IOC Report
https://r1.ddlnk.net/c/AQjk0g0Qm8tfGO-fuYUBIN_VnRqX_8qMMv0SH4zjIDrBfWHUoJeyNYFTWW6pKRGo9nfqZA

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 18:36:49 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 18:36:48 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:54:41 2023, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 18:36:48 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 18:36:48 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Apr 26 18:36:48 2024, atime=Mon Oct 2 20:46:57 2023, length=1210144, window=hide
dropped

URLs

Name
IP
Malicious
https://r1.ddlnk.net/c/AQjk0g0Qm8tfGO-fuYUBIN_VnRqX_8qMMv0SH4zjIDrBfWHUoJeyNYFTWW6pKRGo9nfqZA
about:blank
https://www.youtube.com/embed/4yWmkRQqxOY?rel=0&hd=0
https://www.bestpracticenet.co.uk/initial-teacher-training-apprenticeship-ITT-QTS-schools?utm_campaign=1566107_ITT%20Schools%20Email%20-%2026.04.24&utm_medium=EdCo_email&utm_source=EdCo&dm_i=4SIS,XKEZ,4MMCQ7,4AXA4,1
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6Lf_IC8pAAAAAEEJh2WGU2by9g2czztJCuVVFMX-&co=aHR0cHM6Ly93d3cuYmVzdHByYWN0aWNlbmV0LmNvLnVrOjQ0Mw..&hl=en&v=V6_85qpc2Xf2sbe3xTnRte7m&size=normal&cb=a4czpmf7ky0d
https://e.issuu.com/embed.html?backgroundColor=%23ce0f69&d=teacher_apprenticeship_flyer_a4_landscape_&logoImageUrl=https%3A%2F%2Fwww.bestpracticenet.co.uk%2Fassets%2Fimages%2Fbpn%2Flogo.png%3Fr%3D1&u=best-practice-network

Domains

Name
IP
Malicious
jsdelivr.map.fastly.net
151.101.1.229
d2fashanjl7d9f.cloudfront.net
18.64.174.54
global.px.quantserve.com
192.184.68.134
i.ytimg.com
142.250.189.150
cdn-cookieyes.com
104.22.58.91
ariane.abtasty.com
34.36.178.232
scontent.xx.fbcdn.net
157.240.14.19
static.zdassets.com
104.18.70.113
cdnjs.cloudflare.com
104.17.25.14
photos-ugc.l.googleusercontent.com
192.178.50.33
ekr.zdassets.com
104.18.70.113
www.google.com
142.250.64.228
api-1510131178.us-east-1.elb.amazonaws.com
52.0.175.223
outstandingleaders.zendesk.com
104.16.53.111
bestpracticenet.co.uk
138.68.135.232
star-mini.c10r.facebook.com
31.13.67.35
cdn.popupsmart.com
172.67.71.162
maxcdn.bootstrapcdn.com
104.18.10.207
bigpingback.issuu.com
35.241.35.151
static.doubleclick.net
142.250.189.134
syndication.twitter.com
104.244.42.8
issuu.com
151.101.2.110
o4505883345354752.ingest.sentry.io
34.120.195.249
youtube-ui.l.google.com
192.178.50.78
googleads.g.doubleclick.net
142.250.64.226
play.google.com
192.178.50.46
apiv2.popupsmart.com
104.26.7.46
widget-mediator.zopim.com
23.22.231.22
td.doubleclick.net
142.250.217.226
dcinfos-cache.abtasty.com
34.36.178.232
log.cookieyes.com
54.74.204.68
r1.ddlnk.net
172.66.0.126
try-cloudfront.abtasty.com
18.66.255.109
yt3.ggpht.com
unknown
cdn.jsdelivr.net
unknown
reader3.isu.pub
unknown
try.abtasty.com
unknown
rules.quantcount.com
unknown
api.issuu.com
unknown
www.youtube.com
unknown
www.facebook.com
unknown
secure.quantserve.com
unknown
pixel.quantserve.com
unknown
www.bestpracticenet.co.uk
unknown
connect.facebook.net
unknown
e.issuu.com
unknown
assets.isu.pub
unknown
pingback.issuu.com
unknown
There are 38 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
31.13.67.35
star-mini.c10r.facebook.com
Ireland
18.66.255.109
try-cloudfront.abtasty.com
United States
192.184.68.149
unknown
United States
142.250.217.164
unknown
United States
35.241.35.151
bigpingback.issuu.com
United States
142.250.217.168
unknown
United States
104.18.72.113
unknown
United States
151.101.194.110
unknown
United States
172.217.2.202
unknown
United States
192.178.50.67
unknown
United States
1.1.1.1
unknown
Australia
192.178.50.68
unknown
United States
34.198.24.31
unknown
United States
142.250.189.134
static.doubleclick.net
United States
104.16.53.111
outstandingleaders.zendesk.com
United States
172.67.71.162
cdn.popupsmart.com
United States
142.250.217.227
unknown
United States
142.250.217.226
td.doubleclick.net
United States
104.26.7.46
apiv2.popupsmart.com
United States
192.184.68.234
unknown
United States
142.250.64.174
unknown
United States
239.255.255.250
unknown
Reserved
104.18.70.113
static.zdassets.com
United States
142.250.64.170
unknown
United States
172.66.0.126
r1.ddlnk.net
United States
151.101.2.110
issuu.com
United States
23.22.231.22
widget-mediator.zopim.com
United States
142.250.217.195
unknown
United States
142.250.217.194
unknown
United States
104.17.25.14
cdnjs.cloudflare.com
United States
104.22.59.91
unknown
United States
192.178.50.78
youtube-ui.l.google.com
United States
104.18.10.207
maxcdn.bootstrapcdn.com
United States
192.178.50.35
unknown
United States
192.178.50.33
photos-ugc.l.googleusercontent.com
United States
3.231.182.34
unknown
United States
157.240.14.19
scontent.xx.fbcdn.net
United States
192.168.2.17
unknown
unknown
172.217.15.194
unknown
United States
142.250.64.138
unknown
United States
54.74.204.68
log.cookieyes.com
United States
31.13.80.36
unknown
Ireland
142.251.35.238
unknown
United States
172.217.165.195
unknown
United States
104.16.51.111
unknown
United States
172.217.3.67
unknown
United States
74.125.139.84
unknown
United States
52.0.175.223
api-1510131178.us-east-1.elb.amazonaws.com
United States
151.101.1.229
jsdelivr.map.fastly.net
United States
104.22.58.91
cdn-cookieyes.com
United States
142.250.189.150
i.ytimg.com
United States
192.178.50.46
play.google.com
United States
138.68.135.232
bestpracticenet.co.uk
United States
142.250.64.228
www.google.com
United States
104.244.42.8
syndication.twitter.com
United States
18.64.174.54
d2fashanjl7d9f.cloudfront.net
United States
142.250.64.226
googleads.g.doubleclick.net
United States
142.250.64.150
unknown
United States
34.36.178.232
ariane.abtasty.com
United States
142.250.64.196
unknown
United States
192.184.68.134
global.px.quantserve.com
United States
34.120.195.249
o4505883345354752.ingest.sentry.io
United States
172.217.165.202
unknown
United States
There are 53 hidden IPs, click here to show them.