IOC Report
https://link.pdffiller.com/r?u=15720095&m=3435477410&t=32129&o=5__5236j4GL6O9j0iItXylRxbrYNdUmdde1vs0MZLRs-c8EVMwxI5RUgkMcphZaWNqe7fjiwiPIgRTf0EtU2MeAFE8bXE25EI9e4-AML4IYG_N8oEeQs2x5B6C3xOB1AYZsH8I7Se74bmasvp6cp6VyuQNLKOxxezUUjOEAX-hmBaVfkzgXk8oEvcB4m25RrL-rVjg%3D%3D&s=direct_push

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 19 15:46:51 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 19 15:46:51 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 19 15:46:51 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 19 15:46:51 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 19 15:46:50 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 160
ASCII text, with very long lines (360), with no line terminators
downloaded
Chrome Cache Entry: 161
ASCII text, with very long lines (15757)
downloaded
Chrome Cache Entry: 162
ASCII text, with very long lines (1339)
downloaded
Chrome Cache Entry: 163
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 165
ASCII text, with very long lines (8614)
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (65509)
downloaded
Chrome Cache Entry: 169
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 172
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 173
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 174
ASCII text, with very long lines (2899)
downloaded
Chrome Cache Entry: 176
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 177
ASCII text, with very long lines (9149)
downloaded
Chrome Cache Entry: 179
ASCII text, with very long lines (51751), with no line terminators
downloaded
Chrome Cache Entry: 180
ASCII text, with very long lines (11987)
downloaded
Chrome Cache Entry: 181
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 182
ASCII text, with very long lines (65475)
downloaded
Chrome Cache Entry: 183
JSON data
dropped
Chrome Cache Entry: 184
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 185
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 186
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 187
ASCII text, with very long lines (19257)
downloaded
Chrome Cache Entry: 188
ASCII text, with very long lines (65469)
downloaded
Chrome Cache Entry: 190
HTML document, ASCII text
dropped
Chrome Cache Entry: 191
ASCII text, with very long lines (8035), with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 193
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 194
Unicode text, UTF-8 text, with very long lines (49499), with NEL line terminators
downloaded
Chrome Cache Entry: 195
ASCII text, with very long lines (969)
downloaded
Chrome Cache Entry: 197
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 198
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 199
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 200
ASCII text, with very long lines (961)
downloaded
Chrome Cache Entry: 201
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 202
ASCII text, with very long lines (8800)
downloaded
Chrome Cache Entry: 204
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 207
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 209
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 214
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 215
ASCII text, with very long lines (2899)
downloaded
Chrome Cache Entry: 216
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 217
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 219
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 225
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 226
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 234
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 237
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 238
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 241
Unicode text, UTF-8 text, with very long lines (46429), with no line terminators
downloaded
Chrome Cache Entry: 242
ASCII text, with very long lines (3922)
downloaded
Chrome Cache Entry: 244
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 245
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 246
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 247
Web Open Font Format (Version 2), TrueType, length 40112, version 1.0
downloaded
Chrome Cache Entry: 251
ASCII text, with very long lines (65450)
downloaded
Chrome Cache Entry: 255
ASCII text, with very long lines (14883)
downloaded
Chrome Cache Entry: 257
ASCII text, with very long lines (2500), with no line terminators
downloaded
Chrome Cache Entry: 259
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 260
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 261
ASCII text, with very long lines (13430), with no line terminators
downloaded
Chrome Cache Entry: 264
HTML document, ASCII text, with very long lines (44877), with no line terminators
downloaded
Chrome Cache Entry: 265
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 266
Unicode text, UTF-8 text, with very long lines (35504)
downloaded
Chrome Cache Entry: 267
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 268
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 269
ASCII text, with very long lines (3602), with no line terminators
downloaded
Chrome Cache Entry: 270
ASCII text, with very long lines (57671), with no line terminators
downloaded
Chrome Cache Entry: 271
ASCII text, with very long lines (9377), with no line terminators
downloaded
Chrome Cache Entry: 273
PNG image data, 42 x 43, 8-bit colormap, interlaced
downloaded
Chrome Cache Entry: 274
ASCII text, with very long lines (43863)
downloaded
Chrome Cache Entry: 276
ASCII text, with very long lines (972)
downloaded
Chrome Cache Entry: 277
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 279
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 280
ASCII text, with very long lines (11655), with no line terminators
downloaded
Chrome Cache Entry: 282
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 284
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 285
ASCII text, with very long lines (1860)
downloaded
Chrome Cache Entry: 286
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 287
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 289
ASCII text, with very long lines (65460)
downloaded
Chrome Cache Entry: 291
ASCII text, with very long lines (17821), with no line terminators
downloaded
Chrome Cache Entry: 292
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 296
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 297
Unicode text, UTF-8 text, with very long lines (1786)
downloaded
Chrome Cache Entry: 300
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 301
Web Open Font Format (Version 2), TrueType, length 39372, version 1.0
downloaded
Chrome Cache Entry: 305
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 306
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 307
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 309
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 313
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 314
ASCII text, with very long lines (50116)
downloaded
Chrome Cache Entry: 315
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 316
Unicode text, UTF-8 text, with very long lines (65470)
downloaded
Chrome Cache Entry: 317
ASCII text, with very long lines (61798)
downloaded
Chrome Cache Entry: 318
ASCII text, with very long lines (609)
downloaded
Chrome Cache Entry: 320
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 322
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 323
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 324
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 326
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 328
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 329
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 330
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 331
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 332
JSON data
dropped
Chrome Cache Entry: 333
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 335
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 341
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 342
Web Open Font Format (Version 2), TrueType, length 40352, version 1.0
downloaded
Chrome Cache Entry: 343
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 345
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
dropped
Chrome Cache Entry: 346
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 348
ASCII text, with very long lines (3000), with no line terminators
downloaded
Chrome Cache Entry: 352
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 353
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 354
Unicode text, UTF-8 text, with very long lines (64735)
downloaded
Chrome Cache Entry: 355
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 357
ASCII text, with very long lines (2951), with no line terminators
downloaded
Chrome Cache Entry: 358
ASCII text, with very long lines (40055), with no line terminators
dropped
Chrome Cache Entry: 359
GIF image data, version 89a, 1 x 1
downloaded
Chrome Cache Entry: 360
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 363
Unicode text, UTF-8 text, with very long lines (953)
downloaded
Chrome Cache Entry: 364
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 366
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 367
ASCII text, with very long lines (61661), with no line terminators
dropped
Chrome Cache Entry: 368
ASCII text, with very long lines (533), with no line terminators
downloaded
Chrome Cache Entry: 370
ASCII text, with very long lines (7789)
downloaded
Chrome Cache Entry: 371
ASCII text, with very long lines (64258)
downloaded
Chrome Cache Entry: 372
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 374
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 375
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 376
ASCII text, with very long lines (1801), with no line terminators
downloaded
Chrome Cache Entry: 377
data
downloaded
Chrome Cache Entry: 378
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 379
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 381
ASCII text, with very long lines (22035)
downloaded
Chrome Cache Entry: 382
ASCII text, with very long lines (5458), with no line terminators
downloaded
Chrome Cache Entry: 385
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 386
ASCII text, with very long lines (973)
downloaded
Chrome Cache Entry: 387
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 388
ASCII text, with very long lines (54433), with no line terminators
dropped
Chrome Cache Entry: 390
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 391
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 392
Unicode text, UTF-8 text, with very long lines (2273)
downloaded
Chrome Cache Entry: 394
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 395
ASCII text, with very long lines (8935), with no line terminators
dropped
Chrome Cache Entry: 396
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 400
ASCII text, with very long lines (19837), with no line terminators
dropped
Chrome Cache Entry: 401
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 402
ASCII text, with very long lines (37097), with no line terminators
downloaded
Chrome Cache Entry: 404
SVG Scalable Vector Graphics image
dropped
There are 147 hidden files, click here to show them.

URLs

Name
IP
Malicious
https://link.pdffiller.com/r?u=15720095&m=3435477410&t=32129&o=5__5236j4GL6O9j0iItXylRxbrYNdUmdde1vs0MZLRs-c8EVMwxI5RUgkMcphZaWNqe7fjiwiPIgRTf0EtU2MeAFE8bXE25EI9e4-AML4IYG_N8oEeQs2x5B6C3xOB1AYZsH8I7Se74bmasvp6cp6VyuQNLKOxxezUUjOEAX-hmBaVfkzgXk8oEvcB4m25RrL-rVjg%3D%3D&s=direct_push
https://www.pdffiller.com/?utm_source=new-design-2024-short-v3&utm_medium=email&utm_campaign=pdf-4506-t-reminder&utm_content=logo
about:blank
https://www.pdffiller.com/mpages/frame/intermediate-google-one-tap?cancel_on_tap_outside=false

Domains

Name
IP
Malicious
vc-live-cf.hotjar.io
3.161.225.12
google.com
108.177.122.138
tls13.taboola.map.fastly.net
151.101.129.44
s.twitter.com
104.244.42.195
ws.zoominfo.com
104.16.117.43
platform.twitter.map.fastly.net
151.101.12.157
ch-vip001.taboola.com
141.226.124.48
www.upsellit.com
34.117.39.58
support-backend.usrsprt.com
52.201.183.222
cdn.usrsprt.com
13.32.230.22
d2emf6u9rolzdl.cloudfront.net
3.163.115.111
t.co
104.244.42.5
link.pdffiller.com
54.83.66.211
googleads.g.doubleclick.net
108.177.122.156
script.hotjar.com
99.84.191.77
dualstack.tls13.taboola.map.fastly.net
151.101.1.44
www.google.com
173.194.219.106
static-cdn.hotjar.com
3.161.188.128
www.pdffiller.com
unknown
static.ads-twitter.com
unknown
psb.taboola.com
unknown
mkt-cf.pdffiller.com
unknown
trc.taboola.com
unknown
analytics.twitter.com
unknown
vc.hotjar.io
unknown
static.hotjar.com
unknown
cdn.taboola.com
unknown
static-ak.pdffiller.com
unknown
trc-events.taboola.com
unknown
There are 19 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
23.1.33.9
unknown
United States
64.233.177.84
unknown
United States
142.250.105.84
unknown
United States
23.1.33.4
unknown
United States
64.233.176.94
unknown
United States
192.168.2.16
unknown
unknown
3.161.225.12
vc-live-cf.hotjar.io
United States
104.16.117.43
ws.zoominfo.com
United States
142.251.15.101
unknown
United States
173.194.219.106
www.google.com
United States
52.201.183.222
support-backend.usrsprt.com
United States
13.32.230.22
cdn.usrsprt.com
United States
108.177.122.156
googleads.g.doubleclick.net
United States
3.161.188.128
static-cdn.hotjar.com
United States
64.233.185.84
unknown
United States
34.117.39.58
www.upsellit.com
United States
108.177.122.138
google.com
United States
64.233.185.139
unknown
United States
74.125.138.94
unknown
United States
99.84.191.77
script.hotjar.com
United States
172.217.215.95
unknown
United States
1.1.1.1
unknown
Australia
142.250.105.94
unknown
United States
141.226.124.48
ch-vip001.taboola.com
Israel
13.107.21.237
unknown
United States
54.221.220.227
unknown
United States
104.244.42.131
unknown
United States
3.163.115.111
d2emf6u9rolzdl.cloudfront.net
United States
104.244.42.195
s.twitter.com
United States
172.253.124.138
unknown
United States
104.244.42.5
t.co
United States
151.101.1.44
dualstack.tls13.taboola.map.fastly.net
United States
142.250.105.147
unknown
United States
151.101.129.44
tls13.taboola.map.fastly.net
United States
239.255.255.250
unknown
Reserved
13.32.230.98
unknown
United States
64.233.185.95
unknown
United States
64.233.185.97
unknown
United States
54.83.66.211
link.pdffiller.com
United States
151.101.12.157
platform.twitter.map.fastly.net
United States
There are 30 hidden IPs, click here to show them.