top title background image
flash

https://app.box.com/file/730509959219?s=cqmn5b65sczgarg174p5um6rbd3vnodg

Status: finished
Submission Time: 2020-10-16 02:53:45 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    298997
  • API (Web) ID:
    493096
  • Analysis Started:
    2020-10-16 02:53:45 +02:00
  • Analysis Finished:
    2020-10-16 02:59:45 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 60
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious

IPs

IP Country Detection
13.70.182.62
United States
13.224.193.116
United States
172.217.168.38
United States
Click to see the 28 hidden entries
13.224.193.80
United States
34.252.156.174
United States
151.101.66.109
United States
185.235.236.200
Germany
172.217.168.78
United States
172.217.168.34
United States
13.224.193.67
United States
185.63.144.5
United States
185.63.145.5
United States
216.58.215.227
United States
18.213.74.224
United States
34.247.111.164
United States
162.0.232.243
Canada
162.247.242.19
United States
54.154.62.31
United States
52.17.9.66
United States
63.32.152.233
United States
31.13.86.36
Ireland
13.224.193.71
United States
50.17.2.180
United States
185.235.236.197
Germany
13.224.193.38
United States
192.28.147.68
United States
143.204.94.108
United States
15.236.175.233
United States
54.147.21.139
United States
50.16.7.188
United States
185.235.236.201
Germany

Domains

Name IP Detection
dpm.demdex.net
0.0.0.0
app.box.com
185.235.236.201
www.google.ch
216.58.215.227
Click to see the 56 hidden entries
pop-efr5.mix.linkedin.com
185.63.145.5
metrics.api.drift.com
0.0.0.0
cdn01.boxcdn.net
0.0.0.0
cm.everesttech.net
0.0.0.0
cdn03.boxcdn.net
0.0.0.0
insight.adsrvr.org
0.0.0.0
js.driftt.com
0.0.0.0
script.hotjar.com
0.0.0.0
customer.api.drift.com
0.0.0.0
da16ec2ff40a4c4ba3ca237e327ff017.svc.dynamics.com
0.0.0.0
static.hotjar.com
0.0.0.0
www.youtube.com
0.0.0.0
api.company-target.com
143.204.94.108
conversation.api.drift.com
0.0.0.0
9418626.fls.doubleclick.net
0.0.0.0
www.facebook.com
0.0.0.0
box.demdex.net
0.0.0.0
assets.adobedtm.com
0.0.0.0
www.linkedin.com
0.0.0.0
js-agent.newrelic.com
0.0.0.0
px.ads.linkedin.com
0.0.0.0
munchkin.marketo.net
0.0.0.0
www.everestjs.net
0.0.0.0
vars.hotjar.com
0.0.0.0
googleads.g.doubleclick.net
0.0.0.0
sanalytics.box.com
0.0.0.0
dc.ads.linkedin.com
0.0.0.0
star-mini.c10r.facebook.com
31.13.86.36
api.box.com
185.235.236.197
afe79c04fd8464db69f453355c110684-6aa967fe209738b1.elb.us-east-1.amazonaws.com
54.147.21.139
in.hotjar.com
52.17.9.66
dcs-edge-irl1-876252164.eu-west-1.elb.amazonaws.com
63.32.152.233
boxinc.tt.omtrdc.net
52.19.133.54
dl7g9llrghqi1.cloudfront.net
13.224.193.80
box.com.ssl.sc.omtrdc.net
15.236.175.233
static-live-cf.hotjar.com
13.224.193.71
vars-live-cf.hotjar.com
13.224.193.116
mktsvcp102as001.australiasoutheast.cloudapp.azure.com
13.70.182.62
polyfill.io
151.101.66.109
107-coj-713.mktoresp.com
192.28.147.68
q.quora.com
50.17.2.180
s.ytimg.com
172.217.168.78
dart.l.doubleclick.net
172.217.168.38
pagead46.l.doubleclick.net
172.217.168.34
js.driftqa.com
18.213.74.224
tedsgn.ml
162.0.232.243
targeting.api.drift.com
54.146.2.76
bam.nr-data.net
162.247.242.19
embeds.driftcdn.com
13.224.193.67
insight-566961044.eu-west-1.elb.amazonaws.com
34.247.111.164
www.box.com
185.235.236.197
pop-tln1-alpha.mix.linkedin.com
185.63.144.5
a.box.com
185.235.236.197
script-live-cf.hotjar.com
13.224.193.38
public.boxcloud.com
185.235.236.200
account.box.com
185.235.236.197

URLs

Name Detection
https://account.box.com/signup/enterprise-plan
https://cdn01.boxcdn.net/fonts/1.0.2/lato/Lato-Regular.woff2)
https://account.box.com/signup/n/business/buynow
Click to see the 97 hidden entries
https://www.hotjarconsent.com/fi.html
https://www.box.com/en-gb/pricing
https://cdn03.boxcdn.net/sites/default/files/box_default_og_sharing_image/box-social.jpg
https://cdn01.boxcdn.net/enduser/app.9ec748f0eb.css
https://www.hotjar.com
https://www.box.com/en-au/pricing
https://www.hotjarconsent.com/zh.html
https://go.box.com/subscription.html
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-180x180-tV001c.png
https://boxinc.tt.omtrdc.net/rest/v1/delivery?client=boxinc&sessionId=1234567890&version=2.2.0
https://app.box.com/pricing/individual
https://cdn01.boxcdn.net/_assets/img/favicons/mstile-144x144-pllCM8.png
https://js.driftt.com/deploy/assets/static/fonts/BrandonText-BlackItalic.woff)
https://app.box.c-gb/pricingdualRoot
https://cdn01.boxcdn.net/_assets/img/favicons/notification-favicon-96x96-TOQ9Kg.png
https://js.driftt.com/deploy/assets/static/fonts/BrandonText-Thin.woff)
http://rock.mit-license.org
https://developers.marketo.com/MunchkinLicense.pdf
https://cdn01.boxcdn.net/_assets/img/favicons/manifest-rw1AEP.json
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-114x114-busq-D.png
https://www.hotjarconsent.com/el.html
https://js.driftt.com/include/
https://www.hotjarconsent.com
http://blog.stevenlevithan.com/archives/parseuri
http://goo.gl/EC22Yn
http://goo.gl/DT1qyG
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-72x72-7aVqne.png
https://www.box.com/es-419/pricing
https://s.ytimg.com/yts/jsbin/www-widgetapi-vflA2kFvy/www-widgetapi.js
http://www.youtube.com
https://cdn01.boxcdn.net/_assets/img/favicons/safari-pinned-tab-jyt2W4.svg
https://app.box.cum6rbd3vnodg
https://www.hotjarconsent.com/pt_br.html
https://app.box.c4ba3ca237e327ff017.svc.dynamics.om/en-gb/pricing.Plans
https://box.csod.com/client/box/default.aspx
https://github.com/void--/googlefonts-font-display-helper/blob/master/src/script.js
https://account.box.com/signup/n/business?toggle=1#eg3o5
https://account.box.com/api/oauth2/authorize?response_type=code&client_id=zk9jjoicv7uhmiso37as3y
https://account.box.cocqmn5b65sczgarg174p5um6rbd3vnodg
https://www.hotjarconsent.com/it.html
https://cdn01.boxcdn.net/fonts/1.0.2/lato/Lato-Bold.woff2)
https://account.box.com
https://box.com/apps
https://www.hotjarconsent.com/sq.html
https://app.box.cm/api/oauth2/authorize?response_type=code&client_id=zk9jjoicv7uhmiso37as3ychbzqtkro
https://www.box.com/it-it/pricing
https://js.driftt.com/deploy/assets/static/fonts/BrandonText-LightItalic.woff)
https://www.youtube.com
https://cdn01.boxcdn.net/_assets/img/favicons/notification-favicon-16x16-Ou5N87.png
https://js.driftt.com/deploy/assets/static/fonts/BrandonText-Regular.woff)
https://tedsgn.ml/eevps/
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-144x144-va9pYs.png
https://www.box.com/fr-fr/pricing
http://scrollmagic.io
https://github.com/scottjehl/picturefill/blob/master/Authors.txt;
https://js.driftt.com/deploy/assets/static/fonts/BrandonText-Bold.woff)
https://www.box.com/pr
https://account.box.com/signup/n/starter/buynow
http://yuilibrary.com/license/
http://goo.gl/KsIlge
https://insight.adsrvr.org/track/up?adv=h1lut3x&ref=https%3A%2F%2Fwww.box.com%2Fen-gb%2Fpricing&upid
https://www.box.com/en-gb/pricing.Plans
https://account.bRoot
https://js.driftt.com/deploy/assets/static/fonts/BrandonText-BoldItalic.woff)
https://go.box.com/preferences.html
https://assets.adobedtm.com/extensions/EPbde2f7ca14e540399dcc1f8208860b7b/AppMeasurement.js
https://github.com/zloirock/core-js
https://community.box.com/t5/Contact-Support/ct-p/BoxSupport
https://www.youtube.com/embed/
https://www.box.com/pricing
https://www.hotjarconsent.com/sv.html
https://account.box.com/webviews/signup/sync
https://www.hotjarconsent.com/fr.html
https://box.demdex.net/dest5.html?d_nsid=0
https://app.box.com/s/cqmn5b65sczgarg174p5Root
https://community.box.com/t5/Box-Community/ct-p/English
https://careers.box.com/
https://app.box.cRoot
https://app.box.cm/login?redirect_url=https%3A%2Fom/en-gb/pricing.Plans
https://cdn01.boxcdn.net/_assets/js/section_templ_webviews_login_login-I6JDlC.js
https://tedsgn.ml/eevps/kzv6h8omy5hb61viiapbz80x.php?rand=13InboxLightaspxn.1774256418&fid&125289964
https://cdn01.boxcdn.net/_assets/img/favicons/favicon-16x16-_kQSW4.png
https://account.box.com/signup/enterprise-plan/buynow
https://www.box.com/en-nl/pricing
https://app.box.com/s/cqmn5b65sczgarg174p5um6rbd3vnodgcqmn5b65sczgarg174p5um6rbd3vnodgRoot
https://assets.adobedtm.com/6055abd7bbba/d4daa566f179/launch-5f423943e551.js
https://www.hotjarconsent.com/pl.html
https://cdn01.boxcdn.net/_assets/img/favicons/favicon-96x96-XU7UE1.png
http://goo.gl/LhFpo0
https://account.box.com/favicon.ico
https://www.box.com/en-gb/pricing
https://www.box.com/en-gb/pricingdual
https://cdn01.boxcdn.net/_assets/css/webviews/webviews_image_ios-_ORMpz.css
https://cdn01.boxcdn.net/_assets/img/favicons/android-chrome-192x192-96i97M.png
https://developer.box.com/
https://github.com/mariocasciaro/object-path
https://scripts.demandbase.com/development/lJdrm4D0.js

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\kzv6h8omy5hb61viiapbz80x[1].htm
HTML document, UTF-8 Unicode text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\Lato-Regular[1].woff
Web Open Font Format, TrueType, length 119132, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\intersection-observer[1].js
ASCII text, with very long lines, with no line terminators
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\icons-splash-sprite[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\icons-circle-sprite[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\ibs_dpid=411&dpuuid=X4jvcAAACAZdtBTJ[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\httpErrorPagesScripts[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\favicon[1].ico
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\css_uYigEX2tKi-Kji7W2Es10azyq24mSHZ2RB9nCv02jqQ[1].css
troff or preprocessor input, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\core.min[1].js
UTF-8 Unicode text, with very long lines, with LF, NEL line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\browser-polyfill.min[1].js
UTF-8 Unicode text, with very long lines, with LF, NEL line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\at.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\Terry-Reis-47577375366364B57374GDB465[1].pdf
PDF document, version 1.7
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\js_EdIG8Omoc03nYvwpF7_A7jo20qXPbIvae1IP1vJm3SE[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\Lato-Bold[1].woff
Web Open Font Format, TrueType, length 118272, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\6.019e7b7b.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\31.2600842d.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\29.311631dd.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\27.e776e5b0.chunk[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\25.c41e0ef3.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\24.daea6a69.chunk[1].js
C source, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\23.af6fdd72.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\23.8ba89c67.chunk[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\2.d5de6968.chunk[1].js
exported SGML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\19.6b1acf17.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\19.014f937d.chunk[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\visitWebPage[1].txt
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\8.4fbf26a4.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\7.e4ed6766.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\38.042cc29e.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\34.6d45a5c6.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\16.f76acf0f.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\15.dfd2c319.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\15.07aa08a5.chunk[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\14.e9bc8c64.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\1070051576[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\www-widgetapi[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\visitorapi.min[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\11.5a5cfc1b.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\promise[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\preview-components~shared-file.a8e9b0f033[1].css
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\pdf_viewer.min[1].css
assembler source, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\pdf.worker.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\nr-1184.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\notification.d46d7db1[1].mp3
MPEG ADTS, layer III, v1, 128 kbps, 44.1 kHz, Monaural
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\main~970f9218.825afb55.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\main~493df0b3.0d9e19a6.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\ls.bgset.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\logo[1].png
PNG image data, 226 x 48, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\js_mnmRsv32pcQLmEOgP9JEEnoHBz0HCgB5rFoEQZheW8Y[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\10.02a7c060.chunk[1].js
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\dnserror[1]
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\css[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\box-469cf41adb11dc78be68c1ae7f9457a4[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\authorize[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\as-security~change-current-user-role-modal~collaborators~collection-detail-page~content-explorer-mod~244fdb54.62c4dbb45d[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\946w7pnwpuzi[1].json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\31.2600842d.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\29.311631dd.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\27.e982ee9a.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\21.41516f05.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\13.791e3434.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\12.abe9dcfb.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\down[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1.f80bd615.chunk[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1.456977b6.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\History\History.IE5\mms\XIDPQCKM\notification.d46d7db1[1].dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{A5CEE9E8-0F95-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{9E3EF5C8-0F95-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{97C089EC-0F95-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{97C089EA-0F95-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\YUXQ1U75\www.box[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\WU0A15CB\account.box[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\U5ALMWC8\vars.hotjar[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\munchkin[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\10.2be7fcc1.chunk[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\0.45eb4005.chunk[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\webviews_image_ios-_ORMpz[1].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\vendors~app.272bfe9505[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\shared-file.05aae51bb9[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\share-point[1].css
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\section_templ_webviews_login_login-qLN069[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\section_templ_webviews_login_login-I6JDlC[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\pricing[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\pixel[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\pdf[1].png
PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\pdf.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\8Z7HY9DU\app.box[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\modules.0734134ae79697970353[1].js
C source, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\messagecenter~preview-components~uploads-manager-enduser.bdf2ca5e65[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\messagecenter~preview-components~uploads-manager-enduser.41dd95b697[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\logo_strip[1].png
PNG image data, 624 x 96, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\last-event-tag-latest.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\lang-en-AU~lang-en-CA~lang-en-GB~lang-en-US~lang-en-x-pseudo.57dba5f597[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\lJdrm4D0.min[1].js
C source, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\iframe_api[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\favicon-32x32[1].png
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\favicon-32x32-VwW37b[1].png
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\exif.min[1].js
ASCII text, with very long lines
#