top title background image
flash

https://redbooth.com/n/2db32188f3c9f025/icfluid-power-inc

Status: finished
Submission Time: 2020-09-23 21:41:44 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    289300
  • API (Web) ID:
    473709
  • Analysis Started:
    2020-09-23 21:41:44 +02:00
  • Analysis Finished:
    2020-09-23 21:47:08 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 60
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
70.42.32.31
United States
104.18.27.190
United States
162.247.242.18
United States
Click to see the 24 hidden entries
68.232.35.182
United States
75.2.88.188
United States
52.72.144.20
United States
104.16.37.47
United States
52.216.207.45
United States
74.125.140.154
United States
104.18.10.239
United States
185.63.145.5
United States
52.45.68.141
United States
157.240.9.23
United States
34.96.102.137
United States
198.54.115.45
United States
13.224.103.17
United States
151.139.128.8
United States
172.217.23.35
United States
151.101.1.2
United States
104.196.223.236
United States
162.247.242.21
United States
34.237.73.95
United States
13.224.103.7
United States
104.17.79.107
United States
44.231.204.234
United States
157.240.9.35
United States
13.224.103.125
United States

Domains

Name IP Detection
use.typekit.net
0.0.0.0
www.google.co.uk
172.217.23.35
geoip-js.com
104.18.10.239
Click to see the 43 hidden entries
d1duzspngubu9.cloudfront.net
13.224.103.17
pop-efr5.mix.linkedin.com
185.63.145.5
amplify.outbrain.com
0.0.0.0
a.quora.com
0.0.0.0
cookieconsent.redbooth.com
0.0.0.0
stats.g.doubleclick.net
0.0.0.0
code.jquery.com
0.0.0.0
cdn.ranksci.com
0.0.0.0
www.facebook.com
0.0.0.0
kit-free.fontawesome.com
151.139.128.8
www.linkedin.com
0.0.0.0
js-agent.newrelic.com
0.0.0.0
maxcdn.bootstrapcdn.com
0.0.0.0
connect.facebook.net
0.0.0.0
px.ads.linkedin.com
0.0.0.0
cdn.optimizely.com
0.0.0.0
p.typekit.net
0.0.0.0
fast.fonts.net
0.0.0.0
snap.licdn.com
0.0.0.0
tr.outbrain.com
0.0.0.0
star-mini.c10r.facebook.com
157.240.9.35
s9.gp1.wac.gammacdn.net
68.232.35.182
redbooth.wpengine.com
104.196.223.236
scontent.xx.fbcdn.net
157.240.9.23
s3.amazonaws.com
52.216.207.45
cdnjs.cloudflare.com
104.17.79.107
tracking.g2crowd.com
104.18.27.190
api.lever.co
44.231.204.234
nexus-websocket-a.intercom.io
34.237.73.95
q.quora.com
52.45.68.141
quora.map.fastly.net
151.101.1.2
js.intercomcdn.com
13.224.103.7
dev.visualwebsiteoptimizer.com
34.96.102.137
nydc1.outbrain.org
70.42.32.31
stats.l.doubleclick.net
74.125.140.154
js.maxmind.com
104.16.37.47
d1p95qhqyjn91x.cloudfront.net
13.224.103.17
widget.intercom.io
13.224.103.125
kit.fontawesome.com
151.139.128.8
redbooth.com
52.72.144.20
api-iam.intercom.io
75.2.88.188
bam.nr-data.net
162.247.242.21
oolylaksjjjnn.cf
198.54.115.45

URLs

Name Detection
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/11/organize-01.webm
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/js/vendor/mixitup.min.js
https://www.google.%/ads/ga-audiences
Click to see the 97 hidden entries
https://redbooth.wpengine.com/wp-content/plugins/wp-video-lightbox/js/video-lightbox.js
https://redbooth.com/
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/scripts/app.d21a29ae.js
https://gist.github.com/436aaacf85bceb3e4d2d
https://use.typekit.net/af/17d530/00000000000000003b9aee4f/27/
https://cookieconsent.redbooth.com/latest/cookieconsent.min.css
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/img/devices/redbooth-load.png
http://opensource.org/licenses/GPL-2.0
https://redbooth.oginRoot
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/img/devices/redbooth-load-ipad-po
http://www.youtube.com/
https://redbooth.wpengine.com/wp-includes/js/comment-reply.min.js
https://videojs.com/html5-video-support/
https://geoip-js.com/geoip/v2.1/
https://redbooth.wpengine.com/wp-content/mu-plugins/img/logo-google-play.svg
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/js/sticky-sidebar/sticky-kit/stic
https://redbooth.wpengine.com/wp-includes/js/jquery/jquery.js
https://www.linkedin.com/company/redbooth-inc-
https://use.typekit.net/af/6d0ba6/00000000000000003b9aee4d/27/
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/img/favicon.png
http://leafo.net
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/img/devices/redbooth-icon-ipad.pn
https://redbooth.wpengine.com/wp-content/plugins/wp-video-lightbox
http://themefortress.com/reverie
https://redbooth.wpengine.com/wp-content/plugins/sitepress-multilingual-cms/templates/language-switc
http://www.no-margin-for-errors.com)
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/11/visualize-03.mp4
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/css/app.b1067886.css
https://yoast.com/wordpress/plugins/seo/
https://www.kunkalabs.com/mixitup/licenses/
https://redbooth.wpengine.com/wp-content/plugins/wp-video-lightbox/css/prettyPhoto.css
https://redbooth.wpengine.com/comments/feed
https://redbooth.wpengine.com/wp-content/mu-plugins/css/multisite-footer.css
https://redbooth.com/login=2
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/assets/css/style.min.css
http://ianlunn.github.io/Hover/)
https://redbooth.cf/IC-Fluid%20Power/Adobe000/Root
https://redbooth.https://redbooth.com/n/2db32188f3c9f025/icfluid-power-inc
https://redbooth.wpengine.com/wp-content/themes/reverie-master/css/ie.css
https://redbooth.wpengine.com/wp-includes/js/jquery/jquery-migrate.min.js
https://github.com/IanLunn/Hover
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/11/balloons_01.png
https://github.com/twbs/bootstrap/blob/master/LICENSE)
http://ogp.me/ns#
http://ianlunn.co.uk/
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2017/08/playstore.png
https://redbooth.wpengine.com/wp-content/plugins/better-click-to-tweet/assets/css/styles.css
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/08/El-Tiempo-large.png
http://www.opensource.org/licenses/mit-license.php
https://www.oecd.org/employment/leed/OECD-China-report-Final.pdf
https://use.typekit.net/af/9da37c/00000000000000003b9aee4e/27/
https://www.internalfb.com/intern/invariant/
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/js/vendor/bootstrap/bootstrap.min
https://fontawesome.com
https://px.ads.linkedin.com/collect?
https://dev.visualwebsiteoptimizer.com/e.gif?s=mode_det&e=
http://opensource.org/licenses/mit-license.html
http://creativecommons.org/licenses/by/3.0/
https://redbooth.com/
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/img/logo.svg
https://github.com/twbs/bootstrap/graphs/contributors)
https://redbooth.com/login
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2017/08/appstore.png
https://redbooth.wpengine.com/wp-content/themes/redbooth-com-wp-v2/img/favicon.pngn
https://redbooth.wpengine.com/es/
https://dev.visualwebsiteoptimizer.com/v.gif?cd=
https://kit-free.fontawesome.com
http://getbootstrap.com/customize/?id=436aaacf85bceb3e4d2d)
https://code.jquery.com/jquery-3.2.1.slim.min.js
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/08/updater-logo.png
https://redbooth.com/n/2db32188f3c9f025/icfluid-power-inc
https://use.typekit.net/zra4clb.js
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/11/organize-01.mp4
https://redbooth.com/features
http://kyruus.com
http://creativecommons.org/licenses/by-nc/3.0/
http://www.latofonts.com/
http://www.reddit.com/
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/11/communicate-02.mp4
https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0/js/bootstrap.min.js
https://kit.fontawesome.com/585b051251.js
https://dev.visualwebsiteoptimizer.com/j.php?mode=
http://opensource.org/licenses/MIT).
http://modernizr.com/download/#-inlinesvg-svg-svgclippaths-touch-shiv-mq-cssclasses-teststyles-prefi
https://www.kunkalabs.com/mixitup/
http://fontawesome.io
https://redbooth.com/images/favicon.ico?v=2~
https://stats.g.doubleclick.net/j/collect
http://twitter.com/byscuits
https://s3.amazonaws.com/wordpress-production/wp-content/uploads/2018/08/leidar-logo-120x160.png
https://github.com/krux/postscribe/blob/master/LICENSE.
http://getbootstrap.com)
https://dev.visualwebsiteoptimizer.com/e.gif?a=110508&s=j.php&e=
https://redbooth.com/login188f3c9f025/icfluid-power-incV
https://connect.facebook.net/en_US/fbevents.js
https://redbooth.wpengine.com/hd-video-conferencing
http://twitter.com/fontawesome.

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\application-d26b9ac7810aff709f3ad202baec615e54560c0f6237411cc8e3ec481fc34bfd[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\index[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\header-logo-small-311d52135d329521cc01e864444ecd10215c6f400d4b68fb47cd90f6a4a84011[1].png
PNG image data, 140 x 36, 8-bit/color RGBA, non-interlaced
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\gtm[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\geoip2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\fbevents[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\d[1]
Web Open Font Format, CFF, length 61756, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\css[3].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\css[2].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\css[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\brand-logo-56da4858f4ecaa2bde99354404e463812eaf0570d1fff80c1d2d8e054c1e11e7[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\appstore[1].png
PNG image data, 600 x 202, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\application-new-a14ffa2e8632a81d1ff71239b510a4ded4392c783120097d8987876cdd65a258[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\insight.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\Lato-Regular[1].eot
Embedded OpenType (EOT), Lato family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\Lato-Heavy[1].eot
Embedded OpenType (EOT), Lato Heavy family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\Lato-Bold[1].eot
Embedded OpenType (EOT), Lato family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\4site-headerlogo[1].png
PNG image data, 450 x 212, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\2FF505_0_0[1].eot
Embedded OpenType (EOT)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\updater-logo[1].png
PNG image data, 200 x 51, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\unifiedPixel[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\unifiedPixel[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\tr[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\tr[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\style[1].css
assembler source, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\styles[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\bootstrap.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\bat[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\app.b1067886[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\Lato-Semibold[1].eot
Embedded OpenType (EOT), Lato Semibold family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\Lato-Semibold-9b2fcdcc1c750abe4dc0ae674f83ab8d3aa7b08b38fe3a0e8dd3edf45ee137e4[1].eot
Embedded OpenType (EOT), Lato Semibold family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\El-Tiempo-large[1].png
PNG image data, 400 x 90, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\2FC56B_3_0[1].eot
Embedded OpenType (EOT)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\134478510537270[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\wp-emoji-release.min[2].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\wp-emoji-release.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\tr[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\the-red-booth[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\stats_bg[1].png
PNG image data, 2880 x 800, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\sdk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\right_arrow[1].png
PNG image data, 21 x 36, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\redbooth[1].json
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\redbooth.com.min[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\playstore[1].png
PNG image data, 600 x 202, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\phone-illustration@2x_01[1].png
PNG image data, 910 x 1070, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\person_beta[1].png
PNG image data, 316 x 360, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\person_alpha[1].png
PNG image data, 316 x 360, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\left_quote[1].png
PNG image data, 36 x 28, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\jquery-3.2.1.slim.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\jquery-3.1.1.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\analytics[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\adobe[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 400x400, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\S6uyw4BMUTPHjx4wWA[1].woff
Web Open Font Format, TrueType, length 28660, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Lato-Regular-e735410675eacc363b257112f39eb819a854b03077d7b1f0caa6e7660ffbd8b3[1].eot
Embedded OpenType (EOT), Lato family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\L0x8DFMnlVwD4h3hu_qh[1].woff
Web Open Font Format, TrueType, length 29392, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\134478510537270[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1107[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\mms\T5WIQ4J3\visualize-03[1].dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\mms\T5WIQ4J3\organize-01[1].dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\mms\T5WIQ4J3\communicate-02[1].dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\apple-id-sign-in-with_2x-f35837c9b0902f9d44906446a0be2c54cfb6d8096b84f36a2feb13ce0cf16ec2[1].png
PNG image data, 424 x 76, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-314712940\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{63C8484D-FE20-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5D85A915-FE20-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5D85A913-FE20-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\login[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\smart-illustration@2x_01[1].png
PNG image data, 734 x 886, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\shim.latest[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\right_quote[1].png
PNG image data, 36 x 28, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\pixel[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\onboarding-616d7550be635354d43f88f0245e48ace7cde1472bca0553cdce6a7d6598b51b[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\office3651[1].png
PNG image data, 187 x 188, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\obtp[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\nr-spa-1044.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\multisite-footer[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\multisite-footer[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\mem8YaGs126MiZpBA-UFVZ0d[1].woff
Web Open Font Format, TrueType, length 18100, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\mem5YaGs126MiZpBA-UN7rgOUuhv[1].woff
Web Open Font Format, TrueType, length 18900, version 1.1
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\M13CD6ND\redbooth[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\jquery.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\jquery-migrate.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\indiana-university-logo[1].jpg
[TIFF image data, big-endian, direntries=5, orientation=upper-left, xresolution=74, yresolution=82, resolutionunit=2], progressive, precision 8, 200x200, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\hover[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\home_banner_01[1].png
PNG image data, 1054 x 610, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\gmail[1].png
PNG image data, 1280 x 1280, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\fontawesome-webfont[1].eot
Embedded OpenType (EOT), FontAwesome family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\favicon[1].png
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\css[2].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\css[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\balloons_01[1].png
PNG image data, 1440 x 400, 8-bit/color RGB, non-interlaced
#