Advertisement
clickio

laleggepertutti.it malware redirects 2020-04-03

Apr 4th, 2020
148
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.16 KB | None | 0 0
  1. laleggepertutti.it malware redirects 2020-04-03
  2.  
  3. 1) SCREENSHOT https://clickio.gyazo.com/866f724c23bcb12bfea6d9796dfdbdbf
  4. https://s.clickiocdn.com/t/201911/360_light.js
  5. initiates https://adcrowd-adcrowd1.netdna-ssl.com/7622/59677/index.html?clickTag=https://ams1-ib.adnxs.com/click?bK0vEtpyrj_YTs4vzginPwAAAKCZmfU_2E7OL84Ipz9srS8S2nKuPx6A35Uhng17ya19J7R5my9fT4heAAAAAB2A1wDiJgAAuwUAAAIAAAAMhd4Mk_0YAAAAAABVU0QAVVNEANgCWgAudQAAAAABAQUCAAAAAL4AwCUyIAAAAAA./bcr=AAAAAAAA8D8=/cnd=%21HxSPWgig744TEIyK-mYYk_tjIAAoADG-oIUEjC7qPzoJQU1TMTo0NDA2QOkdSWMLQQ5KmO0_UQAAAAAAAAAAWQAAAAAAAAAAYQAAAAAAAAAAaQAAAAAAAAAAcQAAAAAAAAAAeAA./cca=MTQ2NyNBTVMxOjQ0MDY=/bn=84018/clickenc=http%3A%2F%2Fwww.chavezlawgroup.com%2Fpersonal-injury%2F
  6.  
  7. 2) SCREENSHOT https://clickio.gyazo.com/18a0368ed87c8397125007bee8fbff2e
  8. https://adcrowd-adcrowd1.netdna-ssl.com/7622/59677/index.html?clickTag=https://ams1-ib.adnxs.com/click?bK0vEtpyrj_YTs4vzginPwAAAKCZmfU_2E7OL84Ipz9srS8S2nKuPx6A35Uhng17ya19J7R5my9fT4heAAAAAB2A1wDiJgAAuwUAAAIAAAAMhd4Mk_0YAAAAAABVU0QAVVNEANgCWgAudQAAAAABAQUCAAAAAL4AwCUyIAAAAAA./bcr=AAAAAAAA8D8=/cnd=%21HxSPWgig744TEIyK-mYYk_tjIAAoADG-oIUEjC7qPzoJQU1TMTo0NDA2QOkdSWMLQQ5KmO0_UQAAAAAAAAAAWQAAAAAAAAAAYQAAAAAAAAAAaQAAAAAAAAAAcQAAAAAAAAAAeAA./cca=MTQ2NyNBTVMxOjQ0MDY=/bn=84018/clickenc=http%3A%2F%2Fwww.chavezlawgroup.com%2Fpersonal-injury%2F
  9. run https://adcrowd-adcrowd1.netdna-ssl.com/7622/59677/screenad_interface_1.0.3_scrambled.js
  10.  
  11. 3) SCREENSHOT https://clickio.gyazo.com/b245e20dcb54892e56de2ee5df96a6bd
  12. https://adcrowd-adcrowd1.netdna-ssl.com/7622/59677/screenad_interface_1.0.3_scrambled.js
  13. run https://mainadv.global.ssl.fastly.net/assets/colorbox.setting.js?ver=4.2.13&d=1585991519153
  14.  
  15. 4) SCREENSHOT https://clickio.gyazo.com/f65eb17dc7d9fe4eb80048313246c985
  16. https://mainadv.global.ssl.fastly.net/assets/colorbox.setting.js?ver=4.2.13&d=1585991519153
  17. send request https://mainadv.global.ssl.fastly.net/sf/chavezlawgroup?page=5580&sid0O_=YjY0NTcyNzY4NTE0Mjg5OTE0MjYjMTU4NTk5MTUxOEA1NTgwQF84MjVkODQ5Zjk2M2RhMmZjYzk3MDQ0OWMwMDM0NjAyMg&v=1585991519500
  18.  
  19. 5) SCREENSHOT https://clickio.gyazo.com/53d6777a03a23817e7c34e1b736bd7d4
  20. https://mainadv.global.ssl.fastly.net/sf/chavezlawgroup?page=5580&sid0O_=YjY0NTcyNzY4NTE0Mjg5OTE0MjYjMTU4NTk5MTUxOEA1NTgwQF84MjVkODQ5Zjk2M2RhMmZjYzk3MDQ0OWMwMDM0NjAyMg&v=1585991519500
  21. initiates https://www.33acrass.com/track/65d11d03-ffca-452e-8f4c-ddb6e572c35f?siteid=YjY0NTcyNzY4NTE0Mjg5OTE0MjYjMTU4NTk5MTUxOEA1NTgwQF84MjVkODQ5Zjk2M2RhMmZjYzk3MDQ0OWMwMDM0NjAyMg&var1={sitedomain}&var6=YjY0NTcyNzY4NTE0Mjg5OTE0MjYjMTU4NTk5MTUxOEA1NTgwQF84MjVkODQ5Zjk2M2RhMmZjYzk3MDQ0OWMwMDM0NjAyMg&var5=2
  22.  
  23. 6) SCREENSHOT https://clickio.gyazo.com/4cc5514d333147470b35758f1cdfdc9f
  24. https://www.33acrass.com/track/65d11d03-ffca-452e-8f4c-ddb6e572c35f?siteid=YjY0NTcyNzY4NTE0Mjg5OTE0MjYjMTU4NTk5MTUxOEA1NTgwQF84MjVkODQ5Zjk2M2RhMmZjYzk3MDQ0OWMwMDM0NjAyMg&var1={sitedomain}&var6=YjY0NTcyNzY4NTE0Mjg5OTE0MjYjMTU4NTk5MTUxOEA1NTgwQF84MjVkODQ5Zjk2M2RhMmZjYzk3MDQ0OWMwMDM0NjAyMg&var5=2
  25. redirect to https://eu.visitorregisterbook.xyz/e4944c46364d145669e6f2797a991e01/index.html?ip=93.71.243.166&siteid=YjY0NTcyNzY4NTE0Mjg5OTE0MjYjMTU4NTk5MTUxOEA1NTgwQF84MjVkODQ5Zjk2M2RhMmZjYzk3MDQ0OWMwMDM0NjAyMg&trackid=202004040912061519
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement