IOC Report
https://nexo.com/buy-crypto/bitcoin-btc

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 29 12:40:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 29 12:40:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 29 12:40:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 29 12:40:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 29 12:40:34 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 167
ASCII text, with very long lines (15868)
downloaded
Chrome Cache Entry: 168
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 169
ASCII text, with very long lines (14506)
downloaded
Chrome Cache Entry: 170
JSON data
downloaded
Chrome Cache Entry: 171
Unicode text, UTF-8 text, with very long lines (8362), with no line terminators
downloaded
Chrome Cache Entry: 172
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 173
Web Open Font Format (Version 2), TrueType, length 173220, version 331.17301
downloaded
Chrome Cache Entry: 174
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 175
JSON data
downloaded
Chrome Cache Entry: 176
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 177
HTML document, ASCII text
dropped
Chrome Cache Entry: 178
C source, ASCII text, with very long lines (887)
downloaded
Chrome Cache Entry: 179
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x1080, components 3
dropped
Chrome Cache Entry: 180
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 181
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 182
Web Open Font Format (Version 2), TrueType, length 18856, version 1.0
downloaded
Chrome Cache Entry: 183
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 184
ASCII text, with very long lines (7711)
downloaded
Chrome Cache Entry: 185
JSON data
dropped
Chrome Cache Entry: 186
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (1555), with no line terminators
downloaded
Chrome Cache Entry: 188
JSON data
downloaded
Chrome Cache Entry: 189
ASCII text, with very long lines (65446)
downloaded
Chrome Cache Entry: 190
ASCII text, with very long lines (20986)
downloaded
Chrome Cache Entry: 191
JSON data
dropped
Chrome Cache Entry: 192
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 193
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 194
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 195
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 196
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 197
JSON data
dropped
Chrome Cache Entry: 198
JSON data
dropped
Chrome Cache Entry: 199
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 200
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 201
JSON data
dropped
Chrome Cache Entry: 202
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 203
ASCII text, with very long lines (65450)
downloaded
Chrome Cache Entry: 204
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 205
HTML document, Unicode text, UTF-8 text, with very long lines (4447)
downloaded
Chrome Cache Entry: 206
JSON data
downloaded
Chrome Cache Entry: 207
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 208
ASCII text, with very long lines (11231)
dropped
Chrome Cache Entry: 209
JSON data
dropped
Chrome Cache Entry: 210
JSON data
dropped
Chrome Cache Entry: 211
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 212
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 213
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 214
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 215
JSON data
dropped
Chrome Cache Entry: 216
ASCII text, with very long lines (1513)
downloaded
Chrome Cache Entry: 217
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 218
ASCII text, with very long lines (7779)
downloaded
Chrome Cache Entry: 219
ASCII text, with very long lines (65357)
downloaded
Chrome Cache Entry: 220
JSON data
downloaded
Chrome Cache Entry: 221
JSON data
dropped
Chrome Cache Entry: 222
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 223
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 224
ASCII text, with very long lines (41473)
downloaded
Chrome Cache Entry: 225
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 226
ASCII text, with very long lines (600)
downloaded
Chrome Cache Entry: 227
ASCII text, with very long lines (2369)
downloaded
Chrome Cache Entry: 228
TrueType Font data, digitally signed, 20 tables, 1st "DSIG", 31 names, Macintosh, Copyright (c) 2016-2019 by TypeType. Designers Ivan Gladkikh, Pavel Emelyanov. Technical designe
downloaded
Chrome Cache Entry: 229
JSON data
dropped
Chrome Cache Entry: 230
ASCII text, with very long lines (2783)
downloaded
Chrome Cache Entry: 231
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 232
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 233
Web Open Font Format (Version 2), TrueType, length 19300, version 1.0
downloaded
Chrome Cache Entry: 234
JSON data
dropped
Chrome Cache Entry: 235
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 236
ASCII text, with very long lines (1393)
downloaded
Chrome Cache Entry: 237
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 238
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 239
JSON data
dropped
Chrome Cache Entry: 240
JSON data
downloaded
Chrome Cache Entry: 241
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 242
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 243
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 244
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 245
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 246
ASCII text, with very long lines (1335)
downloaded
Chrome Cache Entry: 247
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 248
JSON data
dropped
Chrome Cache Entry: 249
JSON data
downloaded
Chrome Cache Entry: 250
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 251
ASCII text, with very long lines (4179)
downloaded
Chrome Cache Entry: 252
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 253
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 254
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
downloaded
Chrome Cache Entry: 255
ASCII text, with very long lines (1513)
downloaded
Chrome Cache Entry: 256
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 257
HTML document, ASCII text
downloaded
Chrome Cache Entry: 258
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 259
Web Open Font Format (Version 2), TrueType, length 18836, version 1.0
downloaded
Chrome Cache Entry: 260
ASCII text, with very long lines (8949)
downloaded
Chrome Cache Entry: 261
TrueType Font data, digitally signed, 20 tables, 1st "DSIG", 27 names, Macintosh, Copyright (c) 2016-2019 by TypeType. Designers Ivan Gladkikh, Pavel Emelyanov. Technical designe
downloaded
Chrome Cache Entry: 262
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 263
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 264
Web Open Font Format (Version 2), TrueType, length 140704, version 331.17301
downloaded
Chrome Cache Entry: 265
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 266
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
dropped
Chrome Cache Entry: 267
JSON data
downloaded
Chrome Cache Entry: 268
ASCII text, with very long lines (612)
downloaded
Chrome Cache Entry: 269
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 270
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 271
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 272
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 273
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 274
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 275
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 21980
downloaded
Chrome Cache Entry: 276
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 277
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 278
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 279
Unicode text, UTF-8 text, with very long lines (5146), with no line terminators
downloaded
Chrome Cache Entry: 280
ASCII text, with very long lines (24605)
downloaded
Chrome Cache Entry: 281
ASCII text, with very long lines (57596), with no line terminators
downloaded
Chrome Cache Entry: 282
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 283
JSON data
downloaded
Chrome Cache Entry: 284
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x1080, components 3
dropped
Chrome Cache Entry: 285
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 286
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 287
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 288
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 289
ASCII text, with very long lines (21099)
downloaded
Chrome Cache Entry: 290
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 291
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 292
ASCII text, with very long lines (9298)
downloaded
Chrome Cache Entry: 293
ASCII text, with very long lines (19986), with no line terminators
downloaded
Chrome Cache Entry: 294
HTML document, ASCII text
dropped
Chrome Cache Entry: 295
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 296
ASCII text, with very long lines (27569), with no line terminators
downloaded
Chrome Cache Entry: 297
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 298
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 299
gzip compressed data, from Unix, original size modulo 2^32 28503
downloaded
Chrome Cache Entry: 300
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 50970
downloaded
Chrome Cache Entry: 301
Web Open Font Format (Version 2), TrueType, length 189452, version 331.17301
downloaded
Chrome Cache Entry: 302
JSON data
downloaded
Chrome Cache Entry: 303
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 304
JSON data
dropped
Chrome Cache Entry: 305
ASCII text, with very long lines (2540)
downloaded
Chrome Cache Entry: 306
JSON data
dropped
Chrome Cache Entry: 307
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 308
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 309
JSON data
downloaded
Chrome Cache Entry: 310
RIFF (little-endian) data, Web/P image, VP8 encoding, 1920x1080, Suserng: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 311
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 312
HTML document, ASCII text, with very long lines (14301)
downloaded
Chrome Cache Entry: 313
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 314
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 315
ASCII text, with very long lines (2871)
dropped
Chrome Cache Entry: 316
PNG image data, 1220 x 360, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 317
ASCII text, with very long lines (7711)
downloaded
Chrome Cache Entry: 318
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 319
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 6233
downloaded
Chrome Cache Entry: 320
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 321
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 322
ASCII text, with very long lines (8949)
downloaded
Chrome Cache Entry: 323
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 324
ASCII text, with very long lines (3620), with no line terminators
downloaded
Chrome Cache Entry: 325
PNG image data, 1280 x 690, 4-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 326
ASCII text, with very long lines (11231)
downloaded
Chrome Cache Entry: 327
ASCII text, with very long lines (64347)
downloaded
Chrome Cache Entry: 328
HTML document, ASCII text
downloaded
Chrome Cache Entry: 329
GIF image data, version 89a, 1 x 1
dropped
Chrome Cache Entry: 330
PNG image data, 1280 x 690, 4-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 331
ASCII text, with very long lines (65451)
downloaded
Chrome Cache Entry: 332
JSON data
dropped
Chrome Cache Entry: 333
PNG image data, 220 x 220, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 334
JSON data
downloaded
Chrome Cache Entry: 335
PNG image data, 1220 x 361, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 336
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 337
ASCII text, with very long lines (3703)
downloaded
Chrome Cache Entry: 338
ASCII text, with very long lines (1966), with no line terminators
downloaded
Chrome Cache Entry: 339
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 340
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 341
C source, ASCII text, with very long lines (48275)
downloaded
Chrome Cache Entry: 342
JSON data
downloaded
Chrome Cache Entry: 343
Unicode text, UTF-8 text, with very long lines (49252)
downloaded
Chrome Cache Entry: 344
PNG image data, 1220 x 360, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 345
RIFF (little-endian) data, Web/P image, VP8 encoding, 1920x1080, Suserng: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 346
ASCII text, with very long lines (2871)
downloaded
Chrome Cache Entry: 347
ASCII text, with very long lines (2307), with no line terminators
downloaded
Chrome Cache Entry: 348
JSON data
dropped
Chrome Cache Entry: 349
TrueType Font data, digitally signed, 20 tables, 1st "DSIG", 31 names, Macintosh, Copyright (c) 2016-2019 by TypeType. Designers Ivan Gladkikh, Pavel Emelyanov. Technical designe
downloaded
Chrome Cache Entry: 350
ASCII text, with very long lines (40336)
downloaded
Chrome Cache Entry: 351
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 352
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 353
ASCII text, with very long lines (64463)
downloaded
Chrome Cache Entry: 354
ASCII text, with very long lines (46003)
downloaded
Chrome Cache Entry: 355
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 356
ASCII text, with very long lines (1281)
downloaded
Chrome Cache Entry: 357
RIFF (little-endian) data, Web/P image, VP8 encoding, 1920x1080, Suserng: [none]x[none], YUV color, decoders should clamp
downloaded
Chrome Cache Entry: 358
JSON data
downloaded
Chrome Cache Entry: 359
Web Open Font Format, CFF, length 110116, version 0.0
downloaded
Chrome Cache Entry: 360
HTML document, ASCII text, with very long lines (685), with no line terminators
downloaded
Chrome Cache Entry: 361
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 362
ASCII text, with very long lines (5670)
downloaded
Chrome Cache Entry: 363
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x1080, components 3
dropped
Chrome Cache Entry: 364
TrueType Font data, digitally signed, 20 tables, 1st "DSIG", 27 names, Macintosh, Copyright (c) 2016-2019 by TypeType. Designers Ivan Gladkikh, Pavel Emelyanov. Technical designe
downloaded
Chrome Cache Entry: 365
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 366
PNG image data, 1220 x 360, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 367
JSON data
downloaded
Chrome Cache Entry: 368
Unicode text, UTF-8 text, with very long lines (16433), with no line terminators
downloaded
Chrome Cache Entry: 369
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 370
HTML document, ASCII text, with very long lines (1436)
downloaded
There are 201 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://nexo.com/buy-crypto/bitcoin-btc
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2164 --field-trial-handle=1844,i,10593709334242690155,9391832460529477427,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8

URLs

Name
IP
Malicious
https://nexo.com/buy-crypto/bitcoin-btc
https://github.com/svgdotjs/svg.draggable.js
unknown
https://nexo.com/security
unknown
https://nexo.com/?v=demo
unknown
https://nexo.com/referral
unknown
https://cdn.cookielaw.org/scripttemplates/202302.1.0/assets/otFloatingRoundedIcon.json
104.19.177.52
https://nexo.com/media/pages/currencies/usdt/f7f51f8d1a-1682581727/cc-sc-usdt.svg
unknown
https://nexo.com/buy-crypto/injective-inj
unknown
https://x.adroll.com/update/AX2ICKJHJVENZKINIAVMPB?p=AlNcayZSyzOaI6gUtt49pzsBAGalMCsA_LqJDcz8uokNzA
unknown
https://sa.nexo.com/analytics-next/bundles/ajs-destination.bundle.13362ca512563a10e34d.js
104.18.20.163
https://dev.visualwebsiteoptimizer.com/ee.gif?s=mode_det&e=
unknown
https://d.adroll.com/consent/check/AX2ICKJHJVENZKINIAVMPB?flg=1&pv=19623694762.10979&arrfrr=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&_s=162f2c45d97e5c226b5bfd07c4ea5cbe&_b=2
35.172.64.117
https://ampcid.google.com/v1/publisher:getClientId
unknown
https://d.adroll.com/cm/x/out?adroll_fpc=535c6b2652cb339a23a814b6de3da73b-1711719643240&flg=1&pv=19623694762.10979&arrfrr=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&advertisable=AX2ICKJHJVENZKINIAVMPB
35.172.64.117
about:blank
https://tr.outbrain.com/unifiedPixel?optOut=false&bust=04137282369752462&referrer=&cht=ot&marketerId=0057a0b756270af9bab5e30379e50f3bc0&name=PAGE_VIEW&dl=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&g=1&obApiVersion=2.0-gtm&obtpVersion=2.0.5
64.202.112.255
https://s.adroll.com
unknown
https://t.co/i/adsct?bci=3&eci=2&event_id=691d4f64-06e0-4ee0-9261-d31ae909af0e&events=%5B%5B%22pageview%22%2C%7B%7D%5D%5D&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=409cbd83-25f9-4a08-a895-17310fd6e3fb&tw_document_href=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&tw_iframe_status=0&tw_order_quantity=0&tw_sale_amount=0&txn_id=nyv4q&type=javascript&version=2.3.29
104.244.42.133
https://platform.nexo.com/assets/fa-light-300.woff2
104.18.21.163
https://nexo.com/buy-crypto/usd-coin-usdc
unknown
https://nexo.com/buy-crypto/sei
unknown
https://widget.trustpilot.com/stats/TrustboxImpression?locale=en-US&styleHeight=150px&styleWidth=100%25&theme=light&url=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&referrer=&userAgent=Mozilla%2F5.0%20(Windows%20NT%2010.0%3B%20Win64%3B%20x64)%20AppleWebKit%2F537.36%20(KHTML%2C%20like%20Gecko)%20Chrome%2F117.0.0.0%20Safari%2F537.36&language=en-US&platform=Win32&nosettings=1&businessUnitId=64077695e44f16602bb4c6aa&widgetId=53aa8807dec7e10d38f59f32
3.162.125.115
https://nexo.com/pl/buy-crypto/bitcoin-btc
unknown
https://www.redditstatic.com/ads/581d359d/pixel.js
unknown
https://d.adroll.com/cm/pubmatic/out?adroll_fpc=535c6b2652cb339a23a814b6de3da73b-1711719643240&flg=1&pv=19623694762.10979&arrfrr=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&advertisable=AX2ICKJHJVENZKINIAVMPB
35.172.64.117
https://nexo.com/media/pages/currencies/sushi/8e49741f4b-1707315226/suhsi.svg
unknown
https://www.redditstatic.com/ads/conversions-config/v1/pixel/config/t2_w0fxzww_telemetry
151.101.193.140
https://nexo.com/media/site/3dd5280d71-1707405201/navbar-logo-fireblocks.svg
104.18.20.163
https://nexo.com/blog/nexo-strengthens-data-security-with-successful-soc-2-type-2-assessment
unknown
https://x.adroll.com/attribution/trigger?fpc=535c6b2652cb339a23a814b6de3da73b&advertisable_eid=AX2ICKJHJVENZKINIAVMPB&conversion_type=PageView&conversion_value=0.0&pv=19623694762.10979
3.225.95.250
https://nexo.com/blog
unknown
https://platform.nexo.com/meta/favicon-32x32.png
104.18.21.163
https://nexo.com/buy-crypto/huobi-token-ht
unknown
https://nexo.com/media/pages/assets/icons/products/5c62fc0074-1691422012/help-center-light.svg
unknown
https://nexo.com/defi-terms
unknown
https://nexo.com/media/site/48069f05ef-1690531736/google-store-black.svg
unknown
https://nexo.com/media/pages/currencies/ada/a89d7074ab-1707315225/ada.svg
unknown
https://x.bidswitch.net/sync?dsp_id=44&user_id=OTU1ZDBhZWU1ZjVkYWQ3MGU5MTIyNDc4MjY3ZTk5OTE
35.211.178.172
https://sa-api.nexo.com/v1/p
104.18.21.163
https://sa-api.nexo.com/v1/t
104.18.21.163
https://nexo.com/token
unknown
https://dev.visualwebsiteoptimizer.com/eu01/v.gif?cd=0&a=845627&d=nexo.com&u=DA4A107CC9D9B24991DE306250F10694B&h=ae23225f37c967497fba48d420267c83&t=false
34.96.102.137
https://3.212.39.155/is
3.212.39.155
https://nexo.com/buy-crypto/bitcoin-btc
https://platform.nexo.com/js/gt4.js
104.18.21.163
https://static.nexo.com/dashboard-icons/nexo-benefits-card.svg
104.18.20.163
https://cdn.cookielaw.org/consent/ed428b2a-8f7c-4e2d-b639-49918198ccca/59e7ed23-3152-43e3-be71-8a6ede329749/en.json
104.19.177.52
https://d.adroll.com/cm/taboola/out?adroll_fpc=535c6b2652cb339a23a814b6de3da73b-1711719643240&flg=1&pv=19623694762.10979&arrfrr=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&advertisable=AX2ICKJHJVENZKINIAVMPB
35.172.64.117
https://widget.trustpilot.com/trustbox-data/53aa8807dec7e10d38f59f32?businessUnitId=64077695e44f16602bb4c6aa&locale=en-US
3.162.125.115
https://platform.nexo.com/api/1/get_countries
104.18.21.163
https://cdn.segment.com/v1/projects/yOHFA4hd5yakHS9SzCfAPC2wmKUGbMZ1/settings
99.86.191.237
https://nexo.com/media/pages/assets/icons/products/84ddc96c2f-1669997000/borrow-dark.svg
unknown
https://dev.visualwebsiteoptimizer.com/eu01/v.gif?cd=
unknown
https://app.adjust.com/538tuyd?campaign=direct&adgroup=&redirect=https%3A%2F%2Fplay.google.com%2Fsto
unknown
https://nexo.com/buy-crypto/sushiswap-sushi
unknown
https://cdn.cookielaw.org/scripttemplates/otSDKStub.js
104.19.177.52
https://nexo.com/cdn-cgi/rum?
104.18.20.163
https://nexo.com/media/site/c4d81feb5a-1631610934/logo.svg
unknown
https://platform.nexo.com/
unknown
https://ups.analytics.yahoo.com/ups/55980/sync?_origin=1&uid=OTU1ZDBhZWU1ZjVkYWQ3MGU5MTIyNDc4MjY3ZTk5OTE&gdpr=0&gdpr_consent=BOOla_OOOla_OA2ABBENAkwAAAAXyACAAyAIIA&verify=true
3.225.218.10
https://d.adroll.com/cm/n/out?adroll_fpc=535c6b2652cb339a23a814b6de3da73b-1711719643240&flg=1&pv=19623694762.10979&arrfrr=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&advertisable=AX2ICKJHJVENZKINIAVMPB
35.172.64.117
http://schema.org/BreadcrumbList
unknown
https://cdn.cookielaw.org/consent/ed428b2a-8f7c-4e2d-b639-49918198ccca/ed428b2a-8f7c-4e2d-b639-49918198ccca.json
104.19.177.52
https://analytics.google.com/g/collect?v=2&tid=G-9PLS786W8X&gtm=45je43r0v881343971z8830585059za200&_p=1711719639087&_gaz=1&gcd=13l3l3l3l1&npa=0&dma=0&cid=1617049710.1711719641&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&pscdl=noapi&_s=1&sid=1711719642&sct=1&seg=0&dl=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&dt=Buy%20Bitcoin%20(BTC)%20with%20Credit%20or%20Debit%20Card%20%E2%80%A2%20Nexo&en=page_view&_fv=1&_ss=2&tfd=10256
142.251.16.138
https://s.adroll.com/j/AX2ICKJHJVENZKINIAVMPB/roundtrip.js
3.162.103.56
https://nexo.com/buy-crypto/bitcoin-cash-bch
unknown
https://platform.nexo.com/assets/logo.svg
104.18.21.163
https://stats.g.doubleclick.net/g/collect?v=2&tid=G-9PLS786W8X&cid=1617049710.1711719641&gtm=45je43r0v881343971z8830585059za200&aip=1&dma=0&gcd=13l3l3l3l1&npa=0
172.253.62.154
https://nexo.com/assets/build/277.9c966c9c23f89010.js
104.18.20.163
https://nexo.com/media/pages/currencies/ht/7690f71c15-1707315227/huobi-token.svg
unknown
https://nexo.com/blog?q=
unknown
https://dev.visualwebsiteoptimizer.com/events/t?en=
unknown
https://ib.adnxs.com/bounce?%2Fsetuid%3Fentity%3D172%26code%3DOTU1ZDBhZWU1ZjVkYWQ3MGU5MTIyNDc4MjY3ZTk5OTE
68.67.160.114
https://nexoio.my.site.com/ESWEnhanceddeployment1710313894118/assets/htdocs/sitecontext.min.html?parent_domain=https://platform.nexo.com
https://cdn.cookielaw.org/logos/b42a99aa-d20e-487d-a2e5-b4fe6cf14c17/46437b8a-3f45-4437-88a5-e3718fef00c4/ce9beabe-b232-449d-9ae6-709f50156e71/Nexo-Logo-1280x690.png
104.19.177.52
https://nexo.com/media/pages/assets/icons/products/2ec29cab0c-1669997001/buy-light.svg
unknown
https://platform.nexo.com/assets/repay-dashboard.svg
104.18.21.163
https://nexo.com/assets/build/fonts/blacker-display-bold.woff
104.18.20.163
https://nexo.com/media/pages/assets/icons/products/35cac01fda-1669997001/nexo-prime-light.svg
104.18.20.163
https://nexo.com/ja/buy-crypto/bitcoin-btc
unknown
https://www.instagram.com/nexofinance/
unknown
https://static.nexo.com/visuals/platform/earn-on-crypto-content.png
104.18.20.163
https://idsync.rlcdn.com/377928.gif?partner_uid=955d0aee5f5dad70e9122478267e9991
35.244.154.8
https://dev.visualwebsiteoptimizer.com/j.php?a=845627&u=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&vn=2.1&x=true
34.96.102.137
https://nexo.com/media/pages/assets/icons/products/4e96a800c5-1669997001/buy-dark.svg
unknown
https://cdn.cookielaw.org/scripttemplates/202302.1.0/assets/otCommonStyles.css
104.19.177.52
https://static.hotjar.com/c/hotjar-
unknown
https://nexo.com/affiliate
unknown
https://nexo.com/licenses-and-registrations
unknown
https://x.adroll.com/kv/v1/getvalues
unknown
https://stats.g.doubleclick.net/j/collect?t=dc&aip=1&_r=3&v=1&_v=j101&tid=UA-107280697-8&cid=1617049710.1711719641&jid=56887495&gjid=1926571749&_gid=893356635.1711719641&_u=aHBAgEAjAAAAAGAAI~&z=682261426
172.253.62.154
https://nexo.com/media/pages/currencies/doge/7812a1084a-1707315226/dogecoin.svg
unknown
https://platform.nexo.com/assets/fa-regular-400.woff2
104.18.21.163
https://gum.criteo.com/sid/json?origin=onetag&domain=nexo.com&sn=ChromeSyncframe&so=0&topUrl=nexo.com&cw=1&lsw=1&topicsavail=1&fledgeavail=1
74.119.119.139
https://sa.nexo.com/analytics.js/v1/
unknown
https://nexo.com/media/pages/buy-crypto/46c12ffb11-1659445956/cta-background.png
unknown
https://nexo.com/assets/build/684.9ce923bfa3167eab.js
104.18.20.163
https://script.hotjar.com/modules.ad6500eebe72fe1c39dd.js
18.160.18.77
https://nexo.com/buy-crypto/dogecoin-doge
unknown
https://nexo.com/blog/product/new-features
unknown
https://nexo.com/assets/build/main.80f25eb256b279f1.css
104.18.20.163
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
privacyportal-de.onetrust.com
104.18.32.137
global-uengage1.sfdc-cehfhs.svc.sfdcfc.net
13.49.204.72
sludge-sludge-production-86464678.us-east-1.elb.amazonaws.com
52.206.56.191
us-east-eb2.3lift.com
35.71.139.29
platform.twitter.map.fastly.net
146.75.28.157
sa-api.nexo.com
104.18.21.163
nexo.com
104.18.20.163
stats.g.doubleclick.net
172.253.62.154
t.co
104.244.42.133
cm.g.doubleclick.net
142.251.16.157
pug-vac.pubmnet.com
8.28.7.83
www.google.com
172.253.63.105
q.quora.com
52.6.149.184
px.mountain.com
52.89.99.220
static-cdn.hotjar.com
18.160.41.112
star-mini.c10r.facebook.com
31.13.66.35
d1qug1xf2dk5z6.cloudfront.net
3.162.103.56
nydc1.outbrain.org
64.202.112.255
us-u.openx.net
35.244.159.8
widget.va1.vip.prod.criteo.com
74.119.119.150
dynamic.va1.vip.prod.criteo.com
74.119.119.142
s.twitter.com
104.244.42.67
csm.va1.vip.prod.criteo.net
74.119.119.149
dx.mountain.com
44.209.137.118
platform.nexo.com
104.18.21.163
gs.mountain.com
34.212.4.35
dualstack.reddit.map.fastly.net
151.101.193.140
googleads.g.doubleclick.net
142.250.31.156
reddit.map.fastly.net
151.101.193.140
td.doubleclick.net
172.253.122.156
gum.va1.vip.prod.criteo.com
74.119.119.139
cdn.cookielaw.org
104.19.177.52
user-data-us-east.bidswitch.net
35.211.178.172
adserver-vpc-alb-2-1898430250.us-east-1.elb.amazonaws.com
35.172.64.117
vc-live-cf.hotjar.io
18.160.46.102
static.nexo.com
104.18.20.163
static.cloudflareinsights.com
104.16.80.73
dev.visualwebsiteoptimizer.com
34.96.102.137
sa.nexo.com
104.18.20.163
us-vip001.taboola.com
141.226.224.48
scontent.xx.fbcdn.net
31.13.66.19
idsync.rlcdn.com
35.244.154.8
d296je7bbdd650.cloudfront.net
99.86.191.237
script.hotjar.com
18.160.18.77
events.eu1.segmentapis.com
54.247.121.216
content.nexo.com
104.18.21.163
pippio.com
107.178.254.65
adserver-vpc-alb-0-2072243822.us-east-1.elb.amazonaws.com
54.84.61.12
dsum-sec.casalemedia.com
104.18.36.155
analytics.google.com
142.251.16.138
ats-eks.us-east-1.dcs-online-targeting-prd.aws.oath.cloud
3.225.218.10
widget.trustpilot.com
3.162.125.82
ib.anycast.adnxs.com
68.67.160.114
geolocation.onetrust.com
104.18.32.137
alb.reddit.com
unknown
amplify.outbrain.com
unknown
static.ads-twitter.com
unknown
d.adroll.com
unknown
dynamic.criteo.com
unknown
csm.va.us.criteo.net
unknown
sslwidget.criteo.com
unknown
wave.outbrain.com
unknown
static.hotjar.com
unknown
www.redditstatic.com
unknown
pixel.rubiconproject.com
unknown
connect.facebook.net
unknown
px.ads.linkedin.com
unknown
x.adroll.com
unknown
a.quora.com
unknown
ups.analytics.yahoo.com
unknown
vc.hotjar.io
unknown
gum.criteo.com
unknown
cdn.segment.com
unknown
image2.pubmatic.com
unknown
sync.outbrain.com
unknown
sync.taboola.com
unknown
x.bidswitch.net
unknown
www.facebook.com
unknown
www.linkedin.com
unknown
nexoio.my.salesforce-scrt.com
unknown
analytics.pangle-ads.com
unknown
s.adroll.com
unknown
analytics.twitter.com
unknown
snap.licdn.com
unknown
analytics.tiktok.com
unknown
ib.adnxs.com
unknown
nexoio.my.site.com
unknown
tr.outbrain.com
unknown
eb2.3lift.com
unknown
There are 79 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
172.253.62.154
stats.g.doubleclick.net
United States
74.119.119.139
gum.va1.vip.prod.criteo.com
United States
52.89.99.220
px.mountain.com
United States
146.75.28.157
platform.twitter.map.fastly.net
Sweden
35.244.154.8
idsync.rlcdn.com
United States
142.251.16.138
analytics.google.com
United States
104.16.80.73
static.cloudflareinsights.com
United States
35.211.178.172
user-data-us-east.bidswitch.net
United States
151.101.193.140
dualstack.reddit.map.fastly.net
United States
8.28.7.83
pug-vac.pubmnet.com
United States
104.18.32.137
privacyportal-de.onetrust.com
United States
172.253.115.147
unknown
United States
54.84.61.12
adserver-vpc-alb-0-2072243822.us-east-1.elb.amazonaws.com
United States
64.202.112.255
nydc1.outbrain.org
United States
3.212.39.155
unknown
United States
70.42.32.127
unknown
United States
104.18.20.163
nexo.com
United States
74.119.119.149
csm.va1.vip.prod.criteo.net
United States
31.13.66.19
scontent.xx.fbcdn.net
Ireland
172.253.63.105
www.google.com
United States
104.244.42.133
t.co
United States
99.86.191.237
d296je7bbdd650.cloudfront.net
United States
74.119.119.142
dynamic.va1.vip.prod.criteo.com
United States
104.18.36.155
dsum-sec.casalemedia.com
United States
172.64.155.119
unknown
United States
44.209.137.118
dx.mountain.com
United States
107.178.254.65
pippio.com
United States
104.18.21.163
sa-api.nexo.com
United States
239.255.255.250
unknown
Reserved
18.160.18.77
script.hotjar.com
United States
18.160.46.102
vc-live-cf.hotjar.io
United States
3.162.125.82
widget.trustpilot.com
United States
52.6.149.184
q.quora.com
United States
172.253.62.157
unknown
United States
34.212.4.35
gs.mountain.com
United States
104.19.177.52
cdn.cookielaw.org
United States
3.225.218.10
ats-eks.us-east-1.dcs-online-targeting-prd.aws.oath.cloud
United States
192.168.2.16
unknown
unknown
18.160.41.112
static-cdn.hotjar.com
United States
142.251.16.157
cm.g.doubleclick.net
United States
54.247.121.216
events.eu1.segmentapis.com
United States
54.78.180.46
unknown
United States
172.253.122.156
td.doubleclick.net
United States
35.244.159.8
us-u.openx.net
United States
74.119.119.150
widget.va1.vip.prod.criteo.com
United States
52.206.56.191
sludge-sludge-production-86464678.us-east-1.elb.amazonaws.com
United States
3.225.95.250
unknown
United States
70.42.32.95
unknown
United States
3.162.125.115
unknown
United States
141.226.224.48
us-vip001.taboola.com
Israel
68.67.160.114
ib.anycast.adnxs.com
United States
34.96.102.137
dev.visualwebsiteoptimizer.com
United States
35.71.139.29
us-east-eb2.3lift.com
United States
142.250.31.156
googleads.g.doubleclick.net
United States
31.13.66.35
star-mini.c10r.facebook.com
Ireland
104.244.42.67
s.twitter.com
United States
13.49.204.72
global-uengage1.sfdc-cehfhs.svc.sfdcfc.net
United States
52.200.166.19
unknown
United States
151.101.1.140
unknown
United States
104.244.42.195
unknown
United States
104.244.42.5
unknown
United States
68.67.179.166
unknown
United States
142.251.16.99
unknown
United States
35.172.64.117
adserver-vpc-alb-2-1898430250.us-east-1.elb.amazonaws.com
United States
3.162.103.56
d1qug1xf2dk5z6.cloudfront.net
United States
There are 55 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://nexo.com/buy-crypto/bitcoin-btc
https://nexo.com/buy-crypto/bitcoin-btc
https://nexo.com/buy-crypto/bitcoin-btc
https://nexo.com/buy-crypto/bitcoin-btc
https://nexo.com/buy-crypto/bitcoin-btc
https://nexo.com/buy-crypto/bitcoin-btc
https://widget.trustpilot.com/trustboxes/53aa8807dec7e10d38f59f32/index.html?templateId=53aa8807dec7e10d38f59f32&businessunitId=64077695e44f16602bb4c6aa#locale=en-US&styleHeight=150px&styleWidth=100%25&theme=light
https://widget.trustpilot.com/trustboxes/53aa8807dec7e10d38f59f32/index.html?templateId=53aa8807dec7e10d38f59f32&businessunitId=64077695e44f16602bb4c6aa#locale=en-US&styleHeight=150px&styleWidth=100%25&theme=light
https://nexoio.my.site.com/ESWEnhanceddeployment1710313894118/assets/htdocs/sitecontext.min.html?parent_domain=https://nexo.com
about:blank
https://td.doubleclick.net/td/rul/713709014?random=1711719641939&cv=11&fst=1711719641939&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be43r0p1v9176985075z8830585059za201&gcd=13l3l3l3l1&dma=0&u_w=1280&u_h=1024&url=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&hn=www.googleadservices.com&frm=0&tiba=Buy%20Bitcoin%20(BTC)%20with%20Credit%20or%20Debit%20Card%20%E2%80%A2%20Nexo&npa=0&pscdl=noapi&auid=1520633281.1711719640&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1
https://gum.criteo.com/syncframe?topUrl=nexo.com&origin=onetag#{%22bundle%22:{%22origin%22:0,%22value%22:null},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22nexo.com%22,%22topUrl%22:%22nexo.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://x.adroll.com/pxl/iframe_content.html?adroll_fpc=535c6b2652cb339a23a814b6de3da73b-1711719643240&flg=1&pv=19623694762.10979&arrfrr=https%3A%2F%2Fnexo.com%2Fbuy-crypto%2Fbitcoin-btc&advertisable=AX2ICKJHJVENZKINIAVMPB
https://platform.nexo.com/register
https://platform.nexo.com/register
https://nexoio.my.site.com/ESWEnhanceddeployment1710313894118/assets/htdocs/sitecontext.min.html?parent_domain=https://platform.nexo.com
There are 6 hidden doms, click here to show them.