top title background image
flash

HOW CAN WE HELP .pdf

Status: finished
Submission Time: 2019-11-09 00:55:38 +01:00
Suspicious
Exploiter

Comments

Tags

Details

  • Analysis ID:
    188706
  • API (Web) ID:
    275720
  • Analysis Started:
    2019-11-09 00:55:38 +01:00
  • Analysis Finished:
    2019-11-09 01:06:33 +01:00
  • MD5:
    d4fa1904caa6f3eb7f2c283596c01392
  • SHA1:
    95b0eb0cf78048d706f092d1efd17d2f2d860d62
  • SHA256:
    9e894816479943bfbb9ce71ab2907124710c2515d9c4606ba167c2f5d45d4aa9
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
suspicious
Score: 22
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
192.124.249.108
United States
31.13.92.174
Ireland
3.3.0.2
United States
Click to see the 17 hidden entries
152.195.133.1
United States
152.199.21.57
United States
93.184.220.70
European Union
172.217.23.246
United States
216.58.201.97
United States
185.63.145.1
United States
104.244.42.131
United States
64.233.167.155
United States
104.244.42.136
United States
104.244.42.1
United States
172.217.23.194
United States
108.174.10.10
United States
31.13.92.51
Ireland
172.217.23.227
United States
31.13.92.14
Ireland
31.13.92.36
Ireland
23.111.9.35
United States

Domains

Name IP Detection
www.frsenvironmental.com
0.0.0.0
z-p42-instagram.c10r.facebook.com
31.13.92.174
cs766.wpc.epsiloncdn.net
152.199.21.57
Click to see the 39 hidden entries
abs.twimg.com
0.0.0.0
stats.g.doubleclick.net
0.0.0.0
use.fontawesome.com
0.0.0.0
platform.linkedin.com
0.0.0.0
www.youtube.com
0.0.0.0
www.facebook.com
0.0.0.0
pbs.twimg.com
0.0.0.0
www.linkedin.com
0.0.0.0
facebook.com
31.13.92.36
connect.facebook.net
0.0.0.0
static-exp1.licdn.com
0.0.0.0
static.doubleclick.net
0.0.0.0
static.xx.fbcdn.net
0.0.0.0
analytics.twitter.com
0.0.0.0
www.instagram.com
0.0.0.0
googleads.g.doubleclick.net
0.0.0.0
sb.scorecardresearch.com
0.0.0.0
staticxx.facebook.com
0.0.0.0
fbcdn.net
31.13.92.36
scontent-frt3-1.cdninstagram.com
31.13.92.51
twitter.com
104.244.42.1
pagead46.l.doubleclick.net
172.217.23.194
yt3.ggpht.com
216.58.201.97
cs945.wpc.epsiloncdn.net
152.195.133.1
s.twitter.com
104.244.42.131
stats.l.doubleclick.net
64.233.167.155
cs45.wac.edgecastcdn.net
93.184.220.70
i.ytimg.com
172.217.23.246
fontawesome-cdn.fonticons.netdna-cdn.com
23.111.9.35
star-mini.c10r.facebook.com
31.13.92.36
scontent-frt3-1.xx.fbcdn.net
31.13.92.14
syndication.twitter.com
104.244.42.136
linkedin.com
108.174.10.10
fbsbx.com
31.13.92.36
scontent.xx.fbcdn.net
31.13.92.14
t.co
104.244.42.197
frsenvironmental.com
192.124.249.108
pop-efr5.www.linkedin.com
185.63.145.1
www.google.co.uk
172.217.23.227

URLs

Name Detection
http://www.frsenvironmental.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.4.1
http://player.vimeo.com/video/nivo-lightbox-title-wrap
http://www.frsenvironmental.com/wp-content/plugins/contact-form-7/includes/js/scripts.js?ver=5.1.3
Click to see the 97 hidden entries
http://www.frsenvironmental.com/t1
https://www.instagram.com/frsenvironmental_inc/?hl=de
https://twitter.com/FRSEnvironment1s
https://www.instagram.com/frsenvironmental_inc/?hl=da
https://use.fontawesome.com/18a9c36ed1.css
https://fontawesome.com/license/free
http://www.target.com/
http://www.frsenvironmental.com/.z
http://auto.search.msn.com/response.asp?MT=
http://www.twitter.com/
http://www.frsenvironmental.com/services/NK
http://www.frsenvironmental.com/wp-includes/js/wp-emoji-release.min.js?ver=5.2.4r
http://busca.orange.es/
http://jacklmoore.com/notes/click-events/
http://www.frsenvironmental.com/wp-content/uploads/2019/05/logo_gov_epa.gifi
http://www.frsenvironmental.com/wp-content/uploads/2019/05/lab.jpg
http://www.frsenvironmental.com/wp-content/plugins/contact-widgets/assets/css/style.min.css?ver=1.0.1
https://www.instagram.com/frsenvironmental_inc/?hl=cs
https://vimeo.com/channels/:channel/:id
http://www.frsenvironmental.com/qq
http://www.soso.com/
http://www.frsenvironmental.com/wp-content/uploads/2019/05/logo_gov_epa.gif
http://www.servicios.clarin.com/
https://www.instagram.com/frsenvironmental_inc/?hl=el
http://www.linternaute.com/favicon.ico
http://www.cnet.com/favicon.ico
http://www.frsenvironmental.com//(
http://ie.search.yahoo.com/os?command=
http://www.etmall.com.tw/
http://www.taobao.com/favicon.ico
http://www.frsenvironmental.com/wp-content/plugins/so-widgets-bundle/js/lib/imagesloaded.pkgd.min.js?ver=3.2.0
http://list.taobao.com/
http://www.frsenvironmental.com//$
http://www.kkbox.com.tw/
http://search.daum.net/favicon.ico
http://search.yahoo.co.jp/favicon.ico
http://www.ceneo.pl/favicon.ico
http://it.search.yahoo.com/
https://www.linkedin.com/favicon.ico
http://www.tiscali.it/favicon.ico
http://www.cdiscount.com/
http://www.news.com.au/favicon.ico
http://www.frsenvironmental.com/wp-content/uploads/2019/07/bbb-logo-1-e1562139037354.png
http://service2.bfast.com/
http://www.w3.o
https://twitter.com/FRSEnvironment1&sCh0
https://twitter.com/FRSEnvironment1y
https://pbs.twimg.com/profile_images/1146290589018836992/2kdsPXle_normal.jpg
http://www.jiyu-kobo.co.jp/&
http://msk.afisha.ru/
https://www.instagram.com/frsenvironmental_inc/?hl=hu
https://static.xx.fbcdn.net/rsrc.php/yo/r/iRmz9lCMBD2.ico
http://www.frsenvironmental.com/wp-content/uploads/2019/05/contact-us.jpeg
https://www.instagram.com/frsenvironmental_inc/?hl=hr
http://www.frsenvironmental.com/jHome
http://www.jiyu-kobo.co.jp//
https://www.instagram.com/frsenvironmental_inc/?hl=hi
http://www.jiyu-kobo.co.jp/4
http://in.search.yahoo.com/
http://www.frsenvironmental.com/wp-content/uploads/2019/06/logo.pngL
https://static.xx.fbcdn.net/rsrc.php/v3/yF/r/KcmF4-NGKJc.pnges/
https://www.instagram.com/frsenvironmental_inc/?hl=zh-cn
http://www.frsenvironmental.com/wp-content/uploads/2019/06/logo.pngO
https://fontawesome.comhttps://fontawesome.comFont
http://use.fontawesome.com/releases/v4.7.0/css/font-awesome-css.min.css
https://www.instagram.com/frsenvironmental_inc/?hl=gu
http://www.sandoll.co.kr0
http://www.frsenvironmental.com/wp-content/uploads/2019/05/logo_gov_caseal.gif/
http://www.dailymail.co.uk/
http://www.merlin.com.pl/favicon.ico
https://static.xx.fbcdn.net/rsrc.php/yo/r/iRmz9lCMBD2.icoNr
http://search.chol.com/favicon.ico
https://www.instagram.com/frsenvironmental_inc/?hl=ja
https://twitter.com/FRSEnvironment1Nq
http://www.rambler.ru/favicon.ico
http://crl.pki.goog/gsr2/gsr2.crl0?
http://www.pchome.com.tw/favicon.ico
https://www.googletraveladservices.com/travel/flights/clk
http://www.jiyu-kobo.co.jp/g
http://www.frsenvironmental.com/wp-content/uploads/2019/06/frs-environmental-waste-managment-soultio
http://www.jiyu-kobo.co.jp/l
http://search.auction.co.kr/
http://www.google.it/
http://gmpg.org/xfn/11
http://www.ask.com/
http://www.frsenvironmental.com/wp-content/uploads/2019/05/logo_gov_caseal.gif9
http://buscar.ozu.es/
http://www.jiyu-kobo.co.jp/H
http://www.frsenvironmental.com/wp-content/plugins/so-widgets-bundle/widgets/features/css/fonts/feature-background.eot
https://www.instagram.com/frsenvironmental_inc/JJEi
https://www.instagram.com/frsenvironmental_inc/?hl=it
http://cgi.search.biglobe.ne.jp/favicon.ico
http://it.search.dada.net/favicon.ico
http://www.etmall.com.tw/favicon.ico
http://www.ya.com/favicon.ico
https://www.instagram.com/frsenvironmental_inc/?hl=id
http://busca.igbusca.com.br//app/static/images/favicon.ico

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\65958711_341055936824588_2993123937912619008_n[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 480x251, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\font-awesome-css.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\feature-background[1].eot
Embedded OpenType (EOT), icomoon family
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\fa-solid-900[1].eot
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\dwbhts1flzdnzba22yn8887io[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\css[2].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\css[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\bootstrap.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\bootstrap.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\bbb-logo-1-e1562139037354[1].png
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\analytics[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\KL7NQAOW.htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\HhyJU5sn9vOmLxNkIwRSjTVNWLEJN7Ml2xMC[1].woff
Web Open Font Format, TrueType, length 25648, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\font-awesome.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\65576058_341055143491334_2706257978381565952_n[1].png
PNG image data, 280 x 251, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\42m2c5vx2g5awnffhq3aq8sh1[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\1hbr6t0oqhf2avswaaruivxtl[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\18a9c36ed1[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\zgpj_JA1F5s[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\x__K-MTCwfk[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\vacuum-waste-1[1].jpg
[TIFF image data, big-endian, direntries=21, height=4016, bps=0, PhotometricIntepretation=RGB, manufacturer=NIKON CORPORATION, model=NIKON D610, orientation=upper-left, width=6016], baseline, precision 8, 1001x668, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\style[2].css
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\style[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\spinner-rosetta-gray-32x32[1].gif
GIF image data, version 89a, 32 x 32
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\spinner-rosetta-gray-14x14[1].gif
GIF image data, version 89a, 14 x 14
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\remote[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KRHE4CQY\abvdYGyPFKB[1].png
PNG image data, 64 x 1991, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KRHE4CQY\FRSEnvironment1[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KRHE4CQY\735145cfe0a4[1].png
PNG image data, 103 x 29, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KRHE4CQY\65576058_341055143491334_2706257978381565952_n[1].png
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KRHE4CQY\2kdsPXle_normal[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 48x48, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KRHE4CQY\21d07bd9144f[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KRHE4CQY\1500x500[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1500x500, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\wow[1].js
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\style.min[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\sow-button-flat-7f33af0092a5[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\slider[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\scripts[1].js
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\spinner-rosetta-blue-26x26[1].gif
GIF image data, version 89a, 26 x 26
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\logo_gov_uscg[1].gif
GIF image data, version 89a, 83 x 82
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\logo_gov_epa[1].gif
GIF image data, version 89a, 83 x 82
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\lab[1].jpg
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\json[1].json
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\jquery.nav[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\jquery.colorbox[1].js
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\jquery.bxslider[1].js
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\init.en.07b80b8d5c328ef2e22f[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\hazardous-waste-1[1].jpg
[TIFF image data, little-endian, direntries=18], baseline, precision 8, 2831x1643, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\fontawesome-webfont[2].eot
Embedded OpenType (EOT), FontAwesome family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\I9HE86MU\fontawesome-webfont[1].eot
Embedded OpenType (EOT), FontAwesome family
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{FF14B47C-02CE-11EA-AAE0-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\typalil\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{FF14B47E-02CE-11EA-AAE0-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{0931B424-02CF-11EA-AAE0-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\0.commons.en.06a750caea28350212ee[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\FAUIN0SN\twitter[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\EIS25TGM\www.linkedin[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\BIVALPPV\www.instagram[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\0QZMDP18\www.youtube[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\0QZMDP18\www.frsenvironmental[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeFnt16.lst.1184
PostScript document text
#
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages-journal
data
#
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages
SQLite 3.x database, last written using SQLite version 3024000
#
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-191109085650Z-208.bmp
PC bitmap, Windows 3.x format, 114 x -152 x 32
#
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Visited Links
data
#
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\drummed-waste[1].jpg
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\sow-image-default-ad2c8d41f7a1[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\sow-button-wire-f3d719aa71e4[1].css
ASCII text, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\solvents[1].jpg
[TIFF image data, little-endian, direntries=17, height=3000, bps=218, PhotometricIntepretation=RGB, description=Glad smiling positive woman customer looking for paint solvent in bottle in household store, orientation=upper-left, width=4562]
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\slider[1].eot
Embedded OpenType (EOT), icomoon family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\sdk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\pressure-washing[1].jpg
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\mem8YaGs126MiZpBA-UFVZ0d[1].woff
Web Open Font Format, TrueType, length 18100, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\logo[1].png
PNG image data, 1029 x 924, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\js[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\jquery.stellar[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\favicon[1].ico
MS Windows icon resource - 4 icons, 64x64, 32 bits/pixel, 32x32, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\fa-regular-400[1].eot
Embedded OpenType (EOT), Font Awesome 5 Free Regular family
#
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Cache\data_1
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\css[7].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\css[4].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\contact-us[1].jpg
[TIFF image data, little-endian, direntries=12, description=Closeup of male hand dialing a phone number making a business or personal phone call., manufacturer=NIKON CORPORATION, model=NIKON D600, orientation=upper-left, xresolution=274, yresolution=2 (…)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\base[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\SmoothScroll[1].js
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\Parts-Washer-1[1].jpg
[TIFF image data, little-endian, direntries=18, height=3456, bps=230, PhotometricIntepretation=RGB, manufacturer=Canon, model=Canon EOS 7D, orientation=upper-left, width=5184], baseline, precision 8, 931x621, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\KFOjCnqEu92Fr1Mu51S7ACc6CsI[1].woff
Web Open Font Format, TrueType, length 21564, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\H1LNF2PQ.htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\68d99ba29cc8[1].png
PNG image data, 192 x 192, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\3.pages_profile.en.ea0de5847c47838f390c[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G7QTC28F\20190514_160044[1].jpg
[TIFF image data, big-endian, direntries=15]
#