Source: DOC-Zcns1G_.html | HTTP Parser: <script> let x = ['3C', '73', '63', '72', '69', '70', '74', '3E', 'A', '20', '20', '20', '20', '64', '6F', '63', '75', '6D', '65', '6E', '74', '2E', '6C', '6F', '63', '61', '74', '69', '6F', '6E', '2E', '68', '72', '65', '66', '3D', '22',... |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.118.50 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.197.24.154 |
Source: unknown | TCP traffic detected without corresponding DNS query: 20.189.173.10 |
Source: unknown | TCP traffic detected without corresponding DNS query: 20.189.173.10 |
Source: unknown | TCP traffic detected without corresponding DNS query: 20.189.173.10 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 20.189.173.10 |
Source: unknown | TCP traffic detected without corresponding DNS query: 192.229.211.108 |
Source: unknown | TCP traffic detected without corresponding DNS query: 20.189.173.10 |
Source: unknown | TCP traffic detected without corresponding DNS query: 192.229.211.108 |
Source: unknown | TCP traffic detected without corresponding DNS query: 192.229.211.108 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | TCP traffic detected without corresponding DNS query: 192.229.211.108 |
Source: unknown | TCP traffic detected without corresponding DNS query: 192.229.211.108 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49722 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49721 |
Source: unknown | Network traffic detected: HTTP traffic on port 49706 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49712 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49678 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49727 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49722 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49701 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49688 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49718 |
Source: unknown | Network traffic detected: HTTP traffic on port 49713 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49717 |
Source: unknown | Network traffic detected: HTTP traffic on port 49715 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49716 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49715 |
Source: unknown | Network traffic detected: HTTP traffic on port 49717 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49714 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49713 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49712 |
Source: unknown | Network traffic detected: HTTP traffic on port 49673 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49707 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49705 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49726 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49724 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49721 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49723 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49707 |
Source: unknown | Network traffic detected: HTTP traffic on port 49716 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49706 |
Source: unknown | Network traffic detected: HTTP traffic on port 49714 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49705 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49727 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49726 |
Source: unknown | Network traffic detected: HTTP traffic on port 49718 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49724 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49701 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49723 |
Source: unknown | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument C:\Users\user\Downloads\BxgMVscTJU\DOC-Zcns1G_.html |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2208 --field-trial-handle=1960,i,17475730456199512523,3931957936537467271,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2208 --field-trial-handle=1960,i,17475730456199512523,3931957936537467271,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: unknown | Process created: C:\Windows\System32\OpenWith.exe C:\Windows\system32\OpenWith.exe -Embedding |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: kernel.appcore.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: uxtheme.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: onecoreuapcommonproxystub.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windows.storage.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: wldp.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: twinui.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: wintypes.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: powrprof.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: dwmapi.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: pdh.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: umpdc.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: onecorecommonproxystub.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: actxprxy.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: propsys.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: profapi.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windows.ui.appdefaults.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windows.ui.immersive.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: ntmarta.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: uiautomationcore.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: dui70.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: duser.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: dwrite.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: bcp47mrm.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: uianimation.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: d3d11.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: dxgi.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: d3d10warp.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: resourcepolicyclient.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: dxcore.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: dcomp.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: oleacc.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: edputil.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windows.ui.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windowmanagementapi.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: textinputframework.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: inputhost.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: twinapi.appcore.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: coremessaging.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: twinapi.appcore.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: coremessaging.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: coreuicomponents.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: coreuicomponents.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: coremessaging.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: apphelp.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: appresolver.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: bcp47langs.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: slc.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: userenv.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: sppc.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: thumbcache.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windowscodecs.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: policymanager.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: msvcp110_win.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windows.staterepositoryps.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: tiledatarepository.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: staterepository.core.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windows.staterepository.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: staterepository.core.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: wtsapi32.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: windows.staterepositorycore.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: mrmcorer.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: appxdeploymentclient.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: sxs.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: directmanipulation.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: textshaping.dll |
Source: C:\Windows\System32\OpenWith.exe | Section loaded: ninput.dll |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk |
Source: C:\Windows\System32\OpenWith.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\OpenWith.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\OpenWith.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\OpenWith.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\OpenWith.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\OpenWith.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\System32\OpenWith.exe | Queries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation |
Source: C:\Windows\System32\OpenWith.exe | Queries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation |
Source: C:\Windows\System32\OpenWith.exe | Queries volume information: C:\Windows\Fonts\seguisym.ttf VolumeInformation |
Source: C:\Windows\System32\OpenWith.exe | Queries volume information: C:\Windows\Fonts\seguisym.ttf VolumeInformation |
Source: C:\Windows\System32\OpenWith.exe | Queries volume information: C:\Windows\Fonts\segmdl2.ttf VolumeInformation |
Source: C:\Windows\System32\OpenWith.exe | Queries volume information: C:\Windows\Fonts\segmdl2.ttf VolumeInformation |