top title background image
flash

https://thelawdictionary.org

Status: finished
Submission Time: 2020-02-26 19:55:49 +01:00
Suspicious
Evader

Comments

Tags

Details

  • Analysis ID:
    211264
  • API (Web) ID:
    319712
  • Analysis Started:
    2020-02-26 19:55:49 +01:00
  • Analysis Finished:
    2020-02-26 20:04:13 +01:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
suspicious
Score: 22
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
64.158.223.143
United States
18.196.104.43
United States
212.82.100.176
United Kingdom
Click to see the 97 hidden entries
66.102.1.155
United States
54.194.244.38
United States
34.208.176.97
United States
63.215.202.137
United States
3.125.70.222
United States
31.13.92.36
Ireland
89.187.169.86
Czech Republic
63.33.88.39
United States
50.17.112.123
United States
108.177.15.157
United States
136.243.14.175
Germany
52.29.136.183
United States
51.178.20.139
France
18.196.54.165
United States
104.244.36.20
United States
34.102.176.152
United States
35.157.249.39
United States
67.202.110.24
United States
151.101.2.217
United States
34.95.120.147
United States
66.155.71.150
Canada
74.214.194.140
United States
18.195.155.181
United States
3.126.56.137
United States
104.17.79.34
United States
159.253.128.183
Netherlands
69.166.1.10
United States
31.13.92.2
Ireland
35.190.72.21
United States
4.78.226.234
United States
216.58.207.162
United States
35.242.251.130
United States
172.217.23.2
United States
52.1.8.143
United States
18.195.104.209
United States
13.225.73.117
United States
13.224.194.4
United States
18.196.234.219
United States
185.33.223.83
Netherlands
104.17.64.4
United States
54.77.245.4
United States
52.210.162.150
United States
213.155.156.184
European Union
3.124.133.106
United States
38.140.99.21
United States
172.217.23.34
United States
185.183.112.148
Netherlands
35.227.248.159
United States
52.2.188.208
United States
185.230.60.179
Israel
52.28.33.202
United States
3.218.101.84
United States
52.17.97.192
United States
87.98.228.78
France
213.19.147.150
United Kingdom
34.203.160.3
United States
13.225.86.250
United States
192.132.33.46
United States
64.74.236.63
United States
152.199.21.89
United States
172.217.23.66
United States
35.169.29.42
United States
35.201.97.85
United States
185.64.190.81
United Kingdom
185.64.190.80
United Kingdom
185.33.223.221
Netherlands
54.239.17.112
United States
89.207.16.137
Sweden
52.200.2.47
United States
91.228.74.169
United Kingdom
52.94.216.48
United States
63.35.240.22
United States
185.64.189.112
United Kingdom
66.155.71.25
Canada
2.16.33.191
European Union
213.19.147.210
United Kingdom
54.36.123.231
France
34.240.94.69
United States
52.4.209.106
United States
54.246.129.36
United States
52.57.21.24
United States
178.162.133.150
Netherlands
35.157.71.237
United States
185.64.189.115
United Kingdom
54.93.112.114
United States
87.98.128.108
France
151.101.2.2
United States
185.64.189.110
United Kingdom
13.225.73.109
United States
185.29.133.199
United Kingdom
31.13.92.14
Ireland
52.49.126.143
United States
192.229.233.25
United States
18.185.145.245
United States
172.217.22.226
United States
13.69.68.15
United States
72.5.64.63
United States

Domains

Name IP Detection
browser.sentry-cdn.com
151.101.2.217
elb-aws-fr-clickdistrict-1651093077.eu-central-1.elb.amazonaws.com
18.185.145.245
ams-1-apex.go.sonobi.com
178.162.133.150
Click to see the 97 hidden entries
nyidt.adsafeprotected.com
104.244.36.20
eu-u.openx.net
34.95.120.147
global.proper.io
104.17.79.34
s-usc1c-nss-222.firebaseio.com
35.201.97.85
sumo.com
52.34.133.113
tr.blismedia.com
34.96.105.8
j.mrpdata.net
54.93.112.114
matcheuorigin-1224832326.eu-west-1.elb.amazonaws.com
34.240.94.69
pug-lhr.pubmatic.com
185.64.190.80
d2fashanjl7d9f.cloudfront.net
13.225.73.109
thelawdictionary.org
52.4.209.106
f2.taboola.map.fastly.net
151.101.2.2
aorta.clickagy.com
35.169.29.42
prod.ups-ats.eu-central-1.aolp-ds-prd.aws.oath.cloud
3.126.56.137
ib.anycast.adnxs.com
185.33.223.83
match.adsby.bidtheatre.com
174.138.12.104
um3.eqads.com
52.1.8.143
cs926.wpc.thetacdn.net
152.199.21.89
dxedge-prod-lb-404808087.eu-central-1.elb.amazonaws.com
18.196.54.165
gcp.media-router.wixstatic.com
34.102.176.152
aax-eu.amazon-adsystem.com
52.94.216.48
s.amazon-adsystem.com
54.239.17.112
match.deepintent.com
3.218.101.84
vap.lijit.com
72.251.249.13
propermedia-d.openx.net
34.95.120.147
elb-aws-fr-dorpat-283474803.eu-central-1.elb.amazonaws.com
18.195.104.209
bidder-prod.mgycqhrtpm.eu-central-1.elasticbeanstalk.com
52.29.136.183
stats.l.doubleclick.net
66.102.1.155
nydc1.outbrain.org
64.202.112.31
us-u.openx.net
34.95.120.147
pugm22000nf.pubmatic.com
185.64.189.115
star-mini.c10r.facebook.com
31.13.92.36
e.serverbid.com
165.227.252.242
eu-level1.dyntrk.com
51.178.20.139
rbp.mxptint.net
4.78.226.234
cookiesyncing-1395500543.us-east-1.elb.amazonaws.com
52.6.183.152
mantodea-production-1204681484.us-east-1.elb.amazonaws.com
54.88.118.137
sync.1rx.io
213.19.147.150
ds-pr-bh.ybp.gysm.yahoodns.net
212.82.100.176
chi.ssc.33across.com
67.202.110.24
cdnjs.cloudflare.com
104.17.64.4
sync.crwdcntrl.net
52.49.126.143
ids.ad.gt
34.212.41.2
pagead.l.doubleclick.net
216.58.207.162
httplogserver-lb.global.unified-prod.sharethis.net
3.124.133.106
bids-elb-195079410.us-west-2.elb.amazonaws.com
34.208.176.97
hbopenbid22000nf.pubmatic.com
185.64.189.112
id.rlcdn.com
35.190.72.21
d162h6x3rxav67.cloudfront.net
13.225.73.117
firewall-external-2134955858.eu-west-1.elb.amazonaws.com
54.194.244.38
pixel.onaudience.com
85.194.243.23
ams03-usadmm-ds.dotomi.com
89.207.16.137
sharedid-2070269664.us-east-1.elb.amazonaws.com
50.17.112.123
s2s.proper.io
104.17.78.34
chidc2.outbrain.org
64.74.236.63
match.prod.bidr.io
52.215.1.63
hb.emxdgt.com
18.196.104.43
csync.loopme.me
136.243.14.175
eu2-ice.360yield.com
52.28.33.202
bi-flogger-alb-ext-343643057.us-east-1.elb.amazonaws.com
34.203.160.3
d2ctznuk6ro1vp.cloudfront.net
13.224.194.4
ams01-usadmm-ds.dotomi.com
63.215.202.137
match-1943069928.eu-west-1.elb.amazonaws.com
52.51.104.248
balancers-500771366.us-east-1.elb.amazonaws.com
52.200.2.47
bttrack.com
192.132.33.46
rtb.openx.net
35.241.44.144
ams02-login2-ds.dotomi.com
64.158.223.143
pixel-a.sitescout.com
66.155.71.25
rp.gwallet.com
72.5.64.63
id5-sync.com
54.36.123.231
ecs-ads-alb-n5ykev6bey6z-1770302065.eu-central-1.elb.amazonaws.com
35.157.71.237
lockerdome.com
38.140.99.21
iad-2-sync.go.sonobi.com
69.166.1.10
sync.ipredictive.com
35.169.194.138
pagead46.l.doubleclick.net
172.217.23.66
sync.adotmob.com
185.183.112.148
pixel.tapad.com
35.227.248.159
d5p.de17a.com
213.155.156.184
tag.1rx.io
213.19.147.210
gcm.ctnsnet.com
35.186.193.173
scontent.xx.fbcdn.net
31.13.92.14
euirlzdiprd-external-915864222.eu-west-1.elb.amazonaws.com
34.247.198.55
trc.taboola.map.fastly.net
151.101.2.49
waws-prod-am2-281.cloudapp.net
13.69.68.15
dcs-edge-irl1-876252164.eu-west-1.elb.amazonaws.com
63.35.240.22
um.simpli.fi
159.253.128.183
rcp.c.appier.net
139.162.61.54
179.www.dc11.wix.com
185.230.60.179
spug-lhr.pubmatic.com
185.64.190.81
j2waycm-us-wdc.netmng.com
104.193.83.156
backend-sync.widespace.com
54.246.129.36
load.b-cdn.net
89.187.169.86
www.google.co.uk
172.217.23.35
sentry-nlb-e70282e8a06dcc98.elb.us-east-1.amazonaws.com
52.2.188.208
pool.4finance.iponweb.net
35.210.181.65
wix-engage-visitors-prod-30.firebaseio.com
35.201.97.85
d1ykf07e75w7ss.cloudfront.net
13.225.86.250

URLs

Name Detection
https://um.simpli.fi/ox_match
https://tools.ietf.org/html/rfc7230#section-3.2
https://thelawdictionary.org/eyewitness-provision/
Click to see the 97 hidden entries
https://thelawdictionary.org/letter/a/#webpage
https://github.com/blueimp/JavaScript-MD5
https://browser.sentry-cdn.com/4.6.2/bundle.min.js
https://ad.360yield.com/server_match?r=
https://euwest-match.deepintent.com/usersync/108/
https://thelawdictionary.org/article/best-way-to-write-a-professional-letter-to-a-judge/
https://thelawdictionary.org/comprehensive-coverage/
https://thelawdictionary.org/farm-credit-administration/
https://thelawdictionary.org/letter/a/page/2/
https://thelawdictionary.org/accumulated-surplus/
https://thelawdictionary.org/wp-content/plugins/wordpress-popular-posts/assets/css/wpp.css?ver=5.0.2
https://thelawdictionary.org/privacy-policy/
https://thelawdictionary.org/anti-theft-device/
https://thelawdictionary.org/letter/f/page/99/
http://rock.mit-license.org
https://ads.pubmatic.com/AdServer/js/showad.js
https://s0.2mdn.net/ads/studio/cached_libs/createjs_2015.11.26_54e1c3722102182bb133912ad4442e19_min.
https://thelawdictionary.org/common-jury/
https://match.justpremium.com/match/spx?rid=r-b611b0c7-a335-4572-adab-815764040e28-28391-161371474&j
https://cm.g.doubleclick.net/pixel?google_nid=pubmatic&google_cm&google_sc
https://thelawdictionary.org/article/how-to-find-out-who-owns-a-property/
https://thelawdictionary.org/article/difference-capital-first-degree-murder/
https://platform.twitter.com/widgets.js
http://malsup.com/jquery/cycle/
https://app.bigmailer.io/t/f/4b3ed64c-71a9-4f74-9ba6-58b80f92559f
https://thelawdictionary.org/letter/f/feed/
http://polymer.github.io/CONTRIBUTORS.txt
https://thelawdictionary.org/controlled-substances-act/
https://ads.pubmatic.com/AdServer/js/user_sync.html?p=156374&s=206686&predirect=
https://github.com/madrobby/zepto/blob/master/MIT-LICENSE
https://aorta.clickagy.com/pixel.gif?ch=177&redir=https%3A%2F%2Fe1.emxdgt.com%2Fput%3Fd%3Dd34%26uid%
https://thelawdictionary.org/wp-content/plugins/wordpress-plugin-random-post-slider/js/jquery.cycle.
https://simage2.pubmatic.com/AdServer/Pug?vcode=bz0yJnR5cGU9MSZjb2RlPTMyMDMmdGw9NDMyMDA=&piggybackCo
http://pajhome.org.uk/crypt/md5
https://thelawdictionary.org/collision-clause/
https://green.erne.co/pubmatic/cm?
https://sync-tm.everesttech.net/upi/pid/b9pj45k4?redir=https%3A//simage2.pubmatic.com/AdServer/Pug%3
https://thelawdictionary.org/criminal-law-emanuel-2/
https://thelawdictionary.org/bond-creditor-2/
https://thelawdictionary.org/alienist/
https://thelawdictionary.org/death-duties/
https://pixel-sync.sitescout.com/dmp/pixelSync?nid=4&gdpr=1
https://pre.ads.justpremium.com/v/1.0/t/sync
http://www.twitter.com/
https://thelawdictionary.org/wp-includes/css/dist/block-library/style.min.css?ver=a6d0b113ea34a2a989
https://thelawdictionary.org/financial-responsibility-laws/
https://static.parastorage.com/unpkg/whatwg-fetch
https://rp.gwallet.com/r1/cm/p41
https://thelawdictionary.org/electroencephalogram/
https://thelawdictionary.org/exclusive-power/
https://thelawdictionary.org/damages-temporary/
https://1268437.fls.doubleclick.net/activityi;src=1268437;type=ias01;cat=view01;u23=0;u24=23696010;u
http://ad.doubleclick.net/viewad/817-grey.gif
https://thelawdictionary.org/wp-content/uploads/2012/02/android.jpg
https://thelawdictionary.org/federal-reserve/
https://match.justpremium.com/match/ie?ex_uid=
https://thelawdictionary.org/letter/a/
https://thelawdictionary.org/bicameral/
http://www.opensource.org/licenses/mit-license.php
https://thelawdictionary.org/article/states-with-death-penalty/
https://thelawdictionary.org/binding-arbitration/
https://cm.g.doubleclick.net/pixel?google_nid=openx&google_cm&google_sc
http://polymer.github.io/AUTHORS.txt
https://cdn.bigmailer.io/lib.js
https://thelawdictionary.org/wp-content/themes/canvas5-1/includes/js/feedback.js?ver=5.0.7
https://u.openx.net/w/1.0/cm?gdpr=0&gdpr_consent=&id=fa4f7893-4738-4b38-9fc3-0dca639c806d&ph=26e53f8
https://um.simpli.fi/pm_match?https://dsum-sec.casalemedia.com/crum?cm_dsp_id=90&external_user_id=$U
https://thelawdictionary.org/letter/a/rA
https://thelawdictionary.org/article/how-do-i-get-a-copy-of-my-criminal-record/
https://www.monsterinsights.com/
https://thelawdictionary.org/letter/b/
https://id5-sync.com/s/125/m-dccd440d-7765-4279-b6d0-3ef07dc501cc-40498-294518156/9.gif?gdpr=0&gdpr_
http://www.woothemes.com/
https://thelawdictionary.org/letter/b/#webpage
https://thelawdictionary.org/disclosure/
https://thelawdictionary.org/accident-forgiveness/
https://thelawdictionary.org/legal-resources/
https://match.justpremium.com/match/ox?rid=r-dd6eea77-1235-4bd0-9403-693e77f54bd9-21991-114250870&jp
https://thelawdictionary.org/wp-content/plugins/advanced-random-posts-widget/assets/css/arpw-fronten
https://thelawdictionary.org/corporate-seal/
http://polymer.github.io/PATENTS.txt
https://thelawdictionary.org/wp-content/uploads/fbrfg/favicon-32x32.png?v=ngJ3KzGrjnae
http://sonspring.com/journal/clearing-floats
https://rtb.gumgum.com/getuid/d1ba4609?gdpr=0&gdpr_consent=&r=https%3A%2F%2Fsimage2.pubmatic.com%2FA
https://pixel.tapad.com/idsync/ex/receive?partner_id=PUBMATIC_RTB
https://thelawdictionary.org/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fthelawdictionary.org%2F
https://sync.1rx.io/usersync2/pubmatic&gdpr=0&gdpr_consent=
https://thelawdictionary.org/acta-publica/
https://pixel.advertising.com/ups/55981/sync?_origin=1&gdpr=1&uid=685c1616-e273-0f21-0a89-df760e98be
https://cookie.brealtime.com/getuid?https://simage2.pubmatic.com/AdServer/Pug?vcode=bz0yJnR5cGU9MSZj
https://thelawdictionary.org/article/how-to-look-up-my-court-date-online/
https://sync.mathtag.com/sync/img?mt_exid=3&redir=https%3A%2F%2Fimage4.pubmatic.com%2FAdServer%2FSPu
https://sync.extend.tv/r.gif?exchange=openx&id=
http://www.reddit.com/
https://thelawdictionary.org/letter/c/feed/
https://thelawdictionary.org/breaking-into/
https://media.sumo.com/0f3a8905dc38b006768f17372a2d911b588db048d3f620d2e7d1a4500875dfae

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\dt[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\index[1].htm
HTML document, ASCII text, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\images[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 393x128, frames 3
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\iframe[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\httpErrorPagesScripts[2]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\httpErrorPagesScripts[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\general[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\f[3].txt
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\f[2].txt
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\f[1].txt
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\f[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\errorPageStrings[2]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\errorPageStrings[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\info_48[1]
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\down[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\demconf[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\dc_oe=ChMIn5CE-_Lv5wIVCdB3Ch2X4wrAEAEYACCimIU6;met=1;&timestamp=1582743492206;eid1=871060;ecn1=1;etm1=0;eid2=2;ecn2=1;etm2=1;[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\dc_oe=ChMIkIyg6PLv5wIVS5V3Ch0SIgsrEAEYACCxqag7;met=1;&timestamp=1582743475185;eid1=2;ecn1=0;etm1=2;[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\dbapi[1].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\d25ff3db-aab5-a721-6879-0889666c876a[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\d04074658525060c338e02e6292a36bc[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\check[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\cbhfr[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\c8jvr[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\bullet[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\postmessageRelay[1].htm
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\sync[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\sd[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\s[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\rules-p-mEzuYq24VEJ-3[1].js
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\rules-p-8p-p7hkcWNjJm[1].js
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\requirejs.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\receive[1].png
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\quant[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\put[3].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\put[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\put[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\privacy-policy[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\bolt-custom-elements.min[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\plusone[1].js
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\pixel[1].png
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\pd[4].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\pd[3].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\pd[2].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\pd[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\osd[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\navcancl[1]
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\like[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\jquery-migrate.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\jq-sticky-anything.min[1].js
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\5db046549daa341bc8b40fcc.5LPzjqu65SjW[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 300x250, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\47np1[1].css
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\3S7I0J4O.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\250-screen-2-053180e7-9197-40f7-a9d3-c772139a1e54-12CoFA[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, progressive, precision 8, 300x250, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\14903601932445032436[1].png
PNG image data, 300 x 250, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\11779885510912608076[1].gif
GIF image data, version 89a, 300 x 250
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\11435158197137685041[1].png
PNG image data, 300 x 600, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\0.83c0fd282d7068bf2eed[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\v8bxa9r\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\96.83c0fd282d7068bf2eed[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-314712940\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{D8EFB8BD-58C9-11EA-AAE3-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{D00C2AD1-58C9-11EA-AAE3-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{D00C2ACF-58C9-11EA-AAE3-9CC1A2A860C6}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\BHYH095B\thelawdictionary[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\6UFAM8ZJ\www.workrelatedinjuryclaimsolicitors[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\TZJUFRSX.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\bid[4].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\bid[3].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\bid[2].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\bid[1].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\batch[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\b[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\async_usersync[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\analytics[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\activityi;src=1268437;type=ias01;cat=meas01;u23=0;u24=23696010;u25=264591911;dc_lat=;dc_rdid=;tag_for_child_directed_treatment=;ord=1[1].htm
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\activeview[3].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\activeview[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\activeview[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\233F11ZL\ads.pubmatic[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Q0OQZCKI.gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Pug[2].htm
very short file (no magic)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Pug[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Pug[1].htm
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Pug[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\KFOmCnqEu92Fr1Mu4mxM[1].woff
Web Open Font Format, TrueType, length 20268, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\KFOlCnqEu92Fr1MmEU9fBBc-[1].woff
Web Open Font Format, TrueType, length 20464, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\ErrorPageTemplate[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\Enqz_20U[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\9T0JYA14.gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\5N37O3UG\97.83c0fd282d7068bf2eed[1].js
ASCII text, with no line terminators
#