IOC Report
https://www.evernote.com/shard/s443/sh/16f13b8c-02ff-0a26-4836-50c84b9d360b/0d9feaf1d42defc3a56edc7c078ed34b

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\alfredo\Downloads\b72f04df-137b-4b17-9464-6169414c94f2.tmp
HTML document, ASCII text, with very long lines (37045)
dropped
C:\Users\alfredo\Downloads\message html.html (copy)
HTML document, ASCII text, with very long lines (37045)
dropped
C:\Users\alfredo\Downloads\message html.html.crdownload (copy)
HTML document, ASCII text, with very long lines (37045)
dropped

URLs

Name
IP
Malicious
https://www.evernote.com/shard/s443/sh/16f13b8c-02ff-0a26-4836-50c84b9d360b/0d9feaf1d42defc3a56edc7c078ed34b
malicious
file:///C:/Users/alfredo/Downloads/message%20html.html
malicious
https://www.evernote.com/shard/s443/client/snv/ce
https://www.evernote.com/shard/s443/client/snv?noteGuid=16f13b8c-02ff-0a26-4836-50c84b9d360b&noteKey=0d9feaf1d42defc3a56edc7c078ed34b&sn=https%3A%2F%2Fwww.evernote.com%2Fshard%2Fs443%2Fsh%2F16f13b8c-02ff-0a26-4836-50c84b9d360b%2F0d9feaf1d42defc3a56edc7c078ed34b&title=Lexington%2BPublic%2BLibrary%2B%2526%2BLibrary%2BFoundation

Domains

Name
IP
Malicious
stackpath.bootstrapcdn.com
104.18.11.207
accounts.google.com
142.250.181.237
dashboard.svc.www.evernote.com
35.190.3.250
holligoat.github.io
185.199.108.153
cdnjs.cloudflare.com
104.17.24.14
maxcdn.bootstrapcdn.com
104.18.11.207
www.google.com
142.250.186.36
clients.l.google.com
142.250.185.206
stats.g.doubleclick.net
64.233.167.156
clients2.google.com
unknown
code.jquery.com
unknown
content.evernote.com
unknown
www.evernote.com
unknown
There are 3 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
88.221.168.234
unknown
European Union
104.17.24.14
cdnjs.cloudflare.com
United States
142.250.185.67
unknown
United States
142.250.185.206
clients.l.google.com
United States
34.104.35.123
unknown
United States
192.168.2.2
unknown
unknown
192.168.2.1
unknown
unknown
64.233.167.156
stats.g.doubleclick.net
United States
216.58.212.131
unknown
United States
23.3.108.212
unknown
United States
198.54.119.160
unknown
United States
142.250.185.202
unknown
United States
142.250.181.237
accounts.google.com
United States
104.18.11.207
stackpath.bootstrapcdn.com
United States
216.239.38.178
unknown
United States
239.255.255.250
unknown
Reserved
69.16.175.10
unknown
United States
35.190.3.250
dashboard.svc.www.evernote.com
United States
185.199.108.153
holligoat.github.io
Netherlands
172.217.16.196
unknown
United States
127.0.0.1
unknown
unknown
142.250.184.234
unknown
United States
142.250.74.195
unknown
United States
There are 13 hidden IPs, click here to show them.