Windows Analysis Report
https://aka.ms/LearnAboutSenderIdentification

Overview

General Information

Sample URL: https://aka.ms/LearnAboutSenderIdentification
Analysis ID: 1432178
Infos:

Detection

Score: 1
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

Found iframes
HTML body contains low number of good links
HTML title does not match URL

Classification

Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0&sso_reload=true HTTP Parser: Iframe src: https://login.live.com/Me.htm?v=3
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0 HTTP Parser: Number of links: 0
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0&sso_reload=true HTTP Parser: Number of links: 0
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0 HTTP Parser: Title: Redirecting does not match URL
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0&sso_reload=true HTTP Parser: Title: Redirecting does not match URL
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0 HTTP Parser: No favicon
Source: https://login.microsoftonline.com/savedusers?appid=ee272b19-4411-433f-8f28-5c13cb6fd407&wreply=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&uaid=a6ef88db-0fa3-4a9b-573d-6a655860b469&partnerId=smcconvergence&idpflag=proxy HTTP Parser: No favicon
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0&sso_reload=true HTTP Parser: No favicon
Source: https://support.microsoft.com/en-us/silentsigninhandler HTTP Parser: No favicon
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0 HTTP Parser: No <meta name="author".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0&sso_reload=true HTTP Parser: No <meta name="author".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0 HTTP Parser: No <meta name="copyright".. found
Source: https://login.microsoftonline.com/common/oauth2/v2.0/authorize?client_id=ee272b19-4411-433f-8f28-5c13cb6fd407&redirect_uri=https%3A%2F%2Fsupport.microsoft.com%2Fsignin-oidc&response_type=code%20id_token&scope=openid%20profile%20offline_access&response_mode=form_post&nonce=638497387918753236.MGQ1ZTIzOWMtZDc4ZS00ZjBlLWI0ZTQtMzJhYTBiODBkMGNkNDQ3OWJkMGQtODcxZC00ZGVjLTkzNjEtYWU4MTIxYmQwOTQ2&prompt=none&nopa=2&state=CfDJ8CiTzr73KWNFsUGcHEnPeJoMpRnwpJpphMDgTonwvjwoeG6hcJtih5c781cxbyDwCxYS5K9Jx6GR1FuowL5TEI9BwttHlh-1QxCD2hUWxbD5OFaUpbDq7ZJv2bI9JkscGAy4ToFD6OEIWVKWrKYqTKnEmY11zc1qwk1osn6rTtSRh5KkKGN5vAQAp2vybgOJ5DjJs7oowzwo_Lwaf3mJVvpqKR7heWooR5-1YFzmNS-OJGOFfT5nvZ5WESHuZCMBoF-W6dseuUgMA7guh_SjdvxNiBPO_vquYc7rYXvAFR7gT57eSNBnnJgTvhwrPbT9HSmgkVrmLG70PTQ_g2NYr0gS8Xrt4IptEEuaiGY2cCUF&x-client-SKU=ID_NET6_0&x-client-ver=6.35.0.0&sso_reload=true HTTP Parser: No <meta name="copyright".. found
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49719 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49720 version: TLS 1.2
Source: unknown HTTPS traffic detected: 40.127.169.103:443 -> 192.168.2.6:49730 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49731 version: TLS 1.2
Source: unknown HTTPS traffic detected: 173.222.162.64:443 -> 192.168.2.6:49714 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49808 version: TLS 1.2
Source: unknown HTTPS traffic detected: 40.68.123.157:443 -> 192.168.2.6:49898 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49900 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:50088 version: TLS 1.2
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: unknown TCP traffic detected without corresponding DNS query: 40.127.169.103
Source: global traffic HTTP traffic detected: GET /LearnAboutSenderIdentification HTTP/1.1Host: aka.msConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /SLS/%7B522D76A4-93E1-47F8-B8CE-07C937AD1A1E%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=ASF2r777NU9LofH&MD=zh7ukvCd HTTP/1.1Connection: Keep-AliveAccept: */*User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33Host: slscr.update.microsoft.com
Source: global traffic HTTP traffic detected: GET /LearnAboutSenderIdentification HTTP/1.1Host: aka.msConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /mscc/lib/v2/wcp-consent.js HTTP/1.1Host: wcpstatic.microsoft.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://support.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ak_bmsc=56CDA46ABC39AE2CC005DEC7F6C669E9~000000000000000000000000000000~YAAQhXQyF5oPEdWOAQAATfXSGhf8iukf9iVOvMcnuoHyuyoZ1IEhW5PmW7EY1xUQPiggOLd4uSMwG8cyRafN6Tl5i+OTo5HNx5gZIp8acytvr3ckspfB38E0H6R4ZarciBJK1x/bajLEZEpdWy3PSgCuZxpap5HQf5KkvPcyvjOgjDR8jvSp64MO8Scw5Og1vViBQ8MvInZV98JEGgOuovE9xPa+ZIghizp3p5WIYEKMqkGaJ9Ui2cqfviRJDbGv864zMgKi8uSnpcJFtOI6ba/TjkP4saprFGT8c2d2GI8S/bLsLSyvH0/LXaARF1SuvjkLHW310UP8iBglnsBCDeU+xRQGlA5RA0ZOM7dpfAyGu/waW6kd9MSMyoIcEsUW
Source: global traffic HTTP traffic detected: GET /meversion?partner=SMCConvergence&market=en-us&uhf=1 HTTP/1.1Host: mem.gfx.msConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://support.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /scripts/c/ms.shared.analytics.mectrl-3.gbl.min.js HTTP/1.1Host: js.monitor.azure.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://support.microsoft.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://support.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /scripts/me/MeControl/10.24086.4/en-US/meBoot.min.js HTTP/1.1Host: mem.gfx.msConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://support.microsoft.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://support.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /shared/1.0/content/js/BssoInterrupt_Core_ChpboAn7HyXj89A22M8mzg2.js HTTP/1.1Host: aadcdn.msauth.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://login.microsoftonline.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://login.microsoftonline.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /scripts/me/MeControl/10.24086.4/en-US/meCore.min.js HTTP/1.1Host: mem.gfx.msConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://support.microsoft.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://support.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /shared/1.0/content/js/FetchSessions_Core_JZTKIH_Tdx6afyJMNXnGEQ2.js HTTP/1.1Host: aadcdn.msftauth.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://login.microsoftonline.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://login.microsoftonline.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /16.000/content/js/MeControl_5BiUVwve_jNbxMN6Aaj8bg2.js HTTP/1.1Host: logincdn.msftauth.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://login.live.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://login.live.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /me/mecache?partner=smcconvergence&wreply=https%3A%2F%2Fsupport.microsoft.com HTTP/1.1Host: mem.gfx.msConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://support.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /SLS/%7BE7A50285-D08D-499D-9FF8-180FDC2332BC%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=ASF2r777NU9LofH&MD=zh7ukvCd HTTP/1.1Connection: Keep-AliveAccept: */*User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33Host: slscr.update.microsoft.com
Source: global traffic HTTP traffic detected: GET /scripts/c/ms.analytics-web-3.min.js HTTP/1.1Host: js.monitor.azure.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://developer.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /meversion?partner=MSDev-Community&market=en-us&uhf=1 HTTP/1.1Host: mem.gfx.msConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://developer.microsoft.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: chromecache_238.3.dr String found in binary or memory: "//www.linkedin.com/shareArticle?mini=true&url=" + equals www.linkedin.com (Linkedin)
Source: chromecache_238.3.dr String found in binary or memory: url: "//www.facebook.com/share.php?u=" + h, equals www.facebook.com (Facebook)
Source: global traffic DNS traffic detected: DNS query: www.google.com
Source: global traffic DNS traffic detected: DNS query: aka.ms
Source: global traffic DNS traffic detected: DNS query: c.s-microsoft.com
Source: global traffic DNS traffic detected: DNS query: js.monitor.azure.com
Source: global traffic DNS traffic detected: DNS query: mem.gfx.ms
Source: global traffic DNS traffic detected: DNS query: login.microsoftonline.com
Source: global traffic DNS traffic detected: DNS query: support.content.office.net
Source: global traffic DNS traffic detected: DNS query: assets.onestore.ms
Source: global traffic DNS traffic detected: DNS query: microsoftwindows.112.2o7.net
Source: global traffic DNS traffic detected: DNS query: aadcdn.msftauth.net
Source: global traffic DNS traffic detected: DNS query: logincdn.msftauth.net
Source: global traffic DNS traffic detected: DNS query: acctcdn.msftauth.net
Source: global traffic DNS traffic detected: DNS query: amp.azure.net
Source: global traffic DNS traffic detected: DNS query: ajax.aspnetcdn.com
Source: chromecache_296.3.dr String found in binary or memory: http://feross.org
Source: chromecache_272.3.dr String found in binary or memory: http://github.com/aFarkas/lazysizes
Source: chromecache_277.3.dr, chromecache_331.3.dr, chromecache_357.3.dr String found in binary or memory: http://github.com/requirejs/almond/LICENSE
Source: chromecache_320.3.dr String found in binary or memory: http://github.com/requirejs/domReady
Source: chromecache_320.3.dr String found in binary or memory: http://github.com/requirejs/requirejs/LICENSE
Source: chromecache_298.3.dr String found in binary or memory: http://img-prod-cms-rt-microsoft-com.akamaized.net/cms/api/am/imageFileData/RE4EIZB?ver=f4a3
Source: chromecache_221.3.dr String found in binary or memory: http://knockoutjs.com/
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: http://schema.org/Organization
Source: chromecache_211.3.dr String found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: chromecache_296.3.dr String found in binary or memory: http://www.opensource.org/licenses/mit-license.php
Source: chromecache_221.3.dr String found in binary or memory: http://www.opensource.org/licenses/mit-license.php)
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://ajax.aspnetcdn.com/ajax/jQuery/jquery-1.9.1.min.js
Source: chromecache_344.3.dr, chromecache_358.3.dr, chromecache_327.3.dr, chromecache_207.3.dr, chromecache_311.3.dr, chromecache_247.3.dr String found in binary or memory: https://assets.onestore.ms
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://assets.onestore.ms/cdnfiles/external/mwf/long/v1/v1.25.0/css/mwf-west-european-default.min.c
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://az725175.vo.msecnd.net/scripts/jsll-4.js
Source: chromecache_298.3.dr String found in binary or memory: https://eus-streaming-video-rt-microsoft-com.akamaized.net/0f937af8-d731-4ff2-a223-053a9189b20e/91f6
Source: chromecache_343.3.dr, chromecache_298.3.dr String found in binary or memory: https://eus-streaming-video-rt-microsoft-com.akamaized.net/7070043d-58fb-4f43-b0cf-89f6dbf4bb38/91f6
Source: chromecache_205.3.dr, chromecache_253.3.dr String found in binary or memory: https://getbootstrap.com/)
Source: chromecache_221.3.dr String found in binary or memory: https://github.com/douglascrockford/JSON-js
Source: chromecache_205.3.dr, chromecache_253.3.dr String found in binary or memory: https://github.com/twbs/bootstrap/blob/main/LICENSE)
Source: chromecache_205.3.dr String found in binary or memory: https://github.com/twbs/bootstrap/graphs/contributors)
Source: chromecache_344.3.dr, chromecache_358.3.dr, chromecache_327.3.dr, chromecache_207.3.dr, chromecache_311.3.dr, chromecache_247.3.dr String found in binary or memory: https://img-prod-cms-rt-microsoft-com.akamaized.net
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://img-prod-cms-rt-microsoft-com.akamaized.net/cms/api/am/imageFileData/RE1Mu3b?ver=5c31
Source: chromecache_205.3.dr String found in binary or memory: https://jquery.com/
Source: chromecache_205.3.dr String found in binary or memory: https://jquery.org/license
Source: chromecache_216.3.dr String found in binary or memory: https://login.microsoftonline.com
Source: chromecache_216.3.dr String found in binary or memory: https://login.windows-ppe.net
Source: chromecache_344.3.dr, chromecache_358.3.dr, chromecache_327.3.dr, chromecache_207.3.dr, chromecache_311.3.dr, chromecache_247.3.dr String found in binary or memory: https://mem.gfx.ms
Source: chromecache_344.3.dr, chromecache_358.3.dr, chromecache_327.3.dr, chromecache_207.3.dr, chromecache_311.3.dr, chromecache_247.3.dr String found in binary or memory: https://microsoftwindows.112.2o7.net
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://onedrive.live.com/about/en-us/
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://outlook.live.com/owa/
Source: chromecache_343.3.dr, chromecache_298.3.dr String found in binary or memory: https://prod-video-cms-rt-microsoft-com.akamaized.net/cms/api/am/videofiledata/RE4EIXC-enus?ver=e63f
Source: chromecache_343.3.dr, chromecache_298.3.dr String found in binary or memory: https://prod-video-cms-rt-microsoft-com.akamaized.net/cms/api/am/videofiledata/RE4EIXC-tscriptenus?v
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://products.office.com/en-us/home
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://products.office.com/en-us/microsoft-teams/free?icid=SSM_AS_Promo_Apps_MicrosoftTeams
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://statics-marketingsites-wcus-ms-com.akamaized.net/statics/override.css?c=7
Source: chromecache_287.3.dr String found in binary or memory: https://ussearchprod.trafficmanager.net/services/api/v1.0/store/categories
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://www.onenote.com/
Source: chromecache_240.3.dr, chromecache_284.3.dr String found in binary or memory: https://www.skype.com/en/
Source: chromecache_284.3.dr String found in binary or memory: https://www.xbox.com/
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49821
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49743
Source: unknown Network traffic detected: HTTP traffic on port 49817 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49842 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49672 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49974 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49932 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50011
Source: unknown Network traffic detected: HTTP traffic on port 49898 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49743 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49746 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49769 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49720 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49833 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49799 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49810 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49817
Source: unknown Network traffic detected: HTTP traffic on port 49906 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49932
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49810
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49898
Source: unknown Network traffic detected: HTTP traffic on port 49900 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49975
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49974
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49731
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49730
Source: unknown Network traffic detected: HTTP traffic on port 49975 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49721 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50072
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49808
Source: unknown Network traffic detected: HTTP traffic on port 49991 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49798 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49714 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49804
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49726
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49725
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49769
Source: unknown Network traffic detected: HTTP traffic on port 50088 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49674 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49721
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49842
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49720
Source: unknown Network traffic detected: HTTP traffic on port 49731 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49761
Source: unknown Network traffic detected: HTTP traffic on port 50011 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49821 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49834 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49725 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49719 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49793 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 50047 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49719
Source: unknown Network traffic detected: HTTP traffic on port 49992 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 50089 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49714
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49835
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49834
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49833
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49799
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49798
Source: unknown Network traffic detected: HTTP traffic on port 49673 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49730 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49993
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49992
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49793
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49991
Source: unknown Network traffic detected: HTTP traffic on port 49726 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49835 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50089
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50088
Source: unknown Network traffic detected: HTTP traffic on port 49761 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 50047
Source: unknown Network traffic detected: HTTP traffic on port 49804 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 50072 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49808 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49907
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49906
Source: unknown Network traffic detected: HTTP traffic on port 49907 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49993 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49746
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49900
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49719 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49720 version: TLS 1.2
Source: unknown HTTPS traffic detected: 40.127.169.103:443 -> 192.168.2.6:49730 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49731 version: TLS 1.2
Source: unknown HTTPS traffic detected: 173.222.162.64:443 -> 192.168.2.6:49714 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49808 version: TLS 1.2
Source: unknown HTTPS traffic detected: 40.68.123.157:443 -> 192.168.2.6:49898 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:49900 version: TLS 1.2
Source: unknown HTTPS traffic detected: 20.25.241.18:443 -> 192.168.2.6:50088 version: TLS 1.2
Source: classification engine Classification label: clean1.win@29/311@42/10
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1948 --field-trial-handle=1836,i,4365280110577524972,18338448923851243873,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://aka.ms/LearnAboutSenderIdentification"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1948 --field-trial-handle=1836,i,4365280110577524972,18338448923851243873,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: Window Recorder Window detected: More than 3 window changes detected
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs