IOC Report
https://netflixfreeprimeofficle.blogspot.com/

loading gif

Files

File Path
Type
Category
Malicious
Chrome Cache Entry: 52
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 2000x1125, components 3
downloaded
Chrome Cache Entry: 53
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 54
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 55
MS Windows icon resource - 2 icons, 32x32, 8 bits/pixel, 16x16, 8 bits/pixel
dropped
Chrome Cache Entry: 56
HTML document, ASCII text, with very long lines (11440), with no line terminators
downloaded
Chrome Cache Entry: 57
HTML document, ASCII text, with very long lines (53313)
downloaded
Chrome Cache Entry: 58
MS Windows icon resource - 2 icons, 32x32, 8 bits/pixel, 16x16, 8 bits/pixel
downloaded
Chrome Cache Entry: 59
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 2000x1125, components 3
dropped
Chrome Cache Entry: 60
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 61
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 62
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 63
ASCII text, with very long lines (398), with no line terminators
downloaded
Chrome Cache Entry: 64
TrueType Font data, digitally signed, 12 tables, 1st "DSIG", 14 names, Macintosh, Copyright \251 2017 NETFLIXnf-iconRegular1.092;UKWN;nf-icon-Regularnf-icon RegularVersion 1.092n
downloaded
Chrome Cache Entry: 65
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 66
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 67
ASCII text, with very long lines (1941)
downloaded
Chrome Cache Entry: 68
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 69
PNG image data, 57 x 57, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 70
PNG image data, 57 x 57, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 71
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 72
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 73
SVG Scalable Vector Graphics image
downloaded
There are 13 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2176 --field-trial-handle=2000,i,7854789279839243494,16837979108189263738,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://netflixfreeprimeofficle.blogspot.com/"

URLs

Name
IP
Malicious
https://netflixfreeprimeofficle.blogspot.com/
malicious
https://blogger.googleusercontent.com/img/b/U2hvZWJveA/AVvXsEgfMvYAhAbdHksiBA24JKmb2Tav6K0GviwztID3C
unknown
https://s4.histats.com/stats/0.php?4583272&@f16&@g0&@h3&@i1&@j1713478964232&@k5232&@l3&@mFree%20prime%20Netflix&@n0&@o1000&@q0&@r0&@s0&@ten-US&@u1280&@b1:-69460634&@b3:1713478964&@b4:js15_as.js&@b5:120&@a-_0.2.1&@vhttps%3A%2F%2Fnetflixfreeprimeofficle.blogspot.com%2F%23contactus&@w
54.39.128.162
https://netflixfreeprimeofficle.blogspot.com/nf-icon-v1-93.woff
108.177.122.132
https://www.blogger.com/share-post.g?blogID=6867398000973848999&postID=4358104315266949208&target=fa
unknown
https://www.blogger.com
unknown
https://www.blogger.com/share-post.g?blogID=6867398000973848999&postID=4358104315266949208&target=pi
unknown
https://assets.nflxext.com/ffe/siteui/fonts/nf-icon-v1-93.ttf
45.57.91.1
https://netflixfreeprimeofficle.blogspot.com/2024/04/
unknown
https://twitter.com/intent/tweet?text=
unknown
https://s4.histats.com/stats/0.php?4583272&@f16&@g0&@h2&@i1&@j1713478959000&@k10825&@l2&@mFree%20prime%20Netflix&@n0&@o1000&@q0&@r0&@s0&@ten-US&@u1280&@b1:123707975&@b3:1713478959&@b4:js15_as.js&@b5:120&@a-_0.2.1&@vhttps%3A%2F%2Fnetflixfreeprimeofficle.blogspot.com%2F%23LoginHelp&@w
54.39.128.162
https://www.blogger.com/share-post.g?blogID=6867398000973848999&postID=4358104315266949208&target=tw
unknown
https://www.blogger.com/static/v1/widgets/517362887-widgets.js
64.233.177.191
https://s4.histats.com/stats/0.php?4583272&@f16&@g0&@h6&@i1&@j1713479000790&@k11370&@l6&@mFree%20prime%20Netflix&@n0&@o1000&@q0&@r0&@s0&@ten-US&@u1280&@b1:-134735493&@b3:1713479001&@b4:js15_as.js&@b5:120&@a-_0.2.1&@vhttps%3A%2F%2Fnetflixfreeprimeofficle.blogspot.com%2F%23LoginHelp&@w
54.39.128.162
https://www.blogger.com/static/v1/jsbin/1654307995-lbx__en_gb.js
unknown
https://www.blogger.com/share-post.g?blogID=6867398000973848999&postID=4358104315266949208&target=em
unknown
https://assets.nflxext.com/ffe/siteui/vlv3/bd27b60f-02db-41da-8f5c-1558b01b44d0/17a20159-6c8b-4e60-be30-becbc0268684/DZ-en-20180813-popsignuptwoweeks-perspective_alpha_website_large.jpg
45.57.91.1
https://s4.histats.com/stats/0.php?4583272&@f16&@g0&@h7&@i1&@j1713479012889&@k12099&@l7&@mFree%20prime%20Netflix&@n0&@o1000&@q0&@r0&@s0&@ten-US&@u1280&@b1:162521624&@b3:1713479013&@b4:js15_as.js&@b5:120&@a-_0.2.1&@vhttps%3A%2F%2Fnetflixfreeprimeofficle.blogspot.com%2F%23contactus&@w
54.39.128.162
https://netflixfreeprimeofficle.blogspot.com/2024/04/blog-post.html#more
unknown
https://netflixfreeprimeofficle.blogspot.com/feeds/posts/default?alt=rss
unknown
https://netflixfreeprimeofficle.blogspot.com/Netflix_files/jquery.min.js.download
108.177.122.132
https://s4.histats.com/stats/0.php?4583272&@f16&@g1&@h1&@i1&@j1713478948175&@k0&@l1&@mFree%20prime%20Netflix&@n0&@o1000&@q0&@r0&@s0&@ten-US&@u1280&@b1:-104635329&@b3:1713478948&@b4:js15_as.js&@b5:120&@a-_0.2.1&@vhttps%3A%2F%2Fnetflixfreeprimeofficle.blogspot.com%2F&@w
54.39.128.162
https://netflixfreeprimeofficle.blogspot.com/Netflix_files/jquery.bootstrap.js.download
108.177.122.132
https://www.blogger.com/feeds/6867398000973848999/posts/default
unknown
https://netflixfreeprimeofficle.blogspot.com/#LoginHelp
https://www.blogger.com/go/report-abuse
unknown
https://netflixfreeprimeofficle.blogspot.com/2024/04/blog-post.html
unknown
https://netflixfreeprimeofficle.blogspot.com/Netflix_files/jquery.placeholder.label.js.download
108.177.122.132
http://schema.org
unknown
https://www.blogger.com/share-post.g?blogID=6867398000973848999&postID=4358104315266949208&target=
unknown
https://raviral.com/host_style/style/js-track/track.js
172.67.161.164
https://s4.histats.com/stats/0.php?4583272&@f16&@g0&@h5&@i1&@j1713478989420&@k11786&@l5&@mFree%20prime%20Netflix&@n0&@o1000&@q0&@r0&@s0&@ten-US&@u1280&@b1:-169212545&@b3:1713478989&@b4:js15_as.js&@b5:120&@a-_0.2.1&@vhttps%3A%2F%2Fnetflixfreeprimeofficle.blogspot.com%2F%23LoginHelp&@w
54.39.128.162
https://s4.histats.com/stats/e.php?4583272&@Ab&@R88749&@w
54.39.128.162
https://netflixfreeprimeofficle.blogspot.com/2024/04/blog-post.html#comments
unknown
https://netflixfreeprimeofficle.blogspot.com/responsive/sprite_v1_6.css.svg
108.177.122.132
https://netflixfreeprimeofficle.blogspot.com/
https://netflixfreeprimeofficle.blogspot.com/search
unknown
https://s4.histats.com/stats/0.php?4583272&@f16&@g0&@h4&@i1&@j1713478977634&@k13402&@l4&@mFree%20prime%20Netflix&@n0&@o1000&@q0&@r0&@s0&@ten-US&@u1280&@b1:-41807832&@b3:1713478978&@b4:js15_as.js&@b5:120&@a-_0.2.1&@vhttps%3A%2F%2Fnetflixfreeprimeofficle.blogspot.com%2F%23contactus&@w
54.39.128.162
https://www.blogger.com/profile/12633409623713486896
unknown
https://i.imgur.com/OabVP5H.png
151.101.52.193
https://netflixfreeprimeofficle.blogspot.com/feeds/posts/default
unknown
https://netflixfreeprimeofficle.blogspot.com/favicon.ico
108.177.122.132
https://resources.blogblog.com/img/widgets/icon_contactform_cross.gif
unknown
https://www.blogger.com/static/v1/v-css/13464135-lightbox_bundle.css
unknown
https://netflixfreeprimeofficle.blogspot.com/#contactus
There are 34 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
blogspot.l.googleusercontent.com
108.177.122.132
s4.histats.com
54.39.128.162
raviral.com
172.67.161.164
www.google.com
172.253.124.104
blogger.l.google.com
64.233.177.191
assets.nflxext.com
45.57.91.1
fp2e7a.wpc.phicdn.net
192.229.211.108
ipv4.imgur.map.fastly.net
151.101.52.193
windowsupdatebg.s.llnwi.net
69.164.42.0
netflixfreeprimeofficle.blogspot.com
unknown
i.imgur.com
unknown
s10.histats.com
unknown
www.blogger.com
unknown
There are 3 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
172.253.124.132
unknown
United States
172.67.161.164
raviral.com
United States
45.57.91.1
assets.nflxext.com
United States
45.57.90.1
unknown
United States
172.253.124.104
www.google.com
United States
54.39.128.162
s4.histats.com
Canada
192.168.2.6
unknown
unknown
142.251.15.132
unknown
United States
239.255.255.250
unknown
Reserved
151.101.52.193
ipv4.imgur.map.fastly.net
United States
108.177.122.132
blogspot.l.googleusercontent.com
United States
64.233.177.191
blogger.l.google.com
United States
There are 2 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://netflixfreeprimeofficle.blogspot.com/
malicious
https://netflixfreeprimeofficle.blogspot.com/
malicious
https://netflixfreeprimeofficle.blogspot.com/#LoginHelp
malicious
https://netflixfreeprimeofficle.blogspot.com/#LoginHelp
malicious
https://netflixfreeprimeofficle.blogspot.com/#LoginHelp
malicious
https://netflixfreeprimeofficle.blogspot.com/#contactus
malicious
https://netflixfreeprimeofficle.blogspot.com/#contactus
malicious
https://netflixfreeprimeofficle.blogspot.com/#contactus
malicious