Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 08:32:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 08:32:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 08:32:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 08:32:55 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 08:32:54 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 100
|
ASCII text, with very long lines (8035), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 102
|
Web Open Font Format (Version 2), TrueType, length 8000, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 103
|
RIFF (little-endian) data, Web/P image
|
downloaded
|
||
Chrome Cache Entry: 104
|
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 105
|
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
|
downloaded
|
||
Chrome Cache Entry: 106
|
PNG image data, 60 x 91, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 107
|
Web Open Font Format (Version 2), TrueType, length 18596, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 108
|
ASCII text, with very long lines (48316), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 109
|
ASCII text, with very long lines (65458)
|
downloaded
|
||
Chrome Cache Entry: 110
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 111
|
ASCII text, with very long lines (32089)
|
dropped
|
||
Chrome Cache Entry: 112
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 118
|
PNG image data, 160 x 96, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 120
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 121
|
Unicode text, UTF-8 text, with very long lines (65532), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 122
|
ASCII text, with very long lines (47694)
|
downloaded
|
||
Chrome Cache Entry: 123
|
Web Open Font Format, TrueType, length 26288, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 124
|
Web Open Font Format (Version 2), TrueType, length 18536, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 125
|
Unicode text, UTF-8 text, with very long lines (64241)
|
downloaded
|
||
Chrome Cache Entry: 82
|
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 84
|
HTML document, ASCII text, with very long lines (955), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 85
|
HTML document, ASCII text, with very long lines (7341), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 87
|
HTML document, ASCII text, with very long lines (7946)
|
downloaded
|
||
Chrome Cache Entry: 88
|
PNG image data, 160 x 29, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 89
|
ASCII text, with very long lines (8133), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 90
|
ASCII text, with very long lines (65447)
|
dropped
|
||
Chrome Cache Entry: 91
|
very short file (no magic)
|
downloaded
|
||
Chrome Cache Entry: 92
|
HTML document, ASCII text, with very long lines (955), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 93
|
ASCII text, with very long lines (513), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 94
|
PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 95
|
Unicode text, UTF-8 text, with very long lines (13643)
|
downloaded
|
||
Chrome Cache Entry: 97
|
ASCII text, with very long lines (41651)
|
dropped
|
||
Chrome Cache Entry: 99
|
RIFF (little-endian) data, Web/P image
|
downloaded
|
There are 30 hidden files, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://login-uk.mimecast.com/auth/api/ttp/remediation/get-file/eNpNkN1u4jAQRt_F19C1J7bjIO0FbRdVgUqINhBWlSLbmYTQ_NDEoe2u9t3XLFqpN3Mx-nTmO_ObDGjHHquczAg_HTZmf3o4Hm8r48SvzZhu5m-u5tvdIj3tnmK6TuL7ah0v1pw_F3bouiWlSZ2sVjyB6CP-sdf3drcOTfpY3sZpGr4fFqn53MO-3D4shvlPRkV-vMOXb-V3MiFNR2aFrgeckL6wCmBwozFk1o51PSHaOW0PDbZO9_ZQndF1r9j6miYbXynLmAqzc-7nNMqAAmfMLyHCKNcolGQQWKBhaJBDHoRSBjbgMkDOVF4wSa0BRpXVyqAQWoUsClBHvlXRNv7IOLIKguPHzaktydcyRVVfv8UuJwGYAOlBVDAfs-PgugZ72-XoI3fJUqm5Uhdq4_yianTp7a_MM_ZD1Xkj5vlXxX_gMrNTvDpCJLyjn1OV_Yd9kWU-5bBv5JRSH1EBFSFIKsmfvw9bjwg?sid=0yP3OYOZ4_6FmiX5Tl-QJweyJlbmMiOiJBMTI4R0NNIiwiYWxnIjoiUEJFUzItSFMyNTYrQTEyOEtXIiwia2lkIjoiWHp4SjlxSThDSzF5X3diNmpPSGRvYU5JdGxNaTE3RW1nVEdIb2FRck9NMCIsInAycyI6IlZMU0R1QVBIMkhFMlpsR3ZHN1VjQUEiLCJwMmMiOjgxOTJ9.NNSb-i2N3Bf2U-FvH5rqFZPJzKEi5EjU.3HG08Ns1V5-swsl6.Z0fjgHd3i7UbYApL1vqjTD1q17kfuVFKD0HzKElaejJa0SQjRvZse2E09kHfijWimUTQ4dotEDjUEi4ZBquyDL70O12VolgNiA8Y-IWL5gYGzBpLd_SzHpQBlID-XI5zV1_fHwEcdJnwbxE4iGLZVoZ9gmWD2fA7F1S5mMxBMTC6rf753C0szwuKPWQgTeF1Xo-lJucBxpXfoDvPvRUSLJ83E0nqEIY7agPY3g3HYkP67cIZ_lB8TAOTVnDkqd7XLL5ALUji87bxaW4.-JLSMOtKVHAy9NYu3_v2BA&x-context-route=administration&fdl=1
|
|||
https://aial.gulamberwa.com/ERA9sgQ/
|
|||
https://central-synagogue.jimdosite.com/
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
login-uk.mimecast.com
|
91.220.42.237
|
||
jimdo-dolphin-static-assets-prod.freetls.fastly.net
|
151.101.2.79
|
||
myqkz0xeyygfu46vw7rbgyj7tymnfyffdlgjxue07xli3ngcy4sae75xt1s.bfcgpixdwnw.ru
|
104.21.65.72
|
||
a.nel.cloudflare.com
|
35.190.80.1
|
||
at.prod.jimdo.systems
|
3.255.10.234
|
||
code.jquery.com
|
151.101.66.137
|
||
fccdl.in
|
12.7.192.62
|
||
cdnjs.cloudflare.com
|
104.17.25.14
|
||
jimdo-storage.freetls.fastly.net
|
151.101.2.79
|
||
challenges.cloudflare.com
|
104.18.94.41
|
||
www.google.com
|
142.250.181.100
|
||
aial.gulamberwa.com
|
172.67.166.101
|
||
assets.onestore.ms
|
unknown
|
||
ajax.aspnetcdn.com
|
unknown
|
||
c.s-microsoft.com
|
unknown
|
||
central-synagogue.jimdosite.com
|
unknown
|
||
fonts.jimstatic.com
|
unknown
|
There are 7 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
152.199.19.160
|
unknown
|
United States
|
||
172.217.17.67
|
unknown
|
United States
|
||
172.217.17.46
|
unknown
|
United States
|
||
104.18.94.41
|
challenges.cloudflare.com
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
142.250.181.131
|
unknown
|
United States
|
||
104.18.41.38
|
unknown
|
United States
|
||
2.20.41.218
|
unknown
|
European Union
|
||
151.101.130.137
|
unknown
|
United States
|
||
23.217.249.187
|
unknown
|
United States
|
||
23.32.239.59
|
unknown
|
United States
|
||
151.101.66.137
|
code.jquery.com
|
United States
|
||
172.217.21.35
|
unknown
|
United States
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
172.67.189.38
|
unknown
|
United States
|
||
91.220.42.237
|
login-uk.mimecast.com
|
United Kingdom
|
||
162.159.128.70
|
unknown
|
United States
|
||
151.101.194.79
|
unknown
|
United States
|
||
104.17.24.14
|
unknown
|
United States
|
||
104.21.65.72
|
myqkz0xeyygfu46vw7rbgyj7tymnfyffdlgjxue07xli3ngcy4sae75xt1s.bfcgpixdwnw.ru
|
United States
|
||
23.218.209.163
|
unknown
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
172.217.17.78
|
unknown
|
United States
|
||
12.7.192.62
|
fccdl.in
|
United States
|
||
3.255.10.234
|
at.prod.jimdo.systems
|
United States
|
||
104.18.95.41
|
unknown
|
United States
|
||
151.101.2.79
|
jimdo-dolphin-static-assets-prod.freetls.fastly.net
|
United States
|
||
142.250.181.100
|
www.google.com
|
United States
|
||
74.125.205.84
|
unknown
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
23.32.239.81
|
unknown
|
United States
|
||
172.67.166.101
|
aial.gulamberwa.com
|
United States
|
||
162.159.129.70
|
unknown
|
United States
|
||
23.32.239.43
|
unknown
|
United States
|
||
104.17.25.14
|
cdnjs.cloudflare.com
|
United States
|
There are 25 hidden IPs, click here to show them.