IOC Report
https://mybell.bell.ca/Login?language=en

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 31 12:11:52 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 31 12:11:52 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:56:51 2023, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 31 12:11:52 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 31 12:11:52 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 31 12:11:51 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 234
very short file (no magic)
dropped
Chrome Cache Entry: 235
very short file (no magic)
dropped
Chrome Cache Entry: 236
very short file (no magic)
dropped
Chrome Cache Entry: 237
ASCII text, with very long lines (4766), with no line terminators
dropped
Chrome Cache Entry: 238
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 239
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 81x77, components 3
downloaded
Chrome Cache Entry: 240
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 143x48, components 3
downloaded
Chrome Cache Entry: 241
PNG image data, 564 x 168, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 242
ASCII text, with very long lines (7528), with no line terminators
downloaded
Chrome Cache Entry: 243
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 244
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 245
very short file (no magic)
dropped
Chrome Cache Entry: 246
very short file (no magic)
dropped
Chrome Cache Entry: 247
ASCII text, with very long lines (4829), with no line terminators
downloaded
Chrome Cache Entry: 248
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 249
ASCII text, with very long lines (1629)
downloaded
Chrome Cache Entry: 250
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 251
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 252
ASCII text, with very long lines (543)
dropped
Chrome Cache Entry: 253
ASCII text, with very long lines (10205), with no line terminators
dropped
Chrome Cache Entry: 254
very short file (no magic)
dropped
Chrome Cache Entry: 255
Unicode text, UTF-8 text, with very long lines (537), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 256
Web Open Font Format (Version 2), TrueType, length 28432, version 1.0
downloaded
Chrome Cache Entry: 257
very short file (no magic)
dropped
Chrome Cache Entry: 258
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 179x359, components 3
dropped
Chrome Cache Entry: 259
ASCII text, with very long lines (501)
downloaded
Chrome Cache Entry: 260
very short file (no magic)
dropped
Chrome Cache Entry: 261
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 587x600, components 3
downloaded
Chrome Cache Entry: 262
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 263
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 179x359, components 3
dropped
Chrome Cache Entry: 264
very short file (no magic)
dropped
Chrome Cache Entry: 265
ASCII text
dropped
Chrome Cache Entry: 266
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 267
very short file (no magic)
dropped
Chrome Cache Entry: 268
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 179x359, components 3
downloaded
Chrome Cache Entry: 269
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 270
ASCII text, with very long lines (15669), with no line terminators
dropped
Chrome Cache Entry: 271
ASCII text, with very long lines (701)
downloaded
Chrome Cache Entry: 272
HTML document, ASCII text, with very long lines (815)
downloaded
Chrome Cache Entry: 273
very short file (no magic)
dropped
Chrome Cache Entry: 274
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 275
ASCII text, with very long lines (11960), with no line terminators
downloaded
Chrome Cache Entry: 276
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 277
very short file (no magic)
dropped
Chrome Cache Entry: 278
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 279
PNG image data, 40 x 100, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 280
C source, ASCII text, with very long lines (65098)
downloaded
Chrome Cache Entry: 281
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 282
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
downloaded
Chrome Cache Entry: 283
gzip compressed data, was "build.min.js", last modified: Wed Apr 10 21:27:41 2024, from Unix, original size modulo 2^32 76432
dropped
Chrome Cache Entry: 284
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 608x600, components 3
downloaded
Chrome Cache Entry: 285
ASCII text, with very long lines (397), with CRLF line terminators
downloaded
Chrome Cache Entry: 286
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 608x600, components 3
dropped
Chrome Cache Entry: 287
JSON data
downloaded
Chrome Cache Entry: 288
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 289
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 290
HTML document, ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 291
very short file (no magic)
dropped
Chrome Cache Entry: 292
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 293
very short file (no magic)
dropped
Chrome Cache Entry: 294
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 512x512, components 3
dropped
Chrome Cache Entry: 295
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 296
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 297
ASCII text, with very long lines (32002), with CRLF, LF line terminators
dropped
Chrome Cache Entry: 298
ASCII text, with very long lines (1680), with no line terminators
dropped
Chrome Cache Entry: 299
ASCII text, with very long lines (27262)
dropped
Chrome Cache Entry: 300
Unicode text, UTF-8 text, with very long lines (51384), with no line terminators
downloaded
Chrome Cache Entry: 301
very short file (no magic)
dropped
Chrome Cache Entry: 302
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 303
ASCII text, with very long lines (58876), with no line terminators
dropped
Chrome Cache Entry: 304
JSON data
dropped
Chrome Cache Entry: 305
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 306
ASCII text, with very long lines (387)
downloaded
Chrome Cache Entry: 307
JSON data
dropped
Chrome Cache Entry: 308
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 309
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 2824
downloaded
Chrome Cache Entry: 310
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 311
ASCII text, with very long lines (65304)
dropped
Chrome Cache Entry: 312
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 313
ASCII text, with very long lines (306)
downloaded
Chrome Cache Entry: 314
ASCII text, with very long lines (65304)
downloaded
Chrome Cache Entry: 315
ASCII text, with very long lines (13876)
downloaded
Chrome Cache Entry: 316
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 317
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 318
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 319
ASCII text, with very long lines (899)
downloaded
Chrome Cache Entry: 320
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 321
very short file (no magic)
dropped
Chrome Cache Entry: 322
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 323
Web Open Font Format (Version 2), TrueType, length 19880, version 1.0
downloaded
Chrome Cache Entry: 324
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 325
ASCII text, with very long lines (561)
downloaded
Chrome Cache Entry: 326
ASCII text, with very long lines (32758)
downloaded
Chrome Cache Entry: 327
very short file (no magic)
dropped
Chrome Cache Entry: 328
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 329
very short file (no magic)
dropped
Chrome Cache Entry: 330
ASCII text, with very long lines (701)
downloaded
Chrome Cache Entry: 331
ASCII text, with very long lines (1532)
downloaded
Chrome Cache Entry: 332
PNG image data, 41 x 35, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 333
very short file (no magic)
dropped
Chrome Cache Entry: 334
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 335
PNG image data, 41 x 35, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 336
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 337
ASCII text, with very long lines (52360)
dropped
Chrome Cache Entry: 338
ASCII text, with very long lines (740)
dropped
Chrome Cache Entry: 339
very short file (no magic)
dropped
Chrome Cache Entry: 340
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 341
ASCII text, with very long lines (1629)
downloaded
Chrome Cache Entry: 342
ASCII text, with CRLF, LF line terminators
dropped
Chrome Cache Entry: 343
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 430x290, components 3
downloaded
Chrome Cache Entry: 344
HTML document, Unicode text, UTF-8 text, with very long lines (2270)
dropped
Chrome Cache Entry: 345
very short file (no magic)
dropped
Chrome Cache Entry: 346
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 347
ASCII text, with very long lines (711)
dropped
Chrome Cache Entry: 348
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 349
Unicode text, UTF-8 text, with very long lines (65534), with no line terminators
dropped
Chrome Cache Entry: 350
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 351
JSON data
downloaded
Chrome Cache Entry: 352
ASCII text, with very long lines (37462), with no line terminators
downloaded
Chrome Cache Entry: 354
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 355
Unicode text, UTF-8 text, with very long lines (41530)
downloaded
Chrome Cache Entry: 356
exported SGML document, ASCII text, with very long lines (24962)
dropped
Chrome Cache Entry: 357
very short file (no magic)
dropped
Chrome Cache Entry: 358
ASCII text, with very long lines (50645), with no line terminators
downloaded
Chrome Cache Entry: 359
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 360
PNG image data, 750 x 651, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 361
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 362
Web Open Font Format (Version 2), TrueType, length 11668, version 1.0
downloaded
Chrome Cache Entry: 363
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 364
Unicode text, UTF-8 text, with very long lines (65441), with CRLF line terminators
downloaded
Chrome Cache Entry: 365
very short file (no magic)
dropped
Chrome Cache Entry: 366
ASCII text, with very long lines (1629)
dropped
Chrome Cache Entry: 367
ASCII text, with very long lines (15608), with no line terminators
downloaded
Chrome Cache Entry: 368
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 369
gzip compressed data, was "build.min.js", last modified: Wed Apr 10 21:27:41 2024, from Unix, original size modulo 2^32 76432
downloaded
Chrome Cache Entry: 370
ASCII text, with very long lines (33379), with no line terminators
dropped
Chrome Cache Entry: 371
ASCII text, with very long lines (774)
downloaded
Chrome Cache Entry: 372
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 373
ASCII text, with very long lines (701)
dropped
Chrome Cache Entry: 374
ASCII text, with very long lines (677)
dropped
Chrome Cache Entry: 375
PNG image data, 240 x 80, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 376
PNG image data, 564 x 168, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 377
ASCII text, with very long lines (32766)
dropped
Chrome Cache Entry: 378
ASCII text, with very long lines (32758)
dropped
Chrome Cache Entry: 379
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 380
very short file (no magic)
dropped
Chrome Cache Entry: 381
ASCII text, with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 382
ASCII text, with very long lines (1614)
downloaded
Chrome Cache Entry: 383
very short file (no magic)
dropped
Chrome Cache Entry: 384
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 385
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 386
ASCII text, with CRLF, LF line terminators
dropped
Chrome Cache Entry: 387
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 388
ASCII text, with very long lines (6765), with no line terminators
downloaded
Chrome Cache Entry: 389
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 390
very short file (no magic)
dropped
Chrome Cache Entry: 391
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 392
ASCII text, with very long lines (58876), with no line terminators
downloaded
Chrome Cache Entry: 393
ASCII text, with very long lines (27262)
downloaded
Chrome Cache Entry: 394
very short file (no magic)
dropped
Chrome Cache Entry: 395
ASCII text, with very long lines (15669), with no line terminators
downloaded
Chrome Cache Entry: 396
ASCII text, with very long lines (423)
dropped
Chrome Cache Entry: 397
ASCII text, with very long lines (15608), with no line terminators
dropped
Chrome Cache Entry: 398
very short file (no magic)
dropped
Chrome Cache Entry: 399
ASCII text, with very long lines (57057), with CRLF line terminators
downloaded
Chrome Cache Entry: 400
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 402
very short file (no magic)
dropped
Chrome Cache Entry: 403
ASCII text, with very long lines (561)
dropped
Chrome Cache Entry: 404
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 405
JPEG image data, JFIF standard 1.02, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 81x77, components 3
dropped
Chrome Cache Entry: 406
ASCII text, with very long lines (32026), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 407
ASCII text, with very long lines (18308)
downloaded
Chrome Cache Entry: 408
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 409
ASCII text, with very long lines (62301)
dropped
Chrome Cache Entry: 410
ASCII text, with very long lines (1614)
dropped
Chrome Cache Entry: 411
JSON data
dropped
Chrome Cache Entry: 412
Unicode text, UTF-8 text, with very long lines (41530)
dropped
Chrome Cache Entry: 413
very short file (no magic)
dropped
Chrome Cache Entry: 414
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 415
very short file (no magic)
dropped
Chrome Cache Entry: 416
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 417
very short file (no magic)
dropped
Chrome Cache Entry: 418
ASCII text, with very long lines (543)
downloaded
Chrome Cache Entry: 419
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 420
ASCII text, with very long lines (723)
downloaded
Chrome Cache Entry: 421
ASCII text, with very long lines (62301)
downloaded
Chrome Cache Entry: 422
very short file (no magic)
dropped
Chrome Cache Entry: 423
ASCII text, with very long lines (17742), with no line terminators
dropped
Chrome Cache Entry: 424
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 425
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 426
ASCII text, with very long lines (18308)
dropped
Chrome Cache Entry: 427
very short file (no magic)
dropped
Chrome Cache Entry: 428
JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 143x48, components 3
dropped
Chrome Cache Entry: 429
ASCII text, with very long lines (586)
downloaded
Chrome Cache Entry: 430
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 431
ASCII text, with very long lines (1799), with CRLF line terminators
downloaded
Chrome Cache Entry: 432
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 433
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 434
ASCII text, with very long lines (57057), with CRLF line terminators
downloaded
Chrome Cache Entry: 435
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 436
ASCII text, with very long lines (13876)
dropped
Chrome Cache Entry: 437
PNG image data, 40 x 100, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 438
ASCII text, with very long lines (3969)
downloaded
Chrome Cache Entry: 439
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 440
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 441
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, comment: "LEAD Technologies Inc. V1.01", baseline, precision 8, 176x56, components 3
dropped
Chrome Cache Entry: 442
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 443
ASCII text, with very long lines (1680), with no line terminators
downloaded
Chrome Cache Entry: 444
ASCII text, with very long lines (677)
downloaded
Chrome Cache Entry: 445
ASCII text, with very long lines (774)
dropped
Chrome Cache Entry: 446
C source, ASCII text, with very long lines (65098)
dropped
Chrome Cache Entry: 447
ASCII text, with very long lines (711)
downloaded
Chrome Cache Entry: 448
ASCII text, with very long lines (4922), with no line terminators
downloaded
Chrome Cache Entry: 449
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 450
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 451
very short file (no magic)
dropped
Chrome Cache Entry: 452
ASCII text, with very long lines (723)
downloaded
Chrome Cache Entry: 453
Unicode text, UTF-8 (with BOM) text, with very long lines (854), with CRLF line terminators
downloaded
Chrome Cache Entry: 454
ASCII text, with very long lines (501)
dropped
Chrome Cache Entry: 455
ASCII text, with very long lines (387)
dropped
Chrome Cache Entry: 456
ASCII text, with very long lines (27262)
dropped
Chrome Cache Entry: 457
Web Open Font Format (Version 2), TrueType, length 3536, version 1.0
downloaded
Chrome Cache Entry: 458
HTML document, ASCII text, with very long lines (815)
downloaded
Chrome Cache Entry: 459
ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 460
ASCII text, with very long lines (1022)
downloaded
Chrome Cache Entry: 461
very short file (no magic)
dropped
Chrome Cache Entry: 462
very short file (no magic)
dropped
Chrome Cache Entry: 463
ASCII text, with very long lines (33379), with no line terminators
downloaded
Chrome Cache Entry: 464
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 465
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 466
ASCII text, with very long lines (540), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 467
ASCII text
dropped
Chrome Cache Entry: 468
ASCII text, with very long lines (13876)
downloaded
Chrome Cache Entry: 469
ASCII text, with very long lines (306)
dropped
Chrome Cache Entry: 470
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 471
ASCII text, with very long lines (34755), with CRLF line terminators
dropped
Chrome Cache Entry: 472
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 473
very short file (no magic)
dropped
Chrome Cache Entry: 474
very short file (no magic)
dropped
Chrome Cache Entry: 475
ASCII text, with very long lines (17742), with no line terminators
downloaded
Chrome Cache Entry: 476
Unicode text, UTF-8 text, with very long lines (51384), with no line terminators
dropped
Chrome Cache Entry: 477
HTML document, ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 478
ASCII text, with very long lines (3969)
dropped
Chrome Cache Entry: 479
ASCII text, with very long lines (13876)
dropped
Chrome Cache Entry: 480
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 481
ASCII text, with very long lines (33379), with no line terminators
downloaded
Chrome Cache Entry: 482
PNG image data, 240 x 80, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 483
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 484
very short file (no magic)
dropped
Chrome Cache Entry: 485
ASCII text, with very long lines (52360)
downloaded
Chrome Cache Entry: 486
very short file (no magic)
dropped
Chrome Cache Entry: 487
Unicode text, UTF-8 text, with very long lines (63002), with no line terminators
downloaded
Chrome Cache Entry: 488
JSON data
dropped
Chrome Cache Entry: 489
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 490
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 491
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 430x290, components 3
dropped
Chrome Cache Entry: 492
ASCII text, with very long lines (34755), with CRLF line terminators
downloaded
Chrome Cache Entry: 493
ASCII text, with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 494
Unicode text, UTF-8 text, with very long lines (41169)
dropped
Chrome Cache Entry: 495
PNG image data, 750 x 651, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 496
very short file (no magic)
dropped
Chrome Cache Entry: 497
ASCII text, with very long lines (1532)
dropped
Chrome Cache Entry: 498
ASCII text, with very long lines (899)
dropped
Chrome Cache Entry: 499
very short file (no magic)
dropped
Chrome Cache Entry: 500
very short file (no magic)
dropped
Chrome Cache Entry: 501
very short file (no magic)
dropped
Chrome Cache Entry: 502
very short file (no magic)
dropped
Chrome Cache Entry: 503
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 504
ASCII text, with very long lines (32026), with CRLF, LF line terminators
dropped
Chrome Cache Entry: 505
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 506
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 507
ASCII text
downloaded
Chrome Cache Entry: 508
very short file (no magic)
dropped
Chrome Cache Entry: 509
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 510
ASCII text, with very long lines (586)
dropped
Chrome Cache Entry: 511
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, comment: "LEAD Technologies Inc. V1.01", baseline, precision 8, 176x56, components 3
downloaded
Chrome Cache Entry: 512
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 513
ASCII text, with very long lines (15669), with no line terminators
dropped
Chrome Cache Entry: 514
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 515
ASCII text, with very long lines (33379), with no line terminators
dropped
Chrome Cache Entry: 516
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 517
very short file (no magic)
dropped
Chrome Cache Entry: 518
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 519
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 520
very short file (no magic)
dropped
Chrome Cache Entry: 521
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 522
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 512x512, components 3
downloaded
Chrome Cache Entry: 523
ASCII text, with very long lines (15669), with no line terminators
downloaded
Chrome Cache Entry: 524
JSON data
downloaded
Chrome Cache Entry: 525
ASCII text, with very long lines (50645), with no line terminators
dropped
Chrome Cache Entry: 526
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 179x359, components 3
downloaded
Chrome Cache Entry: 527
ASCII text, with very long lines (32766)
downloaded
Chrome Cache Entry: 528
ASCII text, with very long lines (32002), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 529
ASCII text, with very long lines (4922), with no line terminators
dropped
Chrome Cache Entry: 530
ASCII text, with very long lines (740)
downloaded
Chrome Cache Entry: 531
very short file (no magic)
dropped
Chrome Cache Entry: 532
ASCII text, with very long lines (774)
dropped
Chrome Cache Entry: 533
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 534
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 535
ASCII text, with very long lines (1302), with no line terminators
downloaded
Chrome Cache Entry: 536
very short file (no magic)
dropped
Chrome Cache Entry: 537
very short file (no magic)
dropped
Chrome Cache Entry: 538
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 539
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 540
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 587x600, components 3
dropped
Chrome Cache Entry: 541
ASCII text, with very long lines (774)
downloaded
Chrome Cache Entry: 542
ASCII text, with very long lines (27262)
downloaded
Chrome Cache Entry: 543
ASCII text, with very long lines (1022)
dropped
Chrome Cache Entry: 544
ASCII text, with very long lines (37462), with no line terminators
dropped
Chrome Cache Entry: 545
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 546
Unicode text, UTF-8 text, with very long lines (41169)
downloaded
Chrome Cache Entry: 547
very short file (no magic)
dropped
Chrome Cache Entry: 548
exported SGML document, ASCII text, with very long lines (24962)
downloaded
Chrome Cache Entry: 549
ASCII text
downloaded
Chrome Cache Entry: 550
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 551
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 552
HTML document, Unicode text, UTF-8 text, with CRLF line terminators
dropped
Chrome Cache Entry: 553
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 554
ASCII text, with very long lines (423)
downloaded
Chrome Cache Entry: 555
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 556
ASCII text, with very long lines (4766), with no line terminators
downloaded
Chrome Cache Entry: 557
ASCII text, with very long lines (10205), with no line terminators
downloaded
Chrome Cache Entry: 558
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 559
very short file (no magic)
dropped
Chrome Cache Entry: 560
very short file (no magic)
dropped
Chrome Cache Entry: 561
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 562
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 563
very short file (no magic)
dropped
Chrome Cache Entry: 564
very short file (no magic)
dropped
There are 326 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2408 --field-trial-handle=2264,i,8939700929347395739,7703461295604259672,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mybell.bell.ca/Login?language=en"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=4184 --field-trial-handle=2264,i,8939700929347395739,7703461295604259672,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=4608 --field-trial-handle=2264,i,8939700929347395739,7703461295604259672,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://m.bell.ca/getapploginpage
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1656 --field-trial-handle=1064,i,6441221849923588881,12403408043935428112,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://m.bell.ca/supportrqcode
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1616 --field-trial-handle=2012,i,16209123222516514220,5828609412293976285,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

URLs

Name
IP
Malicious
https://mybell.bell.ca/Login?language=en
https://collection.decibelinsight.net/i/14028/da/?type=page&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=1&dv=1&dl=384&retryCode=socketNotConnected
130.61.120.2
http://rsxdeployment.azurewebsites.net/)
unknown
https://stats.g.doubleclick.net/g/collect
unknown
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=14&dv=1&dl=1354
130.61.120.2
https://developers.google.com/recaptcha/docs/faq#localhost_support
unknown
https://www.youtube.com/embed/
unknown
https://assets.adobedtm.com/extensions/EPbde2f7ca14e540399dcc1f8208860b7b/AppMeasurement.js
unknown
https://mybell.bell.ca/rb_bced360d-a02a-4b73-b0e7-46fe5ae1dc34?type=js3&sn=v_4_srv_8_sn_20124DC10D36CDE3D1C555C55D40CA36_perc_100000_ol_0_mul_1_app-3A429b1eac4514c5ce_1_rcs-3Acss_0&svrid=8&flavor=post&vi=OSRWPKERGJKLBVFCIANBBATQHLJBBKCA-0&modifiedSince=1730276476420&rf=https%3A%2F%2Fmybell.bell.ca%2FLogin%3F_branch_match_id%3D1380522052703713689%26_branch_referrer%3DH4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%253D%23EXT%3Dbranch_supportrqcode&bp=3&app=429b1eac4514c5ce&crc=388109577&en=gticcd0a&end=1
206.47.98.207
https://www.medallia.com/
unknown
https://m.bell.ca/supportrqcode
52.9.108.223
https://www.youtube.com
unknown
https://www.bell.ca/?lang=en
unknown
https://github.com/twbs/bootstrap/graphs/contributors)
unknown
https://mybell.bell.ca/rb_bced360d-a02a-4b73-b0e7-46fe5ae1dc34?type=js3&sn=v_4_srv_8_sn_20124DC10D36CDE3D1C555C55D40CA36_perc_100000_ol_0_mul_1_app-3A429b1eac4514c5ce_1_rcs-3Acss_0&svrid=8&flavor=post&vi=OSRWPKERGJKLBVFCIANBBATQHLJBBKCA-0&modifiedSince=1730276476420&rf=https%3A%2F%2Fmybell.bell.ca%2FLogin%3F_branch_match_id%3D1380522052703713689%26_branch_referrer%3DH4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%253D%23EXT%3Dbranch_supportrqcode&bp=3&app=429b1eac4514c5ce&crc=3542311136&en=gticcd0a&end=1
206.47.98.207
https://data1.bell.ca/b/ss/bellca/10/JS-2.22.0-LEWM/s07531857333589?AQB=1&pccr=true&vidn=3391C12C6C666643-60000C7282CE47AF&g=none&AQE=1
63.140.62.27
https://siteimproveanalytics.com/js/siteanalyze_1154.js
188.114.96.3
https://support.google.com/recaptcha/#6175971
unknown
https://m.bell.ca/getapploginpage
52.9.108.223
http://getbootstrap.com)
unknown
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=12&dv=1&dl=74&retryCode=socketNotConnected
130.61.120.2
https://www.clarity.ms/tag/uet/19004038
13.107.253.45
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=16&dv=1&dl=324&retryCode=socketNotConnected
130.61.120.2
http://rsxdeployment.azurewebsites.net/docs/components.html#buttons
unknown
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=14&dv=1&dl=67&retryCode=socketNotConnected
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=21&dv=1&dl=310
130.61.120.2
https://mybell.bell.ca/rb_bced360d-a02a-4b73-b0e7-46fe5ae1dc34?type=js3&sn=v_4_srv_8_sn_20124DC10D36CDE3D1C555C55D40CA36_perc_100000_ol_0_mul_1_app-3A429b1eac4514c5ce_1_rcs-3Acss_0&svrid=8&flavor=post&vi=OSRWPKERGJKLBVFCIANBBATQHLJBBKCA-0&modifiedSince=1730276476420&rf=https%3A%2F%2Fmybell.bell.ca%2FLogin%3F_branch_match_id%3D1380522052703713689%26_branch_referrer%3DH4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%253D%23EXT%3Dbranch_supportrqcode&bp=3&app=429b1eac4514c5ce&crc=1467579985&en=gticcd0a&end=1
206.47.98.207
https://mybell.bell.ca//Web/MYB/custom/image/echat/assets/Chat-Button-Bubbles(D).png
206.47.98.207
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D
206.47.98.207
https://www.google.com/recaptcha/enterprise/webworker.js?hl=en&v=-ZG7BC9TxCVEbzIO2m429usb
172.217.18.100
https://dpm.demdex.net/ibs:dpid=903&dpuuid=d5095770-96af-43e0-8b13-9a680ab5a9e6
63.32.87.126
https://ups.analytics.yahoo.com/ups/58782/cms?partner_id=ADOBE&_hosted_id=26594250982175076714259318767746782479&gdpr=0&gdpr_consent=&uid=26594250982175076714259318767746782479&verify=true
87.248.119.251
https://cm.g.doubleclick.net/pixel?google_nid=adobe_dmp&google_cm=&gdpr=0&gdpr_consent=&google_hm=MjY1OTQyNTA5ODIxNzUwNzY3MTQyNTkzMTg3Njc3NDY3ODI0Nzk=&google_tc=
142.250.185.130
https://github.com/microsoft/clarity
unknown
https://support.google.com/recaptcha
unknown
https://api2.branch.io/v1/open
108.156.60.64
https://resources.digital-cloud.medallia.ca/wdccan/36793/onsite/embed.js
146.75.117.230
https://www.gstatic.c..?/recaptcha/releases/-ZG7BC9TxCVEbzIO2m429usb/recaptcha__.
unknown
https://bell.app.link/9hb8rBafRwb?_p=c11334dc9a0760eee0188ee3efb2
18.239.18.88
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=28&dv=1&dl=316
130.61.120.2
https://mybell.bell.ca/rb_bced360d-a02a-4b73-b0e7-46fe5ae1dc34?type=js3&sn=v_4_srv_8_sn_20124DC10D36CDE3D1C555C55D40CA36_perc_100000_ol_0_mul_1_app-3A429b1eac4514c5ce_1_rcs-3Acss_0&svrid=8&flavor=post&vi=OSRWPKERGJKLBVFCIANBBATQHLJBBKCA-0&modifiedSince=1730276476420&rf=https%3A%2F%2Fmybell.bell.ca%2FLogin%3Flanguage%3Den&bp=3&app=429b1eac4514c5ce&crc=3627224120&en=gticcd0a&end=1
206.47.98.207
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=6&dv=1&dl=157&retryCode=socketNotConnected
130.61.120.2
https://dpm.demdex.net/ibs:dpid=771&dpuuid=CAESEBplPp3DJvzinu148tIAFz8&google_cver=1?gdpr=0&gdpr_consent=
63.32.87.126
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=16&dv=1&dl=188
130.61.120.2
https://mybell.bell.ca/static/bell_common.js?cache
206.47.98.207
https://data1.bell.ca/b/ss/bellca/10/JS-2.22.0-LEWM/s08712474510957?AQB=1&ndh=1&pf=1&callback=s_c_il[1].doPostbacks&et=1&t=31%2F9%2F2024%209%3A12%3A25%204%20240&d.&nsid=0&jsonv=1&.d&sdid=03870B84460DADFF-291E557ADEB59CD2&mid=26404690240998747124274156036452379072&aamlh=6&ce=UTF-8&cdp=2&pageName=Login&g=https%3A%2F%2Fmybell.bell.ca%2FLogin%3Flanguage%3Den&c.&di_session_id_ms=0.00&di_launch_lib_ms=14123.70&di_session_id=di-693653-84E654F18AD2AE89A616AA13A6B4CC6A8F&.c&cc=CAD&ch=Login&server=xdqn9denqtys%2F4vqsiohi0zc%2B409oxcu1obi2gvjxyy%3D&events=event1%2Cevent19%2Cevent39%2Cevent83%2Cevent151&aamb=6G1ynYcLPuiQxYZrsz_pkqfLG9yMXBpb2zX5dvJdYQJzPXImdj0y&c1=D%3Dv1&v1=false&v3=false&c6=D%3Dv135&c9=Login&c10=D%3Dv46&c12=D%3Dv3&c13=D%3Dv31&c14=https%3A%2F%2Fmybell.bell.ca%2Flogin&v14=D%3Dv13&c16=D%3Dv18&c21=D%3Dv21&v21=en-on&v23=759a09cf-47c2-3ce7-804c-25098e01ffa8&v29=D%3Dv25&v30=001&c32=D%3Dv2&v32=26404690240998747124274156036452379072&c33=Login&c36=D%3Dv36&v36=Thursday-9%3A00AM&c37=D%3Dv37&v37=1&c44=D%3Dv102&c45=No%20Referrer&v46=Login&c50=LAUNCH%5Bproduction%20Published%20on%3A%202024-10-29T16%3A55%3A46Z%5D&v51=https%3A%2F%2Fmybell.bell.ca%2FLogin%3Flanguage%3Den&c55=D%3Dv77&c57=D%3Dv30&c58=D%3Dv60&v64=dock%20is%20not%20present%3Ai&c65=2024-10-31%2C09%3A12%3A24.002%2C2024-10-31%2C09%3A11%3A53.540&v67=e60da217-072c-41c7-969e-7adbf82ba8be%3A759a09cf-47c2-3ce7-804c-25098e01ffa8&c68=Login&c70=D%3DUser-Agent&c73=D%3Dv17&c75=Login&v75=D%3DUser-Agent&v77=001-1-0&v103=Launch%20%7Casync&v136=User&v145=Page%20load&v151=di-693653-84E654F18AD2AE89A616AA13A6B4CC6A8F&v160=074d78d6-7e50-4974-a9af-c4727a62784e&v162=d0bb8c90-fdf6-4cf3-8894-a30039ae3a23&v179=not%20available&s=1280x1024&c=24&j=1.6&v=N&k=Y&bw=1280&bh=907&mcorgid=48B034FA53CF9FD10A490D44%40AdobeOrg&AQE=1
63.140.62.17
https://bell.app.link/wG8vjg7lLgb?_p=c11334dc9a0760eee0188ee3efb2
18.239.18.88
https://assets.adobedtm.com/92c238f848e3/7634fe33bd4f/09957f73d351/RCa4958c9bb22a442ba8003fb2e6085ec
unknown
https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
unknown
https://mybell.bell.ca/rb_bced360d-a02a-4b73-b0e7-46fe5ae1dc34?type=js3&sn=v_4_srv_8_sn_20124DC10D36CDE3D1C555C55D40CA36_perc_100000_ol_0_mul_1_app-3A429b1eac4514c5ce_1_rcs-3Acss_0&svrid=8&flavor=post&vi=OSRWPKERGJKLBVFCIANBBATQHLJBBKCA-0&modifiedSince=1730276476420&rf=https%3A%2F%2Fmybell.bell.ca%2FLogin%3Flanguage%3Den&bp=3&app=429b1eac4514c5ce&crc=2219907894&en=gticcd0a&end=1
206.47.98.207
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=5&dv=1&dl=387&retryCode=socketNotConnected
130.61.120.2
https://sync.crwdcntrl.net/map/c=9828/tp=ADBE/gdpr=0/gdpr_consent=/tpid=26594250982175076714259318767746782479?https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D121998%26dpuuid%3D${profile_id}
54.194.72.83
https://app.link/_r?sdk=web2.85.0&branch_key=key_live_adAu45V2R6wos7hoIYdA7flfytp07fPD&callback=branch_callback__1
18.239.18.118
https://app.link/_r?sdk=web2.85.0&branch_key=key_live_adAu45V2R6wos7hoIYdA7flfytp07fPD&callback=branch_callback__0
18.239.18.118
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=3&dv=1&dl=726&retryCode=socketNotConnected
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=21&dv=1&dl=1875
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=20&dv=1&dl=1009
130.61.120.2
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://www.google.com/pagead/1p-user-list/953414520/?random
unknown
https://cdn.decibelinsight.net/i/14028/693653/di.js
130.61.120.2
https://mybell.bell.ca/ruxitagentjs_D_10299241001084140.js
206.47.98.207
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=12&dv=1&dl=1094&retryCode=socketNotConnected
130.61.120.2
https://ads.scorecardresearch.com/p?c1=9&c2=6034944&c3=2&cs_xi=26594250982175076714259318767746782479&rn=1730380329900&r=https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D73426%26dpuuid%3D26594250982175076714259318767746782479
18.65.39.29
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=15&dv=1&dl=193
130.61.120.2
https://assets.adobedtm.com/92c238f848e3/7634fe33bd4f/09957f73d351/RC0999b7fb83bc47cc8ef3706d46ca0c8
unknown
https://assets.adobedtm.com/92c238f848e3/7634fe33bd4f/09957f73d351/RCfaa9cdadad144c4c921b649cd3b6204
unknown
https://sc-static.net/scevent.min.js
143.204.207.250
https://data1.bell.ca/b/ss/bellca/10/JS-2.22.0-LEWM/s07531857333589
63.140.62.17
http://rsxdeployment.azurewebsites.net/docs/components.html#tags
unknown
https://jqueryui.com/slider/)
unknown
https://collection.decibelinsight.net/i/14028/da/?type=browser&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=8&dv=1&dl=64&retryCode=socketNotConnected
130.61.120.2
https://bellca.demdex.net/dest5.html?d_nsid=0
34.250.133.195
https://www.clarity.ms/tag/uet/
unknown
https://mybell.bell.ca/Styles/RSX/mybell/img/img_login_MyBell_June2021.jpg
206.47.98.207
http://rsxdeployment.azurewebsites.net/docs/widgets.html#widgets-color-selector
unknown
http://rsxdeployment.azurewebsites.net/docs/icons.html
unknown
https://www.dynatrace.com/company/trust-center/customers/reports/
unknown
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=26&dv=1&dl=981
130.61.120.2
https://developers.google.com/youtube/iframe_api_reference#Events
unknown
https://mybell.bell.ca/favicon.ico
206.47.98.207
https://cloud.google.com/contact
unknown
https://assets.adobedtm.com/92c238f848e3/0fc93359920c/launch-26891e3701a2.min.js
unknown
https://analytics.twitter.com/i/adsct?bci=3&dv=America%2FNew_York%26en-US%2Cen%26Google%20Inc.%26Win32%26255%261280%261024%264%2624%261280%26984%260%26na&eci=2&event_id=75dbc205-4c8a-4a77-8628-dfd61cc8e74e&events=%5B%5B%22pageview%22%2C%7B%7D%5D%5D&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=1322545b-b665-4048-b0ef-15df58eb134e&tw_document_href=https%3A%2F%2Fsupport.bell.ca%2FBilling-and-Accounts%2Fmanage_your_bell_services_on_the_go%23EXT%3DMOB_URL_branch_getapploginpage_012423_MH&tw_iframe_status=0&tw_order_quantity=0&tw_sale_amount=0&txn_id=nu9ts&type=javascript&version=2.3.31
104.244.42.3
https://www.bell.ca/Forfaits
unknown
https://collection.decibelinsight.net/i/14028/da/?type=browser&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=15&dv=1&dl=64&retryCode=socketNotConnected
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380361972&dc=9&dv=1&dl=132
130.61.120.2
https://mybell.bell.ca/Web/MYB/custom/css/eChat/eChat-Light.min.css
206.47.98.207
https://t.co/i/adsct?bci=3&dv=America%2FNew_York%26en-US%2Cen%26Google%20Inc.%26Win32%26255%261280%261024%264%2624%261280%26984%260%26na&eci=2&event_id=75dbc205-4c8a-4a77-8628-dfd61cc8e74e&events=%5B%5B%22pageview%22%2C%7B%7D%5D%5D&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=1322545b-b665-4048-b0ef-15df58eb134e&tw_document_href=https%3A%2F%2Fsupport.bell.ca%2FBilling-and-Accounts%2Fmanage_your_bell_services_on_the_go%23EXT%3DMOB_URL_branch_getapploginpage_012423_MH&tw_iframe_status=0&tw_order_quantity=0&tw_sale_amount=0&txn_id=nu9ts&type=javascript&version=2.3.31
172.66.0.227
https://dpm.demdex.net/ibs:dpid=411&dpuuid=ZyOCLgAAAGAnoQN6
52.50.97.18
https://assets.adobedtm.com/92c238f848e3/7634fe33bd4f/09957f73d351/RCb7424d10cb45420b8dd270fd16b2f20
unknown
https://connect.facebook.net/en_US/all.js
157.240.0.6
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=4&dv=1&dl=128&retryCode=socketNotConnected
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=html&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380361972&dc=7&dv=1&dl=129290
130.61.120.2
https://assets.adobedtm.com/92c238f848e3/7634fe33bd4f/09957f73d351/RCd18a66557b034fc5825d670005205c3
unknown
https://www.google.com/recaptcha/api2/
unknown
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380363135&dc=7&dv=1&dl=70&retryCode=socketNotConnected
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=page&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=1&dv=1&dl=397&retryCode=socketNotConnected
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380341691&dc=5&dv=1&dl=387&retryCode=socketNotConnected
130.61.120.2
https://collection.decibelinsight.net/i/14028/da/?type=multi&wid=693653&sid=84E654F18AD2AE89A616AA13A6B4CC6A8F&jspsf=1&pvid=1730380361972&dc=2&dv=1&dl=954&retryCode=socketNotConnected
130.61.120.2
https://assets.adobedtm.com/92c238f848e3/7634fe33bd4f/09957f73d351/RC70933dcf655e4484bbad15d268bdebf
unknown
http://kenwheeler.github.io/slick
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
app.link
18.239.18.118
fp2e7a.wpc.phicdn.net
192.229.221.95
platform.twitter.map.fastly.net
199.232.188.157
collection.decibelinsight.net
130.61.120.2
stats.g.doubleclick.net
64.233.167.157
adobetarget.data.adobedc.net
66.235.152.225
ps.eyeota.net
18.184.216.10
scontent.xx.fbcdn.net
157.240.0.6
t.co
172.66.0.227
bell.app.link
18.239.18.88
sync.crwdcntrl.net
54.194.72.83
d1tcwf12y4kqv3.cloudfront.net
18.65.39.29
cm.g.doubleclick.net
142.250.185.130
www.google.com
216.58.206.36
dcs-ups.g03.yahoodns.net
87.248.119.252
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
52.50.97.18
custom.bnc.lt
52.9.108.223
medallia2.map.fastly.net
146.75.117.230
match.adsrvr.org
52.223.40.198
siteimproveanalytics.com
188.114.96.3
ax-0001.ax-dc-msedge.net
150.171.29.10
s.twitter.com
104.244.42.3
cdn.branch.io
18.66.27.34
s.amazon-adsystem.com
98.82.156.107
sc-static.net
143.204.207.250
bell.ca.ssl.sc.omtrdc.net
63.140.62.17
s-part-0017.t-0009.fb-t-msedge.net
13.107.253.45
mybell-on-priority.gdns.bell.ca
206.47.98.207
ax-0001.ax-msedge.net
150.171.28.10
youtube-ui.l.google.com
142.250.186.174
googleads.g.doubleclick.net
142.250.186.98
digital.lb.can.medallia.ca
147.75.178.60
td.doubleclick.net
142.250.186.98
analytics.google.com
142.250.185.174
ml314.com
34.117.77.79
cooladata.kampyle.com
35.241.45.82
cdn.decibelinsight.net
130.61.120.2
api2.branch.io
108.156.60.64
static.ads-twitter.com
unknown
vx7putk7mu3ggzzdqjka-pib559-61906c0f2-clientnsv4-s.akamaihd.net
unknown
t.clarity.ms
unknown
www.bell.ca
unknown
cm.everesttech.net
unknown
m.bell.ca
unknown
trial-eum-clientnsv4-s.akamaihd.net
unknown
resources.digital-cloud.medallia.ca
unknown
www.youtube.com
unknown
c.clarity.ms
unknown
data1.bell.ca
unknown
assets.adobedtm.com
unknown
173-254-250-77_s-2-16-164-104_ts-1730380372-clienttons-s.akamaihd.net
unknown
trial-eum-clienttons-s.akamaihd.net
unknown
connect.facebook.net
unknown
px.ads.linkedin.com
unknown
cms.analytics.yahoo.com
unknown
02179915.akstat.io
unknown
somni.bell.ca
unknown
s.go-mpulse.net
unknown
ups.analytics.yahoo.com
unknown
udc-neb.kampyle.com
unknown
ads.scorecardresearch.com
unknown
dpm.demdex.net
unknown
mybell.bell.ca
unknown
support.bell.ca
unknown
www.clarity.ms
unknown
www.linkedin.com
unknown
analytics-fe.digital-cloud.medallia.ca
unknown
analytics.twitter.com
unknown
bellca.demdex.net
unknown
snap.licdn.com
unknown
analytics.tiktok.com
unknown
c.go-mpulse.net
unknown
There are 62 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
142.250.185.228
unknown
United States
52.214.60.57
unknown
United States
147.75.178.60
digital.lb.can.medallia.ca
Switzerland
192.168.2.9
unknown
unknown
66.235.152.225
adobetarget.data.adobedc.net
United States
108.156.60.64
api2.branch.io
United States
206.47.98.207
mybell-on-priority.gdns.bell.ca
Canada
66.235.152.221
unknown
United States
3.162.38.87
unknown
United States
52.50.97.18
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
United States
18.184.216.10
ps.eyeota.net
United States
130.61.120.2
collection.decibelinsight.net
United States
34.250.133.195
unknown
United States
34.117.77.79
ml314.com
United States
162.159.140.229
unknown
United States
63.32.87.126
unknown
United States
104.244.42.131
unknown
United States
63.140.62.17
bell.ca.ssl.sc.omtrdc.net
United States
142.250.185.238
unknown
United States
108.138.26.118
unknown
United States
239.255.255.250
unknown
Reserved
188.114.97.3
unknown
European Union
150.171.29.10
ax-0001.ax-dc-msedge.net
United States
199.232.188.157
platform.twitter.map.fastly.net
United States
143.204.207.250
sc-static.net
United States
52.223.40.198
match.adsrvr.org
United States
172.217.18.100
unknown
United States
18.239.50.55
unknown
United States
98.82.156.107
s.amazon-adsystem.com
United States
18.239.18.118
app.link
United States
64.233.167.157
stats.g.doubleclick.net
United States
52.9.108.223
custom.bnc.lt
United States
142.250.186.174
youtube-ui.l.google.com
United States
18.239.18.88
bell.app.link
United States
216.58.206.36
www.google.com
United States
63.140.62.27
unknown
United States
157.240.0.6
scontent.xx.fbcdn.net
United States
87.248.119.251
unknown
United Kingdom
87.248.119.252
dcs-ups.g03.yahoodns.net
United Kingdom
98.82.157.231
unknown
United States
142.250.185.164
unknown
United States
146.75.117.230
medallia2.map.fastly.net
Sweden
150.171.28.10
ax-0001.ax-msedge.net
United States
142.250.186.98
googleads.g.doubleclick.net
United States
13.107.253.45
s-part-0017.t-0009.fb-t-msedge.net
United States
104.244.42.3
s.twitter.com
United States
18.66.27.34
cdn.branch.io
United States
18.65.39.29
d1tcwf12y4kqv3.cloudfront.net
United States
35.241.45.82
cooladata.kampyle.com
United States
142.250.185.130
cm.g.doubleclick.net
United States
142.250.185.174
analytics.google.com
United States
54.194.72.83
sync.crwdcntrl.net
United States
188.114.96.3
siteimproveanalytics.com
European Union
172.66.0.227
t.co
United States
There are 44 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://mybell.bell.ca/Login?language=en
https://support.bell.ca/Billing-and-Accounts/manage_your_bell_services_on_the_go#EXT=MOB_URL_branch_getapploginpage_012423_MH
https://support.bell.ca/Billing-and-Accounts/manage_your_bell_services_on_the_go#EXT=MOB_URL_branch_getapploginpage_012423_MH
https://support.bell.ca/Billing-and-Accounts/manage_your_bell_services_on_the_go#EXT=MOB_URL_branch_getapploginpage_012423_MH
https://support.bell.ca/Billing-and-Accounts/manage_your_bell_services_on_the_go#EXT=MOB_URL_branch_getapploginpage_012423_MH
https://support.bell.ca/Billing-and-Accounts/manage_your_bell_services_on_the_go#EXT=MOB_URL_branch_getapploginpage_012423_MH
https://support.bell.ca/Billing-and-Accounts/manage_your_bell_services_on_the_go#EXT=MOB_URL_branch_getapploginpage_012423_MH
https://support.bell.ca/Billing-and-Accounts/manage_your_bell_services_on_the_go#EXT=MOB_URL_branch_getapploginpage_012423_MH
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
https://mybell.bell.ca/Login?_branch_match_id=1380522052703713689&_branch_referrer=H4sIAAAAAAAAA8soKSkottLXz9VLSs3J0UtO1C8uLSjILyopKkzOT0m1rytKTUstKsrMS49PKsovL04tsnXOKMrPTQUAvip8pzkAAAA%3D#EXT=branch_supportrqcode
There are 17 hidden doms, click here to show them.