IOC Report
https://znap.link/payeeportal8738246

loading gif

Files

File Path
Type
Category
Malicious
C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\11dce115-f962-4afb-b73e-8836095a2452.tmp
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\455f63cf-576e-4ab2-89f4-225e4ff7c98b.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\4e903f7a-4953-4cbb-ba7a-14f6eddd035c.tmp
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\68212dd8-ad4c-401d-9365-a8809de32846.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\7153fee0-9ea8-4978-8eb4-97d5e28e0746.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\958a5f90-9144-4ff6-bd25-c9f0ec575a0c.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\059b2265-3fa2-4224-a246-d14fe5b9c66b.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\2696adca-9bd1-47de-a1c0-fbb24f5828f9.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\27c8af62-28e7-478f-9986-c3cf4f563c88.tmp
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\401a867d-9943-44ba-b5bf-d0a13acd4936.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\54e6e10e-fdaa-4936-97f6-cbc6c23d8982.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\68236960-d358-407f-a734-0dd78e2034bd.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\866ba596-a3a1-4e67-8734-2ac5d31c5864.tmp
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\8c2373f5-86ae-4a9e-9739-f8bee2a3a116.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\92d7809c-eef8-4ff4-92ff-bfe7c359bde2.tmp
very short file (no magic)
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\934d81b5-0d57-466f-a25f-8cdd8550e40b.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\9cad2736-346c-4917-94f7-82fd61cc5c54.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
ASCII text
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old (copy)
ASCII text
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.youtube.com_0.indexeddb.leveldb\000001.dbtmp
ASCII text
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.youtube.com_0.indexeddb.leveldb\CURRENT (copy)
ASCII text
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_www.youtube.com_0.indexeddb.leveldb\MANIFEST-000001
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State (copy)
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences (copy)
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (copy)
UTF-8 Unicode text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\379f1cbab5b08b6fc9e08681e42d8be311441c88\8fef00c2-34d0-4ad3-a890-2e4b66588379\index
ISO-8859 text, with no line terminators, with escape sequences
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\379f1cbab5b08b6fc9e08681e42d8be311441c88\8fef00c2-34d0-4ad3-a890-2e4b66588379\index-dir\temp-index
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\379f1cbab5b08b6fc9e08681e42d8be311441c88\8fef00c2-34d0-4ad3-a890-2e4b66588379\index-dir\the-real-index (copy)
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\379f1cbab5b08b6fc9e08681e42d8be311441c88\index.txt (copy)
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\379f1cbab5b08b6fc9e08681e42d8be311441c88\index.txt.tmp
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\2111a404-c564-4b0e-a57d-5f964881277c.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Network Persistent State (copy)
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity (copy)
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\af1cc1c3-0e82-45ed-b5d7-3e996e36bca6.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\d46817d7-a08f-47f4-9087-fa17b0d6cde6.tmp
ASCII text, with no line terminators
modified
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000004.dbtmp
ASCII text
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT (copy)
ASCII text
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Browser
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version
ASCII text, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State (copy)
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\Module Info Cache (copy)
data
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\c650e763-b091-4de5-8087-ec347793fb96.tmp
SysEx File -
dropped
C:\Users\user\AppData\Local\Google\Chrome\User Data\d2acdde7-a8cc-441b-b5a2-aaa331611e97.tmp
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\05e38429-b10f-45c6-8480-e6accccfde7c.tmp
Google Chrome extension, version 3
dropped
C:\Users\user\AppData\Local\Temp\692ec952-f435-4045-a312-2346d6f3f9bd.tmp
very short file (no magic)
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\05e38429-b10f-45c6-8480-e6accccfde7c.tmp
Google Chrome extension, version 3
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\bg\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\ca\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\cs\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\da\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\de\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\el\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\en\messages.json
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\en_GB\messages.json
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\es\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\es_419\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\et\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\fi\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\fil\messages.json
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\fr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\hi\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\hr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\hu\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\id\messages.json
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\it\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\ja\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\ko\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\lt\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\lv\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\nb\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\nl\messages.json
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\pl\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\pt_BR\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\pt_PT\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\ro\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\ru\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\sk\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\sl\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\sr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\sv\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\th\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\tr\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\uk\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\vi\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\zh_CN\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_locales\zh_TW\messages.json
UTF-8 Unicode text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\_metadata\verified_contents.json
ASCII text, with very long lines, with no line terminators
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\craw_background.js
ASCII text, with very long lines
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\craw_window.js
ASCII text, with very long lines
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\css\craw_window.css
ASCII text
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\html\craw_window.html
HTML document, ASCII text
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\flapper.gif
GIF image data, version 89a, 30 x 30
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\icon_128.png
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\icon_16.png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\topbar_floating_button.png
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\topbar_floating_button_close.png
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\topbar_floating_button_hover.png
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\topbar_floating_button_maximize.png
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\images\topbar_floating_button_pressed.png
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\scoped_dir5164_2062420236\CRX_INSTALL\manifest.json
ASCII text, with CRLF line terminators
dropped
There are 97 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --enable-automation "https://znap.link/payeeportal8738246
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1508,3943996493005346684,4848979538396818566,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1920 /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --field-trial-handle=1508,3943996493005346684,4848979538396818566,131072 --lang=en-US --service-sandbox-type=audio --enable-audio-service-sandbox --mojo-platform-channel-handle=3360 /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --field-trial-handle=1508,3943996493005346684,4848979538396818566,131072 --lang=en-US --service-sandbox-type=video_capture --enable-audio-service-sandbox --mojo-platform-channel-handle=3700 /prefetch:8

URLs

Name
IP
Malicious
https://znap.link/payeeportal8738246
malicious
https://storageapi2.fleek.co/a7a7e562-bf71-4765-95c2-8ad660124c7f-bucket/en.html
104.18.6.145
malicious
https://storageapi2.fleek.co/a7a7e562-bf71-4765-95c2-8ad660124c7f-bucket/en.html
malicious
https://www.znaplink.com/
malicious
https://www.znaplink.com/support
malicious
https://www.znaplink.com/pricing
malicious
https://www.znaplink.com/blog
malicious
https://znap.link/payeeportal8738246
malicious
https://storageapi2.fleek.co/a7a7e562-bf71-4765-95c2-8ad660124c7f-bucket/en.html2
unknown
malicious
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/628a36337e2bdc32d9af0d9e_GTWalsheimPro-Medium.ttf
143.204.7.61
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/60b2b2370e0fd81c462b1764_EudoxusSans-Regular.ttf
143.204.7.61
https://uploads-ssl.webflow.com/602830d294806a89b7fbce61/62360938624d101d32dd22ec_619ea6bca59fba72bcdc3c72_aa3f0d62a8ec177d3f71a82590d85dcb~c5_100x100.jpeg
143.204.7.61
https://app.znaplink.com/themes/altum/assets/fonts/Eudoxus-Sans-font/EudoxusSans-Bold.woff2
165.227.107.5
https://znap.link/payeeportal8738246
165.227.107.5
https://storageapi2.fleek.co/_layouts/15/images/microsoft-logo.png
104.18.6.145
https://app.znaplink.com/themes/altum/assets/css/custom.css?v=2&init=1653572590
165.227.107.5
https://imagedelivery.net/tqC70bVt8T6GtQUXNsa2-g/e7bc20c2-ae99-4c5e-f0b5-99593f9e4800/public?1653572590
104.18.3.36
https://www.znaplink.com/2AZnaplink
unknown
https://www.youtube.com
unknown
https://app.znaplink.com/themes/altum/assets/js/main.js?v=2
165.227.107.5
https://www.google.com
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/6111902653d19f10b4b0b0f7_znaplink-new-logo.png
143.204.7.61
https://www.youtube.com/embed/E5D8uRYd9aM?rel=0&controls=1&autoplay=0&mute=0&start=0
https://app.znaplink.com/themes/altum/assets/js/libraries/popper.min.js?v=2
165.227.107.5
https://storageapi2.fleek.co/cdn-cgi/scripts/5c5dd728/cloudflare-static/email-decode.min.js
104.18.6.145
https://www.google.com/accounts/OAuthLogin?issueuberauth=1
unknown
https://app.znaplink.com/themes/altum/assets//slick/slick.css
165.227.107.5
https://dns.google
unknown
https://github.com/google/closure-library/wiki/goog.module:-an-ES6-module-like-alternative-to-goog.p
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/62474eafe25014c71b3a8e72_Gradient%20shape%2090%20Small.png
143.204.7.61
https://app.znaplink.com/themes/altum/assets/fonts/Eudoxus-Sans-font/EudoxusSans-Regular.woff2
165.227.107.5
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/602aaa4c1f77446b9c4888fa_arrow-3.png
143.204.7.61
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=85.0.4183.121&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1&x=id%3Dpkedcjkdefgpdelpbcmbmeomcjbeemfm%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
216.58.215.238
https://payments.google.com/payments/v4/js/integrator.js
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/626f94c36bd4213e97e57c94_unicorn_1f984.png
143.204.7.61
https://app.znaplink.com/themes/altum/assets//slick/slick.min.js
165.227.107.5
https://www.znaplink.com/
52.49.198.28
https://www.google.com/images/x2.gif
unknown
https://uploads-ssl.webflow.com/602830d294806a89b7fbce61/6236088487886b2093360319_1623693332-2.png
143.204.7.61
https://www.youtube.com/
unknown
https://cdn.firstpromoter.com/fpr.js
143.204.7.99
https://storageapi2.fleek.co/_layouts/15/images/favicon.ico?rev=47
104.18.6.145
https://www.google.com/images/dot2.gif
unknown
https://app.znaplink.com/themes/altum/assets/css/animate.min.css?v=2&init=1653572590
165.227.107.5
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/61d0c9f2e3175c924d88e3be_615e2d7d0a5fbab0957224aa_Button%20Arrow%20Up.svg
143.204.7.61
https://app.znaplink.com/themes/altum/assets/js/functions.js?v=2
165.227.107.5
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/622c79ead49f742cd4466108_Frame%20784.png
143.204.7.61
https://app.znaplink.com/themes/altum/assets/js/libraries/jquery.min.js?v=2
165.227.107.5
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/60c139140ca934674fa0f7b7_znaplink-free-linktree-alternative-2021.png
143.204.7.61
https://spoprod-a.akamaihd.net
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/css/znaplink.webflow.c02451383.min.css
143.204.7.61
https://www.google.com/
unknown
https://app.znaplink.com/themes/altum/assets/css/link-custom.css?v=2&init=1653572590
165.227.107.5
https://imagedelivery.net/tqC70bVt8T6GtQUXNsa2-g/b02aea40-f294-4311-d51b-b7d90f924800/public
104.18.3.36
https://app.znaplink.com/uploads/logo/81a345d86e9f562ff86bc945747bf12e.png
165.227.107.5
https://d3e54v103j8qbb.cloudfront.net/js/jquery-3.5.1.min.dc5e7f18c8.js?site=6026bc921eff07d61a132750
99.86.154.54
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/626f93cae14c3949476c76b8_bacckground.png
143.204.7.61
https://www.google.com/images/cleardot.gif
unknown
https://play.google.com
unknown
https://app.znaplink.com/themes/altum/assets/js/libraries/bootstrap.min.js?v=2
165.227.107.5
https://www.google.ch
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/61d0631133a4f110d1bc1e77_CriteriaCF-Medium.ttf
143.204.7.61
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/60b2b2375830838428ae3264_EudoxusSans-Medium.ttf
143.204.7.61
https://sandbox.google.com/payments/v4/js/integrator.js
unknown
https://app.znaplink.com/uploads/avatars/https://imagedelivery.net/tqC70bVt8T6GtQUXNsa2-g/b02aea40-f294-4311-d51b-b7d90f924800/public
165.227.107.5
https://app.znaplink.com/themes/altum/assets//growl-notification/colored-theme.min.css
165.227.107.5
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/60cd2dc9e3a31025663cbc42_Group%20550.png
143.204.7.61
https://accounts.google.com/MergeSession
unknown
https://uploads-ssl.webflow.com/602830d294806a89b7fbce61/62360859bde6812533df20e7_public.webp
143.204.7.61
https://app.znaplink.com/themes/altum/assets/css/bootstrap.min.css?v=2&init=1653572590
165.227.107.5
https://upload.wikimedia.org/wikipedia/commons/thumb/9/96/Microsoft_logo_%282012%29.svg/1200px-Microsoft_logo_%282012%29.svg.png
91.198.174.208
https://accounts.google.com
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/js/webflow.50b86979a.js
143.204.7.61
https://apis.google.com
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/61a216e6b99ae96bd8a24193_feature-arrow.svg
143.204.7.61
https://uploads-ssl.webflow.com/602830d294806a89b7fbce61/62360829b8aea2f1769bf5d8_60c1bd3f3fa7ff40fdccdeae_unnamed-2-p-500.jpeg
143.204.7.61
https://www-googleapis-staging.sandbox.google.com
unknown
https://static.doubleclick.net
unknown
https://clients2.google.com
unknown
https://app.znaplink.com/uploads/favicon/f5bca4b8ab78370ee3bda11ff8bef797.png
165.227.107.5
https://app.znaplink.com/themes/altum/assets//slick/slick-theme.css
165.227.107.5
https://www.google.com/intl/en-US/chrome/blank.html
unknown
https://ogs.google.com
unknown
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard
142.250.203.109
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/626f9502f87d29d8239ae3de_magic-wand_1fa84.png
143.204.7.61
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/627ec6a9b6ff71ed88809f2e_back11.png
143.204.7.61
https://googleads.g.doubleclick.net
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/61d063108cdf723f275f688a_CriteriaCF-Bold.ttf
143.204.7.61
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/60dc59aa9b8c32370664b607_Untitled.png
143.204.7.61
https://www.youtube.com/embed/E5D8uRYd9aM?rel=0&controls=1&autoplay=0&mute=0&start=0
216.58.215.238
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/60b2b236e1947af16d829f32_EudoxusSans-Bold.ttf
143.204.7.61
https://znap.link/payeeportal87382462
unknown
https://app.znaplink.com/themes/altum/assets/js/libraries/fontawesome.min.js?v=2
165.227.107.5
https://app.znaplink.com/themes/altum/assets//growl-notification/growl-notification.min.js
165.227.107.5
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/6026bdf45ff6d63958e9bd82_Circular%20Std%20Book.ttf
143.204.7.61
https://uploads-ssl.webflow.com/602830d294806a89b7fbce61/623608bc97697d68566cf3e0_4f7f10d31fa7a1e89e341283597bb1fe.svg
143.204.7.61
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/61fbfa4c561b964a91058733_MAGIC%20SETUP%20USING%20ai.png
143.204.7.61
https://clients2.googleusercontent.com
unknown
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/627158e904c4432e2e4b4247_Gradient%20shape%2004%201-p-800.png
143.204.7.61
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/61fbfad72813164f9825783c_TIKTOK%20WIDGET.png
143.204.7.61
https://uploads-ssl.webflow.com/6026bc921eff07d61a132750/628bd883bd95ea078b4dd866_best-free-link-in-bio-tool-2022-tiktok-instagram-p-800.png
143.204.7.61
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
gstaticadssl.l.google.com
216.58.215.227
accounts.google.com
142.250.203.109
www-google-analytics.l.google.com
142.250.203.110
www-googletagmanager.l.google.com
172.217.168.8
storageapi2.fleek.co
104.18.6.145
static-doubleclick-net.l.google.com
142.250.203.102
proxy-ssl-geo.webflow.com
52.49.198.28
d3e54v103j8qbb.cloudfront.net
99.86.154.54
znap.link
165.227.107.5
youtube-ui.l.google.com
216.58.215.238
imagedelivery.net
104.18.3.36
googleads.g.doubleclick.net
142.250.203.98
play.google.com
142.250.203.110
app.znaplink.com
165.227.107.5
www.google.com
142.250.203.100
upload.wikimedia.org
91.198.174.208
clients.l.google.com
216.58.215.238
uploads-ssl.webflow.com
143.204.7.61
www.google.ch
172.217.168.67
d2ycxbs0cq3yaz.cloudfront.net
143.204.7.99
static.doubleclick.net
unknown
cdn.firstpromoter.com
unknown
clients2.google.com
unknown
www.znaplink.com
unknown
analytics.tiktok.com
unknown
spoprod-a.akamaihd.net
unknown
www.youtube.com
unknown
There are 17 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
192.168.2.1
unknown
unknown
104.18.3.36
imagedelivery.net
United States
143.204.7.112
unknown
United States
216.58.215.238
youtube-ui.l.google.com
United States
143.204.7.99
d2ycxbs0cq3yaz.cloudfront.net
United States
104.18.6.145
storageapi2.fleek.co
United States
172.217.168.8
www-googletagmanager.l.google.com
United States
172.217.168.67
www.google.ch
United States
142.250.203.98
googleads.g.doubleclick.net
United States
142.250.203.109
accounts.google.com
United States
142.250.203.102
static-doubleclick-net.l.google.com
United States
165.227.107.5
znap.link
United States
216.58.215.227
gstaticadssl.l.google.com
United States
142.250.203.100
www.google.com
United States
91.198.174.208
upload.wikimedia.org
Netherlands
143.204.7.61
uploads-ssl.webflow.com
United States
239.255.255.250
unknown
Reserved
52.49.198.28
proxy-ssl-geo.webflow.com
United States
99.86.154.54
d3e54v103j8qbb.cloudfront.net
United States
127.0.0.1
unknown
unknown
There are 10 hidden IPs, click here to show them.

Registry

Path
Value
Malicious
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
ahfgeienlihckogmohjhadlkjgocpleb
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
gdaefkejpgkiemlaofpalmlakkmbjdnl
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
gfdkimpbcpahaombhbimeihdjnejgicl
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
kmendfapggjehodndflmmgagdbamhnfd
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
mfehgcgbbipciphmccgaenjidiccnmng
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
mhjfbmdgcfjbbpaeojofohoefgiehjai
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
neajdppkdcdipfabeoofebfddakdcjhd
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
nkeimhogjdpnpccoofpliimaahmaaome
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
prefs.preference_reset_time
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}\LastWasDefault
S-1-5-21-3853321935-2125563209-4053062332-1002
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
gfdkimpbcpahaombhbimeihdjnejgicl
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
nmmhkkegccagdldgiimedpiccmgmieda
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
pkedcjkdefgpdelpbcmbmeomcjbeemfm
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
state
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
StatusCodes
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
StatusCodes
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
state
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
dr
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
software_reporter.reporting
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
module_blacklist_cache_md5_digest
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
media.storage_id_salt
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
google.services.last_account_id
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
google.services.account_id
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
software_reporter.prompt_seed
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
settings_reset_prompt.last_triggered_for_homepage
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
default_search_provider_data.template_url_data
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
safebrowsing.incidents_sent
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
pinned_tabs
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
search_provider_overrides
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
settings_reset_prompt.last_triggered_for_default_search
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
prefs.preference_reset_time
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
google.services.last_username
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
session.startup_urls
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
session.restore_on_startup
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
software_reporter.prompt_version
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
settings_reset_prompt.last_triggered_for_startup_urls
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
settings_reset_prompt.prompt_wave
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
homepage
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
homepage_is_newtabpage
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
browser.show_home_button
HKEY_CURRENT_USER\Software\Google\Chrome\StabilityMetrics
user_experience_metrics.stability.exited_cleanly
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
lastrun
HKEY_CURRENT_USER\Software\Microsoft\ActiveMovie\devenum 64-bit
Version
There are 33 hidden registries, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
2245863D000
heap
page read and write
2245DE24000
trusted library allocation
page read and write
2245865A000
heap
page read and write
2245869F000
heap
page read and write
238A6E61000
heap
page read and write
238A6E4F000
heap
page read and write
2245DEE0000
trusted library allocation
page read and write
22458613000
heap
page read and write
2AE50B02000
heap
page read and write
2245DCF0000
heap
page read and write
238A6E2D000
heap
page read and write
D65627E000
stack
page read and write
C55DFFE000
stack
page read and write
238A6E48000
heap
page read and write
2245DE00000
trusted library allocation
page read and write
9B812FA000
stack
page read and write
22458694000
heap
page read and write
27B2B1C0000
remote allocation
page read and write
238A6E42000
heap
page read and write
27B2B213000
heap
page read and write
DFC237E000
stack
page read and write
2245DE08000
trusted library allocation
page read and write
22458F18000
heap
page read and write
2AE50A40000
heap
page read and write
26A7B4BD000
heap
page read and write
2AE50A13000
heap
page read and write
2245DCFC000
heap
page read and write
9B816FB000
stack
page read and write
2245DCB7000
heap
page read and write
2245DBE4000
trusted library allocation
page read and write
2245DC4D000
heap
page read and write
2245DF00000
trusted library allocation
page read and write
22458676000
heap
page read and write
2AE50A6D000
heap
page read and write
22458500000
heap
page read and write
238A6E7A000
heap
page read and write
DFC297F000
stack
page read and write
2245DCF5000
heap
page read and write
C55E5FF000
stack
page read and write
22458DD0000
trusted library section
page readonly
8DB087B000
stack
page read and write
2AE50A79000
heap
page read and write
238A6E84000
heap
page read and write
26A7B489000
heap
page read and write
238A6E77000
heap
page read and write
26A7B3B0000
heap
page read and write
2245DC40000
heap
page read and write
2A4AD113000
heap
page read and write
238A6E5F000
heap
page read and write
26A7B413000
heap
page read and write
238A6E00000
heap
page read and write
26A7B470000
heap
page read and write
22458F18000
heap
page read and write
27B2B22A000
heap
page read and write
238A6E30000
heap
page read and write
26A7B3E0000
trusted library allocation
page read and write
238A6E55000
heap
page read and write
2245DCF2000
heap
page read and write
2245DCEE000
heap
page read and write
2245DF30000
remote allocation
page read and write
DFC23FE000
stack
page read and write
2245868F000
heap
page read and write
22458E00000
heap
page read and write
9B811F7000
stack
page read and write
22458F13000
heap
page read and write
2245DF30000
remote allocation
page read and write
2AE50A57000
heap
page read and write
27B2B100000
heap
page read and write
2A4AD03D000
heap
page read and write
C55E4FF000
stack
page read and write
26A7B467000
heap
page read and write
2245DC5D000
heap
page read and write
2A4AD075000
heap
page read and write
27B2B302000
heap
page read and write
9B814FF000
stack
page read and write
2245DBD0000
trusted library allocation
page read and write
2245DC00000
heap
page read and write
238A6E49000
heap
page read and write
2245867B000
heap
page read and write
2245DE0E000
trusted library allocation
page read and write
238A6E62000
heap
page read and write
26A7B4CE000
heap
page read and write
D65617E000
stack
page read and write
2AE50A00000
heap
page read and write
224586B4000
heap
page read and write
C55E1FF000
stack
page read and write
2245DA50000
trusted library allocation
page read and write
22458F00000
heap
page read and write
238A6E64000
heap
page read and write
9B818FE000
stack
page read and write
DFC277E000
stack
page read and write
27B2B1C0000
remote allocation
page read and write
238A6E39000
heap
page read and write
C55DC7B000
stack
page read and write
8DB10FE000
stack
page read and write
22458600000
heap
page read and write
2245DE10000
trusted library allocation
page read and write
27B2BA02000
trusted library allocation
page read and write
22458629000
heap
page read and write
2245DAB0000
trusted library allocation
page read and write
238A6E47000
heap
page read and write
238A6E66000
heap
page read and write
2245DE00000
trusted library allocation
page read and write
238A6E2E000
heap
page read and write
9B81BFE000
stack
page read and write
22459A01000
trusted library allocation
page read and write
2245DF30000
remote allocation
page read and write
9B8197F000
stack
page read and write
238A6E7E000
heap
page read and write
2245DCF1000
heap
page read and write
8DB11FC000
stack
page read and write
238A6E7B000
heap
page read and write
22458DF0000
trusted library section
page readonly
2AE50B13000
heap
page read and write
8DB09FE000
stack
page read and write
22458DE0000
trusted library section
page readonly
DFC287E000
stack
page read and write
22458702000
heap
page read and write
2245DA70000
trusted library allocation
page read and write
2245DCE1000
heap
page read and write
2245DAC0000
trusted library allocation
page read and write
2A4ACDB0000
heap
page read and write
C55E3FE000
stack
page read and write
238A6E6B000
heap
page read and write
2245DE00000
trusted library allocation
page read and write
26A7B350000
heap
page read and write
27B2B190000
trusted library allocation
page read and write
26A7B429000
heap
page read and write
26A7B440000
heap
page read and write
22459A20000
trusted library allocation
page read and write
224595E0000
trusted library allocation
page read and write
238A6E60000
heap
page read and write
D6560FF000
stack
page read and write
2245DCE6000
heap
page read and write
DFC22FB000
stack
page read and write
22459101000
trusted library allocation
page read and write
9B80DCC000
stack
page read and write
2AE50820000
heap
page read and write
26A7B469000
heap
page read and write
22458E15000
heap
page read and write
E33692C000
stack
page read and write
C55E6FE000
stack
page read and write
2A4ACFF0000
trusted library allocation
page read and write
22458626000
heap
page read and write
2A4AD05A000
heap
page read and write
C55E2FD000
stack
page read and write
2A4AD029000
heap
page read and write
26A7BD00000
heap
page read and write
2A4AD067000
heap
page read and write
2245DBD0000
trusted library allocation
page read and write
2A4AD102000
heap
page read and write
2AE50A28000
heap
page read and write
26A7B400000
heap
page read and write
9B819FF000
stack
page read and write
2A4AD002000
heap
page read and write
2245DC20000
heap
page read and write
2245DEF0000
trusted library allocation
page read and write
27B2B24A000
heap
page read and write
22459400000
trusted library allocation
page read and write
2245DCEA000
heap
page read and write
27B2B160000
heap
page read and write
2A4ACDC0000
heap
page read and write
2AE50B00000
heap
page read and write
2245DBE0000
trusted library allocation
page read and write
9B8107E000
stack
page read and write
2AE50A02000
heap
page read and write
9B815F9000
stack
page read and write
22458570000
heap
page read and write
22458678000
heap
page read and write
8DB0C7B000
stack
page read and write
2A4ACE20000
heap
page read and write
2245DBE0000
trusted library allocation
page read and write
26A7B513000
heap
page read and write
26A7B4E1000
heap
page read and write
22459A30000
trusted library allocation
page read and write
238A6E41000
heap
page read and write
238A6E3D000
heap
page read and write
238A6E3A000
heap
page read and write
238A6E13000
heap
page read and write
26A7B485000
heap
page read and write
22458F59000
heap
page read and write
2245DE21000
trusted library allocation
page read and write
238A6E46000
heap
page read and write
9B813FA000
stack
page read and write
9B81DFE000
stack
page read and write
E33707F000
stack
page read and write
27B2B202000
heap
page read and write
2AE50980000
trusted library allocation
page read and write
238A6E4D000
heap
page read and write
238A6E4E000
heap
page read and write
9B8187E000
stack
page read and write
2AE50880000
heap
page read and write
2245DBE1000
trusted library allocation
page read and write
27B2B251000
heap
page read and write
2245DC65000
heap
page read and write
238A6E69000
heap
page read and write
2245DCFE000
heap
page read and write
22459A23000
trusted library allocation
page read and write
2245DCC4000
heap
page read and write
2245DA30000
trusted library allocation
page read and write
22458DC0000
trusted library section
page readonly
2A4AD077000
heap
page read and write
D65637D000
stack
page read and write
27B2B200000
heap
page read and write
26A7B340000
heap
page read and write
238A6CC0000
heap
page read and write
E336F7B000
stack
page read and write
238A6E63000
heap
page read and write
22458F18000
heap
page read and write
238A6CB0000
heap
page read and write
26A7BD32000
heap
page read and write
8DB0EFB000
stack
page read and write
224585B0000
trusted library section
page read and write
2245DEA0000
trusted library allocation
page read and write
27B2B1C0000
remote allocation
page read and write
8DB12FF000
stack
page read and write
22458F58000
heap
page read and write
2AE51202000
trusted library allocation
page read and write
D655E7C000
stack
page read and write
2245E0B0000
trusted library allocation
page read and write
E336E7B000
stack
page read and write
2245DE14000
trusted library allocation
page read and write
22458510000
heap
page read and write
27B2B23D000
heap
page read and write
D6564FD000
stack
page read and write
238A6E6D000
heap
page read and write
2245DD13000
heap
page read and write
DFC2A7F000
stack
page read and write
238A6E45000
heap
page read and write
C55DE7B000
stack
page read and write
22458DA0000
trusted library section
page readonly
2245DF20000
trusted library allocation
page read and write
D6565FD000
stack
page read and write
238A6E4B000
heap
page read and write
8DB0A7C000
stack
page read and write
238A6F02000
heap
page read and write
224586FF000
heap
page read and write
22458671000
heap
page read and write
E33717E000
stack
page read and write
26A7B502000
heap
page read and write
22458F02000
heap
page read and write
D6563FF000
stack
page read and write
2A4AD03B000
heap
page read and write
27B2B0F0000
heap
page read and write
9B817FE000
stack
page read and write
2245DA40000
trusted library allocation
page read and write
27B2B221000
heap
page read and write
224585A0000
trusted library allocation
page read and write
C55E0FD000
stack
page read and write
26A7B4C6000
heap
page read and write
2245DF10000
trusted library allocation
page read and write
2A4AD602000
trusted library allocation
page read and write
238A6E44000
heap
page read and write
22458DB0000
trusted library section
page readonly
2A4AD013000
heap
page read and write
9B8177F000
stack
page read and write
238A6D20000
heap
page read and write
238A7480000
trusted library allocation
page read and write
2245DC2E000
heap
page read and write
8DB0FFC000
stack
page read and write
D655FFE000
stack
page read and write
2A4AD07A000
heap
page read and write
C55E7FF000
stack
page read and write
238A6E40000
heap
page read and write
238A6E29000
heap
page read and write
2245E050000
trusted library allocation
page read and write
22458E02000
heap
page read and write
2245DD06000
heap
page read and write
2AE50810000
heap
page read and write
8DB0D7E000
stack
page read and write
2245DE10000
trusted library allocation
page read and write
2A4AD000000
heap
page read and write
8DB0E7D000
stack
page read and write
238A7602000
trusted library allocation
page read and write
26A7BC02000
heap
page read and write
22458713000
heap
page read and write
There are 266 hidden memdumps, click here to show them.

DOM / HTML

URL
Malicious
https://storageapi2.fleek.co/a7a7e562-bf71-4765-95c2-8ad660124c7f-bucket/en.html
malicious
https://znap.link/payeeportal8738246
https://www.znaplink.com/
https://www.youtube.com/embed/E5D8uRYd9aM?rel=0&controls=1&autoplay=0&mute=0&start=0
https://www.znaplink.com/pricing
https://www.znaplink.com/blog
https://www.znaplink.com/support