Analysis Report https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel

Overview

General Information

Sample URL: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel
Analysis ID: 406920
Infos:

Most interesting Screenshot:

Detection

Score: 0
Range: 0 - 100
Whitelisted: false
Confidence: 80%

Signatures

HTML title does not match URL

Classification

Phishing:

barindex
HTML title does not match URL
Source: https://www.gov.uk/travel-abroad HTTP Parser: Title: Travel abroad: step by step - GOV.UK does not match URL
Source: https://www.gov.uk/travel-abroad HTTP Parser: Title: Travel abroad: step by step - GOV.UK does not match URL
Source: https://www.gov.uk/government/how-government-works HTTP Parser: Title: How government works - GOV.UK does not match URL
Source: https://www.gov.uk/government/how-government-works HTTP Parser: Title: How government works - GOV.UK does not match URL
Source: https://www.gov.uk/search/news-and-communications HTTP Parser: Title: News and communications - GOV.UK does not match URL
Source: https://www.gov.uk/search/news-and-communications HTTP Parser: Title: News and communications - GOV.UK does not match URL
Source: https://www.gov.uk/government/organisations HTTP Parser: Title: Departments, agencies and public bodies - GOV.UK - GOV.UK does not match URL
Source: https://www.gov.uk/government/organisations HTTP Parser: Title: Departments, agencies and public bodies - GOV.UK - GOV.UK does not match URL
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content HTTP Parser: Title: Coronavirus (COVID-19): declaration form for international travel - GOV.UK does not match URL
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content HTTP Parser: Title: Coronavirus (COVID-19): declaration form for international travel - GOV.UK does not match URL
Source: https://www.gov.uk/government/organisations/department-for-transport HTTP Parser: Title: Department for Transport - GOV.UK does not match URL
Source: https://www.gov.uk/government/organisations/department-for-transport HTTP Parser: Title: Department for Transport - GOV.UK does not match URL
Source: https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_consultations&content_store_document_type%5B%5D=closed_consultations HTTP Parser: Title: Policy papers and consultations - GOV.UK does not match URL
Source: https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_consultations&content_store_document_type%5B%5D=closed_consultations HTTP Parser: Title: Policy papers and consultations - GOV.UK does not match URL
Source: https://www.gov.uk/world HTTP Parser: Title: UK and the world - GOV.UK does not match URL
Source: https://www.gov.uk/world HTTP Parser: Title: UK and the world - GOV.UK does not match URL
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history HTTP Parser: Title: Coronavirus (COVID-19): declaration form for international travel - GOV.UK does not match URL
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history HTTP Parser: Title: Coronavirus (COVID-19): declaration form for international travel - GOV.UK does not match URL
Source: https://www.gov.uk/search/research-and-statistics HTTP Parser: Title: Research and statistics - GOV.UK does not match URL
Source: https://www.gov.uk/search/research-and-statistics HTTP Parser: Title: Research and statistics - GOV.UK does not match URL
Source: https://www.gov.uk/government/organisations/home-office HTTP Parser: Title: Home Office - GOV.UK does not match URL
Source: https://www.gov.uk/government/organisations/home-office HTTP Parser: Title: Home Office - GOV.UK does not match URL
Source: https://www.gov.uk/help/cookies HTTP Parser: Title: Cookies on GOV.UK does not match URL
Source: https://www.gov.uk/help/cookies HTTP Parser: Title: Cookies on GOV.UK does not match URL
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel HTTP Parser: Title: Coronavirus (COVID-19): declaration form for international travel - GOV.UK does not match URL
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel HTTP Parser: Title: Coronavirus (COVID-19): declaration form for international travel - GOV.UK does not match URL
Source: https://www.gov.uk/government/get-involved HTTP Parser: Title: Get involved - GOV.UK does not match URL
Source: https://www.gov.uk/government/get-involved HTTP Parser: Title: Get involved - GOV.UK does not match URL
Source: https://www.gov.uk/coronavirus HTTP Parser: Title: Coronavirus (COVID-19): guidance and support - GOV.UK does not match URL
Source: https://www.gov.uk/coronavirus HTTP Parser: Title: Coronavirus (COVID-19): guidance and support - GOV.UK does not match URL
Source: https://www.gov.uk/ HTTP Parser: Title: Welcome to GOV.UK does not match URL
Source: https://www.gov.uk/ HTTP Parser: Title: Welcome to GOV.UK does not match URL
Source: https://www.gov.uk/travel-abroad HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/travel-abroad HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/how-government-works HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/how-government-works HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/search/news-and-communications HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/search/news-and-communications HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/organisations HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/organisations HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/organisations/department-for-transport HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/organisations/department-for-transport HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_consultations&amp;content_store_document_type%5B%5D=closed_consultations HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_consultations&amp;content_store_document_type%5B%5D=closed_consultations HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/world HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/world HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/search/research-and-statistics HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/search/research-and-statistics HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/organisations/home-office HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/organisations/home-office HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/help/cookies HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/help/cookies HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/get-involved HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/government/get-involved HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/coronavirus HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/coronavirus HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/ HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/ HTTP Parser: No <meta name="author".. found
Source: https://www.gov.uk/travel-abroad HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/travel-abroad HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/how-government-works HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/how-government-works HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/search/news-and-communications HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/search/news-and-communications HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/organisations HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/organisations HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/organisations/department-for-transport HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/organisations/department-for-transport HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_consultations&amp;content_store_document_type%5B%5D=closed_consultations HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_consultations&amp;content_store_document_type%5B%5D=closed_consultations HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/world HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/world HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/search/research-and-statistics HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/search/research-and-statistics HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/organisations/home-office HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/organisations/home-office HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/help/cookies HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/help/cookies HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/get-involved HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/government/get-involved HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/coronavirus HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/coronavirus HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/ HTTP Parser: No <meta name="copyright".. found
Source: https://www.gov.uk/ HTTP Parser: No <meta name="copyright".. found
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic Jump to behavior
Source: unknown HTTPS traffic detected: 151.101.0.144:443 -> 192.168.2.7:49719 version: TLS 1.2
Source: unknown HTTPS traffic detected: 151.101.0.144:443 -> 192.168.2.7:49796 version: TLS 1.2
Source: unknown HTTPS traffic detected: 80.75.66.243:443 -> 192.168.2.7:49947 version: TLS 1.2
Source: unknown HTTPS traffic detected: 192.124.249.167:443 -> 192.168.2.7:49957 version: TLS 1.2
Source: unknown DNS traffic detected: queries for: www.gov.uk
Source: Web Data-journal.0.dr String found in binary or memory: https://ac.ecosia.org/autocomplete?q=
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, manifest.json0.0.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://accounts.google.com
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, manifest.json0.0.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://apis.google.com
Source: 9026c1cc08d6ff8f_0.0.dr String found in binary or memory: https://cc.cdn.civiccomputing.com/8/cookieControl-8.2.1.min.js
Source: Web Data-journal.0.dr String found in binary or memory: https://cdn.ecosia.org/assets/images/ico/favicon.icohttps://www.ecosia.org/search?q=
Source: f9b6b42bceab5fdf_0.0.dr String found in binary or memory: https://cdnjs.cloudflare.com/ajax/libs/jquery-mousewheel/3.1.13/jquery.mousewheel.min.js
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://clients2.google.com
Source: manifest.json0.0.dr String found in binary or memory: https://clients2.google.com/service/update2/crx
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://clients2.googleusercontent.com
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr String found in binary or memory: https://content-autofill.googleapis.com
Source: manifest.json0.0.dr String found in binary or memory: https://content.googleapis.com
Source: Reporting and NEL.1.dr String found in binary or memory: https://csp.withgoogle.com/csp/report-to/IdentityListAccountsHttp/external
Source: 4a15d653-c039-4f63-b5c9-c7d7be415ffb.tmp.1.dr, 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, f2293b67-125d-4be0-8230-bf54e91820dd.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://dns.google
Source: Web Data-journal.0.dr String found in binary or memory: https://duckduckgo.com/ac/?q=
Source: Web Data-journal.0.dr String found in binary or memory: https://duckduckgo.com/chrome_newtab
Source: Web Data-journal.0.dr String found in binary or memory: https://duckduckgo.com/favicon.icohttps://duckduckgo.com/?q=
Source: manifest.json0.0.dr String found in binary or memory: https://feedback.googleusercontent.com
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://fonts.googleapis.com
Source: manifest.json0.0.dr String found in binary or memory: https://fonts.googleapis.com;
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://fonts.gstatic.com
Source: manifest.json0.0.dr String found in binary or memory: https://fonts.gstatic.com;
Source: Current Session.0.dr String found in binary or memory: https://gov.wales
Source: fca4f098b45fdfca_0.0.dr String found in binary or memory: https://gov.wales/
Source: f936eb2c3f9dbfd5_0.0.dr String found in binary or memory: https://gov.wales/:
Source: Current Session.0.dr String found in binary or memory: https://gov.wales/search
Source: 4153868f0a0ac3d3_0.0.dr String found in binary or memory: https://gov.wales/sites/default/files/js/js_3KOrO4Ww6IO1xutFjJXt_EmChmgAZ2EhqrlxszFNDA0.js
Source: 8d2b15ad693bd09a_0.0.dr String found in binary or memory: https://gov.wales/sites/default/files/js/js_DYB8iVPl5Jn_VWFdK5m9dNqsDyCRuOV3LDVMShLn5zE.js
Source: f936eb2c3f9dbfd5_0.0.dr String found in binary or memory: https://gov.wales/sites/default/files/js/js_aRVJ3MdDVYsxtzIyliTzcm576TFmee9hAxhtWFHgGbw.js
Source: Favicons.0.dr String found in binary or memory: https://gov.wales/themes/custom/govwales/favicon/favicon-32.png
Source: Favicons.0.dr String found in binary or memory: https://gov.wales/themes/custom/govwales/favicon/favicon-32.pngr
Source: Current Session.0.dr String found in binary or memory: https://gov.wales/travellers-exempt-self-isolation-coronavirus-covid-19
Source: History.0.dr String found in binary or memory: https://gov.wales/travellers-exempt-self-isolation-coronavirus-covid-19Border
Source: Current Session.0.dr String found in binary or memory: https://gov.wales/travellers-exempt-self-isolation-coronavirus-covid-19W
Source: Current Session.0.dr String found in binary or memory: https://gov.wales/travellers-exempt-self-isolation-coronavirus-covid-19XBorder
Source: manifest.json0.0.dr String found in binary or memory: https://hangouts.google.com/
Source: ace99e70b2c6e69e_0.0.dr String found in binary or memory: https://js-agent.newrelic.com/nr-1208.min.js
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://ogs.google.com
Source: manifest.json.0.dr String found in binary or memory: https://payments.google.com/payments/v4/js/integrator.js
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr String found in binary or memory: https://r5---sn-n02xgoxufvg3-2gbs.gvt1.com
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr String found in binary or memory: https://redirector.gvt1.com
Source: manifest.json.0.dr String found in binary or memory: https://sandbox.google.com/payments/v4/js/integrator.js
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://ssl.gstatic.com
Source: messages.json41.0.dr String found in binary or memory: https://support.google.com/chromecast/answer/2998456
Source: messages.json41.0.dr String found in binary or memory: https://support.google.com/chromecast/troubleshooter/2995236
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, manifest.json0.0.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://www.google.com
Source: manifest.json.0.dr String found in binary or memory: https://www.google.com/
Source: manifest.json0.0.dr String found in binary or memory: https://www.google.com;
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://www.googleapis.com
Source: manifest.json.0.dr String found in binary or memory: https://www.googleapis.com/
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/calendar.readonly
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/cast-edu-messaging
Source: manifest.json.0.dr String found in binary or memory: https://www.googleapis.com/auth/chromewebstore
Source: manifest.json.0.dr String found in binary or memory: https://www.googleapis.com/auth/chromewebstore.readonly
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/clouddevices
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/hangouts
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/hangouts.readonly
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/meetings
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/plus.peopleapi.readwrite
Source: manifest.json.0.dr String found in binary or memory: https://www.googleapis.com/auth/sierra
Source: manifest.json.0.dr String found in binary or memory: https://www.googleapis.com/auth/sierrasandbox
Source: manifest.json0.0.dr String found in binary or memory: https://www.googleapis.com/auth/userinfo.email
Source: fca4f098b45fdfca_0.0.dr String found in binary or memory: https://www.googletagmanager.com/gtm.js?id=GTM-MBLNKRW
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr String found in binary or memory: https://www.gov.uk
Source: 000003.log0.0.dr String found in binary or memory: https://www.gov.uk/
Source: e33fbbccd4fb1406_0.0.dr String found in binary or memory: https://www.gov.uk/P
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/V
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/Welcome
Source: 4cc2c4ec3f6fd94f_0.0.dr String found in binary or memory: https://www.gov.uk/assets/collections/application-410ff39f81f7c65f77da249d7fbcd1cdb0532f6c6562f4894a
Source: 3497f9ad7dc29f82_0.0.dr, bafcb963c6242693_0.0.dr String found in binary or memory: https://www.gov.uk/assets/finder-frontend/application-8661d997c1e894f90eb69be1fa453a61c919d00d637a11
Source: e33fbbccd4fb1406_0.0.dr String found in binary or memory: https://www.gov.uk/assets/frontend/application-21540043d3d55868b19d5158a614c3398a0e48f2a86bf94460d0d
Source: 5d3fa02a24aa480a_0.0.dr String found in binary or memory: https://www.gov.uk/assets/government-frontend/application-ad747abfe1bc91b2a7c9f5e232b5723efeb42522f2
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/assets/static/favicon-8d811b8c3badbc0b0e2f6e25d3660a96cc0cca7993e6f32e98785f205fc
Source: fad1842d86d53f14_0.0.dr String found in binary or memory: https://www.gov.uk/assets/static/header-footer-only-21591776c6c870857b1b0569af6e383cf216bcfbd4af446f
Source: 530ab17a5f4e2c6c_0.0.dr String found in binary or memory: https://www.gov.uk/assets/whitehall/application-25d2783e4154a9e14ef817c2183931744ea4f178fb0d4d2260f2
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/contact/govuk/email-survey-signup
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/contact/govuk/problem_reports
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/coronavirus
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/coronavirus5
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/coronavirus5Coronavirus
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/coronavirusCoronavirus
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/coronavirusi
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/g
Source: Current Session.0.dr, History-journal.0.dr String found in binary or memory: https://www.gov.uk/government/get-involved
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/government/get-involved6
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/government/get-involvedGet
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/government/get-involvedci
Source: Current Session.0.dr, Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/government/how-government-works
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/government/how-government-worksHow
Source: Current Session.0.dr, Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/government/organisations
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/government/organisations/department-for-transport
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/government/organisations/department-for-transport$
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/government/organisations/department-for-transportDepartment
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/government/organisations/home-office
Source: History.0.dr String found in binary or memory: https://www.gov.uk/government/organisations/home-officeHome
Source: Favicons.0.dr String found in binary or memory: https://www.gov.uk/government/organisations/home-officeI
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/government/organisations9Departments
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/government/organisationsDepartments
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/government/world
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/government/world/
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/government/worldUK
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/government/worldv
Source: History-journal.0.dr, Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content#
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#contentCo
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#contentJC
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#contentv
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history
Source: Favicons.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history;
Source: History.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#historyCo
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#historyJC
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel-
Source: History Provider Cache.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel2JCoronavi
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travelCoronaviru
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travelDq
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travelJCoronavir
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travelV
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/help/cookies
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/help/cookiesCookies
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/help/cookies_
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/news-and-communications
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/news-and-communications5
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/news-and-communicationsNews
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/search
Source: Web Data.0.dr String found in binary or memory: https://www.gov.uk/search/all?keywords=
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/search/news-and-communications
Source: Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/search/news-and-communications.
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/search/news-and-communicationsNews
Source: Web Data.0.dr String found in binary or memory: https://www.gov.uk/search/opensearch.xml
Source: Web Data.0.dr String found in binary or memory: https://www.gov.uk/search/opensearch.xml/
Source: History-journal.0.dr, Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_con
Source: Current Session.0.dr, Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/search/research-and-statistics
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/search/research-and-statisticsResearch
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/search/research-and-statisticsw
Source: Current Session.0.dr, Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/travel-abroad
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/travel-abroad#
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/travel-abroad$
Source: Current Session.0.dr String found in binary or memory: https://www.gov.uk/travel-abroad$Travel
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/travel-abroadTravel
Source: Current Session.0.dr, Favicons-journal.0.dr String found in binary or memory: https://www.gov.uk/world
Source: History-journal.0.dr String found in binary or memory: https://www.gov.uk/worldUK
Source: 26f4f584-665c-42b6-b953-80afd387994b.tmp.1.dr, c62a307f-e0e4-48d4-9d9c-151db6cd5188.tmp.1.dr String found in binary or memory: https://www.gstatic.com
Source: manifest.json0.0.dr String found in binary or memory: https://www.gstatic.com;
Source: fad1842d86d53f14_0.0.dr String found in binary or memory: https://www.smartsurvey.co.uk/s/gov_uk?c=
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49744
Source: unknown Network traffic detected: HTTP traffic on port 49817 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49862
Source: unknown Network traffic detected: HTTP traffic on port 49926 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49949 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49898 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49795 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49906 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49772 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49733
Source: unknown Network traffic detected: HTTP traffic on port 49900 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49850
Source: unknown Network traffic detected: HTTP traffic on port 49820 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49929 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49893 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49728 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49700 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49909 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49823 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49943 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49728
Source: unknown Network traffic detected: HTTP traffic on port 49901 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49924 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49819 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49947 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49918 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49787 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49930 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49828 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49850 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49933 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49831 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49719
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49838
Source: unknown Network traffic detected: HTTP traffic on port 49904 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49921 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49957
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49833
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49831
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49796
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49795
Source: unknown Network traffic detected: HTTP traffic on port 49927 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49794
Source: unknown Network traffic detected: HTTP traffic on port 49944 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49814 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49822 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49765 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49895 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49796 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49825 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49829
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49828
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49949
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49827
Source: unknown Network traffic detected: HTTP traffic on port 49907 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49947
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49825
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49824
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49945
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49823
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49702
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49944
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49822
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49943
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49700
Source: unknown Network traffic detected: HTTP traffic on port 49733 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49821
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49787
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49820
Source: unknown Network traffic detected: HTTP traffic on port 49922 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49813 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49945 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49894 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49833 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49819
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49818
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49817
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49816
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49937
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49815
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49814
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49813
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49934
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49933
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49898
Source: unknown Network traffic detected: HTTP traffic on port 49816 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49897
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49930
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49896
Source: unknown Network traffic detected: HTTP traffic on port 49925 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49895
Source: unknown Network traffic detected: HTTP traffic on port 49862 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49894
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49772
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49893
Source: unknown Network traffic detected: HTTP traffic on port 49767 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49897 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49794 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49827 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49876 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49957 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49929
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49927
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49926
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49925
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49924
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49923
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49801
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49922
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49767
Source: unknown Network traffic detected: HTTP traffic on port 49756 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49921
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49920
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49765
Source: unknown Network traffic detected: HTTP traffic on port 49758 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49764
Source: unknown Network traffic detected: HTTP traffic on port 49838 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49821 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49815 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49702 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49764 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49896 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49719 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49801 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49908 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49824 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49937 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49918
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49917
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49758
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49756
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49876
Source: unknown Network traffic detected: HTTP traffic on port 49923 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49818 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49917 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49744 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49829 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49909
Source: unknown Network traffic detected: HTTP traffic on port 49934 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49908
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49907
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49906
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49904
Source: unknown Network traffic detected: HTTP traffic on port 49920 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49903
Source: unknown Network traffic detected: HTTP traffic on port 49903 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49901
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49900
Source: unknown HTTPS traffic detected: 151.101.0.144:443 -> 192.168.2.7:49719 version: TLS 1.2
Source: unknown HTTPS traffic detected: 151.101.0.144:443 -> 192.168.2.7:49796 version: TLS 1.2
Source: unknown HTTPS traffic detected: 80.75.66.243:443 -> 192.168.2.7:49947 version: TLS 1.2
Source: unknown HTTPS traffic detected: 192.124.249.167:443 -> 192.168.2.7:49957 version: TLS 1.2
Source: classification engine Classification label: clean0.win@46/199@13/10
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-60958AE3-758.pma Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user~1\AppData\Local\Temp\3c12779d-782d-44c9-9a03-5a440d0a72b5.tmp Jump to behavior
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe 'C:\Program Files\Google\Chrome\Application\chrome.exe' --start-maximized --enable-automation 'https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel'
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe 'C:\Program Files\Google\Chrome\Application\chrome.exe' --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1572,6179841392289751219,8571533054898512681,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1736 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe 'C:\Program Files\Google\Chrome\Application\chrome.exe' --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1572,6179841392289751219,8571533054898512681,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1736 /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Automated click: Accept
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Automated click: Confirm
Source: Window Recorder Window detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic Jump to behavior
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 406920 URL: https://www.gov.uk/guidance... Startdate: 07/05/2021 Architecture: WINDOWS Score: 0 12 www.gov.uk 2->12 14 www-gov-uk.map.fastly.net 2->14 16 3 other IPs or domains 2->16 6 chrome.exe 15 424 2->6         started        process3 dnsIp4 18 192.168.2.1 unknown unknown 6->18 20 192.168.2.30 unknown unknown 6->20 22 239.255.255.250 unknown Reserved 6->22 9 chrome.exe 98 6->9         started        process5 dnsIp6 24 gov.wales 192.124.249.167, 443, 49943, 49944 SUCURI-SECUS United States 9->24 26 apikeys-lb.civiccomputing.com 80.75.66.243, 443, 49947 IOMART-ASGB United Kingdom 9->26 28 13 other IPs or domains 9->28
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs

Contacted Public IPs

IP Domain Country Flag ASN ASN Name Malicious
151.101.0.144
www-gov-uk.map.fastly.net United States
54113 FASTLYUS false
80.75.66.243
apikeys-lb.civiccomputing.com United Kingdom
20860 IOMART-ASGB false
143.204.209.98
d3bipqqt7o7bp0.cloudfront.net United States
16509 AMAZON-02US false
239.255.255.250
unknown Reserved
unknown unknown false
172.217.20.1
googlehosted.l.googleusercontent.com United States
15169 GOOGLEUS false
192.124.249.167
gov.wales United States
30148 SUCURI-SECUS false
104.16.19.94
cdnjs.cloudflare.com United States
13335 CLOUDFLARENETUS false

Private

IP
192.168.2.1
192.168.2.30
127.0.0.1

Contacted Domains

Name IP Active
gov.wales 192.124.249.167 true
cdnjs.cloudflare.com 104.16.19.94 true
d3bipqqt7o7bp0.cloudfront.net 143.204.209.98 true
www-gov-uk.map.fastly.net 151.101.0.144 true
apikeys-lb.civiccomputing.com 80.75.66.243 true
googlehosted.l.googleusercontent.com 172.217.20.1 true
clients2.googleusercontent.com unknown unknown
cc.cdn.civiccomputing.com unknown unknown
js-agent.newrelic.com unknown unknown
apikeys.civiccomputing.com unknown unknown
www.gov.uk unknown unknown
assets.publishing.service.gov.uk unknown unknown
bam-cell.nr-data.net unknown unknown

Contacted URLs

Name Malicious Antivirus Detection Reputation
https://www.gov.uk/search/research-and-statistics false unknown
https://www.gov.uk/coronavirus false
    unknown
    https://www.gov.uk/world false
      unknown
      https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#history false
        unknown
        https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel false
          unknown
          https://www.gov.uk/search/news-and-communications false
            unknown
            https://www.gov.uk/government/how-government-works false
              unknown
              https://www.gov.uk/government/organisations/department-for-transport false
                unknown
                https://www.gov.uk/search/policy-papers-and-consultations?content_store_document_type%5B%5D=open_consultations&amp;content_store_document_type%5B%5D=closed_consultations false
                  unknown
                  https://www.gov.uk/guidance/coronavirus-covid-19-declaration-form-for-international-travel#content false
                    unknown
                    https://www.gov.uk/help/cookies false
                      unknown
                      https://www.gov.uk/government/organisations/home-office false
                        unknown
                        https://www.gov.uk/ false
                          unknown
                          https://www.gov.uk/government/get-involved false
                            unknown