Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Michael Glazier shared _A file has been sent to you via DROPBOX For Mabcap_.pdf_ with you (1).eml
|
RFC 822 mail, Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
|
initial sample
|
||
C:\Users\user\AppData\Local\Microsoft\FORMS\FRMCACHE.DAT
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\FontCache\4\CatalogCacheMetaData.xml
|
XML 1.0 document, ASCII text, with very long lines (2304), with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\FontCache\4\Catalog\ListAll.Json
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\FontCache\4\CloudFonts\Open Sans\20007011713.ttf
|
TrueType Font data, digitally signed, 19 tables, 1st "DSIG", 26 names, Macintosh, Digitized data copyright \251 2010-2011,
Google Corporation.Open SansItalic1.10;1ASC;OpenSans-It
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\FontCache\4\CloudFonts\Open Sans\21798841561.ttf
|
TrueType Font data, digitally signed, 19 tables, 1st "DSIG", 26 names, Macintosh, Digitized data copyright \251 2010-2011,
Google Corporation.Open SansRegular1.10;1ASC;OpenSans-R
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\FontCache\4\CloudFonts\Open Sans\23165521968.ttf
|
TrueType Font data, digitally signed, 19 tables, 1st "DSIG", 26 names, Macintosh, Digitized data copyright \251 2010-2011,
Google Corporation.Open SansBold1.10;1ASC;OpenSans-Bold
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\FontCache\4\PreviewFont\flat_officeFontsPreview_4_39.ttf
|
TrueType Font data, 10 tables, 1st "OS/2", 7 names, Microsoft, language 0x409, \251 2018 Microsoft Corporation. All Rights
Reserved.msofp_4_39RegularVersion 4.39;O365
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Office\OTele\outlook.exe.db-shm
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Microsoft\Office\OTele\outlook.exe.db-wal
|
SQLite Write-Ahead Log, version 3007000
|
modified
|
||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{74A41D30-DB81-45BF-ABBC-636EA42BCE4A}.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Diagnostics\OUTLOOK\App1713978383749147600_8CAE79CA-976C-42C2-8FAE-E8313D6E0BC9.log
|
ASCII text, with very long lines (28779), with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Diagnostics\OUTLOOK\App1713978383749992000_8CAE79CA-976C-42C2-8FAE-E8313D6E0BC9.log
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\Outlook Logging\OUTLOOK_16_0_16827_20130-20240424T1906230489-6252.etl
|
data
|
modified
|
||
C:\Users\user\AppData\Roaming\Microsoft\Office\MSO3072.acl
|
data
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 16:06:37 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 16:06:37 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 16:06:37 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 16:06:37 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Apr 24 16:06:36 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\Documents\Outlook Files\Outlook Data File - NoEmail.pst
|
Microsoft Outlook email folder (>=2003)
|
dropped
|
||
C:\Users\user\Documents\Outlook Files\~Outlook Data File - NoEmail.pst.tmp
|
data
|
dropped
|
||
Chrome Cache Entry: 171
|
ASCII text, with very long lines (4720)
|
downloaded
|
||
Chrome Cache Entry: 172
|
ASCII text, with very long lines (9986)
|
downloaded
|
||
Chrome Cache Entry: 173
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 174
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 175
|
ASCII text, with very long lines (6680)
|
downloaded
|
||
Chrome Cache Entry: 176
|
ASCII text, with very long lines (4787)
|
downloaded
|
||
Chrome Cache Entry: 177
|
ASCII text, with very long lines (9213)
|
downloaded
|
||
Chrome Cache Entry: 178
|
ASCII text, with very long lines (984)
|
downloaded
|
||
Chrome Cache Entry: 179
|
ASCII text, with very long lines (21663)
|
downloaded
|
||
Chrome Cache Entry: 180
|
ASCII text, with very long lines (1353)
|
downloaded
|
||
Chrome Cache Entry: 181
|
Unicode text, UTF-8 text, with very long lines (65510), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 182
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 183
|
ASCII text, with very long lines (2261)
|
downloaded
|
||
Chrome Cache Entry: 184
|
ASCII text, with very long lines (57485)
|
downloaded
|
||
Chrome Cache Entry: 185
|
ASCII text, with very long lines (2314)
|
downloaded
|
||
Chrome Cache Entry: 186
|
ASCII text, with very long lines (362)
|
downloaded
|
||
Chrome Cache Entry: 187
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 188
|
ASCII text, with very long lines (54939)
|
downloaded
|
||
Chrome Cache Entry: 189
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 190
|
ASCII text, with very long lines (30363)
|
downloaded
|
||
Chrome Cache Entry: 192
|
ASCII text, with very long lines (31230)
|
downloaded
|
||
Chrome Cache Entry: 193
|
ASCII text, with very long lines (48112)
|
downloaded
|
||
Chrome Cache Entry: 194
|
ASCII text, with very long lines (4828)
|
downloaded
|
||
Chrome Cache Entry: 195
|
ASCII text, with very long lines (10760)
|
downloaded
|
||
Chrome Cache Entry: 196
|
ASCII text, with very long lines (65155)
|
downloaded
|
||
Chrome Cache Entry: 197
|
Web Open Font Format (Version 2), TrueType, length 43308, version 1.66
|
downloaded
|
||
Chrome Cache Entry: 198
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 199
|
MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 200
|
ASCII text, with very long lines (30377)
|
downloaded
|
||
Chrome Cache Entry: 201
|
ASCII text, with very long lines (25701)
|
downloaded
|
||
Chrome Cache Entry: 202
|
ASCII text, with very long lines (10533)
|
downloaded
|
||
Chrome Cache Entry: 203
|
ASCII text, with very long lines (2796)
|
downloaded
|
||
Chrome Cache Entry: 204
|
ASCII text, with very long lines (57947)
|
downloaded
|
||
Chrome Cache Entry: 207
|
TrueType Font data, 16 tables, 1st "GDEF", 19 names, Microsoft, language 0x409
|
downloaded
|
||
Chrome Cache Entry: 208
|
ASCII text, with very long lines (1563)
|
downloaded
|
||
Chrome Cache Entry: 209
|
ASCII text, with very long lines (37813)
|
downloaded
|
||
Chrome Cache Entry: 210
|
Unicode text, UTF-8 text, with very long lines (65340), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 211
|
Unicode text, UTF-8 text, with very long lines (65528), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 212
|
ASCII text, with very long lines (21020)
|
downloaded
|
||
Chrome Cache Entry: 213
|
ASCII text, with very long lines (6992)
|
downloaded
|
||
Chrome Cache Entry: 214
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 215
|
ASCII text, with very long lines (5167)
|
downloaded
|
||
Chrome Cache Entry: 216
|
ASCII text, with very long lines (304)
|
downloaded
|
||
Chrome Cache Entry: 217
|
ASCII text, with very long lines (729)
|
downloaded
|
||
Chrome Cache Entry: 218
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 219
|
ASCII text, with very long lines (14320)
|
downloaded
|
||
Chrome Cache Entry: 220
|
ASCII text, with very long lines (2051)
|
downloaded
|
||
Chrome Cache Entry: 221
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 222
|
ASCII text, with very long lines (639)
|
downloaded
|
||
Chrome Cache Entry: 223
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 224
|
ASCII text, with very long lines (2899)
|
downloaded
|
||
Chrome Cache Entry: 225
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 226
|
ASCII text, with very long lines (519)
|
downloaded
|
||
Chrome Cache Entry: 227
|
ASCII text, with very long lines (8809)
|
downloaded
|
||
Chrome Cache Entry: 228
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 229
|
ASCII text, with very long lines (55161)
|
downloaded
|
||
Chrome Cache Entry: 230
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 231
|
Unicode text, UTF-8 text, with very long lines (8212)
|
downloaded
|
||
Chrome Cache Entry: 232
|
ASCII text, with very long lines (8486)
|
downloaded
|
||
Chrome Cache Entry: 234
|
ASCII text, with very long lines (9586)
|
downloaded
|
||
Chrome Cache Entry: 235
|
ASCII text, with very long lines (54939)
|
downloaded
|
||
Chrome Cache Entry: 236
|
Unicode text, UTF-8 text, with very long lines (65529), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 237
|
ASCII text, with very long lines (2962)
|
downloaded
|
||
Chrome Cache Entry: 238
|
Unicode text, UTF-8 text, with very long lines (57205)
|
downloaded
|
||
Chrome Cache Entry: 239
|
ASCII text, with very long lines (5608)
|
downloaded
|
||
Chrome Cache Entry: 240
|
ASCII text, with very long lines (8391)
|
downloaded
|
||
Chrome Cache Entry: 241
|
ASCII text, with very long lines (2334)
|
downloaded
|
||
Chrome Cache Entry: 242
|
ASCII text, with very long lines (3577)
|
downloaded
|
||
Chrome Cache Entry: 243
|
Web Open Font Format, TrueType, length 58239, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 244
|
ASCII text, with very long lines (6174)
|
downloaded
|
||
Chrome Cache Entry: 245
|
ASCII text, with very long lines (47981)
|
downloaded
|
||
Chrome Cache Entry: 246
|
ASCII text, with very long lines (456)
|
downloaded
|
||
Chrome Cache Entry: 247
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 248
|
ASCII text, with very long lines (2807)
|
downloaded
|
||
Chrome Cache Entry: 249
|
ASCII text, with very long lines (3604)
|
downloaded
|
||
Chrome Cache Entry: 250
|
ASCII text, with very long lines (31905)
|
downloaded
|
||
Chrome Cache Entry: 251
|
ASCII text, with very long lines (5082)
|
downloaded
|
||
Chrome Cache Entry: 252
|
ASCII text, with very long lines (8552)
|
downloaded
|
||
Chrome Cache Entry: 253
|
ASCII text, with very long lines (42958)
|
downloaded
|
||
Chrome Cache Entry: 254
|
ASCII text, with very long lines (48756)
|
downloaded
|
||
Chrome Cache Entry: 255
|
ASCII text, with very long lines (2845)
|
downloaded
|
||
Chrome Cache Entry: 256
|
ASCII text, with very long lines (8533)
|
downloaded
|
||
Chrome Cache Entry: 257
|
ASCII text, with very long lines (544)
|
downloaded
|
||
Chrome Cache Entry: 258
|
ASCII text, with very long lines (25151)
|
downloaded
|
||
Chrome Cache Entry: 259
|
ASCII text, with very long lines (1316)
|
downloaded
|
||
Chrome Cache Entry: 260
|
ASCII text, with very long lines (16909)
|
downloaded
|
||
Chrome Cache Entry: 261
|
ASCII text, with very long lines (655)
|
downloaded
|
||
Chrome Cache Entry: 262
|
ASCII text, with very long lines (33484)
|
downloaded
|
||
Chrome Cache Entry: 263
|
ASCII text, with very long lines (27585)
|
downloaded
|
||
Chrome Cache Entry: 264
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 265
|
ASCII text, with very long lines (5480)
|
downloaded
|
||
Chrome Cache Entry: 266
|
ASCII text, with very long lines (340)
|
downloaded
|
||
Chrome Cache Entry: 267
|
C source, ASCII text, with very long lines (1046)
|
downloaded
|
||
Chrome Cache Entry: 268
|
ASCII text, with very long lines (641)
|
downloaded
|
||
Chrome Cache Entry: 269
|
ASCII text, with very long lines (623)
|
downloaded
|
||
Chrome Cache Entry: 270
|
ASCII text, with very long lines (8318)
|
downloaded
|
||
Chrome Cache Entry: 271
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 272
|
ASCII text, with very long lines (1281)
|
downloaded
|
||
Chrome Cache Entry: 273
|
ASCII text, with very long lines (1163)
|
downloaded
|
||
Chrome Cache Entry: 274
|
ASCII text, with very long lines (345)
|
downloaded
|
||
Chrome Cache Entry: 275
|
ASCII text, with very long lines (6844)
|
downloaded
|
||
Chrome Cache Entry: 276
|
ASCII text, with very long lines (52405)
|
downloaded
|
||
Chrome Cache Entry: 277
|
ASCII text, with very long lines (959)
|
downloaded
|
||
Chrome Cache Entry: 278
|
ASCII text, with very long lines (7716)
|
downloaded
|
||
Chrome Cache Entry: 279
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 280
|
ASCII text, with very long lines (4895)
|
downloaded
|
||
Chrome Cache Entry: 281
|
ASCII text, with very long lines (757)
|
downloaded
|
||
Chrome Cache Entry: 282
|
ASCII text, with very long lines (5396)
|
downloaded
|
||
Chrome Cache Entry: 283
|
ASCII text, with very long lines (13059)
|
downloaded
|
||
Chrome Cache Entry: 284
|
ASCII text, with very long lines (3691)
|
downloaded
|
||
Chrome Cache Entry: 285
|
ASCII text, with very long lines (5008)
|
downloaded
|
||
Chrome Cache Entry: 286
|
ASCII text, with very long lines (12494)
|
downloaded
|
||
Chrome Cache Entry: 287
|
ASCII text, with very long lines (15368)
|
downloaded
|
||
Chrome Cache Entry: 288
|
Web Open Font Format (Version 2), TrueType, length 46188, version 1.66
|
downloaded
|
||
Chrome Cache Entry: 289
|
ASCII text, with very long lines (533), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 290
|
ASCII text, with very long lines (744)
|
downloaded
|
||
Chrome Cache Entry: 291
|
ASCII text, with very long lines (665)
|
downloaded
|
||
Chrome Cache Entry: 292
|
ASCII text, with very long lines (2105)
|
downloaded
|
||
Chrome Cache Entry: 293
|
ASCII text, with very long lines (40518)
|
downloaded
|
||
Chrome Cache Entry: 294
|
ASCII text, with very long lines (31434)
|
downloaded
|
||
Chrome Cache Entry: 295
|
ASCII text, with very long lines (21690)
|
downloaded
|
||
Chrome Cache Entry: 296
|
ASCII text, with very long lines (40848)
|
downloaded
|
||
Chrome Cache Entry: 297
|
ASCII text, with very long lines (6321)
|
downloaded
|
||
Chrome Cache Entry: 298
|
ASCII text, with very long lines (2489)
|
downloaded
|
||
Chrome Cache Entry: 299
|
C source, ASCII text, with very long lines (1087)
|
downloaded
|
||
Chrome Cache Entry: 300
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 301
|
ASCII text, with very long lines (1615)
|
downloaded
|
||
Chrome Cache Entry: 303
|
ASCII text, with very long lines (605)
|
downloaded
|
||
Chrome Cache Entry: 304
|
ASCII text, with very long lines (565)
|
downloaded
|
||
Chrome Cache Entry: 305
|
Web Open Font Format (Version 2), TrueType, length 54666, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 306
|
ASCII text
|
downloaded
|
There are 144 hidden files, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://www.dropbox.com/en/ccpa_iframe?hide_gdpr=false&is_ccpa_enabled=true&should_disable_banner=false&gpc_signal=false&origin=https%253A%252F%252Fwww.dropbox.com&sandbox_redirect=false&uri_for_logging=dropbox.com&locale_override=en&should_auto_open_options=false&privacy_consent_upgrade_flag=true
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
nam11.safelinks.protection.outlook.com
|
104.47.56.156
|
||
stun-anycast.l.google.com
|
74.125.250.129
|
||
play.google.com
|
142.250.101.100
|
||
www-env.dropbox-dns.com
|
162.125.2.18
|
||
d-edge.v.dropbox.com
|
162.125.8.20
|
||
www.google.com
|
74.125.137.99
|
||
fp.dropbox.com
|
13.225.142.61
|
||
stun.fpapi.io
|
unknown
|
||
d.dropbox.com
|
unknown
|
||
www.dropbox.com
|
unknown
|
||
cfl.dropboxstatic.com
|
unknown
|
||
stun.l.google.com
|
unknown
|
There are 2 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
52.113.194.132
|
unknown
|
United States
|
||
1.1.1.1
|
unknown
|
Australia
|
||
74.125.137.99
|
www.google.com
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
162.125.8.20
|
d-edge.v.dropbox.com
|
United States
|
||
13.225.142.61
|
fp.dropbox.com
|
United States
|
||
142.251.2.84
|
unknown
|
United States
|
||
192.168.2.4
|
unknown
|
unknown
|
||
104.16.100.29
|
unknown
|
United States
|
||
142.251.2.94
|
unknown
|
United States
|
||
20.189.173.11
|
unknown
|
United States
|
||
142.250.101.100
|
play.google.com
|
United States
|
||
142.251.2.138
|
unknown
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
23.61.210.98
|
unknown
|
United States
|
||
142.251.2.139
|
unknown
|
United States
|
||
142.250.101.95
|
unknown
|
United States
|
||
104.47.56.156
|
nam11.safelinks.protection.outlook.com
|
United States
|
||
162.125.2.18
|
www-env.dropbox-dns.com
|
United States
|
||
104.16.99.29
|
unknown
|
United States
|
||
13.225.142.9
|
unknown
|
United States
|
||
74.125.250.129
|
stun-anycast.l.google.com
|
United States
|
There are 12 hidden IPs, click here to show them.