top title background image
flash

https://tepe365-my.sharepoint.com/:b:/g/personal/bobbiewalden_workingenvironments_co_uk/EXJ3AG5SfktLpjPFRCFQUYwBsF4BUG6lJPv1ZdKpkhUsXg?e=4%3aMCOEiT&at=9

Status: finished
Submission Time: 2020-09-24 14:51:07 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    289558
  • API (Web) ID:
    474225
  • Analysis Started:
    2020-09-24 14:51:07 +02:00
  • Analysis Finished:
    2020-09-24 15:00:18 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
malicious
Score: 84
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
Score: 6/79
malicious
malicious

IPs

IP Country Detection
195.62.46.180
unknown
104.146.239.48
United States
95.217.4.218
Germany
Click to see the 2 hidden entries
40.108.180.40
United States
52.67.8.238
United States

Domains

Name IP Detection
surdmutables.com
195.62.46.180
20987-ipv4.farm.prod.aa-rt.sharepoint.com
40.108.180.40
bre.is
95.217.4.218
Click to see the 9 hidden entries
sheepeggplants.com
52.67.8.238
18722-ipv4.farm.prod.aa-rt.sharepoint.com
104.146.239.48
static2.sharepointonline.com
0.0.0.0
ukwest1-mediap.svc.ms
0.0.0.0
vikinggenetics-my.sharepoint.com
0.0.0.0
shell.cdn.office.net
0.0.0.0
tepe365-my.sharepoint.com
0.0.0.0
spoprod-a.akamaihd.net
0.0.0.0
cdn.onenote.net
0.0.0.0

URLs

Name Detection
https://sheepeggplants.com/workingenvironments.co.uk/68aefaa7f2856a34499b17d837eccdce/ey=77806090309
https://sheepeggplants.com/workingenvironments.co.uk/.Sharing
https://surdmutables.com/sscss/app/signin$HTTsscss/app/signin
Click to see the 97 hidden entries
https://surdmutables.com/sscss/app/signin$HTT.com/workingenvironments.co.uk/Root
https://surdmutables.com/sscss/app/signin/bobbiewalden_workingenvironments_co_uk/_layouts/15/onedriv
https://sheepeggplants.com/workingenvironments.co.uk/68aefaa7f2856a34499b17d837eccdce/inf/favicon.ic
https://tepe365-my.sharepoint.com/personal/bobbiewalden_workingenvironments_co_uk/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fbobbiewalden%5Fworkingenvironments%5Fco%5Fuk%2FDocuments%2FPortfolios%2Epdf&parent=%2Fpersonal%2Fbobbiewalden%5Fworkingenvironments%5Fco%5Fuk%2FDocuments&originalPath=aHR0cHM6Ly90ZXBlMzY1LW15LnNoYXJlcG9pbnQuY29tLzpiOi9nL3BlcnNvbmFsL2JvYmJpZXdhbGRlbl93b3JraW5nZW52aXJvbm1lbnRzX2NvX3VrL0VYSjNBRzVTZmt0THBqUEZSQ0ZRVVl3QnNGNEJVRzZsSlB2MVpkS3BraFVzWGc_cnRpbWU9anlCSnBZaGcyRWc
https://surdmutables.com/sscss/app/signin
https://surdmutables.com/sscss/app/signin$HTTP
https://sheepeggplants.com/workingenvironments.co.uk/n_workingenvironments_co_uk/Documents/Portfolio
https://sheepeggplants.com/workingenvironments.co.uk/
https://sheepeggplants.com/workingenvironments.co.uk/68aefaa7f2856a34499b17d837eccdce/BSign
https://surdmutables.com/sscss/app/signin$HTTRoot
https://sheepeggplants.com/workingenvironments.co.uk/68aefaa7f2856a34499b17d837eccdce/
https://sheepeggplants.com/workingenvironments.co.uk/68aefaa7f2856a34499b17d837eccdce/?Key=77806090309&rand=13InboxLightaspxn.778060903091774256418&fid.4.1252899642&fid=1&fav.1&rand.13InboxLight.aspxn..1774256418&fid.1252899642&fid.1&fav.1&login=&.rand=13InboxLight.aspx?n=778060903091774256418&fid=4#n=1252899642&fid=1&fav=1&?office=&rand=13InboxLight.aspx
https://tepe365-my.sharepoint.com/_layouts/15/images/odbfavicon.ico?rev=47~
https://app.adjust.com/xxf6jd_wkry4s_qxfx79
http://www.nytimes.com/
https://tepe365-my.sharepoint.com/personal/bobbiewalden_workingenvironments_co_uk/Documents/Portfoli
https://app.adjust.com/if0p3v_5r337w
https://shell.cdn.office.net
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-bold.woff2
https://static2.sharepointonline.com/files/fabric/assets/fonts/leelawadeeui-thai/leelawadeeui-bold.w
https://aka.ms/pptiosww
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-semibold.woff2
https://shellprod.msocdn.com
http://powerbi-df.analysis-df.windows.net
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-semilight.wo
https://PrefSyncJob/com.adobe.acrobat.ADotCom/Resource/Sync/Upload/NeA
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-light.woff
https://PrefSyncJob/com.adobe.acrobat.ADotCom/Resource/Sync/Upload/
https://centralus1-mediad.svc.ms
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-regular.woff2
https://livefilestore.com/
http://www.live.com/
https://dev.virtualearth.net/REST/v1/Locations/
http://www.wikipedia.com/
https://people.live.com
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-regular.
https://www.placeimg.com/50/50/people
https://messaging-int.msonerm.com/
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-bold.wof
https://www.radpdf.comk
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-regular.woff
https://bre.is/oSeoaH5z)
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-light.woff2
https://surdmutables.c
https://aka.ms/exceliosww
https://spoprod-a.akamaihd.net/files/odsp-common-library-prod_2019-02-15_20190219.002/require.js
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semilight.woff
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semilight.woff
https://reactjs.org/docs/error-decoder.html?invariant=
https://spoprod-a.akamaihd.net/files/fabric-cdn-prod_20200727.001/assets/brand-icons/product/
https://substrate.office.com/search/api/v2/resources
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-bold.woff
https://office.live.com/start/default.aspx
https://g.live.com/8seskydrive/switchersway
https://shellprod.msocdn.com/api/shellbootstrapper/business/oneshell
https://tepe365-my.sha
http://www.reddit.com/
https://PrefSyncJob/com.adobe.acrobat.ADotCom/Resource/Sync/Upload/u
http://linkless.header/
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-regular.woff2
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-light.wo
https://PrefSyncJob/com.adobe.acrobat.ADotCom/Resource/Sync/Upload/l
https://northcentralus1-medias.svc.ms
https://spoprod-a.akamaihd.net/files/fabric/office-ui-fabric-react-assets/foldericons-fluent/folder-
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semibold.woff
https://shell.cdn.office.net/api/ShellBootstrapper/business/OneShell
https://static2.sharepointonline.com/files/fabric/onedrive-assets/images/empty_state_sfl.svg
http://www.opensource.org/licenses/mit-license.php
https://PrefSyncJob/com.adobe.acrobat.ADotCom/Resource/Sync/Upload/a
https://spoprod-a.akamaihd.net/files/fabric-cdn-prod_20200821.001/assets/item-types/
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-semibold.w
https://app.adjust.com/9q1p8z_qg964b
https://www.pdfescape.com)/CreationDate(D:20200922092445Z)/ModDate(D:20200924084613Z)
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-light.woff
https://outlook.office365.com/Scheduling/api/v1.0/me/findmeetinglocations
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-regular.woff2
http://www.amazon.com/
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-regular.wo
https://www.pdfescape.com
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-semiligh
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-bold.woff2
https://shellppe.msocdn.com
https://outlook.office.com/search
https://northcentralus0-pushs.svc.ms
https://ims-na1.adobelogin.com
https://vikinggenetics-my.sharepoint.com/personal/datho_vikinggenetics_com_au/_layouts/15/images/pdf
http://www.twitter.com/
https://tepe365-my.sharepoint.com/personal/bobbiewalden_workingenvironments_co_uk/_layouts/15/onedri
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-regular.woff
https://spoprod-a.akamaihd.net/files/fabric-cdn-prod_20200727.001/assets/item-types/
https://github.com/microsoft/fluentui/wiki/Using-icons
https://oneshellprcorp.blob.core.windows.net/oneshellpr/20200921.3/bootstrapper.map
http://www.opensource.org/licenses/mit-license.php)
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-light.woff
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-semilight.
https://tepe365-my.sharepoint.com/_layouts/15/images/odbfavicon.ico?rev=47
https://spoprod-a.akamaihd.net/files/fabric-cdn-prod_20200708.002/office-ui-fabric-react-assets/fold

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\68aefaa7f2856a34499b17d837eccdce[2].htm
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\Portfolios[1].pdf
PDF document, version 1.4
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\68aefaa7f2856a34499b17d837eccdce[1].htm
data
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\Portfolios[1].pdf
PDF document, version 1.4
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\microsoft_logo[2].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\workingenvironments.co[1].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\thumbnail[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 1440x768, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\serviceworkerproxy[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\officebrowserfeedbackstrings[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\odsp-next-icons-5-0e143354[1].woff
Web Open Font Format, TrueType, length 15928, version 3.62259
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\odsp-next-icons-17-a6f7a109[1].woff
Web Open Font Format, TrueType, length 13904, version 3.62259
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\odbrestore-mini-101fedb3[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\odboneup-mini.resx-6e7be5db[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\odbonedrive-mini-b52c7c21[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\odbitemsscope-mini.resx-9aec7801[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\odbexecutors-mini.resx-321e0bd5[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\Portfolios[1].pdf
PDF document, version 1.4
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\microsoft_logo[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\ellipsis_grey[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\bullet[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\aria-mini-b1d3eb2e[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\Converged_v21033[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\thumbnail[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 960x512, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\onedrive-font-face-definitions[1].css
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odsp-next-icons-4-2ad0a42d[1].woff
Web Open Font Format, TrueType, length 11164, version 3.62259
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbuploadmanager-mini-d3276fae[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbpdf-mini-989701d2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbonedriveapp-mini.resx-c201f4d2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Temp\datEAA4.tmp
OpenType font data
#
C:\Users\user\AppData\Local\Temp\dat52F3.tmp
Web Open Font Format, TrueType, length 2532, version 2.24904
#
C:\Users\user\AppData\Local\Temp\dat3CE8.tmp
Web Open Font Format, TrueType, length 2532, version 2.24904
#
C:\Users\user\AppData\Local\Temp\acrord32_sbx\A9R7fexk2_1k1ynf1_4hc.tmp
data
#
C:\Users\user\AppData\Local\Temp\JavaDeployReg.log
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\pdf[1].png
PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\onedrive[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odsp-next-icons-a508f3e1[1].woff
Web Open Font Format, TrueType, length 12404, version 3.62259
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbtiles-mini-29a3025b[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbreactcontrols-mini-aaade491[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbpushchannel-mini-d51c23df[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odboneup-mini-6ae76c1e[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\68aefaa7f2856a34499b17d837eccdce[1].htm
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbonedrive-mini.resx-03181097[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbfloodgate-mini-25f0fa35[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbdeferredcontrols-mini-666cc1b4[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbdeferred-mini.resx-a618142b[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\odbdeferred-mini-4b91188c[1].js
UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\httpErrorPagesScripts[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\errorPageStrings[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\down[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WJ8I2OL4\arrow_left[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbitemsscopedeferred-mini-bbcaecea[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-314712940\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\jquery.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\info_48[1]
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\background_gradient[1]
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 1x800, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\ErrorPageTemplate[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\listviewdataprefetch-mini-4b9a01b4[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Last Active\RecoveryStore.{69877286-FEB0-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{48B392A3-FEB0-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{3F5DCB49-FEB0-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{362BA3D7-FEB0-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{2EA00410-FEB0-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{2EA0040E-FEB0-11EA-90E2-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\2YCZAA1O\tepe365-my.sharepoint[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\IconCacheRdr65536.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\workingenvironments.co[1].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeFnt16.lst.5808
PostScript document text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbfloodgate-mini.resx-23bff882[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbfiles-mini.resx-7d6f25d0[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbfavicon[1].ico
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbexecutors-mini-2e1907d8[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\http_404[1]
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\ellipsis_white[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\OneShell[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\68aefaa7f2856a34499b17d837eccdce[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\0[1].jpg
JPEG image data, baseline, precision 8, 1920x1080, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\0-small[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 50x28, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\odbitemsscopedeferred-mini.resx-4e94238a[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\reactandknockout-mini-25d35f37[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\pdf.worker.min[1].js
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\officebrowserfeedback[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\odsp-next-icons-16-6aa9e70a[1].woff
Web Open Font Format, TrueType, length 14256, version 3.62259
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\odbsites-mini-d7a357b6[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\odbpdf-mini.resx-81d282af[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\odbonedriveapp-mini-7fcd4e51[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\odbitemsscope-mini-b13c2552[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\odbfiles-mini-1281b0b5[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\odbclientform-mini-ca6261cf[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\loadingspinner[1].gif
GIF image data, version 89a, 16 x 16
#