkanner.com/wp-content/plugins/elementor/assets/css/widget-image.min.css
192.250.229.44
https://jqueryui.com
unknown
https://www.travelmatkanner.com
unknown
https://yoast.com/wordpress/plugins/seo/
unknown
https://travelmatkanner.com/wp-content/themes/travelmatkanner/style.css
192.250.229.44
https://travelmatkanner.com/wp-content/themes/astra/assets/css/minified/main.min.css
192.250.229.44
https://gmpg.org/xfn/11
unknown
https://travelmatkanner.com/wp-content/plugins/beautiful-and-responsive-cookie-consent/public/cookie
unknown
https://travelmatkanner.com/#website
unknown
https://travelmatkanner.com/e-shop/
unknown
https://travelmatkanner.com/tag/indoor-playgrounds/
unknown
https://travelmatkanner.com/tag/indoor-theme-parks/
unknown
https://schema.org/SiteNavigationElement
unknown
https://travelmatkanner.com/wp-content/plugins/elementor/assets/css/conditionals/apple-webkit.min.cs
unknown
https://travelmatkanner.com/wp-content/uploads/elementor/css/post-331.css
192.250.229.44
https://travelmatkanner.com/#organization
unknown
https://travelmatkanner.com/events/
unknown
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/js/toast-
unknown
https://travelmatkanner.com/privacy-policy/
https://travelmatkanner.com/wp-content/plugins/eventprime-event-calendar-management/public/css/em-front-common-utility.css
192.250.229.44
https://travelmatkanner.com/wp-content/plugins/elementor/assets/js/frontend-modules.min.js
192.250.229.44
https://travelmatkanner.com/magic-starts-the-blog/luxembourg/
unknown
https://travelmatkanner.com/wp-includes/js/jquery/jquery-migrate.min.js
192.250.229.44
https://today.rtl.lu/family-matters/travelmatkanner
unknown
https://travelmatkanner.com/#/schema/logo/image/
unknown
https://travelmatkanner.com/tag/family-friendly-accommodations/
unknown
https://travelmatkanner.com/wp-content/uploads/elementor/css/post-8.css
192.250.229.44
https://travelmatkanner.com/tag/shows-theaters/
unknown
https://travelmatkanner.com/wp-content/themes/astra/assets/js/minified/frontend.min.js
192.250.229.44
https://travelmatkanner.com/?s=
unknown
https://schema.org/WebPage
unknown
https://travelmatkanner.com/wp-content/plugins/beautiful-and-responsive-cookie-consent/public/cookieNSCconsent.min.css
192.250.229.44
https://travelmatkanner.com/wp-content/uploads/2024/02/Urbanist-Bold.woff2
192.250.229.44
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
142.250.184.196
travelmatkanner.com
192.250.229.44
fp2e7a.wpc.phicdn.net
192.229.221.95
www.travelmatkanner.com
unknown

IPs

IP
Domain
Country
Malicious
142.250.184.196
www.google.com
United States
239.255.255.250
unknown
Reserved
192.250.229.44
travelmatkanner.com
United States
192.168.2.5
unknown
unknown

DOM / HTML

URL
Malicious
https://travelmatkanner.com/clips
https://travelmatkanner.com/privacy-policy/