IOC Report
https://click.godaddy.com/email/none/?linktype=tes.DCC&redir=icann%2fconfirmation%2f4988f5c5-853f-4586-bce6-989419400b23¤cyId=GBP&isc=sf41312a&marketId=en-GB&utm_source=gdsfmc&utm_medium=Email&utm_campaign=en-GB_Other_Email-nonrevenue_base_gd&utm_content=241030_6378_Manage_Other_Product_Produc

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 100
ASCII text, with very long lines (3104), with no line terminators
dropped
Chrome Cache Entry: 101
ASCII text, with very long lines (2528)
dropped
Chrome Cache Entry: 102
Web Open Font Format (Version 2), CFF, length 40132, version 1.66
downloaded
Chrome Cache Entry: 103
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 104
ASCII text, with very long lines (804), with no line terminators
dropped
Chrome Cache Entry: 105
ASCII text, with very long lines (9813), with no line terminators
downloaded
Chrome Cache Entry: 106
ASCII text, with very long lines (804), with no line terminators
downloaded
Chrome Cache Entry: 107
ASCII text, with very long lines (3487), with no line terminators
dropped
Chrome Cache Entry: 108
ASCII text, with very long lines (65467)
downloaded
Chrome Cache Entry: 109
ASCII text, with very long lines (3104), with no line terminators
downloaded
Chrome Cache Entry: 110
ASCII text, with very long lines (15212), with no line terminators
downloaded
Chrome Cache Entry: 111
ASCII text, with very long lines (2776), with no line terminators
downloaded
Chrome Cache Entry: 112
ASCII text, with very long lines (60994)
downloaded
Chrome Cache Entry: 113
ASCII text, with very long lines (6913), with no line terminators
dropped
Chrome Cache Entry: 114
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 115
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 116
ASCII text, with very long lines (12165), with no line terminators
downloaded
Chrome Cache Entry: 117
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 118
ASCII text, with very long lines (65464)
downloaded
Chrome Cache Entry: 119
ASCII text, with very long lines (15212), with no line terminators
dropped
Chrome Cache Entry: 120
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 121
ASCII text, with very long lines (16462), with no line terminators
dropped
Chrome Cache Entry: 122
ASCII text, with very long lines (2528)
downloaded
Chrome Cache Entry: 123
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 124
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 125
ASCII text, with very long lines (3742), with no line terminators
downloaded
Chrome Cache Entry: 126
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 127
ASCII text, with very long lines (65464)
dropped
Chrome Cache Entry: 128
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 129
ASCII text, with very long lines (9813), with no line terminators
dropped
Chrome Cache Entry: 130
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 131
Web Open Font Format (Version 2), TrueType, length 103388, version 1.0
downloaded
Chrome Cache Entry: 132
ASCII text, with very long lines (12165), with no line terminators
dropped
Chrome Cache Entry: 133
Unicode text, UTF-8 text, with very long lines (65529), with no line terminators
downloaded
Chrome Cache Entry: 134
ASCII text, with very long lines (15306), with no line terminators
dropped
Chrome Cache Entry: 135
ASCII text, with very long lines (64024)
downloaded
Chrome Cache Entry: 136
HTML document, ASCII text
downloaded
Chrome Cache Entry: 82
ASCII text, with very long lines (60994)
dropped
Chrome Cache Entry: 83
ASCII text, with very long lines (15306), with no line terminators
downloaded
Chrome Cache Entry: 84
ASCII text, with very long lines (65467)
dropped
Chrome Cache Entry: 85
Web Open Font Format (Version 2), CFF, length 38559, version 1.66
downloaded
Chrome Cache Entry: 86
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 87
ASCII text, with very long lines (64024)
dropped
Chrome Cache Entry: 88
ASCII text, with very long lines (3487), with no line terminators
downloaded
Chrome Cache Entry: 89
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 90
ASCII text, with very long lines (6913), with no line terminators
downloaded
Chrome Cache Entry: 91
HTML document, ASCII text
downloaded
Chrome Cache Entry: 92
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 93
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 94
JSON data
downloaded
Chrome Cache Entry: 95
ASCII text, with very long lines (16462), with no line terminators
downloaded
Chrome Cache Entry: 96
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 97
ASCII text, with very long lines (3742), with no line terminators
dropped
Chrome Cache Entry: 98
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 99
ASCII text, with very long lines (2776), with no line terminators
dropped
There are 46 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2372 --field-trial-handle=2308,i,10483728757483434935,12214504629251412334,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://click.godaddy.com/email/none/?linktype=tes.DCC&redir=icann%2fconfirmation%2f4988f5c5-853f-4586-bce6-989419400b23&currencyId=GBP&isc=sf41312a&marketId=en-GB&utm_source=gdsfmc&utm_medium=Email&utm_campaign=en-GB_Other_Email-nonrevenue_base_gd&utm_content=241030_6378_Manage_Other_Product_Product-Notification_sf41312a_B3-Button-icannconfirm-129959-36c09d15-cb2f-5741-87cd-4eda73938f05"

URLs

Name
IP
Malicious
https://click.godaddy.com/email/none/?linktype=tes.DCC&redir=icann%2fconfirmation%2f4988f5c5-853f-4586-bce6-989419400b23&currencyId=GBP&isc=sf41312a&marketId=en-GB&utm_source=gdsfmc&utm_medium=Email&utm_campaign=en-GB_Other_Email-nonrevenue_base_gd&utm_content=241030_6378_Manage_Other_Product_Product-Notification_sf41312a_B3-Button-icannconfirm-129959-36c09d15-cb2f-5741-87cd-4eda73938f05
https://feross.org
unknown
https://unpkg.com/@elastic/apm-rum@5.16.1/dist/bundles/elastic-apm-rum.umd.min.js
104.17.247.203
https://www.godaddy.com/legal/agreements/privacy-policy?target=_blank
https://sso.godaddy.com/login?app=dcc&path=%2Ficann%2Fconfirmation%2F4988f5c5-853f-4586-bce6-989419400b23%3Fisc%3Dsf41312a%26utm_source%3Dgdsfmc%26utm_medium%3DEmail%26utm_campaign%3Den-GB_Other_Email-nonrevenue_base_gd%26utm_content%3D241030_6378_Manage_Other_Product_Product-Notification_sf41312a_B3-Button-icannconfirm-129959-36c09d15-cb2f-5741-87cd-4eda73938f05&ISC=sf41312a
https://reporting.cdndex.io/error
13.32.99.49

Domains

Name
IP
Malicious
proxy-nlb-prod-us-west-2-v5-ac4e52c97755301b.elb.us-west-2.amazonaws.com
54.212.23.110
s-part-0017.t-0009.t-msedge.net
13.107.246.45
www.google.com
172.217.18.4
reporting.cdndex.io
13.32.99.49
unpkg.com
104.17.247.203
fp2e7a.wpc.phicdn.net
192.229.221.95
img1.wsimg.com
unknown
sso.godaddy.com
unknown
cca039482a104d5d9b04bd2e20f6bb64.apm.us-west-2.aws.found.io
unknown
click.godaddy.com
unknown
img6.wsimg.com
unknown
_9243._https.cca039482a104d5d9b04bd2e20f6bb64.apm.us-west-2.aws.found.io
unknown
csp.godaddy.com
unknown
dcc.godaddy.com
unknown
www.godaddy.com
unknown
206.23.85.13.in-addr.arpa
unknown
gui.godaddy.com
unknown
There are 7 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
54.212.23.110
proxy-nlb-prod-us-west-2-v5-ac4e52c97755301b.elb.us-west-2.amazonaws.com
United States
172.217.18.4
www.google.com
United States
192.168.2.4
unknown
unknown
192.168.2.5
unknown
unknown
13.32.99.49
reporting.cdndex.io
United States
239.255.255.250
unknown
Reserved
142.250.185.196
unknown
United States
104.17.247.203
unpkg.com
United States

DOM / HTML

URL
Malicious
https://sso.godaddy.com/login?app=dcc&path=%2Ficann%2Fconfirmation%2F4988f5c5-853f-4586-bce6-989419400b23%3Fisc%3Dsf41312a%26utm_source%3Dgdsfmc%26utm_medium%3DEmail%26utm_campaign%3Den-GB_Other_Email-nonrevenue_base_gd%26utm_content%3D241030_6378_Manage_Other_Product_Product-Notification_sf41312a_B3-Button-icannconfirm-129959-36c09d15-cb2f-5741-87cd-4eda73938f05&ISC=sf41312a
https://sso.godaddy.com/login?app=dcc&path=%2Ficann%2Fconfirmation%2F4988f5c5-853f-4586-bce6-989419400b23%3Fisc%3Dsf41312a%26utm_source%3Dgdsfmc%26utm_medium%3DEmail%26utm_campaign%3Den-GB_Other_Email-nonrevenue_base_gd%26utm_content%3D241030_6378_Manage_Other_Product_Product-Notification_sf41312a_B3-Button-icannconfirm-129959-36c09d15-cb2f-5741-87cd-4eda73938f05&ISC=sf41312a
https://sso.godaddy.com/login?app=dcc&path=%2Ficann%2Fconfirmation%2F4988f5c5-853f-4586-bce6-989419400b23%3Fisc%3Dsf41312a%26utm_source%3Dgdsfmc%26utm_medium%3DEmail%26utm_campaign%3Den-GB_Other_Email-nonrevenue_base_gd%26utm_content%3D241030_6378_Manage_Other_Product_Product-Notification_sf41312a_B3-Button-icannconfirm-129959-36c09d15-cb2f-5741-87cd-4eda73938f05&ISC=sf41312a
https://www.godaddy.com/legal/agreements/privacy-policy?target=_blank