Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Chrome Cache Entry: 165
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 166
|
PNG image data, 452 x 444, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 167
|
PNG image data, 82 x 258, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 168
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 169
|
HTML document, ASCII text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 170
|
ASCII text, with very long lines (27024), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 171
|
MS Windows cursor resource - 1 icon, 32x32, hotspot @16x16
|
downloaded
|
||
Chrome Cache Entry: 172
|
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 173
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 174
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 175
|
ASCII text, with very long lines (5949), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 176
|
Web Open Font Format, TrueType, length 6784, version 3.30147
|
downloaded
|
||
Chrome Cache Entry: 177
|
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 178
|
ASCII text, with very long lines (5825)
|
downloaded
|
||
Chrome Cache Entry: 179
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 180
|
ASCII text, with very long lines (24306), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 181
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 182
|
ASCII text, with very long lines (673)
|
downloaded
|
||
Chrome Cache Entry: 183
|
Unicode text, UTF-8 text, with very long lines (65340), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 184
|
ASCII text, with very long lines (8349), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 185
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 186
|
ASCII text, with very long lines (41116)
|
downloaded
|
||
Chrome Cache Entry: 187
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 188
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 189
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 190
|
ASCII text, with very long lines (65443)
|
downloaded
|
||
Chrome Cache Entry: 191
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 192
|
ASCII text, with very long lines (30497), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 193
|
ASCII text, with very long lines (11364), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 194
|
ASCII text, with very long lines (32011), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 195
|
ASCII text, with very long lines (3527), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 196
|
HTML document, ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 197
|
ASCII text, with very long lines (35239), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 198
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 199
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 200
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 201
|
Unicode text, UTF-8 text, with very long lines (65308), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 202
|
PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 203
|
ASCII text, with very long lines (65447)
|
downloaded
|
||
Chrome Cache Entry: 204
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 205
|
ASCII text, with very long lines (7381)
|
downloaded
|
||
Chrome Cache Entry: 206
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 207
|
PNG image data, 102 x 102, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 208
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 209
|
ASCII text, with very long lines (3379)
|
downloaded
|
||
Chrome Cache Entry: 210
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 211
|
ASCII text, with very long lines (29629)
|
downloaded
|
||
Chrome Cache Entry: 212
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 213
|
XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 214
|
ASCII text, with very long lines (42414)
|
downloaded
|
||
Chrome Cache Entry: 215
|
PNG image data, 50 x 57, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 216
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 217
|
PNG image data, 222 x 204, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 218
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 219
|
HTML document, ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 220
|
Unicode text, UTF-8 (with BOM) text, with very long lines (18992), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 221
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 222
|
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 223
|
GIF image data, version 89a, 24 x 24
|
downloaded
|
||
Chrome Cache Entry: 224
|
Unicode text, UTF-8 text, with very long lines (56400)
|
downloaded
|
||
Chrome Cache Entry: 225
|
ASCII text, with very long lines (59654)
|
downloaded
|
||
Chrome Cache Entry: 226
|
Unicode text, UTF-8 text, with very long lines (29822)
|
downloaded
|
||
Chrome Cache Entry: 227
|
ASCII text, with very long lines (11667), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 228
|
Unicode text, UTF-8 text, with very long lines (65530), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 229
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 230
|
ASCII text, with very long lines (570)
|
downloaded
|
||
Chrome Cache Entry: 231
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 232
|
PNG image data, 82 x 258, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 233
|
ASCII text, with very long lines (64762), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 234
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 235
|
Web Open Font Format, TrueType, length 2944, version 4.30147
|
downloaded
|
||
Chrome Cache Entry: 236
|
PNG image data, 96 x 96, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 237
|
ASCII text, with very long lines (1836)
|
downloaded
|
||
Chrome Cache Entry: 238
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 239
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 240
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 241
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 242
|
XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 243
|
Web Open Font Format, TrueType, length 151924, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 244
|
HTML document, Unicode text, UTF-8 (with BOM) text, with very long lines (4207), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 245
|
MS Windows cursor resource - 1 icon, 32x32, hotspot @16x16
|
dropped
|
||
Chrome Cache Entry: 246
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 247
|
ASCII text, with very long lines (43031)
|
downloaded
|
||
Chrome Cache Entry: 248
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 249
|
PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 250
|
ASCII text, with very long lines (22115)
|
downloaded
|
||
Chrome Cache Entry: 251
|
PNG image data, 86 x 9, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 252
|
ASCII text, with very long lines (351)
|
downloaded
|
||
Chrome Cache Entry: 253
|
ASCII text, with very long lines (35371)
|
downloaded
|
||
Chrome Cache Entry: 254
|
ASCII text, with very long lines (20116), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 255
|
ASCII text, with very long lines (14666), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 256
|
ASCII text, with very long lines (665)
|
downloaded
|
||
Chrome Cache Entry: 257
|
ASCII text, with very long lines (1929), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 258
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 259
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 260
|
ASCII text, with very long lines (20082), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 261
|
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 262
|
ASCII text, with very long lines (61584), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 263
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 264
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 265
|
ASCII text, with very long lines (20946), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 266
|
GIF image data, version 89a, 24 x 24
|
dropped
|
||
Chrome Cache Entry: 267
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 268
|
ASCII text, with very long lines (20551), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 269
|
PNG image data, 96 x 96, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 270
|
ASCII text, with very long lines (38089), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 271
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 272
|
HTML document, ASCII text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 273
|
PNG image data, 102 x 102, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 274
|
ASCII text, with very long lines (59981)
|
downloaded
|
||
Chrome Cache Entry: 275
|
PNG image data, 45 x 40, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 276
|
ASCII text, with very long lines (59980)
|
downloaded
|
||
Chrome Cache Entry: 277
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 278
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 279
|
ASCII text, with very long lines (65451)
|
downloaded
|
||
Chrome Cache Entry: 280
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 281
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 282
|
ASCII text, with very long lines (2224), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 283
|
PNG image data, 50 x 57, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 284
|
PNG image data, 222 x 204, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 285
|
ASCII text, with very long lines (64817)
|
downloaded
|
||
Chrome Cache Entry: 286
|
Unicode text, UTF-8 text, with very long lines (65526), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 287
|
ASCII text, with very long lines (41569), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 288
|
Unicode text, UTF-8 text, with very long lines (65530), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 289
|
ASCII text, with very long lines (1922), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 290
|
Unicode text, UTF-8 text, with very long lines (65535), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 291
|
Unicode text, UTF-8 text, with very long lines (12695)
|
downloaded
|
||
Chrome Cache Entry: 292
|
PNG image data, 45 x 40, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 293
|
ASCII text, with very long lines (36211)
|
downloaded
|
||
Chrome Cache Entry: 294
|
HTML document, Unicode text, UTF-8 (with BOM) text, with very long lines (4207), with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 295
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 296
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 297
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 298
|
PNG image data, 452 x 444, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 299
|
PNG image data, 86 x 9, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 300
|
ASCII text, with very long lines (65476)
|
downloaded
|
||
Chrome Cache Entry: 301
|
ASCII text, with very long lines (2997)
|
downloaded
|
There are 128 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2156 --field-trial-handle=1948,i,4432349157033959140,1943977196617917275,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://1drv.ms/o/s!AmFI0faGJpjZhESzK-ltQ-Z_UHmf?e=0OfhLS"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://1drv.ms/o/s!AmFI0faGJpjZhESzK-ltQ-Z_UHmf?e=0OfhLS
|
|||
https://www.onenote.com/officeaddins/meetings?ui=pt-BR&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=fil-PH&temporaryLocalization=true
|
unknown
|
||
https://1drv.ms/o/s!AmFI0faGJpjZhESzK-ltQ-Z_UHmf?e=0OfhLS
|
13.107.42.12
|
||
https://code.jquery.com/jquery-3.6.0.min.js
|
151.101.194.137
|
||
https://www.onenote.com/officeaddins/meetings?ui=yo-NG&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=az-Latn-AZ&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=hy-AM&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=is-IS&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/flow/ov1/1132970042:1714044400:xBjqnWhffc5FlCibF1GSF-2F9T85qew-bgLN6yxh9D8/879e1d989c2b78c8/1e44a6924b4b468
|
104.17.3.184
|
||
https://www.onenote.com/officeaddins/meetings?ui=mi-NZ&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ja-JP&temporaryLocalization=true
|
unknown
|
||
https://common.online.office.com/suite/RemoteUls.ashx?usid=999fd23f-8bcf-4a35-ae88-d7b9098dec79&officeserverversion=20240421.7
|
52.108.8.12
|
||
https://catalogapi.azure.com/
|
unknown
|
||
https://www.onenote.com/officeaddins/RemoteUls.ashx
|
13.107.213.41
|
||
https://onedrive.live.com/redir?resid=D9982686F6D14861%21580&authkey=%21ALMr6W1D5n9QeZ8&page=View&wd=target%28Quick%20Notes.one%7Ccf443f1f-77d2-4ea9-b08d-c3d933c51ea4%2FPIT%20Hegn%20A%5C%2FS%7C70a011f0-af1a-447c-8540-50f9911012ff%2F%29&wdorigin=NavigationUrl
|
|||
https://www.onenote.com/officeaddins/meetings?ui=bg-BG&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=rw-RW&temporaryLocalization=true
|
unknown
|
||
https://aka.ms/OfficeAddinOverview
|
unknown
|
||
https://attributes.engagement.officeppe.com
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=kok-IN&temporaryLocalization=true
|
unknown
|
||
https://aka.ms/MathAssistantSupport?client_id=onenote_wac&platform_id=web&correlation_id=
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=pa-Arab-PK&temporaryLocalization=true
|
unknown
|
||
http://www.opensource.org/licenses/mit-license.php
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ky-KG&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=hr-HR&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=sk-SK&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/cmg/1/wh0E0SXYnx6pTBdJW%2Fl926I%2BPRUplRdtQz3K9lHXs%2Fs%3D
|
104.17.3.184
|
||
https://www.onenote.com/officeaddins/meetings?ui=hu-HU&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ca-ES-valencia&temporaryLocalization=true
|
unknown
|
||
https://mths.be/punycode
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ka-GE&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=da-DK&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=tk-TM&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/uk8wm/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
|||
https://attributes.engagement.office-int.com
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=et-EE&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ug-CN&temporaryLocalization=true
|
unknown
|
||
https://my.microsoftpersonalcontent.com
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=mt-MT&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=sr-Latn-RS&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ne-NP&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ru-RU&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=sl-SI&temporaryLocalization=true
|
unknown
|
||
https://forms.office.com
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=bn-BD&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ko-KR&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=vi-VN&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=th-TH&temporaryLocalization=true
|
unknown
|
||
https://forms.office.com/Pages/OneNoteMathAddinFunctionPage.aspx
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=af-ZA&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/i/879e1e576906672b/1714045860065/ZPYzggQx1W7KVLI
|
104.17.3.184
|
||
https://www.onenote.com/officeaddins/meetings?ui=mr-IN&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=el-GR&temporaryLocalization=true
|
unknown
|
||
https://augloop-int.officeppe.com/v2
|
unknown
|
||
https://1drv.ms
|
unknown
|
||
https://aka.ms/Officeaddins
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=zh-CN&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=mn-MN&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=kk-KZ&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ro-RO&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=it-IT&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/orchestrate/chl_api/v1?ray=879e1e0cdc4c080b
|
104.17.3.184
|
||
https://consent.config.office.com/consentcheckin/v1.0/consents
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=cs-CZ&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=as-IN&temporaryLocalization=true
|
unknown
|
||
https://fa000000096.resources.office.net
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=pl-PL&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=prs-AF&temporaryLocalization=true
|
unknown
|
||
https://common.online.office.com/suite/RemoteTelemetry.ashx?usid=999fd23f-8bcf-4a35-ae88-d7b9098dec79
|
52.108.8.12
|
||
https://www.onenote.com/officeaddins/meetings?ui=en-US&temporaryLocalization=true
|
unknown
|
||
https://file.documentoneviews.xyz/captcha/logo.svg
|
104.21.34.125
|
||
https://www.onenote.com/officeaddins/meetings?ui=sv-SE&temporaryLocalization=true
|
unknown
|
||
https://github.com/js-cookie/js-cookie
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ha-Latn-NG&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=nl-NL&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=uk-UA&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=uz-Latn-UZ&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=be-BY&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=km-KH&temporaryLocalization=true
|
unknown
|
||
https://support.office.com/article/7afcb4f3-4aa2-443a-9b08-125a5d692576
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=ta-IN&temporaryLocalization=true
|
unknown
|
||
https://support.office.com/article/ec43ed03-eb3c-4a10-8d9d-e9e5433c9ed2
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=gu-IN&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/flow/ov1/425347568:1714044350:Xtnq43eSNgLYqswN5KdEy1gj3tEaeqmPTupcyyEuy9c/879e1e576906672b/c0b6f73c23f6855
|
104.17.3.184
|
||
https://file.documentoneviews.xyz/captcha/style.css
|
104.21.34.125
|
||
https://www.onenote.com/officeaddins/meetings?ui=quz-PE&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/4s955/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
|||
https://www.onenote.com/officeaddins/meetings?ui=ar-SA&temporaryLocalization=true
|
unknown
|
||
https://github.com/OfficeDev/office-js/blob/release/LICENSE.md
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=he-IL&temporaryLocalization=true
|
unknown
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/i/879e1d989c2b78c8/1714045829450/Tl0Rz5m9L-kgomZ
|
104.17.3.184
|
||
https://www.onenote.com/officeaddins/meetings?ui=hi-IN&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=nso-ZA&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=mk-MK&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=or-IN&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=zu-ZA&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=lt-LT&temporaryLocalization=true
|
unknown
|
||
https://www.onenote.com/officeaddins/meetings?ui=sr-Cyrl-BA&temporaryLocalization=true
|
unknown
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
file.documentoneviews.xyz
|
104.21.34.125
|
||
dual-spov-0006.spov-msedge.net
|
13.107.137.11
|
||
wac-0003.wac-msedge.net
|
52.108.8.12
|
||
bg.microsoft.map.fastly.net
|
199.232.214.172
|
||
part-0013.t-0009.t-msedge.net
|
13.107.213.41
|
||
code.jquery.com
|
151.101.194.137
|
||
challenges.cloudflare.com
|
104.17.3.184
|
||
www.google.com
|
108.177.122.147
|
||
fp2e7a.wpc.phicdn.net
|
192.229.211.108
|
||
1drv.ms
|
13.107.42.12
|
||
sni1gl.wpc.sigmacdn.net
|
152.195.19.97
|
||
augloop.office.com
|
unknown
|
||
storage.live.com
|
unknown
|
||
ajax.aspnetcdn.com
|
unknown
|
||
onenoteonline.nel.measure.office.net
|
unknown
|
||
common.online.office.com
|
unknown
|
||
onedrive.live.com
|
unknown
|
||
spoprod-a.akamaihd.net
|
unknown
|
||
www.onenote.com
|
unknown
|
||
messaging.engagement.office.com
|
unknown
|
There are 10 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
104.21.34.125
|
file.documentoneviews.xyz
|
United States
|
||
152.195.19.97
|
sni1gl.wpc.sigmacdn.net
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
192.168.2.4
|
unknown
|
unknown
|
||
52.108.9.12
|
unknown
|
United States
|
||
104.17.3.184
|
challenges.cloudflare.com
|
United States
|
||
13.107.213.41
|
part-0013.t-0009.t-msedge.net
|
United States
|
||
151.101.194.137
|
code.jquery.com
|
United States
|
||
13.107.137.11
|
dual-spov-0006.spov-msedge.net
|
United States
|
||
52.108.8.12
|
wac-0003.wac-msedge.net
|
United States
|
||
13.107.42.12
|
1drv.ms
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
104.17.2.184
|
unknown
|
United States
|
||
108.177.122.147
|
www.google.com
|
United States
|
||
172.67.205.14
|
unknown
|
United States
|
There are 5 hidden IPs, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://onedrive.live.com/view.aspx?resid=D9982686F6D14861%21580&authkey=!ALMr6W1D5n9QeZ8
|
||
https://onenote.officeapps.live.com/o/onenoteframe.aspx?edit=0&ui=en-US&rs=en-US&hid=WQvHP%2FnA4E%2BGbOPnCbaA4g.0.0&wopisrc=https%3A%2F%2Fwopi.onedrive.com%2Fwopi%2Ffolders%2FD9982686F6D14861!580&sc=host%3D%26qt%3DDefault&wdp=7&uih=onedrivecom&dchat=1&mscc=1&wdorigin=Other&wdhostclicktime=1714045788787&jsapi=1&jsapiver=v1&newsession=1&corrid=999fd23f-8bcf-4a35-ae88-d7b9098dec79&usid=999fd23f-8bcf-4a35-ae88-d7b9098dec79&sftc=1&sams=1&cac=1&mtf=1&sfp=1&hch=1&hwfh=1&uihit=editaspx&muv=1&wdredirectionreason=Force_SingleStepBoot
|
||
https://onenote.officeapps.live.com/o/onenoteframe.aspx?edit=0&ui=en-US&rs=en-US&hid=WQvHP%2FnA4E%2BGbOPnCbaA4g.0.0&wopisrc=https%3A%2F%2Fwopi.onedrive.com%2Fwopi%2Ffolders%2FD9982686F6D14861!580&sc=host%3D%26qt%3DDefault&wdp=7&uih=onedrivecom&dchat=1&mscc=1&wdorigin=Other&wdhostclicktime=1714045788787&jsapi=1&jsapiver=v1&newsession=1&corrid=999fd23f-8bcf-4a35-ae88-d7b9098dec79&usid=999fd23f-8bcf-4a35-ae88-d7b9098dec79&sftc=1&sams=1&cac=1&mtf=1&sfp=1&hch=1&hwfh=1&uihit=editaspx&muv=1&wdredirectionreason=Force_SingleStepBoot
|
||
https://onenote.officeapps.live.com/o/onenoteframe.aspx?edit=0&ui=en-US&rs=en-US&hid=WQvHP%2FnA4E%2BGbOPnCbaA4g.0.0&wopisrc=https%3A%2F%2Fwopi.onedrive.com%2Fwopi%2Ffolders%2FD9982686F6D14861!580&sc=host%3D%26qt%3DDefault&wdp=7&uih=onedrivecom&dchat=1&mscc=1&wdorigin=Other&wdhostclicktime=1714045788787&jsapi=1&jsapiver=v1&newsession=1&corrid=999fd23f-8bcf-4a35-ae88-d7b9098dec79&usid=999fd23f-8bcf-4a35-ae88-d7b9098dec79&sftc=1&sams=1&cac=1&mtf=1&sfp=1&hch=1&hwfh=1&uihit=editaspx&muv=1&wdredirectionreason=Force_SingleStepBoot
|
||
https://onedrive.live.com/redir?resid=D9982686F6D14861%21580&authkey=%21ALMr6W1D5n9QeZ8&page=View&wd=target%28Quick%20Notes.one%7Ccf443f1f-77d2-4ea9-b08d-c3d933c51ea4%2FPIT%20Hegn%20A%5C%2FS%7C70a011f0-af1a-447c-8540-50f9911012ff%2F%29&wdorigin=NavigationUrl
|
||
https://www.onenote.com/officeaddins/learningtools/?et=
|
||
https://file.documentoneviews.xyz/
|
||
https://file.documentoneviews.xyz/
|
||
https://file.documentoneviews.xyz/
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/uk8wm/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/uk8wm/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/7oeo1/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/7oeo1/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/4s955/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
||
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/4s955/0x4AAAAAAAYJtDaaWRzo6gAt/auto/normal
|
There are 5 hidden doms, click here to show them.