flash

https://icfpasswordweb.z20.web.core.windows.net

Status: finished
Submission Time: 15.01.2020 00:28:40
Clean

Comments

Tags

Details

  • Analysis ID:
    201045
  • API (Web) ID:
    299880
  • Analysis Started:
    15.01.2020 00:28:40
  • Analysis Finished:
    15.01.2020 00:33:55
  • Technologies:
Full Report Engine Info Verdict Score Reports

System: Windows 10 64 bit (version 1803) with Office 2016, Adobe Reader DC 19, Chrome 70, Firefox 63, Java 8.171, Flash 30.0.0.113

clean
1/100

IPs

IP Country Detection
52.160.192.200
United States
20.150.50.1
United States

Domains

Name IP Detection
www.icf.com
52.160.192.200
web.bnz14prdstr08a.store.core.windows.net
20.150.50.1
passwordreset.microsoftonline.com
0.0.0.0
Click to see the 8 hidden entries
account.activedirectory.windowsazure.com
0.0.0.0
scu.client.hip.live.com
0.0.0.0
icfpasswordweb.z20.web.core.windows.net
0.0.0.0
login.microsoftonline.com
0.0.0.0
aadcdn.msauth.net
0.0.0.0
www.msftconnecttest.com
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
client.hip.live.com
0.0.0.0

URLs

Name Detection
https://icfpasswordweb.z20.web.core.windows.net/2ICF
https://aadcdn.msauth.net/ests/2.1/content/cdnbundles/converged.v2.login.min_50vzauwvxyzipxbkbzkzpg2
https://login.microsoftonline.com/
Click to see the 35 hidden entries
http://www.nytimes.com/
https://icfpasswordweb.z20.web.core.windows.net/
https://aadcdn.msauth.net/ests/2.1/content/images/favicon_a_eupayfgghqiai7k9sol6lg2.ico
https://client.hip.live.com/GetHIP/GetWLSPHIP0/WLSPHIP0?fid=69e50e7d259b426d9b220358595214e2&id=2825
https://aadcdn.msauth.net/ests/2.1/content/images/favicon_a_eupayfgghqiai7k9sol6lg2.ico~(
https://icfpasswordweb.z20.web.core.windows.net/microsoftonline.com/net/Root
https://passwordreset.microsoftonline.com/net/
http://www.amazon.com/
http://knockoutjs.com/
https://icfpasswordweb.z20.web.core.windows.net/tonline.com/common/oauth2/authorize?client_id=000000
https://github.com/douglascrockford/JSON-js
https://icfpasswordweb.z20.web.core.windows.net/passwordweb.z20.web.core.windows.net/
https://www.icf.com/includes/icf/img/logo/icf_logo.png
http://www.twitter.com/
https://icfpasswordweb.z20.web.core.windows.net/Root
http://www.opensource.org/licenses/mit-license.php)
https://icfpasswordweb.z20.web.core.windows.net/.z20.web.core.windows.net/Root
https://aadcdn.msauth.net/ests/2.1/content/cdnbundles/ux.old.converged.login.pcore.min_ukrtzuzpxauzg
https://aadcdn.msauth.net/ests/2.1/content/images/favicon_a_eupayfgghqiai7k9sol6lg2.ico~
https://passwordreset.microsoftonline.com/favicon.ico?v=1342177280
https://login.microsof
http://www.youtube.com/
https://passwordreset.microsoftonline.com/
http://getbootstrap.com)
https://login.microsoftonline.com/jsdisabled
https://github.com/twbs/bootstrap/blob/master/LICENSE)
http://www.wikipedia.com/
https://aadcdn.msauth.net/ests/2.1/content/cdnbundles/ux.converged.login.strings-en.min_3afga6pstjh7
http://www.live.com/
https://account.activedirectory.windowsazure.com/ChangePassword.aspx?BrandContextID=O365
https://login.microsoftonline.com/common/oauth2/authorize?client_id=0000000c-0000-0000-c000-00000000
http://www.reddit.com/
https://account.live.com/resetpassword.aspx
https://aadcdn.msauth.net
https://icfpasswordweb.z20.web.core.windows.net/tonline.com/common/oauth2/authorB0yfolc80LMDwgZ52-74

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{2DEE86A9-3771-11EA-AADB-C25F135D3C65}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{2DEE86AB-3771-11EA-AADB-C25F135D3C65}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{2DEE86AC-3771-11EA-AADB-C25F135D3C65}.dat
Microsoft Word Document
#
Click to see the 45 hidden entries
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\6aw4uvh\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\0HT04Y9D.htm
HTML document, UTF-8 Unicode (with BOM) text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\Style[1].css
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\Webtrends[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\authorize[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\bootstrap.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\ltrStyle[1].css
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\ux.old.converged.login.pcore.min_ukrtzuzpxauzg_x1azrcdq2[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\0-small_138bcee624fa04ef9b75e86211a9fe0d[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 50x28, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\0_a5dbd4393ff6a725c7e62b61df7e72f0[1].jpg
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\Captcha[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\ScriptResource[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\ScriptResource[2].js
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\favicon[1].ico
MS Windows icon resource - 4 icons, 64x64, 32 bits/pixel, 32x32, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\header_Microsoft[1].png
PNG image data, 89 x 18, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\icf_logo[1].png
PNG image data, 200 x 129, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\info_4883eb1a3cbdddf5a79e28d320cfe5a9[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\jquery.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\Button[1].js
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\WebResource[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\bootstrap.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\converged.v2.login.min_50vzauwvxyzipxbkbzkzpg2[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\favicon_a_eupayfgghqiai7k9sol6lg2[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\footer_logo_grey_bg[1].png
PNG image data, 63 x 13, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\hig_progcircle_animated[1].gif
GIF image data, version 89a, 20 x 20
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\jquery-3.3.1.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\unlock[1].png
PNG image data, 200 x 200, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\ux.converged.login.strings-en.min_3afga6pstjh7f2bka__ixa2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VTIIBVU5\Common[1].js
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VTIIBVU5\LZ1I86R7.htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VTIIBVU5\WLSPHIP0[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VTIIBVU5\change[1].png
PNG image data, 200 x 200, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VTIIBVU5\header_microsoft[1].png
PNG image data, 89 x 18, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Temp\~DF6D04712F72ED12BC.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DFBEDF10E23A02B8F2.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DFD27D51A5B022BAC9.TMP
data
#