IOC Report
https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 14:55:13 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 14:55:13 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:54:41 2023, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 14:55:13 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 14:55:13 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Apr 25 14:55:13 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 109
ASCII text, with very long lines (2124)
downloaded
Chrome Cache Entry: 110
ASCII text, with very long lines (989)
downloaded
Chrome Cache Entry: 111
ASCII text, with very long lines (631)
downloaded
Chrome Cache Entry: 112
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 113
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 114
ASCII text, with very long lines (2124)
downloaded
Chrome Cache Entry: 115
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 116
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
dropped
Chrome Cache Entry: 117
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 118
JSON data
dropped
Chrome Cache Entry: 119
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 120
ASCII text, with very long lines (2054)
downloaded
Chrome Cache Entry: 121
ASCII text, with very long lines (1907)
downloaded
Chrome Cache Entry: 122
JSON data
dropped
Chrome Cache Entry: 123
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 124
ASCII text
downloaded
Chrome Cache Entry: 125
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 126
ASCII text, with very long lines (383)
downloaded
Chrome Cache Entry: 127
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 128
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
dropped
Chrome Cache Entry: 129
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 130
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
dropped
Chrome Cache Entry: 131
JSON data
downloaded
Chrome Cache Entry: 132
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
dropped
Chrome Cache Entry: 133
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
downloaded
Chrome Cache Entry: 134
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 135
ASCII text, with very long lines (2124)
downloaded
Chrome Cache Entry: 136
HTML document, ASCII text, with very long lines (1759)
downloaded
Chrome Cache Entry: 137
ASCII text, with very long lines (631)
downloaded
Chrome Cache Entry: 138
ASCII text
downloaded
Chrome Cache Entry: 139
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 140
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 141
HTML document, ASCII text
downloaded
Chrome Cache Entry: 142
ASCII text, with very long lines (2054)
downloaded
Chrome Cache Entry: 143
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 144
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
dropped
Chrome Cache Entry: 145
MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
downloaded
Chrome Cache Entry: 146
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 147
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 148
ASCII text, with very long lines (1162)
downloaded
Chrome Cache Entry: 149
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
downloaded
Chrome Cache Entry: 150
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 151
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 152
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 153
ASCII text, with very long lines (546)
downloaded
Chrome Cache Entry: 154
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 155
HTML document, ASCII text, with very long lines (1726)
downloaded
Chrome Cache Entry: 156
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
downloaded
Chrome Cache Entry: 157
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 158
ASCII text, with very long lines (56412), with no line terminators
downloaded
Chrome Cache Entry: 159
HTML document, ASCII text
downloaded
Chrome Cache Entry: 160
ASCII text, with very long lines (3383)
downloaded
Chrome Cache Entry: 161
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 162
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 163
ASCII text, with very long lines (1281), with no line terminators
downloaded
Chrome Cache Entry: 164
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 165
HTML document, ASCII text
dropped
Chrome Cache Entry: 166
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 167
ASCII text, with very long lines (17673)
downloaded
Chrome Cache Entry: 168
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 169
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 170
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 171
Web Open Font Format (Version 2), TrueType, length 34184, version 1.0
downloaded
Chrome Cache Entry: 172
Web Open Font Format (Version 2), TrueType, length 15340, version 1.0
downloaded
Chrome Cache Entry: 173
HTML document, ASCII text, with very long lines (1726)
downloaded
Chrome Cache Entry: 174
PNG image data, 98 x 90, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 175
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
dropped
Chrome Cache Entry: 176
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 177
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 178
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
downloaded
Chrome Cache Entry: 179
ASCII text, with very long lines (1066)
downloaded
Chrome Cache Entry: 180
HTML document, ASCII text, with very long lines (1759)
downloaded
Chrome Cache Entry: 181
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 182
PNG image data, 98 x 90, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 183
ASCII text, with very long lines (1572)
downloaded
Chrome Cache Entry: 184
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 185
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 186
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 187
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 188
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 189
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 190
Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
downloaded
Chrome Cache Entry: 191
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
downloaded
Chrome Cache Entry: 192
ASCII text, with very long lines (2054)
downloaded
Chrome Cache Entry: 193
Web Open Font Format (Version 2), TrueType, length 15744, version 1.0
downloaded
Chrome Cache Entry: 194
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
downloaded
Chrome Cache Entry: 195
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, components 3
downloaded
Chrome Cache Entry: 196
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
dropped
Chrome Cache Entry: 197
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 198
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 100x100, components 3
downloaded
Chrome Cache Entry: 199
PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
dropped
Chrome Cache Entry: 200
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 201
HTML document, ASCII text
dropped
There are 90 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2088 --field-trial-handle=2020,i,16115722228760189557,15837865402989476601,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8

URLs

Name
IP
Malicious
https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474
https://signaler-staging.sandbox.google.com
unknown
https://feedback.googleusercontent.com/resources/annotator.css
unknown
https://developers.google.com/recaptcha/docs/faq#localhost_support
unknown
https://apis.google.com/js/client.js
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA78qAbo_jJqrypPYxBys_qrkpxKMMPho03vIlXt5sdkzsyIe62tNSehNB1x6jpZDHVJc-FPLix7Kqm4d39d6RqHHZ9knBvU69bVeMO7I0j4vSvmvenF3PGOdJXSm2AqVcoKliaP8iLvPt7tFi6Qy1kFmJN8IhJdlpFoKagybmNpeG6hze9NiC-L59sZypqu7tiMSrKPQLt2dtoQgKX3-_zM7MZurQ&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=bce81c712e3af970
74.125.138.147
https://www.google.com/recaptcha/api2/reload?k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
74.125.138.147
https://feedback2-test.corp.googleusercontent.com/tools/feedback/%
unknown
http://lh3.ggpht.com
unknown
https://support.google.com
unknown
http://localhost.proxy.googlers.com/inapp/
unknown
https://support.google.com/recaptcha#6262736
unknown
https://stagingqual-feedback-pa-googleapis.sandbox.google.com
unknown
https://dataconnector.corp.google.com/:session_prefix:ui/widgetview?usegapi=1
unknown
https://support.google.com/drive/answer/2423485?hl=%s
unknown
https://help.youtube.com/tools/feedback/
unknown
https://support.google.com/a/answer/33864?hl=en-US
unknown
about:blank
https://onepick-autopush.sandbox.google.com/picker/minpick/main
unknown
https://workspace.google.com/:session_prefix:marketplace/appfinder?usegapi=1
unknown
https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474
https://support.google.com/recaptcha/?hl=en#6223828
unknown
https://apis.google.com/_/scs/abc-static/_/js/k=gapi.lb.en.JisoxTPHVRs.O/m=gapi_rpc/rt=j/sv=1/d=1/ed=1/am=AAAC/rs=AHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg/cb=gapi.loaded_0?le=scs
142.250.9.113
https://www.youtube.com
unknown
https://asx-frontend-staging.corp.google.com/tools/feedback/
unknown
https://apis.google.com/js/api.js?checkCookie=1
142.250.9.113
https://www.google.com
unknown
https://support.google.com/drive/answer/2407404?hl=en
unknown
https://pay.google.com/gp/v/widget/save
unknown
https://workspace.google.com
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA5S4gMpR8P6DWXbjLgYgXGfpBFEq7GClddEPrIfLLsUB1_9i2nTODjVeidaRHj5Rvl5xTDZOixj0A-I3sgF1NWHK5lakN8uQIwkhNjpFgLUl5R-NtEDs_eyvh6CCArqaLDvfP5jAqR9Oc8SzoqqqKXzMRdH5J1WuZ9MKYPSbx1-93PvveWBuNA2YhfIn4FMS2NjlgZDLCUURvWDBJtjgrLW2BupxA&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=ae81a11623e9b09d
74.125.138.147
https://onepick-staging.sandbox.google.com/picker/minpick/main
unknown
https://support.google.com/recaptcha/#6175971
unknown
https://support.google.com/docs/answer/49114
unknown
https://support.google.com/drive/answer/2423694
unknown
https://support.google.com/google-workspace-individual/?p=esignature_signer_terms
unknown
https://www.gstatic.c..?/recaptcha/releases/V6_85qpc2Xf2sbe3xTnRte7m/recaptcha__.
unknown
https://drive-thirdparty.googleusercontent.com/
unknown
https://www.google.com/shopping/customerreviews/optin?usegapi=1
unknown
https://asx-frontend-autopush.corp.google.co.uk/tools/feedback/
unknown
https://onepick-preprod.sandbox.google.com/picker/minpick/main
unknown
https://developers.google.com/
unknown
https://onepick-staging-drivequal.sandbox.google.com/picker/minpick/main
unknown
https://apis.google.com/_/scs/abc-static/_/js/k=gapi.lb.en.JisoxTPHVRs.O/m=client/rt=j/sv=1/d=1/ed=1/am=AAAC/rs=AHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg/cb=gapi.loaded_0?le=scs
142.250.105.101
https://support.google.com/cloudsearch/answer/6172299
unknown
https://support.google.com/recaptcha
unknown
https://developers.google.com/identity/gsi/web/guides/gis-migration)
unknown
https://www.google.com/tools/feedback
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA6sne62JSIokm5CpZUbY-1gW7IMe4F3rJWGRZa4M9fOajVfhbKoEKv5r_VOHguXVuqVGWDvXZUkobgFIl8RYLftDaKYEKO3Ytk1NmLj6er-SXZv_hTlV5CRCpe52l4MaJbN1nKu2gYDlwcqt9_7OMfY4xXyI3WFGNzuyPlt0rHzwqepgmWmneyIH0dUd7Kt9VT6tniAziOGM7aDvXIEE74NOfoaHw&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=a64b75be15e7052d
74.125.138.147
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cLAgsMg5UMmV2i
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA5PW9hIV_Lhjw8mOIyteVfmmyyvKS69Nmkg9tPX0XF_Ia4K6A8uVBCx69JQIKvsFWZ6R3WwdOYOlOGt9pL6orh8b7Foer-r91WAp2m3s4m45w9ijIJjLhaeWatRcqaYN3x8tgB4IteLtyw-A0h_RKjUT8YPEp0neZzlP6-W_5kFfhhem8F8miVqIx3nbvgu5-JfNQ7CbsI1287hxz_LAStGDc6A8w&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=e6f3c5abbea29481
74.125.138.147
https://sandbox.google.com/inapp/%
unknown
https://www.google.com/recaptcha/api.js?trustedtypes=true
unknown
https://apis.google.com/js/api.js
unknown
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&co=aHR0cHM6Ly9taXJvc2xhd2JhY2EucGw6NDQz&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=normal&cb=agaat2h311bp
https://workspace.google.com/products/sites/
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA5b-7Jw4AEJv-Jj4vwnxdhjShP75QlCraMCrM36eqrZ-E4tDdG0nKucYmuT5PDhCLU9Ck_zkd6Jx7x6TZAoUDw1__319axFQ_yjwJpZ922jojvuu6zGx3NAOtP1s7OUdOSPGrszJzLfFiqBCT6zeSAJ5Uda1opmNIuwo96puWdebzd6gD-PeDa6ZJpJnvYIVoUDHoxIW7sNDaMiQrlKbiV9X7kvaA&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=f42951f246eb2649
74.125.138.147
https://www.apache.org/licenses/
unknown
https://www.google.com/tools/feedback/
unknown
https://www.youtube.com/subscribe_embed?usegapi=1
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA72OCKElUwwALD5dphPsUlnYKiYuw1N0OYi2qAWJheYiB_ZaChcRwAycXBmP8e5LhLaqEt4XMC4POpDVmuu5YnPqwy0xeWZ-va9gn9AzQUf4et0RLjVTo-h_JFCftwG7j9OS-qn7VosHVihnLOgFPJFWHkobYnMfPjgRlkf_ibuSCQtXgSCm9aHRM98k-FkXrOzrd9AwWw3UspcJYvkWpljORIIkQ&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=48f6ea1ef4758cc5
74.125.138.147
https://1320841801-atari-embeds.googleusercontent.com/embeds/16cb204cf3a9d4d223a0a3fd8b0eec5d/inner-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__
https://apis.google.com/_/scs/abc-static/_/js/k=gapi.lb.en.JisoxTPHVRs.O/m=gapi_rpc/exm=client/rt=j/sv=1/d=1/ed=1/am=AAAC/rs=AHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg/cb=gapi.loaded_1?le=scs
142.250.105.101
https://feedback2-test.corp.google.com/tools/feedback/%
unknown
https://punctual-dev.corp.google.com
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA5hxhl65i9DtK_N04hoC_Q5PSRWMjsFo1Y8F_p58vjnggZWUg_YcRKRecSf6wjZkEOOIKBVWlwpqyYHwyUkO44sZ_XMGXvVddlYPX8N4292kogQkt7MRTaQ5FMxYo_P8K2oFFJl6RQ5_stBgXwf52KD_hAOOfnBLHqRXUVOnWGS00H-zqXrlIYdx4W2c_Mr-7tV21k-cQJag7NLwGKLBIllJiJ3gA&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=38acd6e2f25bf968
74.125.138.147
https://plus.google.com
unknown
https://support.google.com/google-workspace-individual/?p=esignature_signer_tos
unknown
https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
unknown
https://asx-frontend-autopush.corp.google.de/tools/feedback/
unknown
https://www.youtubeeducation.com
unknown
https://asx-help-frontend-autopush.corp.youtube.com/tools/feedback/
unknown
https://clients5.google.com/webstore/wall/widget
unknown
https://play.google.com/log?format=json&hasfast=true
unknown
https://asx-frontend-autopush.corp.google.com/inapp/
unknown
https://preprod-dynamite-alpha-us-signaler-pa.clients6.google.com
unknown
https://feedback.googleusercontent.com/resources/render_frame2.html
unknown
https://sandbox.google.com/tools/feedback/%
unknown
https://miroslawbaca.pl/wp-content/uploads/2020/jocote.php?id=cLAgsMg5UMmV2i&file=Chasebank_Statement_Apr.pdf
153.92.220.230
https://localhost.corp.google.com/inapp/
unknown
https://support.google.com/drive/answer/7650301
unknown
https://drive.google.com
unknown
https://play.google.com/work/embedded/search?usegapi=1&usegapi=1
unknown
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cllQxLQ4XASOQi
https://rapid.corp.google.com/
unknown
https://drive.google.com/requestreview?id=
unknown
http://lh4.ggpht.com
unknown
https://asx-frontend-staging.corp.google.com/inapp/
unknown
https://drive.google.com/drive/my-drive
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA422Y5aSsl4NQBiwlWQplvKEGrXCAZw-W4bkxC9DIuzFoNHnd89HLUS8-fCjk-oM0PZcneJPq90p0ocizDcI8mCteHoCYkNvt7whvsMGDm8S56InB9xmdwTIXvNT7picot2mvW87MygnQ9ppCEc0Uib_hMcBOYK9yuRssZLo-Ewpj26G31y0fAcbAJ5qT52cK0voGej76_DxyYLCHQfwMKPLeOHog&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
74.125.138.147
https://fonts.google.com/license/googlerestricted
unknown
https://apis.google.com/js/client.js?onload=gapiLoaded
142.250.105.101
https://clients6.google.com
unknown
http://localhost.corp.google.com/inapp/
unknown
https://scriptz.corp.google.com/
unknown
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&co=aHR0cHM6Ly9taXJvc2xhd2JhY2EucGw6NDQz&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=normal&cb=a0j7fhutov91
https://www.google.com/recaptcha/api2/userverify?k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
74.125.138.147
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA4D8LLw1ofWKKgmZZtTOYKVypnh3eVNuM9NSIu0dkTs0YZYxkamNytNOQUmqCMruS2cgJh2c4EPmwY1_mhrcxge5dSUbNdcLZ5mflkOzJhnAU5B6PAh8KRioUELfw7WOsImoRlkKBWJQene3FQabOjJ8JB_mv-4IzcBdqPD_qVzEvvin49q1b3qr7f6XmiOcPoDRsvQ8puemxb5VgQHP-e1-095sA&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=17bbea07c48776b6
74.125.138.147
https://play.google.com
unknown
https://clients5.google.com
unknown
https://www.google.com/recaptcha/api2/payload?p=06AFcWeA6bE9JOQfkpXTHuVMqqWzgOAz508tzmx6Xy7B0CB2vjeKWYVlA4WygxevULLSQ4AwTXaUVit5trGoYnk5oOeoc45_FWcPhraziQHptL_2RS2FrM9fnm-OHtyp0saJ3wH9tZiZAGIl5NsgRHGQlPLg5CU9LfNTgwFh-AUaTBo_UQAqpULN3bSnjNc-cO_ns6sWtqRc225KoOJNMYZIzPPziG-2oL6Q&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&id=e894cb8638823299
74.125.138.147
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
plus.l.google.com
142.250.105.101
play.google.com
64.233.185.101
sites.google.com
173.194.219.102
drive.google.com
108.177.122.113
www.google.com
74.125.138.147
miroslawbaca.pl
153.92.220.230
googlehosted.l.googleusercontent.com
172.253.124.132
1710257768-atari-embeds.googleusercontent.com
unknown
1320841801-atari-embeds.googleusercontent.com
unknown
apis.google.com
unknown

IPs

IP
Domain
Country
Malicious
172.217.215.101
unknown
United States
172.217.215.105
unknown
United States
192.168.2.17
unknown
unknown
142.250.105.139
unknown
United States
64.233.177.139
unknown
United States
64.233.177.138
unknown
United States
74.125.136.101
unknown
United States
142.251.15.106
unknown
United States
74.125.136.100
unknown
United States
108.177.122.132
unknown
United States
142.250.9.113
unknown
United States
108.177.122.113
drive.google.com
United States
74.125.138.147
www.google.com
United States
172.253.124.132
googlehosted.l.googleusercontent.com
United States
142.250.105.101
plus.l.google.com
United States
64.233.185.101
play.google.com
United States
64.233.177.105
unknown
United States
239.255.255.250
unknown
Reserved
153.92.220.230
miroslawbaca.pl
United States
There are 9 hidden IPs, click here to show them.

DOM / HTML

URL
Malicious
about:blank
https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474
https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474
https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474
https://sites.google.com/view/scanned-files-jn1nn/google-pdf?file=Chasebank_Statement_Apr.pdf&fid=60231474
https://drive.google.com/auth_warmup
https://www.gstatic.com/atari/embeds/83a60601c213b72fb19c1855fb0c5f26/intermediate-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__&r=85735396
https://www.gstatic.com/atari/embeds/83a60601c213b72fb19c1855fb0c5f26/intermediate-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__&r=85735396
https://1320841801-atari-embeds.googleusercontent.com/embeds/16cb204cf3a9d4d223a0a3fd8b0eec5d/inner-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__
https://1320841801-atari-embeds.googleusercontent.com/embeds/16cb204cf3a9d4d223a0a3fd8b0eec5d/inner-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__
https://1320841801-atari-embeds.googleusercontent.com/embeds/16cb204cf3a9d4d223a0a3fd8b0eec5d/inner-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cllQxLQ4XASOQi
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cllQxLQ4XASOQi
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cllQxLQ4XASOQi
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cllQxLQ4XASOQi
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&co=aHR0cHM6Ly9taXJvc2xhd2JhY2EucGw6NDQz&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=normal&cb=a0j7fhutov91
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&co=aHR0cHM6Ly9taXJvc2xhd2JhY2EucGw6NDQz&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=normal&cb=a0j7fhutov91
https://www.google.com/recaptcha/api2/bframe?hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
https://www.google.com/recaptcha/api2/bframe?hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
https://www.google.com/recaptcha/api2/bframe?hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
https://www.google.com/recaptcha/api2/bframe?hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
https://www.google.com/recaptcha/api2/bframe?hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
https://www.google.com/recaptcha/api2/bframe?hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL
https://www.gstatic.com/atari/embeds/83a60601c213b72fb19c1855fb0c5f26/intermediate-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__&r=357331185
https://1710257768-atari-embeds.googleusercontent.com/embeds/16cb204cf3a9d4d223a0a3fd8b0eec5d/inner-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__
https://1710257768-atari-embeds.googleusercontent.com/embeds/16cb204cf3a9d4d223a0a3fd8b0eec5d/inner-frame-minified.html?jsh=m%3B%2F_%2Fscs%2Fabc-static%2F_%2Fjs%2Fk%3Dgapi.lb.en.JisoxTPHVRs.O%2Fam%3DAAAC%2Fd%3D1%2Frs%3DAHpOoo9VOmUKkb8FAwL65OiDUU4etqWcRg%2Fm%3D__features__
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&co=aHR0cHM6Ly9taXJvc2xhd2JhY2EucGw6NDQz&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=normal&cb=agaat2h311bp
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfVIcYpAAAAAJxs1OJypixVLiu-KHsYa1fuwsHL&co=aHR0cHM6Ly9taXJvc2xhd2JhY2EucGw6NDQz&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=normal&cb=agaat2h311bp
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cLAgsMg5UMmV2i
https://miroslawbaca.pl/wp-content/uploads/2020/boat.php?id=cLAgsMg5UMmV2i
There are 20 hidden doms, click here to show them.