IOC Report
http://delivery.dealertrack.com

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 53
PNG image data, 2113 x 848, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 54
MS Windows icon resource - 5 icons, 64x64, 8 bits/pixel, 48x48, 8 bits/pixel
downloaded
Chrome Cache Entry: 55
Web Open Font Format (Version 2), TrueType, length 17032, version 1.0
downloaded
Chrome Cache Entry: 56
ASCII text, with very long lines (65324)
downloaded
Chrome Cache Entry: 57
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 58
ASCII text
downloaded
Chrome Cache Entry: 59
PNG image data, 1576 x 620, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 60
ASCII text, with very long lines (10728)
downloaded
Chrome Cache Entry: 61
ASCII text, with very long lines (2674)
downloaded
Chrome Cache Entry: 62
PNG image data, 2113 x 848, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 63
Web Open Font Format (Version 2), TrueType, length 17060, version 1.0
downloaded
Chrome Cache Entry: 64
HTML document, ASCII text, with very long lines (370)
downloaded
Chrome Cache Entry: 65
PNG image data, 1576 x 620, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 66
MS Windows icon resource - 5 icons, 64x64, 8 bits/pixel, 48x48, 8 bits/pixel
dropped
Chrome Cache Entry: 67
ASCII text, with very long lines (875)
downloaded
Chrome Cache Entry: 68
Web Open Font Format (Version 2), TrueType, length 15744, version 1.0
downloaded
There are 7 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2408 --field-trial-handle=2088,i,14622481399342381906,2248517479507533122,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://delivery.dealertrack.com"

URLs

Name
IP
Malicious
http://delivery.dealertrack.com
https://developers.google.com/web/updates/2017/09/abortable-fetch
unknown
https://stats.g.doubleclick.net/g/collect
unknown
https://github.com/benjamn/optimism/pull/195.
unknown
https://spec.graphql.org/draft/#sec-Field-Collection
unknown
https://www.apollographql.com/docs/react/caching/cache-interaction/#using-updatequery-and-updatefrag
unknown
https://github.com/WebReflection/get-own-property-symbols/issues/4
unknown
https://github.com/feross/buffer/pull/97
unknown
https://registry.npmjs.org/aws-appsync-auth-link/-/aws-appsync-auth-link-3.0.7.tgz
unknown
https://hrovewb7z5earetfruc52uh32q.appsync-api.us-west-2.amazonaws.com/graphql
unknown
https://a.co/7PzMCcy
unknown
https://delivery.dealertrack.com/digitalPaperDevice-bundle.js
18.165.83.102
https://github.com/facebook/regenerator/blob/main/packages/runtime/runtime.js#L736=
unknown
http://docs.aws.amazon.com/general/latest/gr/sigv4-create-canonical-request.html
unknown
http://s3.amazonaws.com/doc/2006-03-01/
unknown
http://docs.python.org/library/uuid.html
unknown
https://ampcid.google.com/v1/publisher:getClientId
unknown
https://github.com/facebook/flow/issues/2221
unknown
https://xcqgxnulhvd7nlv5okckmjrc44.appsync-api.us-east-1.amazonaws.com/graphql
unknown
http://www.ecma-international.org/ecma-262/6.0/#sec-iterator-interface)
unknown
https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/JSON/stringify#the_
unknown
about:blank
http://aws.amazon.com/apache2.0/
unknown
https://stackoverflow.com/a/5259004)
unknown
https://5jhqvpcglnbqfobp6inl5gey3e.appsync-api.us-west-2.amazonaws.com/graphql
unknown
https://vyugriahs5dzpbxcjfbtb3p2oq.appsync-api.us-east-1.amazonaws.com/graphql
unknown
http://docs.aws.amazon.com/AmazonS3/latest/API/sigv4-HTTPPOSTConstructPolicy.html
unknown
https://www.google.com
unknown
https://a3o3a3joare6niydskx7iffkse.appsync-api.us-east-1.amazonaws.com/graphql
unknown
http://stackoverflow.com/a/22747272/680742
unknown
https://en.wiktionary.org/wiki/canonical_form:
unknown
https://bugzilla.mozilla.org/show_bug.cgi?id=695438.
unknown
https://github.com/zertosh/loose-envify)
unknown
http://www.whatwg.org/specs/web-apps/current-work/multipage/comms.html#crossDocumentMessages
unknown
https://yarnpkg.com/en/docs/selective-version-resolutions
unknown
https://mths.be/punycode
unknown
https://tools.ietf.org/html/rfc1123#section-2
unknown
https://stats.g.doubleclick.net/j/collect
unknown
https://nodejs.org/dist/latest/docs/api/stream.html#stream_object_mode
unknown
https://github.com/laverdet/node-fibers/blob/ddebed9b8ae3883e57f822e2108e6943e5c8d2a8/fibers.js#L97-
unknown
https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Iteration_protocols#iterable
unknown
http://docs.apollostack.com/apollo-client/core.html#gql
unknown
http://docs.aws.amazon.com/general/latest/gr/sigv4_signing.html
unknown
https://kqmiraqxkbar3jkfpgyvjnn52a.appsync-api.us-east-1.amazonaws.com/graphql
unknown
https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Iteration_protocols#iterator
unknown
http://www.movable-type.co.uk/scripts/sha1.html
unknown
https://sso.dealertrack.com/affwebservices/public/oauthtokenconsumer/Dealertrack-oAuthClient?AuthzSe
unknown
https://github.com/joyent/node/issues/1707
unknown
https://github.com/jsdom/jsdom/issues/1537#issuecomment-229405327
unknown
http://docs.aws.amazon.com/general/latest/gr/sigv4-add-signature-to-request.html
unknown
https://tc39.github.io/proposal-async-iteration/#sec-for-in-and-for-of-statements)
unknown
https://github.com/apollographql/apollo-client/pull/5962
unknown
https://github.com/facebook/flow/issues/3258
unknown
https://mathiasbynens.be/notes/javascript-encoding
unknown
https://adservice.google.com/pagead/regclk
unknown
https://developer.mozilla.org/en/DOM/window.postMessage
unknown
https://github.com/endojs/endo/issues/576#issuecomment-1178515224
unknown
https://cct.google/taggy/agent.js
unknown
https://github.com/tc39/proposal-observable
unknown
https://blueimp.net
unknown
https://daringfireball.net/projects/markdown/).
unknown
https://github.com/zenparsing/zen-observable/blob/master/src/Observable.js#L169
unknown
https://code.google.com/p/chromium/issues/detail?id=25916
unknown
https://www.apollographql.com/docs/react/basics/setup.html
unknown
https://www.google.%/ads/ga-audiences
unknown
https://redux.js.org/tutorials/fundamentals/part-4-store#writing-custom-middleware
unknown
http://ecma-international.org/ecma-262/7.0/#sec-object.prototype.tostring)
unknown
http://dev.apollodata.com/core/fragments.html#unique-names
unknown
https://github.com/beatgammit/base64-js/issues/42
unknown
https://github.com/twbs/bootstrap/blob/master/LICENSE)
unknown
https://stats.g.doubleclick.net/g/collect?v=2&
unknown
https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Iteration_protocols#iterator)
unknown
https://github.com/benlesh/symbol-observable
unknown
https://mtijqgpuyjcajpl5n5lfbrcgeu.appsync-api.us-west-2.amazonaws.com/graphql
unknown
https://www.apollographql.com/docs/react/pagination/core-api/).
unknown
https://github.com/facebook/regenerator/blob/main/LICENSE
unknown
https://tc39.github.io/proposal-async-iteration/#sec-asynciterable-interface)
unknown
https://aws.amazon.com/
unknown
https://github.com/kmalakoff/response-iterator/blob/master/src/iterators/async.ts
unknown
https://delivery.dealertrack.com/
https://github.com/LiosK/UUID.js
unknown
https://github.com/ljharb/object.assign/issues/17
unknown
https://github.com/facebook/react-native/pull/1632
unknown
https://stackpath.bootstrapcdn.com/bootstrap/4.3.1/css/bootstrap.min.css
104.18.10.207
https://github.com/blueimp/JavaScript-MD5
unknown
https://opensource.org/licenses/MIT
unknown
https://github.com/kmalakoff/response-iterator/blob/master/src/iterators/nodeStream.ts
unknown
https://github.com/isaacs/node-lru-cache
unknown
https://tc39.github.io/proposal-async-iteration/#sec-asynciterator-interface)
unknown
https://github.com/aws/aws-sdk-js-v3).
unknown
http://opensource.org/licenses/BSD-3-Clause
unknown
https://github.com/aws/aws-sdk-js/issues/2304)
unknown
https://j6ek3s3lgfc67hah7abedbxftq.appsync-api.us-east-1.amazonaws.com/graphql
unknown
https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Array/forEach
unknown
http://stackoverflow.com/a/398120/376773
unknown
http://docs.aws.amazon.com/general/latest/gr/sigv4-create-string-to-sign.html
unknown
https://delivery.dealertrack.com/CA-CMYK-Stacked_2C-LtBg.png
18.165.83.102
https://www.apollographql.com/docs/react/recipes/fragment-matching.html
unknown
https://spec.graphql.org/draft/#sec-All-Variables-Used
unknown
http://www.ecma-international.org/ecma-262/6.0/#sec-iterable-interface)
unknown
https://github.com/lodash/lodash/blob/4.17.15/dist/lodash.js#L6735-L6744
unknown
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
stackpath.bootstrapcdn.com
104.18.10.207
kqmiraqxkbar3jkfpgyvjnn52a.appsync-realtime-api.us-east-1.amazonaws.com
18.215.6.164
www.google.com
74.125.138.99
delivery.dealertrack.com
18.165.83.57
fp2e7a.wpc.phicdn.net
192.229.211.108

IPs

IP
Domain
Country
Malicious
74.125.138.99
www.google.com
United States
104.18.10.207
stackpath.bootstrapcdn.com
United States
192.168.2.4
unknown
unknown
18.215.6.164
kqmiraqxkbar3jkfpgyvjnn52a.appsync-realtime-api.us-east-1.amazonaws.com
United States
54.81.250.40
unknown
United States
18.165.83.102
unknown
United States
239.255.255.250
unknown
Reserved
18.165.83.57
delivery.dealertrack.com
United States
18.165.83.37
unknown
United States

DOM / HTML

URL
Malicious
https://delivery.dealertrack.com/
about:blank