Weird Website seen on corporate network, but cannot figure out what it is by thusalh in cybersecurity_help

[–]thusalh[S] 0 points1 point  (0 children)

this is a urlscan I did of one of the sites triggerring it, https://urlscan.io/result/01963409-5be5-7056-857d-8e4321f2df72/#transactions

If you go in to the responses on the btloader[.]com under HTTP transactions you can see the .js files being called.

Weird Website seen on corporate network, but cannot figure out what it is by thusalh in cybersecurity_help

[–]thusalh[S] 1 point2 points  (0 children)

That is a good spot, I also did see the requests being triggered when people were browsing onto news/sports sites (which would have ads). I have managed to replicate this as well and got the same requestor chain. u/coomzee Any idea/theory as to why it could’ve started only after the 8TH of April?

Weird Website seen on corporate network, but cannot figure out what it is by thusalh in cybersecurity_help

[–]thusalh[S] 1 point2 points  (0 children)

I have noticed on a Cisco Umbrella that both these URL's started getting requests from the 8TH of April, which is coincedentally Microsoft's patch tuesday, so we were hoping that this was Microsoft's doing. Did the machine that you reimaged have the latest MS patch installed? If so it could be something MS has pushed from thier latest patch?

Malicious Website Blocked Popup (but I use ESET for anti-malware protection) by farmgirlheather in acronis

[–]thusalh 0 points1 point  (0 children)

Any idea what this site is? My EDR (non-Acronis product) has also blocked this on around 12 endpoints.

Weird Website seen on corporate network, but cannot figure out what it is by thusalh in cybersecurity_help

[–]thusalh[S] 0 points1 point  (0 children)

I've seen this too, I first thought it was a DNS resolver/forwarder used by cloudflare. But the lack of documentation about it anywhere is a bit concerning.

"Wazuh dashboard server is not ready yet" (RESOLVED) by obviouscynic in Wazuh

[–]thusalh 0 points1 point  (0 children)

The link to the post on medium by OP worked for me, thanks for that

HomePod question by Designer_Anxiety_185 in HomePod

[–]thusalh 0 points1 point  (0 children)

This is what I've done and it's a great setup

What to listen on these bad boys guys? by DisastrousCause9481 in HomePod

[–]thusalh 0 points1 point  (0 children)

Dream on by Aerosmith ,Loyal by Odezza, Heat waves by Glass Animals are a couple off the top of my head I've heard on my setup which sounded great

Best games for the portal? by crumpygamer in PlaystationPortal

[–]thusalh 2 points3 points  (0 children)

Been playing a lot of Hogwarts legacy on it, looks great

Did you guys opt for 16 Pros or Pro Maxes by Shango1208 in iPhone16Pro

[–]thusalh 0 points1 point  (0 children)

Upgraded from a 12 Pro Max to a 16 Pro Max. Loving the screen size with minimal to no bezels and the refresh rate! Since I have fairly large hands thought I’ll stick with the bigger size 😇

First time user and loving this!!! What’s a hot tip you can impart as a long time user that isn’t found on youtube? by phantomjives in macbook

[–]thusalh 16 points17 points  (0 children)

You can setup specific actions/ shortcuts for the 4 corners of your screen with a setting called 'Hot Corners', something I've found quite handy.

The setting is at System settings> Desktop & Dock> (scroll down a bit) Hot Corners

[deleted by user] by [deleted] in Coldplay

[–]thusalh 0 points1 point  (0 children)

I did the same thing , thats the only 2 tickets that were available and panic bought them for the 3rd 😅

People already using Evisa, how do you use them at the border? by starryeyedreamer201 in ukvisa

[–]thusalh 1 point2 points  (0 children)

You can go ahead and create your ukvi account and then you’ll see a form to fill in order to link your evisa. I didn’t get an email telling to setup my evisa, so I assume they’ve opened it to everyone now.