Windows Analysis Report
https://www.icloud.com/attachment/?u=https%3A%2F%2Fcvws.icloud-content.com%2FB%2FAViSO-AZwrsuqjmj41IiN-sL1eu8AXAVvCohbxfBszoMdE91-p-KfTip%2F%24%7Bf%7D%3Fo%3DAoEaJX1nwPbVzfTGfdRFExv93Y6a-YjVd8eAysvOcUKK%26v%3D1%26x%3D3%26a%3DCAogDwtOO0c5pz7wtCW48AvJO9GZdSV2fV2xE8fRhnp-apESdhC_6IKJ8TEYv_j93PoxIgEAKgkC

Overview

General Information

Sample URL: https://www.icloud.com/attachment/?u=https%3A%2F%2Fcvws.icloud-content.com%2FB%2FAViSO-AZwrsuqjmj41IiN-sL1eu8AXAVvCohbxfBszoMdE91-p-KfTip%2F%24%7Bf%7D%3Fo%3DAoEaJX1nwPbVzfTGfdRFExv93Y6a-YjVd8eAysvOcUK
Analysis ID: 1431283
Infos:

Detection

Score: 0
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

HTML page contains hidden URLs or javascript code

Classification

Source: https://www.icloud.com/attachment/?u=https%3A%2F%2Fcvws.icloud-content.com%2FB%2FAViSO-AZwrsuqjmj41IiN-sL1eu8AXAVvCohbxfBszoMdE91-p-KfTip%2F%24%7Bf%7D%3Fo%3DAoEaJX1nwPbVzfTGfdRFExv93Y6a-YjVd8eAysvOcUKK%26v%3D1%26x%3D3%26a%3DCAogDwtOO0c5pz7wtCW48AvJO9GZdSV2fV2xE8fRhnp-apESdhC_6IKJ8TEYv_j93PoxIgEAKgkC6AMA_1v1AwNSBAvV67xaBIp9OKlqJdc_5oC95t_XDm-wW2wVtl40LlV80scChWWMio7txAn6KnfVoMFyJdEDRuNgIwsPnxLvm5dCo2cg2523oRSbBVv8rS_7mpCQpBaPZQM%26e%3D1716571307%26fl%3D%26r%3DD69B1B3A-B859-440E-9CD7-0C107D6DF4B5-1%26k%3D%24%7Buk%7D%26ckc%3Dcom.apple.largeattachment%26ckz%3D4D74562D-EA77-477A-B1AC-2653B79CDDB7%26p%3D68%26s%3D7o92e_KH42w9VM_TqR3jjq5kWJ0&uk=fKtUeHN7s8Dl39rhuvDK_Q&f=IMG_7426.MOV&sz=53323262 HTTP Parser: Base64 decoded: .cloudos-alert .alert-main-content .alert-icon{background-image:url("blob:https://www.icloud.com/0f0e53cb-ffc7-4a40-bd68-a59283beb127")}.cloudos-alert .alert-main-content .alert-icon.icloud-icon{background-image:url("blob:https://www.icloud.com/760c98d1-...
Source: https://www.apple.com/icloud/ HTTP Parser: No favicon
Source: https://www.apple.com/icloud/ HTTP Parser: No favicon
Source: unknown HTTPS traffic detected: 23.202.57.177:443 -> 192.168.2.6:49720 version: TLS 1.2
Source: unknown HTTPS traffic detected: 23.202.57.177:443 -> 192.168.2.6:49721 version: TLS 1.2
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown TCP traffic detected without corresponding DNS query: 23.202.57.177
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global traffic HTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
Source: global traffic HTTP traffic detected: GET /reportStats HTTP/1.1Host: feedbackws.icloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /reportStats HTTP/1.1Host: feedbackws.icloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /reportStats HTTP/1.1Host: feedbackws.icloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /reportStats HTTP/1.1Host: feedbackws.icloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: chromecache_202.2.dr String found in binary or memory: "https://www.facebook.com/Apple", equals www.facebook.com (Facebook)
Source: chromecache_202.2.dr String found in binary or memory: "https://www.linkedin.com/company/apple", equals www.linkedin.com (Linkedin)
Source: chromecache_202.2.dr String found in binary or memory: "https://www.twitter.com/Apple" equals www.twitter.com (Twitter)
Source: chromecache_202.2.dr String found in binary or memory: "https://www.youtube.com/user/Apple", equals www.youtube.com (Youtube)
Source: global traffic DNS traffic detected: DNS query: www.google.com
Source: global traffic DNS traffic detected: DNS query: setup.icloud.com
Source: global traffic DNS traffic detected: DNS query: ckdatabasews.icloud.com
Source: global traffic DNS traffic detected: DNS query: cvws.icloud-content.com
Source: global traffic DNS traffic detected: DNS query: appleid.cdn-apple.com
Source: global traffic DNS traffic detected: DNS query: feedbackws.icloud.com
Source: unknown HTTP traffic detected: POST /setup/ws/1/validate?clientBuildNumber=2413Project46&clientMasteringNumber=2413B20&clientId=940a3b73-50ec-4d66-ab05-b54f81eba4a5 HTTP/1.1Host: setup.icloud.comConnection: keep-aliveContent-Length: 0sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://www.icloud.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://www.icloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: chromecache_124.2.dr String found in binary or memory: http://bugs.jquery.com/ticket/12385.
Source: chromecache_124.2.dr String found in binary or memory: http://dom.spec.whatwg.org/#dom-domimplementation-hasfeature
Source: chromecache_124.2.dr String found in binary or memory: http://facebook.github.io/react/docs/error-decoder.html?invariant=
Source: chromecache_124.2.dr String found in binary or memory: http://fb.me/use-check-prop-types
Source: chromecache_172.2.dr String found in binary or memory: http://jedwatson.github.io/classnames
Source: chromecache_124.2.dr String found in binary or memory: http://jsperf.com/emptying-a-node
Source: chromecache_124.2.dr String found in binary or memory: http://jsperf.com/key-exists
Source: chromecache_124.2.dr String found in binary or memory: http://jsperf.com/key-missing
Source: chromecache_124.2.dr String found in binary or memory: http://jsperf.com/obj-vs-arr-iteration
Source: chromecache_124.2.dr String found in binary or memory: http://modernizr.com/docs/#prefixed)
Source: chromecache_202.2.dr String found in binary or memory: http://schema.org
Source: chromecache_187.2.dr, chromecache_202.2.dr String found in binary or memory: http://schema.org/
Source: chromecache_124.2.dr String found in binary or memory: http://schema.org/docs/gs.html
Source: chromecache_124.2.dr String found in binary or memory: http://systemstatus-stage.apple.com/
Source: chromecache_124.2.dr String found in binary or memory: http://www.andismith.com/blog/2012/02/modernizr-prefixed/)
Source: chromecache_124.2.dr String found in binary or memory: http://www.apple.com/
Source: chromecache_124.2.dr String found in binary or memory: http://www.quirksmode.org/blog/archives/2008/04/delegating_the.html
Source: chromecache_124.2.dr String found in binary or memory: http://www.quirksmode.org/blog/archives/2010/09/click_event_del.html
Source: chromecache_124.2.dr String found in binary or memory: http://www.quirksmode.org/dom/events/scroll.html
Source: chromecache_124.2.dr String found in binary or memory: http://www.quirksmode.org/dom/events/tests/scroll.html
Source: chromecache_124.2.dr String found in binary or memory: http://www.quirksmode.org/js/events_properties.html
Source: chromecache_124.2.dr String found in binary or memory: http://www.thespanner.co.uk/2007/11/26/ultimate-xss-css-injection/
Source: chromecache_113.2.dr String found in binary or memory: http://www.videolan.org/x264.html
Source: chromecache_124.2.dr String found in binary or memory: http://www.whatwg.org/specs/web-apps/current-work/multipage/the-input-element.html#input-type-attr-s
Source: chromecache_202.2.dr String found in binary or memory: http://www.wikidata.org/entity/Q312
Source: chromecache_202.2.dr String found in binary or memory: https://appleid.apple.com/us/
Source: chromecache_202.2.dr String found in binary or memory: https://apps.apple.com/us/app/apple-store/id375380948
Source: chromecache_199.2.dr String found in binary or memory: https://assets.adobedtm.com/extensions/EP308220a2a4c4403f97fc1960100db40f/AppMeasurement.js
Source: chromecache_124.2.dr String found in binary or memory: https://bugs.chromium.org/p/chromium/issues/detail?id=608416
Source: chromecache_124.2.dr String found in binary or memory: https://bugs.chromium.org/p/chromium/issues/detail?id=640652
Source: chromecache_124.2.dr String found in binary or memory: https://bugs.chromium.org/p/v8/issues/detail?id=3056
Source: chromecache_124.2.dr String found in binary or memory: https://bugs.chromium.org/p/v8/issues/detail?id=3443
Source: chromecache_124.2.dr String found in binary or memory: https://bugs.chromium.org/p/v8/issues/detail?id=4118
Source: chromecache_124.2.dr String found in binary or memory: https://bugzilla.mozilla.org/show_bug.cgi?id=1276240
Source: chromecache_124.2.dr String found in binary or memory: https://bugzilla.mozilla.org/show_bug.cgi?id=208427
Source: chromecache_124.2.dr String found in binary or memory: https://code.google.com/p/chromium/issues/detail?id=355103
Source: chromecache_124.2.dr String found in binary or memory: https://code.google.com/p/v8/issues/detail?id=687
Source: chromecache_124.2.dr String found in binary or memory: https://developer.apple.com/system-status/
Source: chromecache_124.2.dr String found in binary or memory: https://developer.mozilla.org/en-US/docs/Web/API/AnimationEvent
Source: chromecache_124.2.dr String found in binary or memory: https://developer.mozilla.org/en-US/docs/Web/API/KeyboardEvent#Key_names
Source: chromecache_124.2.dr String found in binary or memory: https://developer.mozilla.org/en-US/docs/Web/API/TransitionEvent
Source: chromecache_124.2.dr String found in binary or memory: https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Object/is
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.children.count
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.children.foreach
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.children.map
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.children.only
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.children.toarray
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.cloneelement
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.createclass
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.createelement
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.createfactory
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#react.isvalidelement
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#reactdom.finddomnode
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#reactdom.render
Source: chromecache_124.2.dr String found in binary or memory: https://facebook.github.io/react/docs/top-level-api.html#reactdom.unmountcomponentatnode
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/createmixin-was-never-implemented
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/invalid-aria-prop%s
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/prop-types-docs
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-controlled-components
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-create-class
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-devtools
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-dom-factories
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-event-pooling
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-invariant-dangerously-set-inner-html
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-legacyfactory
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-minification
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-refs-must-have-owner).
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-special-props)
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-spread-deprecation
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-unknown-prop%s
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-warning-dont-call-proptypes
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-warning-keys
Source: chromecache_124.2.dr String found in binary or memory: https://fb.me/react-warning-polyfills
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/fbjs/blob/e66ba20ad5be433eb54423f2b097d829324d9de6/packages/fbjs/src/__f
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/flow/issues/285
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/1698
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/3236).
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/6731#issuecomment-254874553
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/6887
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/708.
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/7233
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/7240
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/7253
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/issues/7253#issuecomment-236074326
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/pull/6896
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/pull/7101
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/pull/7178
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/facebook/react/pull/7232
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/mishoo/UglifyJS2/blob/v2.4.20/lib/parse.js#L216
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/spicyj/innerhtml-vs-createelement-vs-clonenode.
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/zloirock/core-js/issues/173
Source: chromecache_124.2.dr String found in binary or memory: https://github.com/zloirock/core-js/issues/86#issuecomment-115759028
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/microdata.html#microdata-dom-api
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/semantics.html#the-html-element
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#generate-implied-end-tags
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#has-an-element-in-button-scope
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#has-an-element-in-scope
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#html-integration-point
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-inbody
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-incaption
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-incolgroup
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-inhead
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-inselect
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-intable
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-intbody
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-intd
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#parsing-main-intr
Source: chromecache_124.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#special
Source: chromecache_202.2.dr String found in binary or memory: https://icq.icloud.com/?context=ZXh0ZXJuYWxBcHBfY29tLmFwcGxlLm1vYmlsZXNhZmFyaV9hcHBsZS5jb20&#x3
Source: chromecache_124.2.dr String found in binary or memory: https://interactive-git.apple.com/Interactive-Interfaces/ac-ajax-xhr/issues/6
Source: chromecache_124.2.dr String found in binary or memory: https://interactive-git.apple.com/Interactive-Interfaces/ac-ajax/issues/30
Source: chromecache_202.2.dr String found in binary or memory: https://investor.apple.com/
Source: chromecache_187.2.dr, chromecache_202.2.dr String found in binary or memory: https://locate.apple.com/
Source: chromecache_202.2.dr String found in binary or memory: https://one.apple.com/us?itscg=10000&itsct=one-NA-icloud-bnr-apl-avl-102020
Source: chromecache_172.2.dr String found in binary or memory: https://preactjs.com
Source: chromecache_202.2.dr String found in binary or memory: https://schema.org
Source: chromecache_202.2.dr String found in binary or memory: https://support.apple.com
Source: chromecache_202.2.dr String found in binary or memory: https://support.apple.com/#organization
Source: chromecache_187.2.dr, chromecache_202.2.dr String found in binary or memory: https://support.apple.com/?cid=gn-ols-home-hp-tab
Source: chromecache_124.2.dr String found in binary or memory: https://support.apple.com/contact
Source: chromecache_187.2.dr String found in binary or memory: https://support.apple.com/kb/index
Source: chromecache_199.2.dr String found in binary or memory: https://support.apple.com/launch/launch-ENa1d69f1a17ae45a1a2df9385c05ffcb9.js
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com
Source: chromecache_187.2.dr, chromecache_202.2.dr String found in binary or memory: https://www.apple.com/
Source: chromecache_202.2.dr String found in binary or memory: https://www.apple.com/#organization
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/ac/globalfooter/3/en_US/scripts/ac-globalfooter.built.js
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/ac/globalfooter/3/en_US/styles/ac-globalfooter.built.css
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/ac/globalnav/4/en_US/scripts/ac-globalnav.built.js
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/ac/globalnav/4/en_US/styles/ac-globalnav.built.css
Source: chromecache_202.2.dr String found in binary or memory: https://www.apple.com/ac/structured-data/images/knowledge_graph_logo.png?202309181337
Source: chromecache_200.2.dr, chromecache_191.2.dr, chromecache_187.2.dr String found in binary or memory: https://www.apple.com/airpods/
Source: chromecache_200.2.dr, chromecache_191.2.dr String found in binary or memory: https://www.apple.com/airtag/
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/api-www/global-elements/global-header/v1/assets/globalheader.css
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/api-www/global-elements/global-header/v1/assets/globalheader.umd.js
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/api-www/global-elements/global-header/v1/flyouts
Source: chromecache_200.2.dr, chromecache_191.2.dr, chromecache_187.2.dr String found in binary or memory: https://www.apple.com/apple-vision-pro/
Source: chromecache_218.2.dr, chromecache_127.2.dr String found in binary or memory: https://www.apple.com/choose-country-region/
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/entertainment/
Source: chromecache_202.2.dr String found in binary or memory: https://www.apple.com/family-sharing/
Source: chromecache_202.2.dr String found in binary or memory: https://www.apple.com/icloud/
Source: chromecache_202.2.dr String found in binary or memory: https://www.apple.com/icloud/#service
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/ipad/
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/iphone/
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/mac/
Source: chromecache_200.2.dr, chromecache_191.2.dr String found in binary or memory: https://www.apple.com/retail/
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/tv-home/
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/us/search
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/us/shop/goto/bag
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/us/shop/goto/buy_accessories
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/us/shop/goto/store
Source: chromecache_200.2.dr, chromecache_191.2.dr String found in binary or memory: https://www.apple.com/us/shop/goto/trade_in
Source: chromecache_202.2.dr String found in binary or memory: https://www.apple.com/v/icloud/af/images/meta/og__cu0qwzuuysq6_overview.png
Source: chromecache_202.2.dr String found in binary or memory: https://www.apple.com/v/icloud/af/images/meta/og__cu0qwzuuysq6_overview.png?202309181337
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/watch/
Source: chromecache_187.2.dr String found in binary or memory: https://www.apple.com/wss/fonts/?families=SF
Source: chromecache_202.2.dr String found in binary or memory: https://www.icloud.com
Source: chromecache_144.2.dr, chromecache_198.2.dr String found in binary or memory: https://www.icloud.com/icloud_logo/icloud_logo.png
Source: chromecache_195.2.dr String found in binary or memory: https://www.icloud.com/system/icloud.com/2413Project46/en-us/acknowledgements.txt
Source: chromecache_202.2.dr String found in binary or memory: https://www.linkedin.com/company/apple
Source: chromecache_124.2.dr String found in binary or memory: https://www.owasp.org/index.php/XSS_Filter_Evasion_Cheat_Sheet
Source: chromecache_202.2.dr String found in binary or memory: https://www.twitter.com/Apple
Source: chromecache_202.2.dr String found in binary or memory: https://www.youtube.com/user/Apple
Source: unknown Network traffic detected: HTTP traffic on port 49674 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49721
Source: unknown Network traffic detected: HTTP traffic on port 49758 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49720
Source: unknown Network traffic detected: HTTP traffic on port 49672 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49706 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49741
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49762
Source: unknown Network traffic detected: HTTP traffic on port 49741 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49748 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49762 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49720 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49797 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49801 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49807 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49718
Source: unknown Network traffic detected: HTTP traffic on port 49799 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49717
Source: unknown Network traffic detected: HTTP traffic on port 49715 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49716
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49738
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49715
Source: unknown Network traffic detected: HTTP traffic on port 49717 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49814
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49714
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49758
Source: unknown Network traffic detected: HTTP traffic on port 49738 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49698 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49799
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49698
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49797
Source: unknown Network traffic detected: HTTP traffic on port 49673 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49796
Source: unknown Network traffic detected: HTTP traffic on port 49814 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49747 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49721 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49796 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49806 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49807
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49806
Source: unknown Network traffic detected: HTTP traffic on port 49716 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49706
Source: unknown Network traffic detected: HTTP traffic on port 49714 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49748
Source: unknown Network traffic detected: HTTP traffic on port 49718 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49747
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49801
Source: unknown HTTPS traffic detected: 23.202.57.177:443 -> 192.168.2.6:49720 version: TLS 1.2
Source: unknown HTTPS traffic detected: 23.202.57.177:443 -> 192.168.2.6:49721 version: TLS 1.2
Source: classification engine Classification label: clean0.win@23/195@14/9
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2404 --field-trial-handle=2288,i,18124643840649900871,11938976555639627075,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.icloud.com/attachment/?u=https%3A%2F%2Fcvws.icloud-content.com%2FB%2FAViSO-AZwrsuqjmj41IiN-sL1eu8AXAVvCohbxfBszoMdE91-p-KfTip%2F%24%7Bf%7D%3Fo%3DAoEaJX1nwPbVzfTGfdRFExv93Y6a-YjVd8eAysvOcUKK%26v%3D1%26x%3D3%26a%3DCAogDwtOO0c5pz7wtCW48AvJO9GZdSV2fV2xE8fRhnp-apESdhC_6IKJ8TEYv_j93PoxIgEAKgkC6AMA_1v1AwNSBAvV67xaBIp9OKlqJdc_5oC95t_XDm-wW2wVtl40LlV80scChWWMio7txAn6KnfVoMFyJdEDRuNgIwsPnxLvm5dCo2cg2523oRSbBVv8rS_7mpCQpBaPZQM%26e%3D1716571307%26fl%3D%26r%3DD69B1B3A-B859-440E-9CD7-0C107D6DF4B5-1%26k%3D%24%7Buk%7D%26ckc%3Dcom.apple.largeattachment%26ckz%3D4D74562D-EA77-477A-B1AC-2653B79CDDB7%26p%3D68%26s%3D7o92e_KH42w9VM_TqR3jjq5kWJ0&uk=fKtUeHN7s8Dl39rhuvDK_Q&f=IMG_7426.MOV&sz=53323262"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5488 --field-trial-handle=2288,i,18124643840649900871,11938976555639627075,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2404 --field-trial-handle=2288,i,18124643840649900871,11938976555639627075,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5488 --field-trial-handle=2288,i,18124643840649900871,11938976555639627075,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: Window Recorder Window detected: More than 3 window changes detected
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs