KSC July
KSC July
Report on threats
Sunday, September 03, 2023 11:34:54 AM
Period: from Saturday, July 01, 2023 to Monday, July 31, 2023
This report provides information about threats detected on devices. This report is generated for all groups.
Summary:
Detected object Object type Dangerous objects Different files Devices infected Groups infected First attempted run blocked Last attempted run blocked
gigapurbalingga.cc Malicious link 1 1 1 1 Wednesday, July 12, 2023 4:48:40 PM Wednesday, July 12, 2023 4:48:40 PM
gigapurbalingga.net Malicious link 2 1 1 1 Wednesday, July 12, 2023 4:47:54 PM Wednesday, July 12, 2023 4:47:56 PM
HEUR:Trojan.Script.Generic Trojan 2 2 1 1 Wednesday, July 05, 2023 6:08:50 PM Wednesday, July 05, 2023 6:09:02 PM
https://glitchip.testingnow.me/api/6/envelope/? Phishing link 1 1 1 1 Monday, July 17, 2023 1:56:22 PM Monday, July 17, 2023 1:56:22 PM
sentry_key=34bb9c01e28544c080d0a6e093cdfcf5&sentry_version=7
https://www.mandirihealthcare.com/ Phishing link 1 1 1 1 Tuesday, July 18, 2023 9:21:43 AM Tuesday, July 18, 2023 9:21:43 AM
https://www.mandirihealthcare.com/favicon.ico Phishing link 1 1 1 1 Tuesday, July 18, 2023 9:21:43 AM Tuesday, July 18, 2023 9:21:43 AM
not‐a‐virus:HEUR:AdWare.Script.Generic Adware 7 1 1 1 Thursday, July 06, 2023 11:17:35 AM Thursday, July 06, 2023 11:21:04 AM
www.alex71.com Malicious link 2 1 1 1 Wednesday, July 12, 2023 4:53:58 PM Wednesday, July 12, 2023 4:53:59 PM
www.yasir252.com Malicious link 4 1 1 1 Wednesday, July 12, 2023 4:45:35 PM Wednesday, July 12, 2023 4:46:58 PM
Details21 of 21
Virtual Group Device Detected object Detected at Path to file Object type Action Account Application Version number Last visible Last connected IP address NetBIOS name Windows Open incident
Administration to Administration domain
Server Server
Administrative & ID‐ https://www.mandirihealthcare.com/ Tuesday, July 18, https://www.mandirihealthcare.com/ Phishing link Event type: Dangerous link blocked Application: HFCB\asm3 Kaspersky 11.4.0.233 Friday, Friday, 172.16.10.159 ID‐ HFCB Absent
General CFCBDTSALE14 2023 9:21:43 AM Google Chrome Application\Name: chrome.exe Endpoint Security September 01, September 01, CFCBDTSALE14
Application\Path: C:\Program for Windows 2023 6:33:22 PM 2023 6:33:22 PM
Files\Google\Chrome\Application\
Application\Process ID: 4100 User: HFCB\asm3
﴾Active user﴿ Component: Web Threat
Protection Result\Description: Blocked
Result\Type: Threat of data loss Result\Name:
https://www.mandirihealthcare.com/
Result\Threat level: High Result\Precision:
Exactly Object:
https://www.mandirihealthcare.com/
Object\Type: Web page Object\Path:
https://www.mandirihealthcare.com/ Reason:
Automatic analysis Database release date:
7/18/2023 3:02:00 AM
Administrative & ID‐ https://www.mandirihealthcare.com/favicon.ico Tuesday, July 18, https://www.mandirihealthcare.com/favicon.ico Phishing link Event type: Dangerous link blocked Application: HFCB\asm3 Kaspersky 11.4.0.233 Friday, Friday, 172.16.10.159 ID‐ HFCB Absent
General CFCBDTSALE14 2023 9:21:43 AM Google Chrome Application\Name: chrome.exe Endpoint Security September 01, September 01, CFCBDTSALE14
Application\Path: C:\Program for Windows 2023 6:33:22 PM 2023 6:33:22 PM
Files\Google\Chrome\Application\
Application\Process ID: 4100 User: HFCB\asm3
﴾Active user﴿ Component: Web Threat
Protection Result\Description: Blocked
Result\Type: Threat of data loss Result\Name:
https://www.mandirihealthcare.com/favicon.ico
Result\Threat level: High Result\Precision:
Exactly Object:
https://www.mandirihealthcare.com/favicon.ico
Object\Type: Web page Object\Path:
https://www.mandirihealthcare.com/favicon.ico
Object\Name: favicon.ico Reason: Automatic
analysis Database release date: 7/18/2023
3:02:00 AM
Front Office ID‐ not‐a‐virus:HEUR:AdWare.Script.Generic Thursday, July 06, https://corpulentoverdoselucius.com/455367cf7 Adware Result: Blocked: not‐a‐ HFCB\fdaharris3 Kaspersky 11.4.0.233 Sunday, Sunday, 172.16.11.130 ID‐ HFCB Present
CFCBDTFRON05 2023 11:17:35 c186414ffa2e74aa3478dd1/invoke.js virus:HEUR:AdWare.Script.Generic User: Endpoint Security September 03, September 03, CFCBDTFRON05
AM HFCB\fdaharris3 ﴾Active user﴿ Object: for Windows 2023 11:34:44 2023 11:34:44
https://corpulentoverdoselucius.com/455367cf7 AM AM
c186414ffa2e74aa3478dd1/invoke.js Database
release date: 06/07/2023 06:36:00 Hash:
b3116486675f6b36b9b5186cc91ec210cbb2494b
6e1978ace22dcd540c0e671c
Front Office ID‐ not‐a‐virus:HEUR:AdWare.Script.Generic Thursday, July 06, https://corpulentoverdoselucius.com/455367cf7 Adware Result: Blocked: not‐a‐ HFCB\fdaharris3 Kaspersky 11.4.0.233 Sunday, Sunday, 172.16.11.130 ID‐ HFCB Present
CFCBDTFRON05 2023 11:17:48 c186414ffa2e74aa3478dd1/invoke.js virus:HEUR:AdWare.Script.Generic User: Endpoint Security September 03, September 03, CFCBDTFRON05
AM HFCB\fdaharris3 ﴾Active user﴿ Object: for Windows 2023 11:34:44 2023 11:34:44
https://corpulentoverdoselucius.com/455367cf7 AM AM
c186414ffa2e74aa3478dd1/invoke.js Database
release date: 06/07/2023 06:36:00 Hash:
b3116486675f6b36b9b5186cc91ec210cbb2494b
6e1978ace22dcd540c0e671c
Front Office ID‐ not‐a‐virus:HEUR:AdWare.Script.Generic Thursday, July 06, https://corpulentoverdoselucius.com/455367cf7 Adware Result: Blocked: not‐a‐ HFCB\fdaharris3 Kaspersky 11.4.0.233 Sunday, Sunday, 172.16.11.130 ID‐ HFCB Present
CFCBDTFRON05 2023 11:18:03 c186414ffa2e74aa3478dd1/invoke.js virus:HEUR:AdWare.Script.Generic User: Endpoint Security September 03, September 03, CFCBDTFRON05
AM HFCB\fdaharris3 ﴾Active user﴿ Object: for Windows 2023 11:34:44 2023 11:34:44
https://corpulentoverdoselucius.com/455367cf7 AM AM
c186414ffa2e74aa3478dd1/invoke.js Database
release date: 06/07/2023 06:36:00 Hash:
b3116486675f6b36b9b5186cc91ec210cbb2494b
6e1978ace22dcd540c0e671c
Front Office ID‐ not‐a‐virus:HEUR:AdWare.Script.Generic Thursday, July 06, https://corpulentoverdoselucius.com/455367cf7 Adware Result: Blocked: not‐a‐ HFCB\fdaharris3 Kaspersky 11.4.0.233 Sunday, Sunday, 172.16.11.130 ID‐ HFCB Present
CFCBDTFRON05 2023 11:18:14 c186414ffa2e74aa3478dd1/invoke.js virus:HEUR:AdWare.Script.Generic User: Endpoint Security September 03, September 03, CFCBDTFRON05
AM HFCB\fdaharris3 ﴾Active user﴿ Object: for Windows 2023 11:34:44 2023 11:34:44
https://corpulentoverdoselucius.com/455367cf7 AM AM
c186414ffa2e74aa3478dd1/invoke.js Database
release date: 06/07/2023 06:36:00 Hash:
b3116486675f6b36b9b5186cc91ec210cbb2494b
6e1978ace22dcd540c0e671c
Front Office ID‐ not‐a‐virus:HEUR:AdWare.Script.Generic Thursday, July 06, https://corpulentoverdoselucius.com/455367cf7 Adware Result: Blocked: not‐a‐ HFCB\fdaharris3 Kaspersky 11.4.0.233 Sunday, Sunday, 172.16.11.130 ID‐ HFCB Present
CFCBDTFRON05 2023 11:18:21 c186414ffa2e74aa3478dd1/invoke.js virus:HEUR:AdWare.Script.Generic User: Endpoint Security September 03, September 03, CFCBDTFRON05
AM HFCB\fdaharris3 ﴾Active user﴿ Object: for Windows 2023 11:34:44 2023 11:34:44
https://corpulentoverdoselucius.com/455367cf7 AM AM
c186414ffa2e74aa3478dd1/invoke.js Database
release date: 06/07/2023 06:36:00 Hash:
b3116486675f6b36b9b5186cc91ec210cbb2494b
6e1978ace22dcd540c0e671c
Front Office ID‐ not‐a‐virus:HEUR:AdWare.Script.Generic Thursday, July 06, https://corpulentoverdoselucius.com/455367cf7 Adware Result: Blocked: not‐a‐ HFCB\fdaharris3 Kaspersky 11.4.0.233 Sunday, Sunday, 172.16.11.130 ID‐ HFCB Present
CFCBDTFRON05 2023 11:18:47 c186414ffa2e74aa3478dd1/invoke.js virus:HEUR:AdWare.Script.Generic User: Endpoint Security September 03, September 03, CFCBDTFRON05
AM HFCB\fdaharris3 ﴾Active user﴿ Object: for Windows 2023 11:34:44 2023 11:34:44
https://corpulentoverdoselucius.com/455367cf7 AM AM
c186414ffa2e74aa3478dd1/invoke.js Database
release date: 06/07/2023 06:36:00 Hash:
b3116486675f6b36b9b5186cc91ec210cbb2494b
6e1978ace22dcd540c0e671c
Front Office ID‐ not‐a‐virus:HEUR:AdWare.Script.Generic Thursday, July 06, https://corpulentoverdoselucius.com/455367cf7 Adware Result: Blocked: not‐a‐ HFCB\fdaharris3 Kaspersky 11.4.0.233 Sunday, Sunday, 172.16.11.130 ID‐ HFCB Present
CFCBDTFRON05 2023 11:21:04 c186414ffa2e74aa3478dd1/invoke.js virus:HEUR:AdWare.Script.Generic User: Endpoint Security September 03, September 03, CFCBDTFRON05
AM HFCB\fdaharris3 ﴾Active user﴿ Object: for Windows 2023 11:34:44 2023 11:34:44
https://corpulentoverdoselucius.com/455367cf7 AM AM
c186414ffa2e74aa3478dd1/invoke.js Database
release date: 06/07/2023 06:36:00 Hash:
b3116486675f6b36b9b5186cc91ec210cbb2494b
6e1978ace22dcd540c0e671c
Managed ID‐ HEUR:Trojan.Script.Generic Wednesday, July https://zipyepmud.live/? Trojan N/A HFCB\purmgr Kaspersky 11.4.0.233 Friday, Tuesday, August 172.16.11.241 ID‐ HFCB Present
devices CFCBDTFINA11 05, 2023 6:08:50 utm_campaign=INccHxHRWrew3TQsLBbfNnbGF Endpoint Security September 01, 29, 2023 11:33:24 CFCBDTFINA11
PM YUZobMqxXT9Zrw5FhI1&t=main9 for Windows 2023 8:42:49 PM AM
﴾11.4.0﴿
Managed ID‐ HEUR:Trojan.Script.Generic Wednesday, July https://zipyepmud.live/? Trojan N/A HFCB\purmgr Kaspersky 11.4.0.233 Friday, Tuesday, August 172.16.11.241 ID‐ HFCB Present
devices CFCBDTFINA11 05, 2023 6:09:02 utm_campaign=INccHxHRWrew3TQsLBbfNnbGF Endpoint Security September 01, 29, 2023 11:33:24 CFCBDTFINA11
PM YUZobMqxXT9Zrw5FhI1&t=main9expsess for Windows 2023 8:42:49 PM AM
﴾11.4.0﴿
Managed ID‐ https://glitchip.testingnow.me/api/6/envelope/? Monday, July 17, https://glitchip.testingnow.me/api/6/envelope/? Phishing link Event type: Dangerous link blocked Application: HFCB\purmgr Kaspersky 11.4.0.233 Friday, Tuesday, August 172.16.11.241 ID‐ HFCB Absent
devices CFCBDTFINA11 sentry_key=34bb9c01e28544c080d0a6e093cdfcf 2023 1:56:22 PM sentry_key=34bb9c01e28544c080d0a6e093cdfcf Google Chrome Application\Name: chrome.exe Endpoint Security September 01, 29, 2023 11:33:24 CFCBDTFINA11
5&sentry_version=7 5&sentry_version=7 Application\Path: C:\Program for Windows 2023 8:42:49 PM AM
Files\Google\Chrome\Application\ ﴾11.4.0﴿
Application\Process ID: 7804 User:
HFCB\purmgr ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Threat of data loss Result\Name:
https://glitchip.testingnow.me/api/6/envelope/?
sentry_key=34bb9c01e28544c080d0a6e093cdfcf
5&sentry_version=7 Result\Threat level: High
Result\Precision: Exactly Object:
https://glitchip.testingnow.me/api/6/envelope/?
sentry_key=34bb9c01e28544c080d0a6e093cdfcf
5&sentry_version=7 Object\Type: Web page
Object\Path:
https://glitchip.testingnow.me/api/6/envelope/?
sentry_key=34bb9c01e28544c080d0a6e093cdfcf
5&sentry_version=7 Object\Name: ?
sentry_key=34bb9c01e28544c080d0a6e093cdfcf
5&sentry_version=7 Reason: Automatic analysis
Database release date: 17/07/2023 06:50:00
Sales Marketing ID‐ gigapurbalingga.cc Wednesday, July gigapurbalingga.cc Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:48:40 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
gigapurbalingga.cc Result\Threat level: High
Result\Precision: Exactly Object:
gigapurbalingga.cc Object\Type: Web page
Object\Path: gigapurbalingga.cc Object\Name:
gigapurbalingga.cc Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
1/2
Sales Marketing ID‐ gigapurbalingga.net Wednesday, July gigapurbalingga.net Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:47:54 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
gigapurbalingga.cc Result\Threat level: High
Result\Precision: Exactly Object:
gigapurbalingga.cc Object\Type: Web page
Object\Path: gigapurbalingga.cc Object\Name:
gigapurbalingga.cc Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ gigapurbalingga.net Wednesday, July gigapurbalingga.net Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:47:54 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
gigapurbalingga.net Result\Threat level: High
Result\Precision: Exactly Object:
gigapurbalingga.net Object\Type: Web page
Object\Path: gigapurbalingga.net Object\Name:
gigapurbalingga.net Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ gigapurbalingga.net Wednesday, July gigapurbalingga.net Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:47:56 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
gigapurbalingga.net Result\Threat level: High
Result\Precision: Exactly Object:
gigapurbalingga.net Object\Type: Web page
Object\Path: gigapurbalingga.net Object\Name:
gigapurbalingga.net Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ www.alex71.com Wednesday, July www.alex71.com Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:53:58 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
www.alex71.com Result\Threat level: High
Result\Precision: Exactly Object:
www.alex71.com Object\Type: Web page
Object\Path: www.alex71.com Object\Name:
www.alex71.com Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ www.alex71.com Wednesday, July www.alex71.com Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:53:59 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
www.alex71.com Result\Threat level: High
Result\Precision: Exactly Object:
www.alex71.com Object\Type: Web page
Object\Path: www.alex71.com Object\Name:
www.alex71.com Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ www.yasir252.com Wednesday, July www.yasir252.com Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:45:35 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
www.yasir252.com Result\Threat level: High
Result\Precision: Exactly Object:
www.yasir252.com Object\Type: Web page
Object\Path: www.yasir252.com Object\Name:
www.yasir252.com Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ www.yasir252.com Wednesday, July www.yasir252.com Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:45:37 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
www.yasir252.com Result\Threat level: High
Result\Precision: Exactly Object:
www.yasir252.com Object\Type: Web page
Object\Path: www.yasir252.com Object\Name:
www.yasir252.com Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ www.yasir252.com Wednesday, July www.yasir252.com Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:46:58 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
www.yasir252.com Result\Threat level: High
Result\Precision: Exactly Object:
www.yasir252.com Object\Type: Web page
Object\Path: www.yasir252.com Object\Name:
www.yasir252.com Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
Sales Marketing ID‐ www.yasir252.com Wednesday, July www.yasir252.com Malicious link Event type: Dangerous link blocked Application: HFCB\design Kaspersky 11.4.0.233 Saturday, Thursday, August 172.16.10.121 ID‐ HFCB Absent
CFCBDTSALE16 12, 2023 4:46:58 Google Chrome Application\Name: chrome.exe Endpoint Security September 02, 31, 2023 1:30:23 CFCBDTSALE16
PM Application\Path: C:\Program for Windows 2023 10:43:01 PM
Files\Google\Chrome\Application\ ﴾11.4.0﴿ PM
Application\Process ID: 24476 User:
HFCB\design ﴾Active user﴿ Component: Web
Threat Protection Result\Description: Blocked
Result\Type: Malicious link Result\Name:
www.yasir252.com Result\Threat level: High
Result\Precision: Exactly Object:
www.yasir252.com Object\Type: Web page
Object\Path: www.yasir252.com Object\Name:
www.yasir252.com Reason: Automatic analysis
Database release date: 12/07/2023 10:26:00
2/2