IOC Report
https://jiujiuwanka.cn/

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 21:58:33 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 21:58:33 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 21:58:33 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 21:58:33 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 21:58:33 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 292
ASCII text, with very long lines (472), with no line terminators
downloaded
Chrome Cache Entry: 293
gzip compressed data, was "tmpags_t6bc", last modified: Mon Apr 8 05:14:33 2024, max compression, original size modulo 2^32 17827
downloaded
Chrome Cache Entry: 294
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 295
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 296
ASCII text, with very long lines (42260), with no line terminators
downloaded
Chrome Cache Entry: 297
ASCII text, with very long lines (44082), with no line terminators
downloaded
Chrome Cache Entry: 298
ASCII text, with very long lines (21348), with no line terminators
downloaded
Chrome Cache Entry: 299
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 300
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 301
gzip compressed data, was "tmpwakjemo_", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 3857
downloaded
Chrome Cache Entry: 302
ASCII text, with very long lines (56412), with no line terminators
downloaded
Chrome Cache Entry: 303
gzip compressed data, was "tmprud8bwbc", last modified: Tue Apr 23 03:41:26 2024, max compression, original size modulo 2^32 3155
downloaded
Chrome Cache Entry: 304
JSON data
dropped
Chrome Cache Entry: 305
Unicode text, UTF-8 text, with very long lines (12832), with no line terminators
downloaded
Chrome Cache Entry: 306
gzip compressed data, was "tmpwc1mooo4", last modified: Tue Apr 23 03:41:28 2024, max compression, original size modulo 2^32 99692
downloaded
Chrome Cache Entry: 307
ASCII text, with very long lines (5602), with no line terminators
downloaded
Chrome Cache Entry: 308
Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
downloaded
Chrome Cache Entry: 309
ASCII text, with very long lines (19711), with no line terminators
downloaded
Chrome Cache Entry: 310
ASCII text, with very long lines (65447)
downloaded
Chrome Cache Entry: 311
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 312
Unicode text, UTF-8 text, with very long lines (3842), with no line terminators
downloaded
Chrome Cache Entry: 313
HTML document, ASCII text, with very long lines (14301)
downloaded
Chrome Cache Entry: 314
ASCII text, with very long lines (31249), with no line terminators
downloaded
Chrome Cache Entry: 315
MS Windows icon resource - 5 icons, 16x16, 32 bits/pixel, 24x24, 32 bits/pixel
downloaded
Chrome Cache Entry: 316
exported SGML document, Unicode text, UTF-8 (with BOM) text, with very long lines (796)
downloaded
Chrome Cache Entry: 317
JSON data
downloaded
Chrome Cache Entry: 318
JSON data
dropped
Chrome Cache Entry: 319
ASCII text, with very long lines (64347)
downloaded
Chrome Cache Entry: 320
JSON data
dropped
Chrome Cache Entry: 321
HTML document, Unicode text, UTF-8 text, with very long lines (3794)
downloaded
Chrome Cache Entry: 322
gzip compressed data, was "tmpjfx5ghlz", last modified: Tue Apr 23 03:41:28 2024, max compression, original size modulo 2^32 10139
downloaded
Chrome Cache Entry: 323
ASCII text, with very long lines (2768), with no line terminators
downloaded
Chrome Cache Entry: 324
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 325
C source, ASCII text, with very long lines (48275)
downloaded
Chrome Cache Entry: 326
ASCII text, with very long lines (3146), with no line terminators
downloaded
Chrome Cache Entry: 327
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 328
ASCII text, with very long lines (1855)
downloaded
Chrome Cache Entry: 329
PNG image data, 5760 x 1200, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 330
Unicode text, UTF-8 text, with very long lines (956)
downloaded
Chrome Cache Entry: 331
HTML document, ASCII text, with very long lines (565), with no line terminators
downloaded
Chrome Cache Entry: 332
ASCII text, with very long lines (35922)
downloaded
Chrome Cache Entry: 333
JSON data
downloaded
Chrome Cache Entry: 334
ASCII text, with very long lines (16280)
downloaded
Chrome Cache Entry: 335
exported SGML document, Unicode text, UTF-8 (with BOM) text, with very long lines (796)
downloaded
Chrome Cache Entry: 336
JSON data
dropped
Chrome Cache Entry: 337
gzip compressed data, was "tmpqm9ap7l3", last modified: Tue Apr 23 03:41:23 2024, max compression, original size modulo 2^32 34494
downloaded
Chrome Cache Entry: 338
gzip compressed data, was "tmphcdicsjl", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1586
downloaded
Chrome Cache Entry: 339
JSON data
dropped
Chrome Cache Entry: 340
JSON data
dropped
Chrome Cache Entry: 341
HTML document, Unicode text, UTF-8 text, with very long lines (3794)
dropped
Chrome Cache Entry: 342
gzip compressed data, was "tmplz6gk8wt", last modified: Tue Apr 23 03:41:25 2024, max compression, original size modulo 2^32 189
downloaded
Chrome Cache Entry: 343
ASCII text, with very long lines (57671), with no line terminators
downloaded
Chrome Cache Entry: 344
ASCII text, with very long lines (2786), with no line terminators
downloaded
Chrome Cache Entry: 345
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 346
Unicode text, UTF-8 text, with very long lines (14991), with no line terminators
downloaded
Chrome Cache Entry: 347
Unicode text, UTF-8 text, with very long lines (16338), with no line terminators
downloaded
Chrome Cache Entry: 348
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 349
Unicode text, UTF-8 text, with very long lines (10155), with no line terminators
downloaded
Chrome Cache Entry: 350
ASCII text, with very long lines (9705), with no line terminators
downloaded
Chrome Cache Entry: 351
gzip compressed data, was "tmpr3903z9c", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1198
downloaded
Chrome Cache Entry: 352
ASCII text, with very long lines (19051)
downloaded
Chrome Cache Entry: 353
JSON data
dropped
Chrome Cache Entry: 354
gzip compressed data, was "tmp7bxlkez_", last modified: Tue Apr 23 03:41:28 2024, max compression, original size modulo 2^32 63290
downloaded
Chrome Cache Entry: 355
ASCII text, with very long lines (4101), with no line terminators
downloaded
Chrome Cache Entry: 356
ASCII text
downloaded
Chrome Cache Entry: 357
JSON data
dropped
Chrome Cache Entry: 358
ASCII text, with very long lines (4980)
downloaded
Chrome Cache Entry: 359
PNG image data, 192 x 192, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 360
MS Windows icon resource - 5 icons, 16x16, 32 bits/pixel, 24x24, 32 bits/pixel
dropped
Chrome Cache Entry: 361
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 362
JSON data
dropped
Chrome Cache Entry: 363
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 364
ASCII text, with very long lines (64746)
downloaded
Chrome Cache Entry: 365
gzip compressed data, was "tmptbvnarlt", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 4875
downloaded
Chrome Cache Entry: 366
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 367
Unicode text, UTF-8 text, with very long lines (56306), with no line terminators
downloaded
Chrome Cache Entry: 368
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 369
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 370
ASCII text, with very long lines (47364)
downloaded
Chrome Cache Entry: 371
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 372
JSON data
dropped
Chrome Cache Entry: 373
ASCII text, with very long lines (13550), with no line terminators
downloaded
Chrome Cache Entry: 374
Unicode text, UTF-8 text, with very long lines (40118)
downloaded
Chrome Cache Entry: 375
ASCII text, with very long lines (17673)
downloaded
Chrome Cache Entry: 376
ASCII text, with very long lines (4777), with no line terminators
downloaded
Chrome Cache Entry: 377
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 378
gzip compressed data, was "tmp_9yk1m0z", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 5337
downloaded
Chrome Cache Entry: 379
gzip compressed data, was "tmphr4_86tk", last modified: Tue Apr 23 03:41:28 2024, max compression, original size modulo 2^32 21131
downloaded
Chrome Cache Entry: 380
ASCII text, with very long lines (34935)
downloaded
Chrome Cache Entry: 381
gzip compressed data, was "main.6192ffb7.js", last modified: Tue Apr 16 00:18:16 2024, from Unix, original size modulo 2^32 70341
downloaded
Chrome Cache Entry: 382
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 383
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 384
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 385
ASCII text, with very long lines (883), with no line terminators
downloaded
Chrome Cache Entry: 386
JSON data
downloaded
Chrome Cache Entry: 387
Unicode text, UTF-8 text, with very long lines (46429), with no line terminators
downloaded
Chrome Cache Entry: 388
ASCII text, with very long lines (16391), with no line terminators
downloaded
Chrome Cache Entry: 389
JSON data
downloaded
Chrome Cache Entry: 390
ASCII text, with very long lines (4179)
downloaded
Chrome Cache Entry: 391
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 392
gzip compressed data, was "tmpppz_z5hk", last modified: Tue Apr 23 03:41:26 2024, max compression, original size modulo 2^32 1170
downloaded
Chrome Cache Entry: 393
gzip compressed data, was "tmpe1z9z6sm", last modified: Tue Apr 23 03:41:28 2024, max compression, original size modulo 2^32 691
downloaded
Chrome Cache Entry: 394
JSON data
dropped
Chrome Cache Entry: 395
ASCII text, with very long lines (1885), with no line terminators
downloaded
Chrome Cache Entry: 396
JSON data
downloaded
Chrome Cache Entry: 397
JSON data
downloaded
Chrome Cache Entry: 398
exported SGML document, Unicode text, UTF-8 (with BOM) text, with very long lines (796)
downloaded
Chrome Cache Entry: 399
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 400
ASCII text, with very long lines (29450)
downloaded
Chrome Cache Entry: 401
Unicode text, UTF-8 text, with very long lines (12199), with no line terminators
downloaded
Chrome Cache Entry: 402
ASCII text, with very long lines (2800), with no line terminators
downloaded
Chrome Cache Entry: 403
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 404
Unicode text, UTF-8 text, with very long lines (3147)
downloaded
Chrome Cache Entry: 405
PNG image data, 5760 x 1200, 8-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 406
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 407
JSON data
dropped
Chrome Cache Entry: 408
JSON data
dropped
Chrome Cache Entry: 409
ASCII text
downloaded
Chrome Cache Entry: 410
ASCII text, with very long lines (8169), with no line terminators
downloaded
Chrome Cache Entry: 411
ASCII text, with very long lines (520)
downloaded
Chrome Cache Entry: 412
JSON data
downloaded
Chrome Cache Entry: 413
JSON data
downloaded
Chrome Cache Entry: 414
gzip compressed data, was "tmpg8q5ut4o", last modified: Tue Apr 23 03:41:23 2024, max compression, original size modulo 2^32 2631
downloaded
Chrome Cache Entry: 415
JSON data
downloaded
Chrome Cache Entry: 416
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 417
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 418
Unicode text, UTF-8 text, with very long lines (64806), with no line terminators
downloaded
Chrome Cache Entry: 419
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 420
Unicode text, UTF-8 text, with very long lines (3842), with no line terminators
downloaded
Chrome Cache Entry: 421
gzip compressed data, was "tmpaqhquk7v", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 6236
downloaded
Chrome Cache Entry: 422
Unicode text, UTF-8 text, with very long lines (65522), with no line terminators
downloaded
Chrome Cache Entry: 423
ASCII text, with very long lines (2651), with no line terminators
downloaded
Chrome Cache Entry: 424
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 425
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 426
gzip compressed data, was "tmpr3903z9c", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1198
dropped
Chrome Cache Entry: 427
JSON data
dropped
Chrome Cache Entry: 428
JSON data
downloaded
Chrome Cache Entry: 429
ASCII text, with very long lines (2339), with no line terminators
downloaded
Chrome Cache Entry: 430
gzip compressed data, was "tmpi8ntm9h6", last modified: Tue Apr 23 03:41:23 2024, max compression, original size modulo 2^32 214132
downloaded
Chrome Cache Entry: 431
ASCII text, with very long lines (5945)
downloaded
Chrome Cache Entry: 432
JSON data
dropped
Chrome Cache Entry: 433
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 434
JSON data
downloaded
Chrome Cache Entry: 435
gzip compressed data, was "tmpk0fiu30u", last modified: Tue Apr 23 03:41:25 2024, max compression, original size modulo 2^32 5235
downloaded
Chrome Cache Entry: 436
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 437
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 438
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 439
ASCII text, with very long lines (53348)
downloaded
Chrome Cache Entry: 440
gzip compressed data, was "tmpqm9ap7l3", last modified: Tue Apr 23 03:41:23 2024, max compression, original size modulo 2^32 34494
dropped
Chrome Cache Entry: 441
HTML document, ASCII text, with very long lines (14301)
downloaded
Chrome Cache Entry: 442
JSON data
dropped
Chrome Cache Entry: 443
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 444
ASCII text, with very long lines (1345), with no line terminators
downloaded
Chrome Cache Entry: 445
JSON data
dropped
Chrome Cache Entry: 446
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 447
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 448
gzip compressed data, was "tmp8p_sye78", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1347
downloaded
Chrome Cache Entry: 449
ASCII text, with very long lines (11359), with no line terminators
downloaded
Chrome Cache Entry: 450
JSON data
dropped
Chrome Cache Entry: 451
HTML document, Unicode text, UTF-8 text, with very long lines (3799)
downloaded
Chrome Cache Entry: 452
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 453
JSON data
downloaded
Chrome Cache Entry: 454
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 455
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 456
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 457
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 458
JSON data
downloaded
Chrome Cache Entry: 459
JSON data
downloaded
Chrome Cache Entry: 460
PNG image data, 192 x 192, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 461
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 462
ASCII text, with very long lines (1256), with no line terminators
downloaded
Chrome Cache Entry: 463
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 464
JSON data
dropped
Chrome Cache Entry: 465
ASCII text, with very long lines (34935)
downloaded
Chrome Cache Entry: 466
ASCII text, with very long lines (6701), with no line terminators
downloaded
Chrome Cache Entry: 467
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 468
gzip compressed data, was "tmpwakjemo_", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 3857
dropped
Chrome Cache Entry: 469
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 470
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 471
ASCII text, with very long lines (3016), with no line terminators
downloaded
Chrome Cache Entry: 472
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 473
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 474
JSON data
downloaded
Chrome Cache Entry: 475
ASCII text, with very long lines (5140)
downloaded
Chrome Cache Entry: 476
MS Windows icon resource - 5 icons, 16x16, 32 bits/pixel, 24x24, 32 bits/pixel
dropped
Chrome Cache Entry: 477
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 478
HTML document, ASCII text, with very long lines (14301)
downloaded
Chrome Cache Entry: 479
Unicode text, UTF-8 text, with very long lines (13129), with no line terminators
downloaded
Chrome Cache Entry: 480
ASCII text, with very long lines (20600), with no line terminators
downloaded
Chrome Cache Entry: 481
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 482
ASCII text, with very long lines (8035), with no line terminators
downloaded
Chrome Cache Entry: 483
ASCII text, with very long lines (34102)
downloaded
Chrome Cache Entry: 484
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 485
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 486
ASCII text, with very long lines (21694)
downloaded
Chrome Cache Entry: 487
HTML document, Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 488
exported SGML document, Unicode text, UTF-8 (with BOM) text, with very long lines (796)
downloaded
Chrome Cache Entry: 489
ASCII text, with very long lines (7711)
downloaded
Chrome Cache Entry: 490
Unicode text, UTF-8 text, with very long lines (30045), with no line terminators
downloaded
Chrome Cache Entry: 491
JSON data
dropped
Chrome Cache Entry: 492
gzip compressed data, was "tmpoh_l88fd", last modified: Tue Apr 23 03:41:25 2024, max compression, original size modulo 2^32 4678
downloaded
Chrome Cache Entry: 493
ASCII text, with very long lines (17002)
downloaded
Chrome Cache Entry: 494
gzip compressed data, was "tmpd2q75gu0", last modified: Tue Apr 23 03:41:23 2024, max compression, original size modulo 2^32 1306714
downloaded
Chrome Cache Entry: 495
ASCII text, with very long lines (631)
downloaded
Chrome Cache Entry: 496
MS Windows icon resource - 5 icons, 16x16, 32 bits/pixel, 24x24, 32 bits/pixel
downloaded
Chrome Cache Entry: 497
HTML document, ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 498
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
downloaded
Chrome Cache Entry: 499
ASCII text, with very long lines (1337), with no line terminators
downloaded
Chrome Cache Entry: 500
ASCII text, with very long lines (32598)
downloaded
Chrome Cache Entry: 501
ASCII text, with very long lines (56291)
downloaded
Chrome Cache Entry: 502
gzip compressed data, was "tmpsz1mb7rx", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1569
dropped
Chrome Cache Entry: 503
ASCII text, with very long lines (12775), with no line terminators
downloaded
Chrome Cache Entry: 504
JSON data
dropped
Chrome Cache Entry: 505
JSON data
downloaded
Chrome Cache Entry: 506
ASCII text, with very long lines (24172), with no line terminators
downloaded
Chrome Cache Entry: 507
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 508
ASCII text, with very long lines (2737), with no line terminators
downloaded
Chrome Cache Entry: 509
gzip compressed data, was "tmpbfxi7j5o", last modified: Tue Apr 23 03:41:25 2024, max compression, original size modulo 2^32 916
downloaded
Chrome Cache Entry: 510
HTML document, Unicode text, UTF-8 text, with very long lines (1541)
downloaded
Chrome Cache Entry: 511
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 512
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 513
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 514
ASCII text, with very long lines (15403), with no line terminators
downloaded
Chrome Cache Entry: 515
HTML document, ASCII text, with very long lines (31398)
downloaded
Chrome Cache Entry: 516
gzip compressed data, was "tmpnwk9l1m6", last modified: Mon Apr 15 03:14:55 2024, max compression, original size modulo 2^32 1315
downloaded
Chrome Cache Entry: 517
ASCII text, with very long lines (497), with no line terminators
downloaded
Chrome Cache Entry: 518
gzip compressed data, was "tmpj1gsgalg", last modified: Tue Apr 23 03:41:26 2024, max compression, original size modulo 2^32 1194
downloaded
Chrome Cache Entry: 519
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 520
ASCII text, with very long lines (2799), with no line terminators
downloaded
Chrome Cache Entry: 521
ASCII text, with very long lines (2739), with no line terminators
downloaded
Chrome Cache Entry: 522
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 523
ASCII text, with very long lines (631)
downloaded
Chrome Cache Entry: 524
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 525
HTML document, Unicode text, UTF-8 text, with very long lines (1396)
downloaded
Chrome Cache Entry: 526
HTML document, Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 527
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 528
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 529
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 530
JSON data
dropped
Chrome Cache Entry: 531
JSON data
dropped
Chrome Cache Entry: 532
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 533
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 534
JSON data
dropped
Chrome Cache Entry: 535
ASCII text, with very long lines (42242), with no line terminators
downloaded
Chrome Cache Entry: 536
ASCII text, with very long lines (38105), with no line terminators
downloaded
Chrome Cache Entry: 537
ASCII text, with very long lines (41088)
downloaded
Chrome Cache Entry: 538
ASCII text, with very long lines (53572), with no line terminators
downloaded
Chrome Cache Entry: 539
JSON data
downloaded
Chrome Cache Entry: 540
JSON data
downloaded
Chrome Cache Entry: 541
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 542
gzip compressed data, was "tmpdbb1ueh7", last modified: Tue Apr 23 03:41:28 2024, max compression, original size modulo 2^32 32140
downloaded
Chrome Cache Entry: 543
ASCII text, with very long lines (8900), with no line terminators
downloaded
Chrome Cache Entry: 544
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 545
HTML document, Unicode text, UTF-8 text
downloaded
Chrome Cache Entry: 546
ASCII text, with no line terminators
dropped
Chrome Cache Entry: 547
gzip compressed data, was "tmpsz1mb7rx", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1569
downloaded
Chrome Cache Entry: 548
Unicode text, UTF-8 text, with very long lines (1989)
downloaded
Chrome Cache Entry: 549
gzip compressed data, was "tmpnw0v_kxg", last modified: Mon Apr 8 05:14:33 2024, max compression, original size modulo 2^32 15187
downloaded
Chrome Cache Entry: 550
JSON data
dropped
Chrome Cache Entry: 551
gzip compressed data, was "tmp5tc1g6ot", last modified: Tue Apr 23 03:41:25 2024, max compression, original size modulo 2^32 5097
downloaded
Chrome Cache Entry: 552
RIFF (little-endian) data, Web/P image
dropped
Chrome Cache Entry: 553
gzip compressed data, was "tmphr8vkfr5", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1559
downloaded
Chrome Cache Entry: 554
gzip compressed data, was "tmpzz9_wf7k", last modified: Tue Apr 23 03:41:27 2024, max compression, original size modulo 2^32 1091
downloaded
There are 260 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2468 --field-trial-handle=2360,i,12648929383776969763,7713387886942473744,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://jiujiuwanka.cn/"

URLs

Name
IP
Malicious
https://jiujiuwanka.cn/
malicious
https://static.mercdn.net/images/category/rich_icon_disabled/1318_cars.png
unknown
https://www.facebook.com/privacy_sandbox/pixel/register/trigger/?id=3765626403484289&ev=PageView&dl=https%3A%2F%2Fstatic.jp.mercari.com%2Fprivacy&rl=&if=false&ts=1713999568096&sw=1280&sh=1024&v=2.9.154&r=stable&ec=0&o=4126&fbp=fb.1.1713999568094.663241109&ler=empty&cdl=API_unavailable&it=1713999566592&coo=false&rqm=FGET
31.13.88.35
https://static.mercdn.net/images/category/rich_icon/5_books.png
unknown
https://stats.g.doubleclick.net/g/collect
unknown
https://static.mercdn.net/images/content_pages/category/ladies_swimsuit_icon_2x_20240305.png
unknown
https://csm.us5.us.criteo.net/iev?entry=c~Gum.ChromeSyncframe.CookieRead.uid~1&entry=c~Gum.ChromeSyncframe.FragmentData.onetag.Bundle.Origin.1~1&entry=c~Gum.ChromeSyncframe.SidReadSuccess~1&entry=h~Gum.ChromeSyncframe.SidReadSuccessDuration~1330
74.119.117.24
https://developers.google.com/recaptcha/docs/faq#localhost_support
unknown
https://t.felmat.net/jsonp/fmdl-callback?fmak=
unknown
https://static.mercdn.net/images/category/rich_icon/6_beauty.png
unknown
https://jiujiuwanka.cn/index/web/js/chunk-62172722.c683da35.js?version=2222
117.18.3.84
https://am.yahoo.co.jp/rt/?p=5RSLTXIXCG&label=&ref=https%3A%2F%2Fstatic.jp.mercari.com%2Ftokutei&rref=&pt=&item=&cat=&price=&quantity=&r=1713999593.001987&pvid=q3l26h92xoolvef3pvt&su=a4300d12-db36-43c2-aad2-bbc7818ade93&_impl=ytag&brands=%22Google%20Chrome%22%3B%20v%3D%22117.0.5938.132%22%2C%20%22Not%3BA%3DBrand%22%3B%20v%3D%228.0.0.0%22%2C%20%22Chromium%22%3B%20v%3D%22117.0.5938.132%22&platform=%22Windows%22&platform_version=%2210.0.0%22
183.79.219.252
https://js.crossees.com/csslp.js
13.226.100.84
https://static.mercdn.net/images/category/rich_icon/3_baby.png
unknown
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/ja/line.json
199.232.210.131
https://static.mercdn.net/images/content_pages/category/ladies_kimono_icon_2x_20240305.png
unknown
https://ampcid.google.com/v1/publisher:getClientId
unknown
https://www.mercari.com/jp/privacy/
unknown
about:blank
https://web-jp-assets-v2.mercdn.net/_next/static/chunks/71427-ce822c0d970bd52c.js
unknown
https://analytics.twitter.com/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=8b9d4e6b-c00b-422e-b1d2-896d0cf97ca3&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=aeb34781-0eb7-4001-a6c0-490d6b07d2cf&tw_document_href=https%3A%2F%2Fstatic.jp.mercari.com%2Ftos&tw_iframe_status=0&txn_id=oclwa&type=javascript&version=2.3.30
104.244.42.3
https://t.co/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=08161962-485f-43bb-bd96-2f6b54506094&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=423c9b7e-388d-4ce2-8275-4a622458f5c3&tw_document_href=https%3A%2F%2Fjp.mercari.com%2Fen&tw_iframe_status=0&txn_id=oclwa&type=javascript&version=2.3.30
104.244.42.69
https://web-auth-assets-v1.mercdn.net/icons/release-v0.148.0/icon-192x192.png
199.232.210.131
https://ct.pinterest.com/user/?tid=2614327216568&pd=%7B%22em%22%3A%2224aba99b2defbb47ee981b4200313f61f3ae31541d8717bdac1e463c838939b0%22%2C%22pin_unauth%22%3A%22dWlkPU1XVTJPV0UyTmpJdFltUTFaaTAwTmpNd0xUa3lOR1F0TTJOak5EazROMll6TlRNeg%22%7D&cb=1713999566692&dep=2%2CPAGE_LOAD
151.101.128.84
https://static.mercdn.net/images/category/rich_icon_disabled/5597_tools.png
unknown
https://static.jp.mercari.com/assets/icons/favicon.ico
199.232.210.128
https://static.jp.mercari.com/tokutei
https://securepubads.g.doubleclick.net/pagead/managed/js/gpt/m202404220101/pubads_impl.js?cb=31083041
64.233.185.157
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/en/authValidation.json
199.232.210.131
https://static.mercdn.net/images/content_pages/category/ladies_accessories_icon_2x_20240308.png
unknown
https://support.google.com/recaptcha/#6175971
unknown
https://static.mercdn.net/images/category/rich_icon_disabled/4_furniture.png
unknown
https://fledge.as.criteo.com
unknown
https://static.mercdn.net/images/content_pages/category/ladies_overalls_icon_2x_20240305.png
unknown
https://www.gstatic.c..?/recaptcha/releases/V6_85qpc2Xf2sbe3xTnRte7m/recaptcha__.
unknown
https://static.mercdn.net/images/category/rich_icon_disabled/113_life_supplies.png
unknown
https://tr.line.me/tag.gif?b_id=42e63de0-fec1-4563-b058-27670cd263e4&b_u=https%3A%2F%2Flogin.jp.mercari.com%2Fpassword%2Freset%2Fstart&b_d=login.jp.mercari.com&b_p=%2Fpassword%2Freset%2Fstart&b_t=%E3%83%A1%E3%83%AB%E3%82%AB%E3%83%AA%20-%20%E6%97%A5%E6%9C%AC%E6%9C%80%E5%A4%A7%E3%81%AE%E5%A3%B2%E3%82%8C%E3%82%8B%E3%83%95%E3%83%AA%E3%83%9E%E3%82%B5%E3%83%BC%E3%83%93%E3%82%B9&c_t=lap&t_id=103a37ee-e210-4b87-8c22-500c17e74624&s_id=7763b01d-10b0eb87&x4=100&e=pv&v=3.4.1&_t=1713999556749
147.92.191.92
https://web-jp-assets-v2.mercdn.net/_next/static/chunks/84023-8df5582af5ef1bed.js
unknown
https://www.mercari.com/jp/tokutei/
unknown
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/ja/signup.json
199.232.210.131
https://static.mercdn.net/images/content_pages/category/ladies_bag_icon_2x_20240305.png
unknown
https://stats.g.doubleclick.net/j/collect
unknown
https://ct.pinterest.com/v3/?tid=2614327216568&pd=%7B%22em%22%3A%2224aba99b2defbb47ee981b4200313f61f3ae31541d8717bdac1e463c838939b0%22%2C%22pin_unauth%22%3A%22dWlkPU1XVTJPV0UyTmpJdFltUTFaaTAwTmpNd0xUa3lOR1F0TTJOak5EazROMll6TlRNeg%22%7D&event=init&ad=%7B%22loc%22%3A%22https%3A%2F%2Fstatic.jp.mercari.com%2Ftos%22%2C%22ref%22%3A%22%22%2C%22if%22%3Afalse%2C%22sh%22%3A1024%2C%22sw%22%3A1280%2C%22mh%22%3A%226192ffb7%22%2C%22is_eu%22%3Atrue%2C%22architecture%22%3A%22x86%22%2C%22bitness%22%3A%2264%22%2C%22brands%22%3A%5B%7B%22brand%22%3A%22Google%20Chrome%22%2C%22version%22%3A%22117%22%7D%2C%7B%22brand%22%3A%22Not%3BA%3DBrand%22%2C%22version%22%3A%228%22%7D%2C%7B%22brand%22%3A%22Chromium%22%2C%22version%22%3A%22117%22%7D%5D%2C%22mobile%22%3Afalse%2C%22model%22%3A%22%22%2C%22platform%22%3A%22Windows%22%2C%22platformVersion%22%3A%2210.0.0%22%2C%22uaFullVersion%22%3A%22117.0.5938.132%22%2C%22ecm_enabled%22%3Atrue%7D&cb=1713999572175
151.101.128.84
https://static.mercdn.net/images/content_pages/category/mens_accessory_icon_2x_20240305.png
unknown
https://web-jp-assets-v2.mercdn.net/_next/static/chunks/pages/index-0ddd6983708ce12a.js
unknown
https://s.pinimg.com/ct/lib/main.6192ffb7.js
151.101.12.84
https://gum.criteo.com/syncframe?topUrl=jp.mercari.com&origin=onetag
74.119.117.17
https://jiujiuwanka.cn/index/web/js/chunk-59a76fbc.4c541c77.js
117.18.3.84
https://static.mercdn.net/images/category/rich_icon/7_devices.png
unknown
https://support.google.com/recaptcha
unknown
https://jiujiuwanka.cn/index/web/css/chunk-vendors.663cee71.css
117.18.3.84
https://web-jp-assets-v2.mercdn.net/images/favicons/favicon-384.png
unknown
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/en/password-reset.json
199.232.210.131
https://static.mercdn.net/images/category/rich_icon/8_sports.png
unknown
https://jiujiuwanka.cn/index/web/js/chunk-33e067a3.0a730f71.js?version=2222
117.18.3.84
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/ja/signin.json
199.232.210.131
https://www.apache.org/licenses/
unknown
https://jiujiuwanka.cn/#/
https://static.mercdn.net/images/content_pages/category/ladies_setpiece_icon_2x_20240305.png
unknown
https://static.mercdn.net/images/category/rich_icon_disabled/9_handmade.png
unknown
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/ja/authCommon.json
199.232.210.131
https://analytics.twitter.com/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=f9441ee1-c464-4e51-8058-c341bb32c1a7&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=fe50262f-d2c7-46a0-bf59-5f83d29309f4&tw_document_href=https%3A%2F%2Fstatic.jp.mercari.com%2Fprivacy&tw_iframe_status=0&txn_id=oclwa&type=javascript&version=2.3.30
104.244.42.3
https://static.mercdn.net/images/content_pages/category/ladies_bag_travelbag_icon_2x_20240305.png
unknown
https://ct.pinterest.com/stats/
unknown
https://web-jp-assets-v2.mercdn.net/_next/static/chunks/33742-3206b927b36afc07.js
unknown
https://ct.pinterest.com/user/?tid=2614327216568&pd=%7B%22em%22%3A%2224aba99b2defbb47ee981b4200313f61f3ae31541d8717bdac1e463c838939b0%22%2C%22pin_unauth%22%3A%22dWlkPU1XVTJPV0UyTmpJdFltUTFaaTAwTmpNd0xUa3lOR1F0TTJOak5EazROMll6TlRNeg%22%7D&cb=1713999593569&dep=2%2CPAGE_LOAD
151.101.128.84
https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
unknown
https://static.mercdn.net/images/category/rich_icon_disabled/7_devices.png
unknown
https://static.mercdn.net/images/content_pages/category/ladies_underwear_icon_2x_20240305.png
unknown
https://am.yahoo.co.jp/rt/?p=5RSLTXIXCG&label=&ref=https%3A%2F%2Flogin.jp.mercari.com%2Fpassword%2Freset%2Fstart&rref=&pt=&item=&cat=&price=&quantity=&r=1713999555.865559&pvid=5ax4ewz7k75lvef2x16&_impl=ytag&brands=%22Google%20Chrome%22%3B%20v%3D%22117.0.5938.132%22%2C%20%22Not%3BA%3DBrand%22%3B%20v%3D%228.0.0.0%22%2C%20%22Chromium%22%3B%20v%3D%22117.0.5938.132%22&platform=%22Windows%22&platform_version=%2210.0.0%22
183.79.219.252
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/en/line.json
199.232.210.131
https://gum.criteo.com/syncframe?topUrl=static.jp.mercari.com&origin=onetag#{%22bundle%22:{%22origin%22:3,%22value%22:%22IhPCil9RdWM0UWU5c0N6MnZkJTJGbDczMVRkQmE3V05Hak5oSE13dXV1NGVzYTQlMkJsdk5KZmJhYkZpUzN3VyUyQndLUG0lMkJvUXVUQ3RHR3RSYmI1TktCUkg3a3BwYmQySjNBenhCRmdpQ08xakpCeDRoRW51c3FkYWR2dVVEdXZRcVBONkRvRHdMbmVJRlJqaEFFZ25CMDBWQXF3TDRwUSUzRCUzRA%22},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22mercari.com%22,%22topUrl%22:%22static.jp.mercari.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://static.mercdn.net/images/category/rich_icon/1844_groceries.png
unknown
https://i.smartnews-ads.com/p?id=01d8f2a62959e2aeaed0b9b4&t=1713999593&url=https%3A%2F%2Fstatic.jp.mercari.com%2Ftokutei&referrer=&e=PageView&v=1.0.0&exid=45446a60-3366-4ad7-a857-335b4c31dfd6
13.114.145.150
https://web-jp-assets-v2.mercdn.net
unknown
https://stats.g.doubleclick.net/g/collect?v=2&
unknown
https://web-auth-assets-v1.mercdn.net/icons/release-v0.148.0/icon-256x256.png
199.232.210.131
https://github.com/js-cookie/js-cookie
unknown
https://static.mercdn.net/images/content_pages/category/ladies_bag_basketbag_icon_2x_20240305.png
unknown
https://static.mercdn.net/images/content_pages/category/mens_pants_icon_2x_20240305.png
unknown
https://auth.mercari.com/jp/v1/authorize?client_id=bP4zN6jIZQeutikiUFpbx307DVK1pmoW&code_challenge=K8POyRjJ2o-IfYy97ETotkmBu8xW_YC3MZLRhonzeVI&code_challenge_method=S256&nonce=S-HNtQgKZ3b1&prompt=none&redirect_uri=https%3A%2F%2Fjp.mercari.com%2Fauth%2Fcallback&response_type=code&rmode=direct&scope=mercari%20openid&state=eyJwYXRoIjoiIiwicmFuZG9tIjoiemRnYW5vR1YuUDd1In0%3D&ui_locales=en
199.232.214.128
https://www.mercari.com/jp/
unknown
https://i.smartnews-ads.com/p?
unknown
https://static.mercdn.net/images/category/rich_icon_disabled/3_baby.png
unknown
https://web-jp-assets-v2.mercdn.net/workbox-226bd7b3
unknown
https://www.mercari.com/jp/merpay_tos/
unknown
https://i.smartnews-ads.com/p?id=01d8f2a62959e2aeaed0b9b4&t=1713999559&url=https%3A%2F%2Fjp.mercari.com%2Fen&referrer=https%3A%2F%2Fjp.mercari.com%2F&e=PageView&v=1.0.0&exid=eb91ade0-f27b-4c15-80cf-c1155c9262f5
13.114.145.150
https://gum.criteo.com/syncframe?topUrl=static.jp.mercari.com&origin=onetag#{%22bundle%22:{%22origin%22:3,%22value%22:%22O1kawV9RdWM0UWU5c0N6MnZkJTJGbDczMVRkQlh5VnBvMWFrN25VSyUyQmttaklHaTJtY2ZxckpyT1RLSjdEWDhYJTJCZWpPZjlZSHFFcnlhcFhHMkQ2cW1uUHEwNFM3T2dxZ2dVOHpaWDlOMm1zMjBmZVd4JTJGMzN2WjJtR0NRN3ptd2glMkJPZE50alJQNEN1b2JjZUIxVm1oeTlGMnQ3MlRnJTNEJTNE%22},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22mercari.com%22,%22topUrl%22:%22static.jp.mercari.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/en/signup-purchase.json
199.232.210.131
https://static.mercdn.net/images/content_pages/category/mens_jacket_icon_2x_20240305.png
unknown
https://static.mercdn.net/images/content_pages/category/ladies_onepiece_icon_2x_20240305.png
unknown
https://static.mercdn.net/images/category/rich_icon_disabled/8_sports.png
unknown
https://t.co/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=d8d783a2-5df8-480d-af25-cd11bb1932dc&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=ed06b110-818a-4c7c-8bb4-d9ac71aaaaf1&tw_document_href=https%3A%2F%2Fstatic.jp.mercari.com%2Ftokutei&tw_iframe_status=0&txn_id=oclwa&type=javascript&version=2.3.30
104.244.42.69
https://t.co/1/i/adsct?bci=4&eci=3&event=%7B%7D&event_id=f9441ee1-c464-4e51-8058-c341bb32c1a7&integration=advertiser&p_id=Twitter&p_user_id=0&pl_id=fe50262f-d2c7-46a0-bf59-5f83d29309f4&tw_document_href=https%3A%2F%2Fstatic.jp.mercari.com%2Fprivacy&tw_iframe_status=0&txn_id=oclwa&type=javascript&version=2.3.30
104.244.42.69
https://web-jp-assets-v2.mercdn.net/_next/static/chunks/58518-5e84c911a5650f73.js
unknown
https://analytics.google.com/g/collect?v=2&tid=G-4NLR7T2LEN&gtm=45je44o0v871941055za200&_p=1713999550345&gcd=13l3l3l3l1&npa=0&dma=0&cid=364749532.1713999554&ul=en-us&sr=1280x1024&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&pscdl=noapi&_eu=AEA&_s=2&sid=1713999554&sct=1&seg=0&dl=https%3A%2F%2Flogin.jp.mercari.com%2Fpassword%2Freset%2Fstart&dt=%E3%83%A1%E3%83%AB%E3%82%AB%E3%83%AA%20-%20%E6%97%A5%E6%9C%AC%E6%9C%80%E5%A4%A7%E3%81%AE%E5%A3%B2%E3%82%8C%E3%82%8B%E3%83%95%E3%83%AA%E3%83%9E%E3%82%B5%E3%83%BC%E3%83%93%E3%82%B9&en=scroll&epn.percent_scrolled=90&_et=23&tfd=14083
216.239.36.181
https://static.mercdn.net/images/category/rich_icon/69_pet_supplies.png
unknown
https://web-auth-assets-v1.mercdn.net/locales/release-v0.148.0/en/authCommon.json
199.232.210.131
https://csm.us5.us.criteo.net/iev?entry=c~Gum.ChromeSyncframe.CookieRead.uid~1&entry=c~Gum.ChromeSyncframe.FragmentData.onetag.Bundle.Origin.3~1&entry=c~Gum.ChromeSyncframe.SidReadSuccess~1&entry=h~Gum.ChromeSyncframe.SidReadSuccessDuration~604
74.119.117.24
https://i.smartnews-ads.com/p?id=01d8f2a62959e2aeaed0b9b4&t=1713999556&url=https%3A%2F%2Flogin.jp.mercari.com%2Fpassword%2Freset%2Fstart&referrer=&e=PageView&v=1.0.0&exid=c9daeeaa-50ea-4fa6-b3c2-c4895cd27437
13.114.145.150
https://web-auth-assets-v1.mercdn.net/light-204c65ce9c047112018b.png
199.232.210.131
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
auth.mercari.com
199.232.214.128
js.crossees.com
13.226.100.84
t.felmat.net
54.168.122.48
o118814.ingest.sentry.io
34.120.195.249
edge12.g.yimg.jp
183.79.217.124
dynamic.us5.vip.prod.criteo.com
74.119.117.10
fp2e7a.wpc.phicdn.net
192.229.211.108
platform.twitter.map.fastly.net
151.101.20.157
mercari.map.fastly.net
199.232.210.128
stats.g.doubleclick.net
64.233.176.157
csm.us5.vip.prod.criteo.net
74.119.117.24
statics.a8.net
18.160.60.104
scontent.xx.fbcdn.net
31.13.88.13
asia-northeast1-security-csp-report-collector.cloudfunctions.net
216.239.36.54
t.co
104.244.42.69
widget.jp2.vip.prod.criteo.com
182.161.74.16
jiujiuwanka.cn
117.18.3.84
i.smartnews-ads.com
13.114.145.150
www.google.com
74.125.136.104
star-mini.c10r.facebook.com
31.13.88.35
gum.us5.vip.prod.criteo.com
74.119.117.17
google.com
64.233.176.113
tr.line.me
147.92.191.92
s.twitter.com
104.244.42.3
securepubads46.g.doubleclick.net
64.233.185.157
bg.microsoft.map.fastly.net
199.232.214.172
prod.pinterest.global.map.fastly.net
151.101.128.84
analytics-alv.google.com
216.239.36.181
googleads.g.doubleclick.net
74.125.138.156
dualstack.pinterest.map.fastly.net
151.101.12.84
td.doubleclick.net
64.233.185.154
mscedge.g.yimg.jp
182.22.30.204
mercari-sni.map.fastly.net
199.232.210.131
widget.us5.vip.prod.criteo.com
74.119.117.16
securepubads.g.doubleclick.net
unknown
widget.as.criteo.com
unknown
static.ads-twitter.com
unknown
h.accesstrade.net
unknown
login.jp.mercari.com
unknown
sdk.iad-01.braze.com
unknown
jp.mercari.com
unknown
d.line-scdn.net
unknown
am.yahoo.co.jp
unknown
ct.pinterest.com
unknown
dynamic.criteo.com
unknown
mercaripay.co
unknown
static.jp.mercari.com
unknown
gum.criteo.com
unknown
sslwidget.criteo.com
unknown
csm.us5.us.criteo.net
unknown
api.mercari.jp
unknown
i6.smartnews-ads.com
unknown
cdn.smartnews-ads.com
unknown
www.mercari.com
unknown
www.facebook.com
unknown
web-jp-assets-v2.mercdn.net
unknown
web-auth-assets-v1.mercdn.net
unknown
b99.yahoo.co.jp
unknown
connect.facebook.net
unknown
s.yimg.jp
unknown
analytics.twitter.com
unknown
s.pinimg.com
unknown
analytics.tiktok.com
unknown
analytics.google.com
unknown
There are 54 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
151.101.0.84
unknown
United States
74.125.136.104
www.google.com
United States
199.232.210.128
mercari.map.fastly.net
United States
172.253.124.105
unknown
United States
192.168.2.5
unknown
unknown
199.232.210.131
mercari-sni.map.fastly.net
United States
183.79.219.252
unknown
Japan
151.101.128.84
prod.pinterest.global.map.fastly.net
United States
13.114.145.150
i.smartnews-ads.com
United States
182.22.30.204
mscedge.g.yimg.jp
Japan
183.79.217.124
edge12.g.yimg.jp
Japan
117.18.3.84
jiujiuwanka.cn
Hong Kong
74.125.136.103
unknown
United States
31.13.88.13
scontent.xx.fbcdn.net
Ireland
74.119.117.10
dynamic.us5.vip.prod.criteo.com
United States
74.125.138.156
googleads.g.doubleclick.net
United States
13.226.100.84
js.crossees.com
United States
151.101.12.84
dualstack.pinterest.map.fastly.net
United States
239.255.255.250
unknown
Reserved
216.239.36.54
asia-northeast1-security-csp-report-collector.cloudfunctions.net
United States
151.101.192.84
unknown
United States
54.92.81.163
unknown
United States
31.13.65.36
unknown
Ireland
199.232.214.128
auth.mercari.com
United States
182.161.74.16
widget.jp2.vip.prod.criteo.com
Singapore
54.168.122.48
t.felmat.net
United States
64.233.185.157
securepubads46.g.doubleclick.net
United States
64.233.185.154
td.doubleclick.net
United States
64.233.177.157
unknown
United States
64.233.176.157
stats.g.doubleclick.net
United States
31.13.88.35
star-mini.c10r.facebook.com
Ireland
74.119.117.17
gum.us5.vip.prod.criteo.com
United States
216.239.36.181
analytics-alv.google.com
United States
104.244.42.69
t.co
United States
74.119.117.16
widget.us5.vip.prod.criteo.com
United States
104.244.42.67
unknown
United States
142.250.105.99
unknown
United States
104.244.42.197
unknown
United States
104.244.42.3
s.twitter.com
United States
151.101.20.157
platform.twitter.map.fastly.net
United States
147.92.191.92
tr.line.me
Japan
18.160.60.104
statics.a8.net
United States
74.119.117.24
csm.us5.vip.prod.criteo.net
United States
183.79.255.12
unknown
Japan
182.22.24.124
unknown
Japan
34.120.195.249
o118814.ingest.sentry.io
United States
There are 36 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
https://jiujiuwanka.cn/#/
https://jiujiuwanka.cn/#/
https://jp.mercari.com/
https://login.jp.mercari.com/password/reset/start
https://login.jp.mercari.com/password/reset/start
https://login.jp.mercari.com/password/reset/start
https://login.jp.mercari.com/password/reset/start
https://login.jp.mercari.com/password/reset/start
https://jp.mercari.com/en
https://jp.mercari.com/en
https://jp.mercari.com/en
https://jp.mercari.com/en
https://jp.mercari.com/en
https://gum.criteo.com/syncframe?topUrl=login.jp.mercari.com&origin=onetag#{%22bundle%22:{%22origin%22:0,%22value%22:null},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22mercari.com%22,%22topUrl%22:%22login.jp.mercari.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://td.doubleclick.net/td/rul/880621981?random=1713999555667&cv=11&fst=1713999555667&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be44m0v9101993320z8839910555za201&gcd=13l3l3l3l1&dma=0&u_w=1280&u_h=1024&url=https%3A%2F%2Flogin.jp.mercari.com%2Fpassword%2Freset%2Fstart&hn=www.googleadservices.com&frm=0&tiba=%E3%83%A1%E3%83%AB%E3%82%AB%E3%83%AA%20-%20%E6%97%A5%E6%9C%AC%E6%9C%80%E5%A4%A7%E3%81%AE%E5%A3%B2%E3%82%8C%E3%82%8B%E3%83%95%E3%83%AA%E3%83%9E%E3%82%B5%E3%83%BC%E3%83%93%E3%82%B9&npa=0&pscdl=noapi&auid=878979882.1713999543&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1
about:blank
https://td.doubleclick.net/td/rul/880621981?random=1713999559812&cv=11&fst=1713999559812&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be44m0v9101993320z8839910555za201&gcd=13l3l3l3l1&dma=0&u_w=1280&u_h=1024&url=https%3A%2F%2Fjp.mercari.com%2Fen&ref=https%3A%2F%2Fjp.mercari.com%2F&hn=www.googleadservices.com&frm=0&tiba=Mercari%3A%20Japan%27s%20largest%20marketplace&npa=0&pscdl=noapi&auid=878979882.1713999543&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1&data=login_status%3Dfalse
https://gum.criteo.com/syncframe?topUrl=jp.mercari.com&origin=onetag#{%22bundle%22:{%22origin%22:1,%22value%22:%22dYStA19RdWM0UWU5c0N6MnZkJTJGbDczMVRkQlpPSEpoNE9TaW9wckUzQ1JVNHJWdDBKa0M4Tm8zUW5VM3pRNzBWWGswOTNjbm91b0s0NG82M2FlT0ZzRTNjRkFwVml0Ujc2U0NJVjRQJTJGMWkwMXB1RlIlMkJOR3NwYlBuMWJjZE5NeUc0S0ozb3NRRkxpTFFQVU02aHA0SHU0ZXlFJTJCUSUzRCUzRA%22},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22mercari.com%22,%22topUrl%22:%22jp.mercari.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://static.jp.mercari.com/privacy
https://static.jp.mercari.com/privacy
https://static.jp.mercari.com/privacy
https://static.jp.mercari.com/privacy
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6Lf_LFAaAAAAAFVeAafRO4XcnPTS0yP_IPs2R_Gp&co=aHR0cHM6Ly9sb2dpbi5qcC5tZXJjYXJpLmNvbTo0NDM.&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=invisible&cb=pbpzy2kt3860
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6Lf_LFAaAAAAAFVeAafRO4XcnPTS0yP_IPs2R_Gp&co=aHR0cHM6Ly9sb2dpbi5qcC5tZXJjYXJpLmNvbTo0NDM.&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=invisible&cb=pbpzy2kt3860
https://gum.criteo.com/syncframe?topUrl=static.jp.mercari.com&origin=onetag#{%22bundle%22:{%22origin%22:1,%22value%22:%22aKLN519RdWM0UWU5c0N6MnZkJTJGbDczMVRkQlFQdzY0SjZpcCUyQiUyQlQ5NGh1UUZlV3B1SmxpbVc3R0Q3VW9lZWdVdkZJNXlKZkxyb2ZiSzhrUjh3NmhseG5LViUyQiUyRnpBWlFJdm55SUprQkFsQVRLb0F5SVlRcDUwYlRtQXMyUEZjSGdKUmp0JTJCVGZwTEtUbjNUb0pUb25KV0FzdmpBbEElM0QlM0Q%22},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22mercari.com%22,%22topUrl%22:%22static.jp.mercari.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://td.doubleclick.net/td/rul/880621981?random=1713999566147&cv=11&fst=1713999566147&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be44m0v9101993320z89175408643za201&gcd=13l3l3l3l1&dma=0&u_w=1280&u_h=1024&url=https%3A%2F%2Fstatic.jp.mercari.com%2Fprivacy&hn=www.googleadservices.com&frm=0&tiba=%E3%83%97%E3%83%A9%E3%82%A4%E3%83%90%E3%82%B7%E3%83%BC%E3%83%9D%E3%83%AA%E3%82%B7%E3%83%BC%20-%20%E3%83%A1%E3%83%AB%E3%82%AB%E3%83%AA%20%E3%82%B9%E3%83%9E%E3%83%9B%E3%81%A7%E3%81%8B%E3%82%93%E3%81%9F%E3%82%93%20%E3%83%95%E3%83%AA%E3%83%9E%E3%82%A2%E3%83%97&npa=0&pscdl=noapi&auid=878979882.1713999543&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1
https://static.jp.mercari.com/tos
https://static.jp.mercari.com/tos
https://static.jp.mercari.com/tos
https://gum.criteo.com/syncframe?topUrl=static.jp.mercari.com&origin=onetag#{%22bundle%22:{%22origin%22:3,%22value%22:%22IhPCil9RdWM0UWU5c0N6MnZkJTJGbDczMVRkQmE3V05Hak5oSE13dXV1NGVzYTQlMkJsdk5KZmJhYkZpUzN3VyUyQndLUG0lMkJvUXVUQ3RHR3RSYmI1TktCUkg3a3BwYmQySjNBenhCRmdpQ08xakpCeDRoRW51c3FkYWR2dVVEdXZRcVBONkRvRHdMbmVJRlJqaEFFZ25CMDBWQXF3TDRwUSUzRCUzRA%22},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22mercari.com%22,%22topUrl%22:%22static.jp.mercari.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://td.doubleclick.net/td/rul/880621981?random=1713999571659&cv=11&fst=1713999571659&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be44m0v9101993320z89175408643za201&gcd=13l3l3l3l1&dma=0&u_w=1280&u_h=1024&url=https%3A%2F%2Fstatic.jp.mercari.com%2Ftos&hn=www.googleadservices.com&frm=0&tiba=%E3%83%A1%E3%83%AB%E3%82%AB%E3%83%AA%E5%88%A9%E7%94%A8%E8%A6%8F%E7%B4%84%20-%20%E3%83%A1%E3%83%AB%E3%82%AB%E3%83%AA%20%E3%82%B9%E3%83%9E%E3%83%9B%E3%81%A7%E3%81%8B%E3%82%93%E3%81%9F%E3%82%93%20%E3%83%95%E3%83%AA%E3%83%9E%E3%82%A2%E3%83%97%E3%83%AA&npa=0&pscdl=noapi&auid=878979882.1713999543&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1
https://static.jp.mercari.com/tokutei
https://static.jp.mercari.com/tokutei
https://gum.criteo.com/syncframe?topUrl=static.jp.mercari.com&origin=onetag#{%22bundle%22:{%22origin%22:3,%22value%22:%22O1kawV9RdWM0UWU5c0N6MnZkJTJGbDczMVRkQlh5VnBvMWFrN25VSyUyQmttaklHaTJtY2ZxckpyT1RLSjdEWDhYJTJCZWpPZjlZSHFFcnlhcFhHMkQ2cW1uUHEwNFM3T2dxZ2dVOHpaWDlOMm1zMjBmZVd4JTJGMzN2WjJtR0NRN3ptd2glMkJPZE50alJQNEN1b2JjZUIxVm1oeTlGMnQ3MlRnJTNEJTNE%22},%22cw%22:true,%22optout%22:{%22origin%22:0,%22value%22:null},%22origin%22:%22onetag%22,%22sid%22:{%22origin%22:0,%22value%22:null},%22tld%22:%22mercari.com%22,%22topUrl%22:%22static.jp.mercari.com%22,%22version%22:%225_23_0%22,%22ifa%22:{%22origin%22:0,%22value%22:null},%22lsw%22:true,%22pm%22:0}
https://td.doubleclick.net/td/rul/880621981?random=1713999593235&cv=11&fst=1713999593235&fmt=3&bg=ffffff&guid=ON&async=1&gtm=45be44m0v9101993320z89175408643za201&gcd=13l3l3l3l1&dma=0&u_w=1280&u_h=1024&url=https%3A%2F%2Fstatic.jp.mercari.com%2Ftokutei&hn=www.googleadservices.com&frm=0&tiba=%E7%89%B9%E5%AE%9A%E5%95%86%E5%8F%96%E5%BC%95%E3%81%AB%E9%96%A2%E3%81%99%E3%82%8B%E8%A1%A8%E8%A8%98%20-%20%E3%83%A1%E3%83%AB%E3%82%AB%E3%83%AA%20%E3%82%B9%E3%83%9E%E3%83%9B%E3%81%A7%E3%81%8B%E3%82%93%E3%81%9F%E3%82%93%20%E3%83%95%E3%83%AA%E3%83%9E%E3%82%A2&npa=0&pscdl=noapi&auid=878979882.1713999543&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&fledge=1
https://securepubads.g.doubleclick.net/static/topics/topics_frame.html
There are 26 hidden doms, click here to show them.