IOC Report
https://bit.ly/va-voter-purge-c3

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 18:43:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 18:43:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 18:43:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 18:43:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 30 18:43:18 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped

URLs

Name
IP
Malicious
https://bit.ly/va-voter-purge-c3
https://docs.google.com/document/d/1a-NnNrwPgHcAUOrTuyGKCnj2Rr2Sj9xYsW_6BiJs59o/edit?tab=t.0
https://www.elections.virginia.gov/registration/view-your-info/
https://docs.google.com/document/d/1R_iRaawi1gZEr0yppQwvotMZIEBlfp_RBuP6H3eOHvo/edit?tab=t.0

Domains

Name
IP
Malicious
docs.google.com
216.58.206.78
siteimproveanalytics.com
188.114.97.3
plus.l.google.com
142.250.184.238
play.google.com
142.250.74.206
browserchannel-sites.l.google.com
173.194.76.189
www3.l.google.com
142.250.186.110
bit.ly
67.199.248.10
vitavirginiagov-lb02-production.terminalfour.net
3.222.129.218
www.google.com
142.250.185.100
peoplestack-pa.clients6.google.com
216.58.206.74
googlehosted.l.googleusercontent.com
142.250.181.225
ana-collector-alb-us-zinc-652956137.eu-central-1.elb.amazonaws.com
52.58.143.83
lh3.googleusercontent.com
unknown
6289812.global.r2.siteimproveanalytics.io
unknown
0.docs.google.com
unknown
contacts.google.com
unknown
www.developer.virginia.gov
unknown
translate.google.com
unknown
1.docs.google.com
unknown
apis.google.com
unknown
www.elections.virginia.gov
unknown
There are 11 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
142.250.186.46
unknown
United States
142.250.185.206
unknown
United States
216.58.206.74
peoplestack-pa.clients6.google.com
United States
142.250.74.206
play.google.com
United States
142.250.186.174
unknown
United States
44.217.248.172
unknown
United States
216.58.206.78
docs.google.com
United States
192.168.2.16
unknown
unknown
142.250.185.100
www.google.com
United States
52.58.143.83
ana-collector-alb-us-zinc-652956137.eu-central-1.elb.amazonaws.com
United States
142.250.181.238
unknown
United States
142.250.185.163
unknown
United States
3.222.129.218
vitavirginiagov-lb02-production.terminalfour.net
United States
142.250.184.225
unknown
United States
142.250.186.110
www3.l.google.com
United States
142.250.184.227
unknown
United States
67.199.248.10
bit.ly
United States
216.58.212.170
unknown
United States
142.250.184.202
unknown
United States
142.250.184.195
unknown
United States
173.194.76.189
browserchannel-sites.l.google.com
United States
142.250.186.35
unknown
United States
142.250.186.78
unknown
United States
74.125.133.189
unknown
United States
172.217.16.202
unknown
United States
1.1.1.1
unknown
Australia
142.250.186.36
unknown
United States
74.125.133.84
unknown
United States
172.217.16.206
unknown
United States
72.247.70.2
unknown
United States
216.58.206.67
unknown
United States
142.250.185.234
unknown
United States
74.125.71.84
unknown
United States
142.250.185.238
unknown
United States
142.250.181.227
unknown
United States
142.250.181.225
googlehosted.l.googleusercontent.com
United States
239.255.255.250
unknown
Reserved
188.114.97.3
siteimproveanalytics.com
European Union
142.250.185.174
unknown
United States
142.250.184.238
plus.l.google.com
United States
172.217.16.195
unknown
United States
There are 31 hidden IPs, click here to show them.