top title background image
flash

https://user74359648.ts.r.appspot.com/#jodymontgomery@technologyunderstood.com

Status: finished
Submission Time: 2020-09-24 18:36:45 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    289667
  • API (Web) ID:
    474440
  • Analysis Started:
    2020-09-24 18:36:45 +02:00
  • Analysis Finished:
    2020-09-24 18:42:50 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 84
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious
malicious
malicious

IPs

IP Country Detection
40.101.12.82
United States
216.58.207.180
United States
152.199.21.175
United States
Click to see the 1 hidden entries
152.199.23.37
United States

Domains

Name IP Detection
aadcdn.msauth.net
0.0.0.0
clientlog.portal.office.com
0.0.0.0
portal.microsoftonline.com
0.0.0.0
Click to see the 16 hidden entries
secure.aadcdn.microsoftonline-p.com
0.0.0.0
client.hip.live.com
0.0.0.0
outlook.office365.com
0.0.0.0
acctcdn.msauth.net
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
account.live.com
0.0.0.0
assets.onestore.ms
0.0.0.0
cs1100.wpc.omegacdn.net
152.199.23.37
prod.msocdn.com
0.0.0.0
aadcdn.msftauth.net
0.0.0.0
r4.res.office365.com
0.0.0.0
signup.live.com
0.0.0.0
www.office.com
0.0.0.0
FRA-efz.ms-acdc.office.com
40.101.12.82
user74359648.ts.r.appspot.com
216.58.207.180
sni1gl.wpc.alphacdn.net
152.199.21.175

URLs

Name Detection
https://user74359648.ts.r.appspot.com/#
https://user74359648.ts.r.appspot.com/
https://user74359648.ts.r.appspot.com/#acy-in-our-products
Click to see the 97 hidden entries
https://prod.msocdn.com/Shell/Images/O365SharedClusteredImage.png
http://www.twitter.com/
https://prod.msocdn.com/2020.9.17.2/en-US/css/O365ThemeDefault.css
http://www.amazon.com/
https://www.optimizely.com/legal/opt-out/
https://github.com/angular/angular.js/pull/10764
https://blobs.officehome.msocdn.com/bundles/app-bundle-bdbe566386225b673b4a.js
https://acctcdn.msauth.net
https://login.skype.com/login
https://account.live.c
https://signin.kissmetrics.com/privacy/#controls
https://prod.msocdn.com/2020.9.17.2/en-US/WebControls/JS/GridView.js
https://prod.msocdn.com/shell/images/o365_gallatin_logo.png
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.eot
https://prod.msocdn.com/2020.9.17.2/en-US/JSC/AngularExtensions.js
https://aadcdn.msauth.net/ests/2.1/content/images/applogos/53_8b36337037cff88c3df203bb73d58e41.png
https://prod.msocdn.com/2020.9.17.2/en-US/JS/NetPerf.js
https://github.com/twbs/bootstrap/blob/master/LICENSE)
https://www.microsoft.
https://mixer.com/about/tos
https://www.skype.com/go/legal
http://fontello.comiconsRegulariconsiconsVersion
http://www.opensource.org/licenses/mit-license.php)
https://prod.msocdn.com/2020.9.17.2/en-US/JS/mscorlib.js
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/convergedloginpagina
https://developer.yahoo.com/flurry/end-user-opt-out/
https://acctcdn.msauth.net/accountcorepackage_BEneMrwKgsmVI-3CyvIFVQ2.js?v=1
https://acctcdn.msauth.net/images/
https://prod.msocdn.com/en-US/css/webfonts/FabMDL2.3.96.woff
https://prod.msocdn.com/2020.9.17.2/en-US/WebControls/JS/GeminiWizard.js
http://www.nytimes.com/
https://prod.msocdn.com/2020.9.17.2/en-US/JS/PasswordStrengthMeter.js
https://www.skype.com/go/store.reactivate.credit
https://prod.msocdn.com/images/scrollbar/arrow_staticup_16.png
https://www.here.com/)
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/oldconvergedlogin_pc
https://prod.msocdn.com/images/servicestatus.png
https://chieffancypants.github.io/angular-hotkeys
https://www.youradchoices.ca
https://prod.msocdn.com/Shell/Images/pagelayout_mos_background_right.jpg
https://acctcdn.msauth.net/images/Microsoft_Logotype_White_4MYDQRab31HKDWWN-1HafA2.svg
https://prod.msocdn.com/2020.9.17.2/en-US/JSC/HeadBundle.js
https://www.appsflyer.com/optout
https://r4.res.office365.com/owa/prem/16.3790.0.2749802/resources/styles/0/boot.worldwide.mouse.css
https://prod.msocdn.com/domains/images/Domain_Purchase_16x16.png
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.eot?iefix
http://api.jquery.com/offset/
https://prod.msocdn.com/2020.9.17.2/en-US/WebControls/JS/ProductKeyControl.js
https://prod.msocdn.com/Shell/Images/header_wizard_hl_mos.jpg
http://www.reddit.com/
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.eot?iefix
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/images/ellipsis_grey_5bc252567e
https://blobs.officehome.msocdn.com/bundles/polyfills-bundle-26a9dfe4d7e980be77dc.js
https://prod.msocdn.com/2020.9.17.2/en-US/js/home.js
http://getbootstrap.com)
https://prod.msocdn.com/2020.9.17.2/en-US/JS/WebTrendsStream.js
https://www.skype.com
https://skype.com/go/myaccount
https://github.com/asafdav/ng-csv/commit/ae479f7099573a05807f55f51fbd1d799c5ed00a
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.eot
https://acctcdn.msauth.net/wlivepackagefull_gkQfr3DPKXxDWQ1F0WVujA2.js?v=1
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiLight-final.woff
https://aka.ms/taxservice
https://www.xbox.com/en-US/Legal/CodeOfConduct
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.ttf
https://prod.msocdn.com/images/scrollbar/arrow_staticdown_16.png
http://www.asp.net/ajaxlibrary/CDN.ashx.
http://purl.eligrey.com/github/Blob.js/blob/master/Blob.js
https://acctcdn.msauth.net/lwsignupstringscountrybirthdate_en-us_pVtahKS9WUIZdNqg1DDhHg2.js?v=1
https://www.youradchoices.ca/fr
https://r4.res.office365.com/owa/prem/16.3790.0.2749802/scripts/boot.worldwide.1.mouse.js
https://aadcdn.msftauth.net/ests/2.1/content/images/backgrounds/2_bc3d32a696895f78c19df6c717586a5d.s
https://www.mileiq.com/privacy/
https://ec.europa.eu/info/law/law-topic/data-protection/data-transfers-outside-eu/adequacy-protectio
http://ncuillery.github.io/angular-breadcrumb
https://prod.msocdn.com/Images/list_bullet_5x5.gif
https://portal.microsoftonline.com/Prefetch/Prefetch.aspx
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Light-final.eot?iefix
https://prod.msocdn.com/2020.9.17.2/en-US/WebControls/JS/ListGrid.js
https://prod.msocdn.com/2020.9.17.2/en-US/JSC/AdminApp.js
https://prod.msocdn.com/2020.9.17.2/en-US/JSC/ControlBundle.js
https://prod.msocdn.com/2020.9.17.2/en-US/JS/WebUIValidation.js
https://github.com/douglascrockford/JSON-js
https://secure.aadcdn.microsoftonline-p.com/ests/2.1.8576.13/content/cdnbundles/converged.v2.login.m
https://r4.res.office365.com/owa/prem/16.3790.0.2749802/resources/styles/fonts/office365icons.ttf
https://blobs.officehome.msocdn.com/bundles/sharedscripts-efe073ff3f.js
https://acctcdn.msauth.net/bootstrap_3.3.0_B68S-_daR6nLiLVZsh4XiA2.js?v=1
https://acctcdn.msauth.net/jquerypackage_1.10_5V7LAuc3bNAQx2QQfr1RPw2.js?v=1
http://purl.eligrey.com/github/FileSaver.js/blob/master/FileSaver.js
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-SemiBold-final.ttf
https://acctcdn.msauth.net/images/microsoft_logo_7lyNn7YkjJOP0NwZNw6QvQ2.svg
https://acctcdn.msauth.net/converged_ux_v2_Gx5TWhTYaJikwTHRJrsZug2.css?v=1
https://prod.msocdn.com/Shell/Images/pagelayout_nav_highlight.jpg
http://github.com/jquery/globalize
https://prod.msocdn.com/Images/transparent.gif
https://prod.msocdn.com/2020.9.17.2/en-US/css/AssistancePanel.css
https://prod.msocdn.com/en-US/css/webfonts/SegoeUI-Regular-final.woff

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\5ARY9BR3.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\V1I89SMK.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\arrow_px_up[1].gif
GIF image data, version 89a, 7 x 9
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\mscc-0.4.2.min[2].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\mscc-0.4.2.min[2].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\mscc-0.4.2.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\mscc-0.4.2.min[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\home[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\home15[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\header_bg_signup_office[1].jpg
[TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS4 Windows, datetime=2010:11:16 08:06:38], baseline, precision 8, 1040x182, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\favicon[2].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\ellipsis_white_5ac590ee72bfe06a7cecfd75b588ad73[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\conciergehelper[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\pagelayout_mos_background_right[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 14x493, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\WebResource[1].js
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\SegoeUI-SemiLight-final[1].eot
Embedded OpenType (EOT)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\SegoeUI-Regular-final[1].eot
Embedded OpenType (EOT)
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\Print[1].png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\Prefetch[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\O365SharedClusteredImage[1].png
PNG image data, 296 x 168, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\MasterStyles15MVC[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\AssistancePanel[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\AppCentipede_Microsoft_HFeToeM4u6fzMQF_f_rQ5Q2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\2_vD0yppaJX3jBnfbHF1hqXQ2[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\wlivepackagefull_gkQfr3DPKXxDWQ1F0WVujA2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\style[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\WebTrendsStream[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\RE1Mu3b[1].png
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\ListGrid[1].js
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\GeminiWizard[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\DomainManager[1].js
C source, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\AssistancePanel[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\AngularExtensions[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\AdminBootstrap[1].js
UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\AdminApp[1].js
HTML document, UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\NUEPGTR9\67-bf2297[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\website[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\transparent[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\pagelayout_mos_background_left[1].jpg
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 14x493, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\sprite1.mouse[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\signup16[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\servicestatus[1].png
PNG image data, 107 x 117, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\script[3].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\script[2].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\script[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\prefetch[3].htm
HTML document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\prefetch[2].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\pp[1].htm
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\pagelayout_white_panel[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 14x1200, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\signup_ms_logo[1].png
PNG image data, 100 x 21, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\PeoplePicker[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\PasswordStrengthMeter[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\O365ThemeDefault[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\NetPerf[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\MasterStyles15[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\HIPControl[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\GridView[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\Domain_Purchase_16x16[1].png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\67-bf2297[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\53_8b36337037cff88c3df203bb73d58e41[1].png
PNG image data, 342 x 72, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\2_bc3d32a696895f78c19df6c717586a5d[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\dikxvqf\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\ProductKeyControl[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-314712940\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{B29AAE6F-FECF-11EA-90E3-ECF4BB570DC9}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{AAE250EE-FECF-11EA-90E3-ECF4BB570DC9}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\favicon[3].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\signup[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\shell.min[1].css
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\servicesagreement[1].htm
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\override[1].css
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\o365_gallatin_logo[1].png
PNG image data, 162 x 46, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\lightweightsignuppackage_RXoxV9mfeGuGCvJNsxsgXg2[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\latest[1].eot
Embedded OpenType (EOT), Segoe UI Semibold family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\knockout_GJ62c6D9R5HuKFdkoO8XYw2[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\jquery-1.7.2.min[1].js
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\image1[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, progressive, precision 8, 1513x1369, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\fe-a5cf09[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{AAE250EC-FECF-11EA-90E3-ECF4BB570DC9}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\favicon[2].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\datarequestpackage_Xxbw317fpadXjkDCygQNgA2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\converged_ux_v2_Gx5TWhTYaJikwTHRJrsZug2[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\bootstrap_3.3.0_B68S-_daR6nLiLVZsh4XiA2[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\boot.worldwide.3.mouse[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\boot.worldwide.0.mouse[1].js
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\arrow_staticup_16[1].png
PNG image data, 16 x 16, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\arrow_staticdown_16[1].png
PNG image data, 16 x 16, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\SearchBox[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\ResetPassword[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#