top title background image
flash

http://acenaction.com/Gb71

Status: finished
Submission Time: 2020-02-26 19:32:14 +01:00
Suspicious
Phishing

Comments

Tags

Details

  • Analysis ID:
    211256
  • API (Web) ID:
    319696
  • Analysis Started:
    2020-02-26 19:32:14 +01:00
  • Analysis Finished:
    2020-02-26 19:39:29 +01:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
suspicious
Score: 22
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
184.168.131.241
United States
151.101.1.192
United States
192.229.221.185
United States
Click to see the 2 hidden entries
162.241.201.89
United States
52.114.75.78
United States

Domains

Name IP Detection
assets.onestore.ms
0.0.0.0
lptag.liveperson.net
0.0.0.0
publisher.liveperson.net
0.0.0.0
Click to see the 17 hidden entries
statics-eus.onestore.ms
0.0.0.0
products.office.com
0.0.0.0
code.jquery.com
0.0.0.0
statics-wcus.onestore.ms
0.0.0.0
statics-neu.onestore.ms
0.0.0.0
mem.gfx.ms
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
skypedataprdcolweu04.cloudapp.net
52.114.75.78
statics-eas.onestore.ms
0.0.0.0
www.office.com
0.0.0.0
logincdn.msauth.net
0.0.0.0
blobs.officehome.msocdn.com
0.0.0.0
acenaction.com
184.168.131.241
liveperson.map.fastly.net
151.101.1.192
cs1227.wpc.alphacdn.net
192.229.221.185
microsoftwindows.112.2o7.net
15.188.105.205
quickresponsecryo.com
162.241.201.89

URLs

Name Detection
https://www.office.com/m/de-ch/#main
https://products.office.com/officeproducts/onerf/signin?EEL=True
https://blobs.officehome.msocdn.com/images/content/images/linkedin-fdeba31cd0.svg
Click to see the 97 hidden entries
http://fontello.comiconsRegulariconsiconsVersion
https://lpcdn.lpsnmedia.net/le_unified_window/9.12.0.19-release_4769/resources/loader_on_warmGray5_7
https://www.office.com/?auth=1
https://products.office.com/de-ch/business/teamwork
https://www.onenote.com/
https://support.office.com/article/switch-from-office-365-university-e973988e-bb38-4dcc-baf2-a63b377
https://products.office.com/de-ch/compare-all-microsoft-office-products?tab=1&rtc=1&market=chaprimar
https://quickresponsecryo.com/vn0/#main
https://www.office.com/?auth=2
https://products.office.com/business/enterprise-productivity-tools
https://blobs.officehome.msocdn.com/images/content/images/whatisoffice365-devices-fb981217ec.png
https://www.office.com/login?es=Click&ru=%2F&msafed=0
https://products.office.com/fr-ch/microsoft-teams/free?icid=SSM_AS_Promo_Apps_MicrosoftTeams
https://quickresponsecryo.com/vn0/
http://www.nielsen-online.com/corp.jsp?section=leg_prs&nav=1#Optoutchoices
https://products.office.com/de-ch/compare-all-microsoft-office-products?tab=2&OCID=AID679471_OO_
https://products.office.com/de-ch/business/teamwork/business-voice
https://ec.europa.eu/info/law/law-topic/data-protection/data-transfers-outside-eu/adequacy-protectio
https://products.office.com/de-ch/skype-for-business/online-meetings
https://blobs.officehome.msocdn.com/images/content/images/hero-image-mobile-8037a1a3b4.jpg
https://statics-eas.onestore.ms
https://www.skype.com/en/
https://products.office.com/de-ch/nonprofit/office-365-nonprofit
https://www.optimizely.com/legal/opt-out/
https://www.office.com
https://products.office.com/try
https://products.office.com/sharepoint/collaboration
https://products.office.com/download-office-2007
https://products.office.com/de-ch/compare-all-microsoft-offioffice.com/de-ch/compare-all-microsoft-o
https://support.office.com/fr-ch
https://products.office.com/de-ch/compare-all-microsoft-office-products
https://login.skype.com/login
https://signin.kissmetrics.com/privacy/#controls
https://products.office.com/de-ch/microsoft-teams/staff-scheduling-software
https://products.office.com/mobile/office-android-tablet
https://products.office.com/business/office-365-customer-stories-office-testimonials
http://www.youradchoices.ca
https://www.xbox.com/Legal/ThirdPartyDataSharing
https://products.office.com/de-ch/microsoft-teams/free?icid=SSM_AS_Promo_Apps_MicrosoftTeams
https://www.office.com/FOffice
https://products.office.com/de-ch/compare-all-microsoft-office-products?&rtc=1&acoft
http://github.com/aFarkas/lazysizes
https://github.com/js-cookie/js-cookie
https://products.office.com/de-ch/business/enterprise-firstline-workers
https://www.microsoft.
https://aka.ms/XboxSeriesX/de-ch/EMWA
https://support.office.com/fr-ch/article/download-and-install-or-reinstall-office-365-or-office-2016
https://products.office.com/fr-ch/business/small-business-solutions
https://products.office.com/office-365-home
https://products.office.com/de-CH/microsoft-office-for-home-and-school-faq
https://products.office.com/office-2010
https://watchbeam.zendesk.com/hc/en-us/articles/115000922623-Rules-of-User-Conduct
http://www.xbox.com/
https://templates.office.com/
https://support.office.com/de-CH/article/set-up-your-business-in-the-microsoft-cloud-6ab4bbcd-79cf-4
https://blobs.officehome.msocdn.com/bundles/unauth-ae392b2ca9.css
https://products.office.com/fr-ch/onenote/digital-note-taking-app
https://products.office.com/de-ch/student/office-in-education
https://products.office.com/de-ch/business/office-365-business
https://products.office.com/microsoft-office-for-home-and-school-faq
https://products.office.com/de-ch/compare-all-microsoft-office-products?&rtc=1&market=ch&activetab=t
http://www.asp.net/ajaxlibrary/CDN.ashx.
https://products.office.com/mobile/office-iphone
https://onedrive.live.com/about/fr-ch/
https://assets.onestore.ms
https://products.office.com/de-ch/academic/compare-office-365-education-plans
https://products.office.com/outlook/email-and-calendar-software-microsoft-outlook
https://products.office.com/de-ch/free-office-online-for-the-web
https://products.office.com/de-ch/free-office-online-for-the-web?rtc=1&activetab=pivot%3aoverviewtab
https://products.office.com/fr-ch/business/new-business-software-suites
https://support.office.com/fr-ch/article/OneDrive-Help-5943c2b9-fafc-4cb4-95c0-9cc73fcabb30
https://outlook.live.com/owa/
https://products.office.com/powerpoint
https://office.live.com/start/MyAccount.aspx
https://schema.org/Article
https://products.office.com/de-ch/outlook/email-and-calendar-software-microsoft-outlook
https://products.office.com/products
https://products.office.com/de-ch/exchange/exchange-online
http://schema.org/Offer
https://products.office.com/fr-ch/academic/compare-office-365-education-plans
https://products.office.com/de-ch/business/security-and-compliance
http://www.reddit.com/
https://products.office.com/de-ch/compare-all-microsoft-office-products?market=ch&icid=MSCOM_QL_
https://mem.gfx.ms/meversion?partner=OfficeProducts&market=fr-ch&uhf=1
https://products.office.com/de-ch/business/office-365-mobile-apps-for-business
https://products.office.com/download-back-up-restore-microsoft-office-products
https://products.office.com/office-system-requirements
https://products.office.com/de-ch/home-and-student
https://products.office.com/fr-ch/products
https://products.office.com/de-ch/microsoft-teams/free
https://products.office.com/de-ch/compare-all-microsoft-office-products?tab=1
https://products.office.com/de-ch/compare-all-microsoft-office-products?tab=2
https://products.office.com/business/onerf/signin?EEL=True
https://quickresponsecryo.com/vn0/f
https://products.office.com/de-ch/business/small-business-solutions?rtc=1&market=chvL
https://blobs.officehome.msocdn.com/images/content/images/whatisoffice365-desktop-f9430c19c4.svg
https://products.office.com/de-ch/business/productivity-and-intelligence

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\latest[1].ttf
TrueType Font data, 14 tables, 1st "OS/2", 10 names, Microsoft, language 0x409, \251 2015 Microsoft Corporation. All Rights Reserved.Segoe UI SemiboldRegularVersion 5.32SegoeUI
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\tag[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\table[1].css
UTF-8 Unicode text, with very long lines
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\style[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\social[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\sharedfontstyles-30d1fc43fd[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\script[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\react-dom.min[1].js
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\print-icon[1].png
PNG image data, 16 x 16, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\me[1].htm
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\meCore.min[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\meBoot.min[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\linkedin[1].png
PNG image data, 32 x 32, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\unauth-ae392b2ca9[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\latest[1].eot
Embedded OpenType (EOT), Segoe UI Light family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\info_48[1]
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\favicon-8f211ea639[1].ico
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\f5-7e27a5[2].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\f5-7e27a5[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\errorPageStrings[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\e5fedc[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\e3-082b89[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\compare-more-office-365-for-business-plans[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\compare-all-microsoft-office-products[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\commercial[1].htm
exported SGML document, UTF-8 Unicode text, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE2F9CO[1].png
PNG image data, 44 x 40, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3FfCg[1].png
PNG image data, 67 x 40, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3FaoT[1].png
PNG image data, 43 x 40, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3EpFE[1].png
PNG image data, 54 x 40, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3ECGB[1].png
PNG image data, 54 x 40, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3CwyK[1].gif
GIF image data, version 89a, 740 x 417
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3Cmbi[1].gif
GIF image data, version 89a, 740 x 417
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3CgYw[1].gif
GIF image data, version 89a, 740 x 417
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE3CgYv[1].gif
GIF image data, version 89a, 740 x 417
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE32er2[1].png
PNG image data, 18 x 15, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE30tG1[1].png
PNG image data, 35 x 30, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE2FmsN[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE2FeSl[1].png
PNG image data, 44 x 40, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\cfq7ttc0k5bf[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE2F4rW[1].png
PNG image data, 62 x 40, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\RE1Eyde[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\Blog-high-contrast[1].png
PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\80ff9a[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\40-f33fbc[1].js
UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\25-62ce5c[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\1e-fd610f[3].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\1e-fd610f[2].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\O0N4T4W6\1e-fd610f[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\youtube[1].png
PNG image data, 32 x 32, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\vn0[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE2oiB3[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE2i57l[1].png
PNG image data, 75 x 75, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE2EWH4[1].png
PNG image data, 16 x 10, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\MeControl_US1oxnIoNcCp1NX7xVSBjw2[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Instagram[1].png
PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Facebook[1].png
PNG image data, 11 x 20, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\ErrorPageTemplate[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\33e52d[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\203ea2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\v8bxa9r\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE2vdR3[1].png
PNG image data, 24 x 15, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-314712940\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{97387CBD-58C6-11EA-AAE3-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{901ECAA2-58C6-11EA-AAE3-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{901ECAA0-58C6-11EA-AAE3-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\BHYH095B\www.office[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3mZTF[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\cartcount[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\c165a0[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\bullet[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\add273[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\a2-53eae8[3].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\a2-53eae8[2].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\a2-53eae8[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RWtUUZ[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE4pndL[1].png
PNG image data, 40 x 40, 8-bit gray+alpha, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE4pkv7[1].png
PNG image data, 40 x 40, 8-bit gray+alpha, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE4mycf[1].png
PNG image data, 80 x 35, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE4mHqh[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\233F11ZL\publisher.liveperson[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3LArX[1].png
PNG image data, 38 x 40, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3FkQk[1].png
PNG image data, 40 x 40, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3Fapv[1].jpg
JPEG image data, baseline, precision 8, 480x450, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3F7S0[1].png
PNG image data, 480 x 450, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3ExtO[1].png
PNG image data, 54 x 40, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3EPtH[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3CrjI[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3Cm99[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3CjwT[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE3CgWR[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\RE32eqY[1].png
PNG image data, 35 x 30, 8-bit/color RGBA, non-interlaced
#