IOC Report
https://vilarpac.org/event/neighbor/

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Mar 26 17:49:19 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Mar 26 17:49:19 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Mar 26 17:49:19 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Mar 26 17:49:19 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Mar 26 17:49:19 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 283
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 284
ASCII text, with very long lines (56452)
downloaded
Chrome Cache Entry: 286
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 287
Web Open Font Format (Version 2), TrueType, length 87350, version 1.66
downloaded
Chrome Cache Entry: 288
ASCII text, with very long lines (4881), with CRLF line terminators
downloaded
Chrome Cache Entry: 289
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, comment: "Compressed by jpeg-recompress", Exif Standard: [TIFF image data, little-endian, direntries=0], progressive, precision 8, 600x450, components 3
dropped
Chrome Cache Entry: 293
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 294
ASCII text, with very long lines (34731)
downloaded
Chrome Cache Entry: 295
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
dropped
Chrome Cache Entry: 296
Web Open Font Format (Version 2), TrueType, length 26540, version 1.0
downloaded
Chrome Cache Entry: 297
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 298
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 300
Web Open Font Format (Version 2), TrueType, length 17556, version 1.0
downloaded
Chrome Cache Entry: 301
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 302
Web Open Font Format (Version 2), TrueType, length 17328, version 1.0
downloaded
Chrome Cache Entry: 303
PNG image data, 163 x 114, 8-bit colormap, non-interlaced
dropped
Chrome Cache Entry: 306
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
downloaded
Chrome Cache Entry: 307
ASCII text
downloaded
Chrome Cache Entry: 308
Unicode text, UTF-8 text, with very long lines (39575), with no line terminators
downloaded
Chrome Cache Entry: 309
ASCII text, with very long lines (15718)
downloaded
Chrome Cache Entry: 310
ASCII text, with very long lines (2343)
downloaded
Chrome Cache Entry: 311
ASCII text, with very long lines (18539), with no line terminators
downloaded
Chrome Cache Entry: 313
HTML document, Unicode text, UTF-8 text, with very long lines (9462)
downloaded
Chrome Cache Entry: 314
JSON data
dropped
Chrome Cache Entry: 316
ASCII text
downloaded
Chrome Cache Entry: 317
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 318
Web Open Font Format (Version 2), TrueType, length 89536, version 1.66
downloaded
There are 24 hidden files, click here to show them.

URLs

Name
IP
Malicious
https://vilarpac.org/event/neighbor/
https://vilarpac.org/event/neighbor/
https://open.spotify.com/embed/artist/21OJNEpSYGMPm5QRXMWhB3?utm_source=generator
https://www.youtube.com/embed/fjvI4iOXdOg?start=5584&feature=oembed
about:blank
https://x.adroll.com/pxl/iframe_content.html?adroll_fpc=f6d26549525b7677f2d7aafaaf474e1e-1711478964105&flg=1&pv=73000473758.60101&arrfrr=https%3A%2F%2Fvilarpac.org%2Fevent%2Fneighbor%2F&advertisable=D3UIG5CIMFH6RO7WDWB6A7

Domains

Name
IP
Malicious
jsdelivr.map.fastly.net
151.101.65.229
adserver-vpc-alb-2-1898430250.us-east-1.elb.amazonaws.com
100.24.151.250
i.ytimg.com
172.253.122.119
sludge-sludge-production-86464678.us-east-1.elb.amazonaws.com
18.211.73.134
us-east-eb2.3lift.com
35.71.139.29
apresolve.spotify.com
35.186.224.25
us-vip001.taboola.com
141.226.224.48
stats.g.doubleclick.net
172.253.115.156
scontent.xx.fbcdn.net
157.240.229.1
code.jquery.com
151.101.2.137
vilarpac.org
149.28.88.35
tls13.spotifycdn.map.fastly.net
146.75.30.250
photos-ugc.l.googleusercontent.com
172.253.115.132
cm.g.doubleclick.net
172.253.63.155
pug-vac.pubmnet.com
8.28.7.83
www.google.com
142.251.167.103
edge-web.dual-gslb.spotify.com
35.186.224.25
scdnco.spotify.map.fastly.net
146.75.30.248
star-mini.c10r.facebook.com
157.240.229.35
chidc2.outbrain.org
50.31.142.95
d1qug1xf2dk5z6.cloudfront.net
3.162.103.36
us-u.openx.net
35.244.159.8
nydc1.outbrain.org
64.202.112.95
edge-web-guc3.dual-gslb.spotify.com
35.186.224.19
static.doubleclick.net
172.253.63.149
youtube-ui.l.google.com
142.251.111.93
analytics-alv.google.com
216.239.34.181
googleads.g.doubleclick.net
142.251.179.155
dsum-sec.casalemedia.com
172.64.151.101
play.google.com
142.251.111.113
ats-eks.us-east-1.dcs-online-targeting-prd.aws.oath.cloud
34.200.65.202
ib.anycast.adnxs.com
68.67.178.10
user-data-us-east.bidswitch.net
35.211.178.172
spclient.wg.spotify.com
unknown
yt3.ggpht.com
unknown
d.adroll.com
unknown
cdn.jsdelivr.net
unknown
web-sdk-assets.spotifycdn.com
unknown
ups.analytics.yahoo.com
unknown
embed-cdn.spotifycdn.com
unknown
image2.pubmatic.com
unknown
www.youtube.com
unknown
sync.outbrain.com
unknown
sync.taboola.com
unknown
x.bidswitch.net
unknown
use.typekit.net
unknown
guc3-spclient.spotify.com
unknown
www.facebook.com
unknown
pixel.rubiconproject.com
unknown
open.spotify.com
unknown
i.scdn.co
unknown
s.adroll.com
unknown
connect.facebook.net
unknown
p.typekit.net
unknown
x.adroll.com
unknown
analytics.google.com
unknown
ib.adnxs.com
unknown
encore.scdn.co
unknown
eb2.3lift.com
unknown
There are 49 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
142.251.163.106
unknown
United States
23.215.0.233
unknown
United States
172.253.63.119
unknown
United States
23.12.144.76
unknown
United States
216.239.34.181
analytics-alv.google.com
United States
172.253.63.155
cm.g.doubleclick.net
United States
142.251.16.139
unknown
United States
35.211.178.172
user-data-us-east.bidswitch.net
United States
8.28.7.83
pug-vac.pubmnet.com
United States
172.253.115.103
unknown
United States
44.219.42.189
unknown
United States
69.173.151.100
unknown
United States
142.250.31.94
unknown
United States
146.75.30.250
tls13.spotifycdn.map.fastly.net
Sweden
64.202.112.95
nydc1.outbrain.org
United States
142.250.31.95
unknown
United States
142.251.111.132
unknown
United States
68.67.160.137
unknown
United States
1.1.1.1
unknown
Australia
44.197.124.119
unknown
United States
172.253.63.149
static.doubleclick.net
United States
142.251.111.94
unknown
United States
142.251.16.101
unknown
United States
142.251.111.93
youtube-ui.l.google.com
United States
157.240.229.35
star-mini.c10r.facebook.com
United States
172.253.122.97
unknown
United States
23.44.131.138
unknown
United States
104.18.36.155
unknown
United States
172.253.122.100
unknown
United States
172.253.63.147
unknown
United States
172.253.122.94
unknown
United States
18.211.73.134
sludge-sludge-production-86464678.us-east-1.elb.amazonaws.com
United States
239.255.255.250
unknown
Reserved
3.162.103.36
d1qug1xf2dk5z6.cloudfront.net
United States
172.253.115.156
stats.g.doubleclick.net
United States
100.24.151.250
adserver-vpc-alb-2-1898430250.us-east-1.elb.amazonaws.com
United States
172.253.62.157
unknown
United States
142.251.163.84
unknown
United States
149.28.88.35
vilarpac.org
United States
68.67.178.10
ib.anycast.adnxs.com
United States
35.186.224.19
edge-web-guc3.dual-gslb.spotify.com
United States
172.253.122.119
i.ytimg.com
United States
142.250.31.101
unknown
United States
142.251.167.103
www.google.com
United States
192.168.2.16
unknown
unknown
23.207.202.19
unknown
United States
172.64.151.101
dsum-sec.casalemedia.com
United States
216.239.38.181
unknown
United States
35.244.159.8
us-u.openx.net
United States
142.251.167.95
unknown
United States
23.12.145.59
unknown
United States
142.250.31.190
unknown
United States
34.200.65.202
ats-eks.us-east-1.dcs-online-targeting-prd.aws.oath.cloud
United States
141.226.224.48
us-vip001.taboola.com
Israel
142.251.163.95
unknown
United States
35.186.224.25
apresolve.spotify.com
United States
142.251.111.113
play.google.com
United States
35.71.139.29
us-east-eb2.3lift.com
United States
142.250.31.155
unknown
United States
31.13.66.35
unknown
Ireland
151.101.65.229
jsdelivr.map.fastly.net
United States
23.45.233.9
unknown
United States
157.240.229.1
scontent.xx.fbcdn.net
United States
151.101.2.137
code.jquery.com
United States
52.223.22.214
unknown
United States
146.75.30.248
scdnco.spotify.map.fastly.net
Sweden
172.253.115.139
unknown
United States
104.96.220.129
unknown
United States
142.251.179.155
googleads.g.doubleclick.net
United States
104.96.220.128
unknown
United States
172.253.115.132
photos-ugc.l.googleusercontent.com
United States
142.251.16.94
unknown
United States
18.210.255.95
unknown
United States
50.31.142.95
chidc2.outbrain.org
United States
There are 64 hidden IPs, click here to show them.