top title background image
flash

.htm

Status: finished
Submission Time: 2020-05-12 17:08:10 +02:00
Malicious
Phishing
Evader
Phisher

Comments

Tags

Details

  • Analysis ID:
    229508
  • API (Web) ID:
    355391
  • Analysis Started:
    2020-05-12 17:09:17 +02:00
  • Analysis Finished:
    2020-05-12 17:16:30 +02:00
  • MD5:
    8abb070829e5c51bbe70e379f3c37499
  • SHA1:
    47f8ed063d0369b75ee12462c941458c17b692ae
  • SHA256:
    c847b75238bd005263c955fb7ea156ef9d6cc4f30d9d9f3afcb8e7ae84d3eb74
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 72
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
52.239.153.36
United States
192.229.221.185
United States
192.161.140.65
United States
Click to see the 2 hidden entries
52.97.189.98
United States
52.239.244.132
United States

Domains

Name IP Detection
account.live.com
0.0.0.0
clientlog.portal.office.com
0.0.0.0
portal.office.com
0.0.0.0
Click to see the 19 hidden entries
5hjgfh6.blob.core.windows.net
0.0.0.0
rt1-t.tco.tiffany.com
0.0.0.0
portal.microsoftonline.com
0.0.0.0
secure.aadcdn.microsoftonline-p.com
0.0.0.0
client.hip.live.com
0.0.0.0
outlook.office365.com
0.0.0.0
acctcdn.msauth.net
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
cs1227.wpc.alphacdn.net
192.229.221.185
assets.onestore.ms
0.0.0.0
prod.msocdn.com
0.0.0.0
r4.res.office365.com
0.0.0.0
signup.live.com
0.0.0.0
www.office.com
0.0.0.0
5ghfdgg6.blob.core.windows.net
0.0.0.0
blob.cys05prdstr06a.store.core.windows.net
52.239.244.132
FRA-efz.ms-acdc.office.com
52.97.189.98
blob.blaprdstr02a.store.core.windows.net
52.239.153.36
tiffany-rt1.m.adobe-campaign.com
192.161.140.65

URLs

Name Detection
https://signin.kissmetrics.com/privacy/#controls
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.eot?iefix
http://api.jquery.com/offset/
Click to see the 97 hidden entries
https://prod.msocdn.com/shell/images/o365_gallatin_logo.png
https://prod.msocdn.com/images/servicestatus.png
http://www.twitter.com/
http://www.amazon.com/
https://r4.res.office365.com/owa/prem/16.3712.0.2742281/scripts/boot.worldwide.1.mouse.js
https://www.optimizely.com/legal/opt-out/
https://github.com/angular/angular.js/pull/10764
https://acctcdn.msauth.net
https://login.skype.com/login
https://account.live.c
https://r4.res.office365.com/owa/prem/16.3712.0.2742281/resources/styles/fonts/office365icons.eot?#i
https://prod.msocdn.com/2020.5.4.4/en-US/JSC/ControlBundle.js
https://prod.msocdn.com/Shell/Images/O365SharedClusteredImage.png
https://prod.msocdn.com/2020.5.4.4/en-US/JS/WebUIValidation.js
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.eot
https://prod.msocdn.com/2020.5.4.4/en-US/WebControls/JS/ProductKeyControl.js
https://prod.msocdn.com/2020.5.4.4/en-US/JSC/MicrosoftAjaxCombined.js
https://github.com/twbs/bootstrap/blob/master/LICENSE)
https://www.microsoft.
https://mixer.com/about/tos
https://www.skype.com/go/legal
https://5ghfdgg6.blob.
https://www.skype.com/go/store.reactivate.credit
https://signup.live.co
https://r4.res.office365.com/owa/prem/16.3712.0.2742281/scripts/boot.worldwide.2.mouse.js
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.woff
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiBold-final.eot?iefix
https://prod.msocdn.com/2020.5.4.4/en-US/JS/WebTrendsStream.js
https://developer.yahoo.com/flurry/end-user-opt-out/
https://blobs.officehome.msocdn.com/bundles/sharedscripts-5a4ab47f8a.js
https://prod.msocdn.com/2020.5.4.4/en-US/css/commonhealthdashboard.css
https://acctcdn.msauth.net/images/
https://prod.msocdn.com/2020.5.4.4/en-US/admin/css/admin.css
http://www.nytimes.com/
https://account.live.com/ResetPasswo
http://fontello.comiconsRegulariconsiconsVersion
https://prod.msocdn.com/images/scrollbar/arrow_staticup_16.png
https://www.here.com/)
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/oldconvergedlogin_pc
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/convergedloginpagina
https://chieffancypants.github.io/angular-hotkeys
https://www.youradchoices.ca
https://prod.msocdn.com/Shell/Images/pagelayout_mos_background_right.jpg
https://prod.msocdn.com/2020.5.4.4/en-US/JSC/AngularLib.js
https://acctcdn.msauth.net/images/Microsoft_Logotype_White_4MYDQRab31HKDWWN-1HafA2.svg
https://www.appsflyer.com/optout
https://prod.msocdn.com/domains/images/Domain_Purchase_16x16.png
https://prod.msocdn.com/Shell/Images/header_wizard_hl_mos.jpg
http://www.reddit.com/
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.eot?iefix
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/images/ellipsis_grey_5bc252567e
http://getbootstrap.com)
https://prod.msocdn.com/2020.5.4.4/en-US/css/conciergehelper.css
https://acctcdn.msauth.net/converged_ux_v2_vFUCy4OeQJ7t4tBfd1vmzw2.css?v=1
https://www.skype.com
http://rt1-t.tco.tiffany.com/r/?id=h25dc706,9156885,9156888&p1=EMC_C_AAL_S_NON_BLKFRPP_20181122_T0&EMHID=ceb0b775161b19d41dc0b1fa4c116d66446afdb03828eb3de4104f20378714b7&CUHID=b203664b092a24f8c96cb73f71d8dd949758183f7cb14af76af6b6351b607c2a&cvosrc=e.r.EMC_C_AAL_S_NON_BLKFRPP_20181122_T0&p1=5hjgfh6.blob.core.windows.net%2Fgdfgf%2FAbV.html%23bGF1cmllLmJydW5uZXJAY2Zpc2QubmV0
https://skype.com/go/myaccount
https://r4.res.office365.com/owa/prem/16.3712.0.2742281/scripts/boot.worldwide.3.mouse.js
https://github.com/asafdav/ng-csv/commit/ae479f7099573a05807f55f51fbd1d799c5ed00a
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.eot
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.woff
https://aka.ms/taxservice
https://www.xbox.com/en-US/Legal/CodeOfConduct
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.ttf
https://prod.msocdn.com/images/scrollbar/arrow_staticdown_16.png
http://www.asp.net/ajaxlibrary/CDN.ashx.
http://purl.eligrey.com/github/Blob.js/blob/master/Blob.js
https://prod.msocdn.com/2020.5.4.4/en-US/JSC/HeadBundle.js
https://acctcdn.msauth.net/lwsignupstringscountrybirthdate_en-us_pVtahKS9WUIZdNqg1DDhHg2.js?v=1
https://www.youradchoices.ca/fr
https://prod.msocdn.com/2020.5.4.4/en-US/JSC/AdminApp.js
http://ncuillery.github.io/angular-breadcrumb
https://r4.res.office365.com/owa/prem/16.3712.0.2742281/resources/styles/0/boot.worldwide.mouse.css
http://www.opensource.org/licenses/mit-license.php)
https://acctcdn.msauth.net/accountcorepackage_Lldx9Hm3oCew11jRbZLFCw2.js?v=1
https://prod.msocdn.com/Images/list_bullet_5x5.gif
https://portal.microsoftonline.com/Prefetch/Prefetch.aspx
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.eot?iefix
https://blobs.officehome.msocdn.com/bundles/app-bundle-0afd25a0f8ef25277c60.css
https://github.com/douglascrockford/JSON-js
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/converged.v2.login.m
https://prod.msocdn.com/2020.5.4.4/en-US/JS/jQuery/jquery-1_10_2_min.js
https://ec.europa.eu/info/law/law-topic/data-protection/data-transfers-outside-eu/adequacy-protectio
https://acctcdn.msauth.net/bootstrap_3.3.0_B68S-_daR6nLiLVZsh4XiA2.js?v=1
https://acctcdn.msauth.net/jquerypackage_1.10_5V7LAuc3bNAQx2QQfr1RPw2.js?v=1
https://prod.msocdn.com/2020.5.4.4/en-US/content/css/signup16.css
https://blobs.officehome.msocdn.com/bundles/app-bundle-472b562abf52a5846f25.js
http://purl.eligrey.com/github/FileSaver.js/blob/master/FileSaver.js
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiBold-final.ttf
https://prod.msocdn.com/2020.5.4.4/en-US/css/AssistancePanel.css
https://acctcdn.msauth.net/images/microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2.svg
https://prod.msocdn.com/2020.5.4.4/en-US/JS/NetPerf.js
https://blobs.officehome.msocdn.com/bundles/polyfills-bundle-3cb2020c0a5763afe110.js
https://prod.msocdn.com/Shell/Images/pagelayout_nav_highlight.jpg
http://github.com/jquery/globalize
https://prod.msocdn.com/Images/transparent.gif
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.woff

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\d4k[1].htm
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\prefetch[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\Prefetch[1].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\prefetch[2].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\ResetPassword[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\AbV[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\bootstrap_3.3.0_B68S-_daR6nLiLVZsh4XiA2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\lightweightsignuppackage_o08Mda-cRR3KsxQGxDsitQ2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\latest[1].woff
Web Open Font Format, TrueType, length 41280, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\home15[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\header_wizard_hl_mos[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 4x60, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\favicon_a_eupayfgghqiai7k9sol6lg2[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\favicon[4].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\favicon[3].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\favicon[2].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\convergedbg_small_v2_Z9GCPpM7FVE8hxRSZUez6g2[1].jpg
JPEG image data, baseline, precision 8, 50x28, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\pagelayout_mos_background_left[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 14x493, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\boot.worldwide.2.mouse[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\arrow_px_up[1].gif
GIF image data, version 89a, 7 x 9
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\admin[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\RE1Mu3b[1].png
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\ProductKeyControl[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\PeoplePicker[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\NetPerf[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\Microsoft_Logotype_Gray_X-qkgtg8KmnQEvm_9mDTcw2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\MasterStyles15[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\GridView[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\AssistancePanel[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\DomainManager[1].js
C source, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\convergedbg_v2_pdvUOT_2pyXH5ith335y8A2[2].jpg
JPEG image data, baseline, precision 8, 1920x1080, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\convergedbg_v2_pdvUOT_2pyXH5ith335y8A2[1].jpg
JPEG image data, baseline, precision 8, 1920x1080, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\converged_ux_v2_vFUCy4OeQJ7t4tBfd1vmzw2[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\commonhealthdashboard[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\boot.worldwide.1.mouse[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\adoption[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\O365ThemeDefault[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\O365SharedClusteredImage[1].png
PNG image data, 296 x 168, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\Microsoft_Logotype_White_4MYDQRab31HKDWWN-1HafA2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\MicrosoftAjaxCombined[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\EmbeddedFonts[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\list_bullet_5x5[1].gif
GIF image data, version 89a, 5 x 8
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\AssistancePanel[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\AppCentipede_Microsoft_HFeToeM4u6fzMQF_f_rQ5Q2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\style[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\sprite1.mouse[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\script[2].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\script[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\pp[1].htm
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\pagelayout_nav_highlight[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 2x22, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\AdminBootstrap[1].js
UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\lwsignupstringscountrybirthdate_en-us_pVtahKS9WUIZdNqg1DDhHg2[1].js
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\6aw4uvh\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\arrow_staticdown_16[1].png
PNG image data, 16 x 16, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\app[1].css
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\WebUIValidation[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\WebTrends[1].js
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\WebTrendsStream[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\SegoeUI-SemiLight-final[1].eot
Embedded OpenType (EOT)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\SegoeUI-Regular-final[1].eot
Embedded OpenType (EOT)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\Print[1].png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\ListGrid[1].js
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\GeminiWizard[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\AppCentipede_Microsoft_white_ufRYlllWOw4YyDRiKcBvxQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\4d-6e4c52[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\arrow_staticup_16[1].png
PNG image data, 16 x 16, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{146D633B-94AE-11EA-AADD-C25F135D3C65}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{0C7AB3F6-94AE-11EA-AADD-C25F135D3C65}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2[2].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\AdminApp[1].js
HTML document, UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\0_a5dbd4393ff6a725c7e62b61df7e72f0[1].jpg
JPEG image data, baseline, precision 8, 1920x1080, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\V5D02472\0-small_138bcee624fa04ef9b75e86211a9fe0d[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 50x28, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\style[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\signup16[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\shell.min[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\resetpasswordpackage_fW935Foe3sZK5d8y9jPoPw2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\mscorlib[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\mscc-0.4.2.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\mscc-0.4.2.min[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\microsoft_logo_ee5c8d9fb6248c938fd0dc19370e90bd[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{0C7AB3F4-94AE-11EA-AADD-C25F135D3C65}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\home[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\home[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\favicon[2].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\dropdown_caret_KXSZjGsyILZaoTf0sI9X-A2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\convergedbg_v2_pdvUOT_2pyXH5ith335y8A2[1].jpg
JPEG image data, baseline, precision 8, 1920x1080, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\converged.v2.login.min_xu7km3oxm4bwp2b-mqyozg2[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\conciergehelper[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\boot.worldwide.mouse[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\boot.worldwide.3.mouse[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\boot.worldwide.0.mouse[1].js
data
#