IOC Report
Opholdstillaledse+og+sygesikringskort_pdf.html

loading gif

Files

File Path
Type
Category
Malicious
Opholdstillaledse+og+sygesikringskort_pdf.html
HTML document, ASCII text, with very long lines (476), with CRLF line terminators
initial sample
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Mar 28 11:31:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Mar 28 11:31:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Mar 28 11:31:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Mar 28 11:31:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Mar 28 11:31:36 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 124
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-02.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 237646
downloaded
Chrome Cache Entry: 125
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-09.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 186897
dropped
Chrome Cache Entry: 126
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-05.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 222541
downloaded
Chrome Cache Entry: 127
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-03.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 178807
downloaded
Chrome Cache Entry: 128
ASCII text, with very long lines (11046)
downloaded
Chrome Cache Entry: 129
HTML document, ASCII text
downloaded
Chrome Cache Entry: 130
ASCII text, with very long lines (3980)
downloaded
Chrome Cache Entry: 131
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-06.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 219912
downloaded
Chrome Cache Entry: 132
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-08.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 79243
dropped
Chrome Cache Entry: 133
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-03.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 178807
dropped
Chrome Cache Entry: 134
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-09.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 186897
downloaded
Chrome Cache Entry: 135
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-07.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 213629
dropped
Chrome Cache Entry: 136
ASCII text, with very long lines (762)
downloaded
Chrome Cache Entry: 137
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 138
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 139
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-06.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 219912
dropped
Chrome Cache Entry: 140
Unicode text, UTF-8 text, with very long lines (25824)
downloaded
Chrome Cache Entry: 141
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-04.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 67436
downloaded
Chrome Cache Entry: 142
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
downloaded
Chrome Cache Entry: 143
HTML document, ASCII text
downloaded
Chrome Cache Entry: 144
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 145
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-04.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 67436
dropped
Chrome Cache Entry: 146
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-01.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 204817
downloaded
Chrome Cache Entry: 147
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 148
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-02.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 237646
dropped
Chrome Cache Entry: 149
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-10.jpg", last modified: Fri Mar 22 17:52:05 2024, max compression, from Unix, original size modulo 2^32 117095
downloaded
Chrome Cache Entry: 150
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-10.jpg", last modified: Fri Mar 22 17:52:05 2024, max compression, from Unix, original size modulo 2^32 117095
dropped
Chrome Cache Entry: 151
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-07.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 213629
downloaded
Chrome Cache Entry: 152
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 153
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-05.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 222541
dropped
Chrome Cache Entry: 154
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-01.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 204817
dropped
Chrome Cache Entry: 155
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 156
ASCII text, with very long lines (11046)
downloaded
Chrome Cache Entry: 157
HTML document, ASCII text
downloaded
Chrome Cache Entry: 158
ASCII text
downloaded
Chrome Cache Entry: 159
ASCII text, with very long lines (13574)
downloaded
Chrome Cache Entry: 160
gzip compressed data, was "05T1v00003eWDmB.pdf.pdf.jpg-08.jpg", last modified: Fri Mar 22 17:52:04 2024, max compression, from Unix, original size modulo 2^32 79243
downloaded
There are 34 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "C:\Users\user\Desktop\Opholdstillaledse+og+sygesikringskort_pdf.html"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2456 --field-trial-handle=2384,i,12317532024463166971,9728176375470605738,262144 /prefetch:8

URLs

Name
IP
Malicious
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=9&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=6&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
https://postnord.my.salesforce.com/favicon.ico
85.222.154.16
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/auraCmpDef?_au=axKd1SkEemaE3N_JIjPbjg&_c=false&_cac=0&_density=VIEW_ONE&_ff=DESKTOP&_l=true&_l10n=en_US&_lrmc=-386269907&_style=339128706&aura.app=markup://forceContent:contentDistributionApp&aura.mode=PROD&_def=markup://lightning:iconSvgTemplatesUtility&_uid=LATEST
85.222.154.16
https://postnord.my.salesforce.com/lightning/lightning.out.delegate.js?v=VXZJYkJtTFAtX2RjOGFiVmZaelpqQTk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNC01LjAuOQ
85.222.154.16
http://momentjs.com/guides/#/warnings/add-inverted-param/
unknown
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/aura?r=0&ui-content-components-forceContent-contentDistributionViewer.ContentDistributionViewer.getContentDistributionInfo=1
85.222.154.16
https://postnord.my.salesforce.com/static/111213/sfc/javascript/lib/AC_OETags.js
85.222.154.16
https://postnord.my.salesforce.com/sCSS/60.0/sprites/1705602480000/Theme3/default/gc/contentDistribution.css
85.222.154.16
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22axKd1SkEemaE3N_JIjPbjg%22%7D%2C%22styleContext%22%3A%7B%22c%22%3A%22webkit%22%2C%22x%22%3A%5B%22isDesktop%22%5D%2C%22tokens%22%3A%5B%22markup%3A%2F%2Fforce%3AsldsTokens%22%2C%22markup%3A%2F%2Fforce%3Abase%22%2C%22markup%3A%2F%2Fforce%3AformFactorLarge%22%5D%2C%22tuid%22%3A%22G5utbqAeABx6BtayJxUWNQ%22%2C%22cuid%22%3A339128706%7D%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2Fb0000000IiEy%2Fa%2F1v000001l4Ly%2Fv2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU%22%7D/app.css?2=
85.222.154.16
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=1&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
http://polymer.github.io/AUTHORS.txt
unknown
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=4&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
http://momentjs.com/guides/#/warnings/js-date/
unknown
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=0&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
http://momentjs.com/guides/#/warnings/define-locale/
unknown
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22fwuid%22%3A%22VXZJYkJtTFAtX2RjOGFiVmZaelpqQTk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNC01LjAuOQ%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22axKd1SkEemaE3N_JIjPbjg%22%7D%2C%22mlr%22%3A1%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2Fb0000000IiEy%2Fa%2F1v000001l4Ly%2Fv2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU%22%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/resources.js?pv=1711601682000-982138011&rv=1711048155000
85.222.154.16
https://postnord.my.salesforce.com/sfc/p/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEp
unknown
file:///C:/Users/user/Desktop/Opholdstillaledse+og+sygesikringskort_pdf.html
http://polymer.github.io/CONTRIBUTORS.txt
unknown
http://www.apache.org/licenses/LICENSE-2.0
unknown
http://momentjs.com/guides/#/warnings/zone/
unknown
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=2&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22serializationVersion%22%3A%221-248.10.4-5.0.9-b%22%2C%22parts%22%3A%22t%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22axKd1SkEemaE3N_JIjPbjg%22%7D%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/app.js?2=
85.222.154.16
https://postnord.my.salesforce.com/visualforce/session?url=https%3A%2F%2Fpostnord.lightning.force.com%2Faura%3Fr%3D0%26ui-content-components-forceContent-contentDistributionViewer.ContentDistributionViewer.getContentDistributionInfo%3D1
85.222.154.16
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=5&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
http://polymer.github.io/PATENTS.txt
unknown
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/aura?r=1&ui-content-components-forceContent-previewInfoProvider.PreviewInfoProvider.getPreviewInfo=1
85.222.154.16
https://postnord.my.salesforce.com/visualforce/session?url=https%3A%2F%2Fpostnord.lightning.force.com%2Faura%3Fr%3D1%26ui-content-components-forceContent-previewInfoProvider.PreviewInfoProvider.getPreviewInfo%3D1
85.222.154.16
https://postnord.my.salesforce.com/sfc/p/
85.222.154.16
http://polymer.github.io/LICENSE.txt
unknown
https://postnord.my.salesforce.com/sfc/p/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
85.222.154.16
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=7&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
https://postnord.my.salesforce.com/lightning/lightning.out.js
85.222.154.16
http://momentjs.com/guides/#/warnings/dst-shifted/
unknown
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22fwuid%22%3A%22VXZJYkJtTFAtX2RjOGFiVmZaelpqQTk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNC01LjAuOQ%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22axKd1SkEemaE3N_JIjPbjg%22%7D%2C%22mlr%22%3A1%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2Fb0000000IiEy%2Fa%2F1v000001l4Ly%2Fv2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU%22%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/bootstrap.js?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9..-SujRpryxqmNOE9tkT_s6UfNYnrtzfw6t4hLxe54Fvc
85.222.154.16
https://postnord.lightning.force.com/aura?r=0&ui-content-components-forceContent-contentDistributionViewer.ContentDistributionViewer.getContentDistributionInfo=1
85.222.154.15
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22fwuid%22%3A%22VXZJYkJtTFAtX2RjOGFiVmZaelpqQTk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNC01LjAuOQ%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22axKd1SkEemaE3N_JIjPbjg%22%7D%2C%22mlr%22%3A1%2C%22pathPrefix%22%3A%22%2Fsfc%2Fld%2Fb0000000IiEy%2Fa%2F1v000001l4Ly%2Fv2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU%22%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/inline.js?jwt=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9..-SujRpryxqmNOE9tkT_s6UfNYnrtzfw6t4hLxe54Fvc
85.222.154.16
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/auraFW/javascript/VXZJYkJtTFAtX2RjOGFiVmZaelpqQTk4bkk0bVJhZGJCWE9mUC1IZXZRbmcyNDguMTAuNC01LjAuOQ/aura_prod.js
85.222.154.16
https://postnord.my.salesforce.com/auraCmpDef?_au=axKd1SkEemaE3N_JIjPbjg&_c=false&_cac=0&_def=markup://lightning:iconSvgTemplatesUtility&_density=VIEW_ONE&_ff=DESKTOP&_l=true&_l10n=en_US&_lrmc=-386269907&_style=339128706&_uid=QniF-wwgoUK9G6i3zdvmqw&aura.app=markup://forceContent:contentDistributionApp&aura.mode=PROD
85.222.154.16
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/_slds/icons/doctype-sprite/svg/symbols.svg?cache=10.8.2
85.222.154.16
https://postnord.my.salesforce.com/lightning/lightning.out.delegate.js?v=1711629099146
85.222.154.16
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/l/%7B%22mode%22%3A%22PROD%22%2C%22cac%22%3A0%2C%22app%22%3A%22forceContent%3AcontentDistributionApp%22%2C%22serializationVersion%22%3A%221-248.10.4-5.0.9-b%22%2C%22parts%22%3A%22t%22%2C%22loaded%22%3A%7B%22APPLICATION%40markup%3A%2F%2FforceContent%3AcontentDistributionApp%22%3A%22axKd1SkEemaE3N_JIjPbjg%22%7D%2C%22dns%22%3A%22c%22%2C%22ls%22%3A1%2C%22lrmc%22%3A%22-386269907%22%7D/appcore.js?2=
85.222.154.16
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=8&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
https://postnord.file.force.com/sfc/dist/version/renditionDownload?rendition=JPGZ&versionId=0681v000016V82V&operationContext=DELIVERY&contentId=05T1v00003eWDmB&page=3&d=/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU&oid=00Db0000000IiEy&dpt=null&viewId=
85.222.153.142
https://postnord.lightning.force.com/aura?r=1&ui-content-components-forceContent-previewInfoProvider.PreviewInfoProvider.getPreviewInfo=1
85.222.154.15
https://postnord.my.salesforce.com/sfc/ld/b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU/forceContent/contentDistributionApp.app?aura.format=JSON&aura.formatAdapter=LIGHTNING_OUT
85.222.154.16
https://www.lightningdesignsystem.com/resources/icons/
unknown
https://postnord.my.salesforce.com/sCSS/60.0/sprites/1705602480000/Theme2/default/gc/contentDistribution.css
85.222.154.16
http://momentjs.com/guides/#/warnings/min-max/
unknown
There are 41 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
eu17-fra.fra.r.force.com
85.222.154.15
www.google.com
142.251.111.147
eu17-fra.fra.r.salesforce.com
85.222.153.142
eu17-fra.fra.r.my.salesforce.com
85.222.154.16
postnord.file.force.com
unknown
postnord.my.salesforce.com
unknown
postnord.lightning.force.com
unknown

IPs

IP
Domain
Country
Malicious
85.222.154.16
eu17-fra.fra.r.my.salesforce.com
United Kingdom
142.251.111.147
www.google.com
United States
85.222.153.142
eu17-fra.fra.r.salesforce.com
United Kingdom
192.168.2.5
unknown
unknown
239.255.255.250
unknown
Reserved
85.222.154.15
eu17-fra.fra.r.force.com
United Kingdom
85.222.153.14
unknown
United Kingdom

DOM / HTML

URL
Malicious
file:///C:/Users/user/Desktop/Opholdstillaledse+og+sygesikringskort_pdf.html
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU
https://postnord.my.salesforce.com/sfc/p/#b0000000IiEy/a/1v000001l4Ly/v2ZodKBIyzqbVD9PUzExEURJiPxWgEpBdGymQ3tZiAU