top title background image
flash

https://gsf79uwh9.df.r.appspot.com/#chrssdfine.mrthy@stdsdgroup.com

Status: finished
Submission Time: 2020-08-11 19:38:52 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    261851
  • API (Web) ID:
    419896
  • Analysis Started:
    2020-08-11 19:39:22 +02:00
  • Analysis Finished:
    2020-08-11 19:48:12 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 60
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
216.58.215.244
United States
52.97.232.242
United States
152.199.21.175
United States
Click to see the 1 hidden entries
152.199.23.37
United States

Domains

Name IP Detection
aadcdn.msauth.net
0.0.0.0
clientlog.portal.office.com
0.0.0.0
portal.office.com
0.0.0.0
Click to see the 18 hidden entries
portal.microsoftonline.com
0.0.0.0
secure.aadcdn.microsoftonline-p.com
0.0.0.0
client.hip.live.com
0.0.0.0
outlook.office365.com
0.0.0.0
acctcdn.msauth.net
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
account.live.com
0.0.0.0
assets.onestore.ms
0.0.0.0
gsf79uwh9.df.r.appspot.com
216.58.215.244
aadcdn.msftauth.net
0.0.0.0
prod.msocdn.com
0.0.0.0
r4.res.office365.com
0.0.0.0
signup.live.com
0.0.0.0
www.office.com
0.0.0.0
sni1gl.wpc.alphacdn.net
152.199.21.175
ZRH-efz.ms-acdc.office.com
52.97.232.242
cs1100.wpc.omegacdn.net
152.199.23.37
asf-ris-prod-neurope.northeurope.cloudapp.azure.com
168.63.67.155

URLs

Name Detection
https://account.live.c
https://prod.msocdn.com/2020.8.3.1/en-US/css/MasterStyles15.css
http://www.twitter.com/
Click to see the 97 hidden entries
https://prod.msocdn.com/2020.8.3.1/en-US/JS/mscorlib.js
http://www.amazon.com/
https://prod.msocdn.com/2020.8.3.1/en-US/js/reporting.js
https://prod.msocdn.com/2020.8.3.1/en-US/css/conciergehelper.css
https://signup.live.co.appspot.com/#chrssdfine.mrthy
https://www.optimizely.com/legal/opt-out/
https://github.com/angular/angular.js/pull/10764
https://acctcdn.msauth.net
https://acctcdn.msauth.net/accountcorepackage_YcAvD2KLYy2k7TD4CG_FKA2.js?v=1
https://login.skype.com/login
https://prod.msocdn.com/images/servicestatus.png
https://signin.kissmetrics.com/privacy/#controls
https://prod.msocdn.com/Shell/Images/O365SharedClusteredImage.png
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.eot
https://prod.msocdn.com/2020.8.3.1/en-US/WebControls/JS/ProductKeyControl.js
https://aadcdn.msauth.net/ests/2.1/content/images/applogos/53_8b36337037cff88c3df203bb73d58e41.png
https://r4.res.office365.com/owa/prem/16.3762.0.2746420/resources/images/0/sprite1.mouse.css
https://github.com/twbs/bootstrap/blob/master/LICENSE)
https://www.microsoft.
https://mixer.com/about/tos
https://www.skype.com/go/legal
https://r4.res.office365.com/owa/prem/16.3762.0.2746420/scripts/boot.worldwide.3.mouse.js
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/convergedloginpagina
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.woff
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiBold-final.eot?iefix
https://developer.yahoo.com/flurry/end-user-opt-out/
https://acctcdn.msauth.net/images/
https://prod.msocdn.com/2020.8.3.1/en-US/JSC/AdminBootstrap.js
http://www.nytimes.com/
https://prod.msocdn.com/2020.8.3.1/en-US/JSC/AngularLib.js
https://www.skype.com/go/store.reactivate.credit
https://prod.msocdn.com/images/scrollbar/arrow_staticup_16.png
https://www.here.com/)
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/oldconvergedlogin_pc
https://gsf79uwh9.df.r
http://fontello.comiconsRegulariconsiconsVersion
https://chieffancypants.github.io/angular-hotkeys
https://www.youradchoices.ca
https://prod.msocdn.com/Shell/Images/pagelayout_mos_background_right.jpg
https://acctcdn.msauth.net/images/Microsoft_Logotype_White_4MYDQRab31HKDWWN-1HafA2.svg
https://www.appsflyer.com/optout
https://prod.msocdn.com/domains/images/Domain_Purchase_16x16.png
https://r4.res.office365.com/owa/prem/16.3762.0.2746420/scripts/boot.worldwide.0.mouse.js
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.eot?iefix
https://r4.res.office365.com/owa/prem/16.3762.0.2746420/scripts/boot.worldwide.1.mouse.js
http://api.jquery.com/offset/
https://prod.msocdn.com/shell/images/o365_gallatin_logo.png
https://prod.msocdn.com/2020.8.3.1/en-US/WebControls/JS/ListGrid.js
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.eot?iefix
https://blobs.officehome.msocdn.com/bundles/polyfills-bundle-f1b483e65ab4c27c9b2d.js
https://r4.res.office365.com/owa/prem/16.3762.0.2746420/resources/styles/fonts/office365icons.eot?#i
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/images/ellipsis_grey_5bc252567e
http://getbootstrap.com)
https://www.skype.com
https://skype.com/go/myaccount
https://prod.msocdn.com/2020.8.3.1/en-US/WebControls/JS/PeoplePicker.js
https://github.com/asafdav/ng-csv/commit/ae479f7099573a05807f55f51fbd1d799c5ed00a
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.eot
https://prod.msocdn.com/Shell/Images/header_wizard_hl_mos.jpg
https://aka.ms/taxservice
http://www.reddit.com/
https://www.xbox.com/en-US/Legal/CodeOfConduct
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.ttf
https://prod.msocdn.com/images/scrollbar/arrow_staticdown_16.png
http://www.asp.net/ajaxlibrary/CDN.ashx.
https://prod.msocdn.com/2020.8.3.1/en-US/JSC/ControlBundle.js
http://purl.eligrey.com/github/Blob.js/blob/master/Blob.js
https://acctcdn.msauth.net/lwsignupstringscountrybirthdate_en-us_pVtahKS9WUIZdNqg1DDhHg2.js?v=1
https://www.youradchoices.ca/fr
https://aadcdn.msftauth.net/ests/2.1/content/images/backgrounds/2_bc3d32a696895f78c19df6c717586a5d.s
http://ncuillery.github.io/angular-breadcrumb
https://prod.msocdn.com/2020.8.3.1/en-US/js/home.js
https://acctcdn.msauth.net/jquerypackage_1.10_5V7LAuc3bNAQx2QQfr1RPw2.js?v=1
http://www.opensource.org/licenses/mit-license.php)
https://blobs.officehome.msocdn.com/bundles/sharedscripts-efe073ff3f.js
https://prod.msocdn.com/2020.8.3.1/en-US/JSC/HeadBundle.js
https://prod.msocdn.com/Images/list_bullet_5x5.gif
https://portal.microsoftonline.com/Prefetch/Prefetch.aspx
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.eot?iefix
https://r4.res.office365.com/owa/prem/16.3762.0.2746420/resources/images/0/sprite1.mouse.png
https://github.com/douglascrockford/JSON-js
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/converged.v2.login.m
https://prod.msocdn.com/2020.8.3.1/en-US/JSC/AdminApp.js
https://ec.europa.eu/info/law/law-topic/data-protection/data-transfers-outside-eu/adequacy-protectio
https://acctcdn.msauth.net/bootstrap_3.3.0_B68S-_daR6nLiLVZsh4XiA2.js?v=1
https://prod.msocdn.com/2020.8.3.1/en-US/JSC/MicrosoftAjaxCombined.js
https://prod.msocdn.com/2020.8.3.1/en-US/content/css/signup16.css
https://prod.msocdn.com/2020.8.3.1/en-US/JS/WebUIValidation.js
https://prod.msocdn.com/2020.8.3.1/en-US/admin/css/admin.css
http://purl.eligrey.com/github/FileSaver.js/blob/master/FileSaver.js
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiBold-final.ttf
https://acctcdn.msauth.net/images/microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2.svg
https://prod.msocdn.com/Shell/Images/pagelayout_nav_highlight.jpg
http://github.com/jquery/globalize
https://prod.msocdn.com/Images/transparent.gif
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.woff
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.woff

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\RBPR4C4J.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\XVRIWEJG.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\arrow_staticdown_16[1].png
PNG image data, 16 x 16, 8-bit colormap, non-interlaced
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\jquery-1.11.2.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\home[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\favicon_a_eupayfgghqiai7k9sol6lg2[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\favicon[3].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\favicon[2].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\ellipsis_white_5ac590ee72bfe06a7cecfd75b588ad73[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\ellipsis_grey_2b5d393db04a5e6e1f739cb266e65b4c[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\c3-92aca2[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\boot.worldwide.2.mouse[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\arrow_staticup_16[1].png
PNG image data, 16 x 16, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\jquery-3.3.1.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\WebUIValidation[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\WebTrends[1].js
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\WebTrendsStream[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\SegoeUI-Regular-final[1].eot
Embedded OpenType (EOT)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\ProductKeyControl[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\PeoplePicker[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\ListGrid[1].js
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\AppCentipede_Microsoft_HFeToeM4u6fzMQF_f_rQ5Q2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\AdminApp[1].js
HTML document, UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\2_vD0yppaJX3jBnfbHF1hqXQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\servicestatus[1].png
PNG image data, 107 x 117, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\style[2].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\MasterStyles15MVC[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\HeadBundle[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\DomainManager[1].js
C source, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\ControlBundle[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\AssistancePanel[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\AngularLib[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\AngularExtensions[1].js
UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\AdminBootstrap[1].js
UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\53_8b36337037cff88c3df203bb73d58e41[1].png
PNG image data, 342 x 72, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\4d-6e4c52[2].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\4d-6e4c52[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\2_vD0yppaJX3jBnfbHF1hqXQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\servicesagreement[1].htm
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\style[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\sprite1.mouse[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\script[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\reporting[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\privacystatement[1].htm
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\prefetch[2].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\prefetch[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\mscorlib[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\mscc-0.4.2.min[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2[2].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\Prefetch[1].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\PasswordStrengthMeter[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\NetPerf[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\Microsoft_Logotype_White_4MYDQRab31HKDWWN-1HafA2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\MasterStyles15[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\HIPControl[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\GridView[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\GeminiWizard[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\EmbeddedFonts[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\2_vD0yppaJX3jBnfbHF1hqXQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\2_bc3d32a696895f78c19df6c717586a5d[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\wlm7n14\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\Print[1].png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-314712940\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{2EE6A6EA-DC45-11EA-90E0-ECF4BB2D2496}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{258CAB1A-DC45-11EA-90E0-ECF4BB2D2496}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\latest[1].eot
Embedded OpenType (EOT), Segoe UI Semibold family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\script[2].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\script[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\resetpasswordpackage_GYjEsJxv5EhSOtCOgqqNTA2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\prefetch[3].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\prefetch[2].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\pp[1].htm
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\pagelayout_white_panel[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 14x1200, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\pagelayout_nav_highlight[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 2x22, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\pagelayout_mos_background_right[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 14x493, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\pagelayout_mos_background_left[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 14x493, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\mscc-0.4.2.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{258CAB18-DC45-11EA-90E0-ECF4BB2D2496}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\header_wizard_hl_mos[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 4x60, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\dropdown_caret_KXSZjGsyILZaoTf0sI9X-A2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\datarequestpackage_dT3VZJ_4lD5UykUFoE8W2w2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\c3-92aca2[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\boot.worldwide.mouse[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\boot.worldwide.3.mouse[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\boot.worldwide.0.mouse[1].js
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\arrow_px_up[1].gif
GIF image data, version 89a, 7 x 9
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\admin[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\accountcorepackage_YcAvD2KLYy2k7TD4CG_FKA2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\SearchBox[1].js
ASCII text, with very long lines, with no line terminators
#