IOC Report
https://www.provideportal.com

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 16:09:19 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 16:09:19 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:00:51 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 16:09:19 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 16:09:19 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Jan 15 16:09:18 2025, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 155
ASCII text, with very long lines (526)
dropped
Chrome Cache Entry: 156
ASCII text, with very long lines (7862)
downloaded
Chrome Cache Entry: 157
ASCII text, with very long lines (908)
dropped
Chrome Cache Entry: 158
ASCII text, with very long lines (746)
downloaded
Chrome Cache Entry: 159
PNG image data, 251 x 256, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 160
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 161
ASCII text, with very long lines (32098)
downloaded
Chrome Cache Entry: 162
ASCII text, with very long lines (541)
downloaded
Chrome Cache Entry: 163
ASCII text, with very long lines (505)
downloaded
Chrome Cache Entry: 164
ASCII text
downloaded
Chrome Cache Entry: 165
ASCII text, with very long lines (24837)
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (59832)
downloaded
Chrome Cache Entry: 167
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 168
ASCII text, with very long lines (21562)
downloaded
Chrome Cache Entry: 169
Unicode text, UTF-8 text, with very long lines (65441), with CRLF line terminators
dropped
Chrome Cache Entry: 170
ASCII text, with very long lines (576)
dropped
Chrome Cache Entry: 171
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=4, xresolution=62, yresolution=70, resolutionunit=2, software=Paint.NET v3.5.10], baseline, precision 8, 59x59, components 3
downloaded
Chrome Cache Entry: 172
PNG image data, 960 x 600, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 173
Unicode text, UTF-8 text, with very long lines (13562)
downloaded
Chrome Cache Entry: 174
ASCII text, with very long lines (908)
downloaded
Chrome Cache Entry: 175
PNG image data, 140 x 540, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 176
ASCII text, with very long lines (576)
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (32726)
dropped
Chrome Cache Entry: 178
ASCII text, with very long lines (3815)
downloaded
Chrome Cache Entry: 179
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 180
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
dropped
Chrome Cache Entry: 181
PNG image data, 16 x 16, 4-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 182
ASCII text, with very long lines (65389)
dropped
Chrome Cache Entry: 183
Unicode text, UTF-8 text, with very long lines (1999)
downloaded
Chrome Cache Entry: 184
Unicode text, UTF-8 text, with very long lines (1999)
dropped
Chrome Cache Entry: 185
ASCII text, with very long lines (17477), with no line terminators
downloaded
Chrome Cache Entry: 186
C++ source, ASCII text
downloaded
Chrome Cache Entry: 187
Unicode text, UTF-8 text, with very long lines (492), with CRLF line terminators
downloaded
Chrome Cache Entry: 188
PNG image data, 89 x 19, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 189
ASCII text, with very long lines (534)
dropped
Chrome Cache Entry: 190
ASCII text, with very long lines (65397)
downloaded
Chrome Cache Entry: 191
ASCII text, with very long lines (32726)
downloaded
Chrome Cache Entry: 192
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 193
C source, ASCII text, with very long lines (59464)
dropped
Chrome Cache Entry: 194
PNG image data, 94 x 70, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 195
ASCII text, with very long lines (52717), with no line terminators
dropped
Chrome Cache Entry: 196
ASCII text, with very long lines (3164)
downloaded
Chrome Cache Entry: 197
ASCII text, with very long lines (24837)
dropped
Chrome Cache Entry: 198
ASCII text
dropped
Chrome Cache Entry: 199
ASCII text
downloaded
Chrome Cache Entry: 200
ASCII text, with very long lines (309), with no line terminators
dropped
Chrome Cache Entry: 201
PNG image data, 610 x 48, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 202
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 203
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 204
ASCII text, with very long lines (512)
downloaded
Chrome Cache Entry: 205
JSON data
dropped
Chrome Cache Entry: 206
JSON data
dropped
Chrome Cache Entry: 207
PNG image data, 89 x 19, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 208
ASCII text, with very long lines (590)
dropped
Chrome Cache Entry: 209
ASCII text, with very long lines (746)
dropped
Chrome Cache Entry: 210
ASCII text
dropped
Chrome Cache Entry: 211
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 212
PNG image data, 94 x 70, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 213
ASCII text, with very long lines (52717), with no line terminators
dropped
Chrome Cache Entry: 214
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 215
ASCII text, with very long lines (365), with no line terminators
dropped
Chrome Cache Entry: 216
ASCII text
downloaded
Chrome Cache Entry: 217
ASCII text, with very long lines (52717), with no line terminators
downloaded
Chrome Cache Entry: 218
JPEG image data, JFIF standard 1.01, aspect ratio, density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=2, orientation=upper-left], baseline, precision 8, 728x90, components 3
dropped
Chrome Cache Entry: 219
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 220
ASCII text, with very long lines (584)
downloaded
Chrome Cache Entry: 221
ASCII text, with very long lines (534)
downloaded
Chrome Cache Entry: 222
C++ source, ASCII text
downloaded
Chrome Cache Entry: 223
PNG image data, 610 x 48, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 224
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, comment: "Created with GIMP on a Mac", progressive, precision 8, 320x55, components 3
downloaded
Chrome Cache Entry: 225
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 226
ASCII text, with very long lines (42133)
downloaded
Chrome Cache Entry: 227
ASCII text, with very long lines (59832)
dropped
Chrome Cache Entry: 228
ASCII text, with very long lines (26336), with CRLF line terminators
dropped
Chrome Cache Entry: 229
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 230
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 231
C source, ASCII text, with very long lines (59464)
downloaded
Chrome Cache Entry: 232
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 233
ASCII text, with very long lines (1489)
dropped
Chrome Cache Entry: 234
Unicode text, UTF-8 text, with very long lines (13562)
dropped
Chrome Cache Entry: 235
ASCII text, with very long lines (17477), with no line terminators
dropped
Chrome Cache Entry: 236
HTML document, Unicode text, UTF-8 text, with very long lines (3128), with CRLF line terminators
downloaded
Chrome Cache Entry: 237
Web Open Font Format (Version 2), TrueType, length 27652, version 1.28835
downloaded
Chrome Cache Entry: 238
C++ source, ASCII text
dropped
Chrome Cache Entry: 239
ASCII text, with very long lines (7862)
dropped
Chrome Cache Entry: 240
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
downloaded
Chrome Cache Entry: 241
ASCII text, with very long lines (42133)
dropped
Chrome Cache Entry: 242
ASCII text, with very long lines (678)
dropped
Chrome Cache Entry: 243
ASCII text, with very long lines (365), with no line terminators
downloaded
Chrome Cache Entry: 244
Unicode text, UTF-8 text, with very long lines (47622)
downloaded
Chrome Cache Entry: 245
ASCII text, with very long lines (4022), with no line terminators
downloaded
Chrome Cache Entry: 246
ASCII text
downloaded
Chrome Cache Entry: 247
ASCII text, with very long lines (32098)
dropped
Chrome Cache Entry: 248
ASCII text, with very long lines (566)
downloaded
Chrome Cache Entry: 249
Unicode text, UTF-8 text, with very long lines (64241)
downloaded
Chrome Cache Entry: 250
PNG image data, 960 x 600, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 251
ASCII text, with very long lines (10109), with no line terminators
downloaded
Chrome Cache Entry: 252
ASCII text
downloaded
Chrome Cache Entry: 253
HTML document, Unicode text, UTF-8 text, with very long lines (2624), with CRLF line terminators
downloaded
Chrome Cache Entry: 254
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 255
PNG image data, 300 x 250, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 256
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=4, xresolution=62, yresolution=70, resolutionunit=2, software=Paint.NET v3.5.10], baseline, precision 8, 59x59, components 3
dropped
Chrome Cache Entry: 257
JSON data
dropped
Chrome Cache Entry: 258
MS Windows icon resource - 9 icons, 32x32, 16 colors, 4 bits/pixel, 16x16, 16 colors, 4 bits/pixel
downloaded
Chrome Cache Entry: 259
ASCII text, with very long lines (521)
downloaded
Chrome Cache Entry: 260
Unicode text, UTF-8 text, with very long lines (16246), with CRLF line terminators
downloaded
Chrome Cache Entry: 261
Unicode text, UTF-8 text, with very long lines (16246), with CRLF line terminators
downloaded
Chrome Cache Entry: 262
PNG image data, 252 x 209, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 263
ASCII text, with very long lines (526)
downloaded
Chrome Cache Entry: 264
ASCII text, with very long lines (52717), with no line terminators
downloaded
Chrome Cache Entry: 265
ASCII text, with very long lines (2842)
downloaded
Chrome Cache Entry: 266
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
dropped
Chrome Cache Entry: 267
PNG image data, 252 x 209, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 268
ASCII text, with very long lines (590)
downloaded
Chrome Cache Entry: 269
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 270
HTML document, ASCII text, with very long lines (2653), with CRLF line terminators
downloaded
Chrome Cache Entry: 271
JSON data
dropped
Chrome Cache Entry: 272
Unicode text, UTF-8 text, with very long lines (3336)
dropped
Chrome Cache Entry: 273
ASCII text, with very long lines (65389)
downloaded
Chrome Cache Entry: 274
ASCII text, with very long lines (639)
downloaded
Chrome Cache Entry: 275
ASCII text
downloaded
Chrome Cache Entry: 276
ASCII text, with very long lines (505)
dropped
Chrome Cache Entry: 277
Unicode text, UTF-8 text, with very long lines (65449)
dropped
Chrome Cache Entry: 278
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 279
C++ source, ASCII text
dropped
Chrome Cache Entry: 280
Unicode text, UTF-8 text, with very long lines (65302)
downloaded
Chrome Cache Entry: 281
ASCII text, with very long lines (10109), with no line terminators
dropped
Chrome Cache Entry: 282
ASCII text, with very long lines (541)
dropped
Chrome Cache Entry: 283
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 284
ASCII text, with very long lines (889)
dropped
Chrome Cache Entry: 285
ASCII text, with very long lines (521)
dropped
Chrome Cache Entry: 286
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 142534
dropped
Chrome Cache Entry: 287
C++ source, ASCII text
dropped
Chrome Cache Entry: 288
HTML document, ASCII text, with very long lines (4480)
downloaded
Chrome Cache Entry: 289
ASCII text, with very long lines (512)
dropped
Chrome Cache Entry: 290
Unicode text, UTF-8 text, with very long lines (3336)
downloaded
Chrome Cache Entry: 291
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 292
ASCII text, with very long lines (65397)
dropped
Chrome Cache Entry: 293
ASCII text, with very long lines (513)
downloaded
Chrome Cache Entry: 294
ASCII text, with very long lines (566)
dropped
Chrome Cache Entry: 295
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 296
ASCII text, with very long lines (1489)
downloaded
Chrome Cache Entry: 297
ASCII text, with very long lines (3164)
dropped
Chrome Cache Entry: 298
ASCII text, with very long lines (26336), with CRLF line terminators
downloaded
Chrome Cache Entry: 299
ASCII text, with very long lines (513)
dropped
Chrome Cache Entry: 300
ASCII text, with very long lines (605)
dropped
Chrome Cache Entry: 301
ASCII text, with very long lines (605)
downloaded
Chrome Cache Entry: 302
JSON data
dropped
Chrome Cache Entry: 303
Web Open Font Format, TrueType, length 26288, version 0.0
downloaded
Chrome Cache Entry: 304
PNG image data, 251 x 256, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 305
Unicode text, UTF-8 text, with very long lines (65441), with CRLF line terminators
downloaded
Chrome Cache Entry: 306
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 142534
downloaded
Chrome Cache Entry: 307
PNG image data, 140 x 540, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 308
ASCII text, with very long lines (21562)
dropped
Chrome Cache Entry: 309
ASCII text, with very long lines (2842)
dropped
Chrome Cache Entry: 310
C++ source, ASCII text
downloaded
Chrome Cache Entry: 311
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 312
Unicode text, UTF-8 text, with very long lines (65449)
downloaded
Chrome Cache Entry: 313
ASCII text, with very long lines (889)
downloaded
Chrome Cache Entry: 314
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 315
PNG image data, 300 x 250, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 316
ASCII text, with very long lines (309), with no line terminators
downloaded
Chrome Cache Entry: 317
ASCII text, with very long lines (639)
dropped
Chrome Cache Entry: 318
ASCII text, with very long lines (3815)
dropped
Chrome Cache Entry: 319
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 320
ASCII text
downloaded
Chrome Cache Entry: 321
PNG image data, 16 x 16, 4-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 322
JPEG image data, JFIF standard 1.01, aspect ratio, density 72x72, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=2, orientation=upper-left], baseline, precision 8, 728x90, components 3
downloaded
Chrome Cache Entry: 323
ASCII text, with very long lines (678)
downloaded
Chrome Cache Entry: 324
HTML document, Unicode text, UTF-8 text, with very long lines (23286), with CRLF line terminators
downloaded
Chrome Cache Entry: 325
ASCII text, with very long lines (584)
dropped
Chrome Cache Entry: 326
JSON data
dropped
Chrome Cache Entry: 327
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, comment: "Created with GIMP on a Mac", progressive, precision 8, 320x55, components 3
dropped
There are 170 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2196 --field-trial-handle=1908,i,552547930979920586,291555781854234261,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.provideportal.com"

URLs

Name
IP
Malicious
https://www.provideportal.com
https://dpm.demdex.net/ibs:dpid=992&dpuuid=hgducloh90vo
54.229.91.192
https://effectus.nui.media/pipeline/680044/0/vc?z=effectus&dim=668296&kw=&click=&abr=$imginiframe
unknown
https://github.com/mozilla/rhino/issues/346
unknown
https://login.microsoftonline.com/uxlogout?appid
unknown
https://effectus.nui.media/pipeline/674040/0/vh?ajecscp=1736960981499&z=effectus&dim=602457&kw=&click=
52.204.114.105
https://effectus.nui.media/pipeline/668290/0/vc?z=effectus&dim=668283&kw=&click=&abr=$imginiframe
unknown
https://www.iis.net/Content/overview.css
13.107.253.45
https://www.facebook.com/fr/b.php?p=1531105787105294&e=Z4fr_AAAANdrqAOV&t=2592000&o=0
157.240.251.35
https://tc39.es/ecma262/#sec-object.getownpropertydescriptor
unknown
https://github.com/zloirock/core-js
unknown
https://dmpsync.3lift.com/getuid?ld=1&gdpr=0&cmp_cs=&us_privacy=&redir=%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D72352%26dpuuid%3D%24UID%26gdpr%3D0%26gdpr_consent%3D
76.223.111.18
https://js.monitor.azure.com/scripts/c/ms.analytics-web-3.min.js
13.107.246.45
https://cm.g.doubleclick.net/pixel?google_nid=adobe_dmp&google_cm=&gdpr=0&gdpr_consent=&google_hm=NTA5Nzg5MjQxMzU1MTQyODk1NTAyOTA5MzkyMjc5MDkzOTIwMTQ=&google_tc=
216.58.206.66
https://assets.adobedtm.com/5ef092d1efb5/2537c33769cb/1bd4ced621a0/RC82b2c8c298654e17859974fddee3185
unknown
https://effectus.nui.media/pipeline/674039/0/vh?ajecscp=1736960981509&z=effectus&dim=602464&kw=&click=
52.204.114.105
https://cdn.jsdelivr.net/npm/bluebird
unknown
https://www.twitter.com/inetsrv/
unknown
https://github.com/scottjehl/picturefill/blob/master/Authors.txt;
unknown
https://dpm.demdex.net/ibs:dpid=477&dpuuid=5f05fd322f209d931697992260c1b26ea953cb36f8c4e2819f426fba14a8493db0da87c991749652
54.229.91.192
https://blogs.iis.net/iisteam/introducing-iis-cors-1-0
unknown
https://tc39.es/ecma262/#sec-tointegerorinfinity
unknown
https://www.provideportal.com/iis-85.png
40.117.157.87
https://effectus.nui.media/pipeline/674039/0/vh?ajecscp=1736960988813&z=effectus&dim=602464&kw=&click=
52.204.114.105
https://cm.g.doubleclick.net/pixel?google_nid=g8f47s39e399f3fe&google_push&google_sc&google_hm=WjRmcl9BQUFBTmRycUFPVg==
216.58.206.66
https://www.iis.net/favicon.ico
13.107.253.45
https://api.company-target.com/api/v2/ip.json?key=70aff8023e038d56ea636f68e5c5922b
unknown
https://github.com/w3c/aria-practices/pull/1757
unknown
https://axios-http.com
unknown
https://manage.iis.net
unknown
https://github.com/microsoft/clarity
unknown
https://image2.pubmatic.com/AdServer/Pug?vcode=bz0yJnR5cGU9MSZqcz0xJmNvZGU9MjE5MSZ0bD0yNTkyMDA=&piggybackCookie=Z4fr_AAAANdrqAOV
185.64.191.210
https://outlook-sdf.live.com/mail/
unknown
https://dpm.demdex.net/ibs:dpid=358&dpuuid=557779979202385751
54.229.91.192
https://www.provideportal.com/
https://keycode.info/table-of-all-keycodes
unknown
https://effectus.nui.media/pipeline/680044/0/cc?z=effectus
unknown
https://tc39.es/ecma262/#sec-getmethod
unknown
https://dpm.demdex.net/ibs:dpid=30646?dpuuid=y-1NH5hrhE2pFzO6e5Y1Fj_XVZwSVsHWUlNXc-~A
54.229.91.192
https://mscom.demdex.net/dest5.html?d_nsid=0
108.128.172.10
https://cms.quantserve.com/pixel/p-vj4AYjBqd6VJ2.gif?idmatch=0&gdpr=0&gdpr_consent=
91.228.74.159
https://effectus.nui.media/pipeline/674040/0/vh?z=effectus&dim=602457&kw=&click=
unknown
https://developer.mozilla.org/en-US/docs/Web/API/KeyboardEvent/key/Key_Values
unknown
https://sync.srv.stackadapt.com/sync?nid=adobe
54.165.187.207
https://effectus.nui.media/pipeline/668682/0/vh?ajecscp=1736960973381&z=effectus&dim=668296&kw=&click=
52.204.114.105
https://rtb.adentifi.com/CookieSyncAdobe
18.204.60.8
https://effectus.nui.media/pipeline/680043/0/vc?z=effectus&dim=668296&kw=&click=&abr=$imginiframe
unknown
https://msftenterprise.sc.omtrdc.net/id?d_visid_ver=4.4.0&d_fieldgroup=A&mcorgid=EA76ADE95776D2EC7F000101%40AdobeOrg&mid=50517421273681541960337102840294535041&ts=1736961014416
63.140.62.27
https://idsync.rlcdn.com/1000.gif?memo=CKyqFhIxCi0IARCYEhomNTA5Nzg5MjQxMzU1MTQyODk1NTAyOTA5MzkyMjc5MDkzOTIwMTQQABoNCPjXn7wGEgUI6AcQAEIASgA
35.244.174.68
https://blogs.iis.net/
unknown
https://jquery.com/
unknown
https://effectus.nui.media/pipeline/674039/0/vc?z=effectus&dim=602464&kw=&click=&abr=$imginiframe
unknown
https://tc39.es/ecma262/#sec-tolength
unknown
https://dpm.demdex.net/ibs:dpid=3047&dpuuid=6224729AEA8D7B&gdpr=0&gdpr_consent=
54.229.91.192
https://ag.innovid.com/dv/sync?tid=6
35.177.13.55
https://www.iis.net/Content/downloads.css
13.107.253.45
https://www.provideportal.com/favicon.ico
40.117.157.87
https://effectus.nui.media/pipeline/668682/0/vh?z=effectus&dim=668296&kw=&click=
52.204.114.105
https://breeze.aimon.applicationinsights.io
unknown
https://tc39.es/ecma262/#sec-IsHTMLDDA-internal-slot
unknown
https://effectus.nui.media/pipeline/680043/0/vh?ajecscp=1736960981415&z=effectus&dim=668296&kw=&click=
52.204.114.105
https://sync.crwdcntrl.net/map/c=9828/tp=ADBE/gdpr=0/gdpr_consent=/tpid=50978924135514289550290939227909392014?https%3A%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D121998%26dpuuid%3D${profile_id}
54.77.224.47
https://sizzlejs.com/
unknown
https://dmpsync.3lift.com/getuid?redir=%2F%2Fdpm.demdex.net%2Fibs%3Adpid%3D72352%26dpuuid%3D$UID%26gdpr%3D0%26gdpr_consent%3D&gdpr=0&gdpr_consent=
76.223.111.18
https://bugzil.la/548397
unknown
https://ib.adnxs.com/bounce?%2Fgetuid%3Fhttps%253A%252F%252Fdpm.demdex.net%252Fibs%253Adpid%253D358%2526dpuuid%253D%2524UID
37.252.173.215
https://effectus.nui.media/pipeline/680043/0/vh?z=effectus&dim=668296&kw=&click=
52.204.114.105
https://img.nui.media/banners/media/60/602446/66/668282/1631935228275_Microsoft_Home_Page_Promo_610x48_MSDN1_May14.png
18.245.86.33
https://effectus.nui.media/pipeline/668682/0/cc?z=effectus
unknown
https://www.clarity.ms/tag/
unknown
https://microsoftit.pkgs.visualstudio.com/OneITVSO/_packaging/CSM-SITES-AEMFoundations/npm/registry/
unknown
https://dc-int.services.visualstudio.com
unknown
https://effectus.nui.media/pipeline/668290/0/vh?ajecscp=1736960973465&z=effectus&dim=668283&kw=&click=
52.204.114.105
https://bugzilla.mozilla.org/show_bug.cgi?id=277178
unknown
https://bugzilla.mozilla.org/show_bug.cgi?id=308064
unknown
https://www.iis.net/Content/home.css
13.107.253.45
https://img.nui.media/banners/media/60/602446/60/602447/1640645301370_EMG_320x55_system_default_placeholder.jpg
18.245.86.33
https://effectus.nui.media/pipeline/674040/0/vj?z=effectus&dim=602457&kw=&click=&abr=$scriptiniframe
unknown
https://partner.microsoft-ppe.com/
unknown
https://blogs.iis.net/iisteam/url-rewrite-v2-1
unknown
https://forums.iis.net/1080.aspx
unknown
https://dpm.demdex.net/ibs:dpid=390122&dpuuid=lrhR-Xu2Vn5xeulD3h3wrAgue70
54.229.91.192
https://assets.adobedtm.com/5ef092d1efb5/2537c33769cb/1bd4ced621a0/RCe86a4eb0fcba478dbcc7216ce837462
unknown
https://effectus.nui.media/pipeline/668682/0/vj?z=effectus&dim=668296&kw=&click=&abr=$scriptiniframe
unknown
https://github.com/scottjehl/picturefill/tree/3.0/src/plugins/gecko-picture
unknown
https://assets.adobedtm.com/5ef092d1efb5/2537c33769cb/1bd4ced621a0/RCcef87db72dc34649980e93371625fa0
unknown
https://php.iis.net/
unknown
https://tc39.es/ecma262/#sec-toprimitive
unknown
https://scottjehl.github.io/picturefill/
unknown
https://effectus.nui.media/pipeline/680044/0/vh?z=effectus&dim=668296&kw=&click=
52.204.114.105
https://github.com/axios/axios.git
unknown
https://forums.iis.net/
unknown
https://dpm.demdex.net/ibs:dpid=1175&gdpr=0&dpuuid=iNxrMduJNT-TjWFliI5-ZY_bNTWT0jFgjd2YaUP9
54.229.91.192
https://us-u.openx.net/w/1.0/sd?id=537148856&val=Z4fr_AAAANdrqAOV
34.98.64.218
https://consentdeliveryfd.azurefd.net/mscc/lib/v2/wcp-consent.js
13.107.246.44
https://dev.azure.com/mscomdev/Moray/_workitems/edit/4494
unknown
https://code.visualstudio.com/
unknown
https://effectus.nui.media/pipeline/674040/0/vh?z=effectus&dim=602457&kw=&click=
52.204.114.105
https://dpm.demdex.net/ibs:dpid=22054
54.229.91.192
https://aka.ms/yourcaliforniaprivacychoices
unknown
https://dpm.demdex.net/ibs:dpid=782&dpuuid=Z4fr_AAAANdrqAOV
54.229.91.192
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
s-part-0016.t-0009.t-msedge.net
13.107.246.44
s.tribalfusion.com
172.64.150.63
nuimedia-re-1928154753.us-east-1.elb.amazonaws.com
52.204.114.105
global.px.quantserve.com
91.228.74.159
eu-eb2.3lift.com
76.223.111.18
bttrack.com
192.132.33.69
adobetarget.data.adobedc.net
66.235.152.221
idsync.rlcdn.com
35.244.174.68
dualstack.tls13.taboola.map.fastly.net
151.101.65.44
sync.crwdcntrl.net
54.77.224.47
cm.g.doubleclick.net
216.58.206.66
rtb.adentifi.com
18.204.60.8
www.google.com
142.250.186.164
dcs-ups.g03.yahoodns.net
87.248.119.251
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
34.240.156.246
sync.srv.stackadapt.com
54.165.187.207
msftenterprise.sc.omtrdc.net
63.140.62.27
match.adsrvr.org
52.223.40.198
aragorn-prod-uk-acai-lb.inbake.com
35.177.13.55
star-mini.c10r.facebook.com
157.240.251.35
us-u.openx.net
34.98.64.218
s.twitter.com
104.244.42.131
d1dbivni9lj17y.cloudfront.net
18.245.86.33
s-part-0017.t-0009.fb-t-msedge.net
13.107.253.45
s-part-0017.t-0009.t-msedge.net
13.107.246.45
pug-lhr-bc.pubmnet.com
185.64.191.210
dsum-sec.casalemedia.com
104.18.27.193
a.tribalfusion.com
172.64.150.63
ib.anycast.adnxs.com
37.252.173.215
www.provideportal.com
40.117.157.87
js.monitor.azure.com
unknown
ag.innovid.com
unknown
idpix.media6degrees.com
unknown
img.nui.media
unknown
px.owneriq.net
unknown
ds.reson8.com
unknown
ups.analytics.yahoo.com
unknown
cm.everesttech.net
unknown
jadserve.postrelease.com
unknown
z.clarity.ms
unknown
image2.pubmatic.com
unknown
www.iis.net
unknown
dmpsync.3lift.com
unknown
consentdeliveryfd.azurefd.net
unknown
dpm.demdex.net
unknown
rtd-tm.everesttech.net
unknown
servedby.flashtalking.com
unknown
www.facebook.com
unknown
effectus.nui.media
unknown
assets.adobedtm.com
unknown
rtd.tubemogul.com
unknown
www.clarity.ms
unknown
pixel.rubiconproject.com
unknown
trc.taboola.com
unknown
mscom.demdex.net
unknown
play.vidyard.com
unknown
analytics.twitter.com
unknown
iis-umbraco.azurewebsites.net
unknown
cms.quantserve.com
unknown
cms.analytics.yahoo.com
unknown
ib.adnxs.com
unknown
sync.search.spotxchange.com
unknown
login.microsoftonline.com
unknown
sync-tm.everesttech.net
unknown
There are 54 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
18.204.60.8
rtb.adentifi.com
United States
13.107.246.44
s-part-0016.t-0009.t-msedge.net
United States
192.168.2.8
unknown
unknown
34.240.156.246
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
United States
35.177.13.55
aragorn-prod-uk-acai-lb.inbake.com
United States
104.244.42.131
s.twitter.com
United States
172.64.150.63
s.tribalfusion.com
United States
63.140.62.17
unknown
United States
40.117.157.87
www.provideportal.com
United States
151.101.1.44
unknown
United States
239.255.255.250
unknown
Reserved
151.101.65.44
dualstack.tls13.taboola.map.fastly.net
United States
91.228.74.159
global.px.quantserve.com
United Kingdom
54.165.187.207
sync.srv.stackadapt.com
United States
35.244.174.68
idsync.rlcdn.com
United States
52.223.40.198
match.adsrvr.org
United States
52.204.114.105
nuimedia-re-1928154753.us-east-1.elb.amazonaws.com
United States
37.252.173.215
ib.anycast.adnxs.com
European Union
185.64.191.210
pug-lhr-bc.pubmnet.com
United Kingdom
63.140.62.27
msftenterprise.sc.omtrdc.net
United States
54.247.1.250
unknown
United States
35.244.159.8
unknown
United States
87.248.119.251
dcs-ups.g03.yahoodns.net
United Kingdom
192.132.33.69
bttrack.com
United States
76.223.111.18
eu-eb2.3lift.com
United States
18.245.86.33
d1dbivni9lj17y.cloudfront.net
United States
104.18.27.193
dsum-sec.casalemedia.com
United States
216.58.206.66
cm.g.doubleclick.net
United States
54.229.91.192
unknown
United States
108.128.172.10
unknown
United States
54.77.224.47
sync.crwdcntrl.net
United States
34.98.64.218
us-u.openx.net
United States
142.250.186.164
www.google.com
United States
157.240.251.35
star-mini.c10r.facebook.com
United States
142.250.186.66
unknown
United States
There are 25 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://www.provideportal.com/
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/?utm_medium=iis-deployment
https://www.iis.net/overview
https://www.iis.net/overview
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2016
There are 8 hidden doms, click here to show them.