flash

https://rdgusa.com/sites/news/2020/03/rdg-planning-designs-response-to-covid-19/

Status: finished
Submission Time: 16.10.2020 18:18:02
Clean

Comments

Tags

Details

  • Analysis ID:
    299420
  • API (Web) ID:
    493939
  • Analysis Started:
    16.10.2020 18:18:03
  • Analysis Finished:
    16.10.2020 18:24:44
  • Technologies:
Full Report Management Report Engine Info Verdict Score Reports

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

clean
0/100

IPs

IP Country Detection
152.199.21.141
United States
205.186.136.35
United States

Domains

Name IP Detection
rdgusa.com
205.186.136.35
cs510.wpc.edgecastcdn.net
152.199.21.141
use.typekit.net
0.0.0.0
Click to see the 4 hidden entries
p.typekit.net
0.0.0.0
abs.twimg.com
0.0.0.0
maxcdn.bootstrapcdn.com
0.0.0.0
certificates.godaddy.com
0.0.0.0

URLs

Name Detection
http://www.youtube.com/user/RDGIA/featured
http://rdgusa.com/files/2016_05_18_101426_78589300/Restored
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/09/RDG_CUSoDent_00525_UHR_highres-1024
Click to see the 97 hidden entries
http://rdgusa.com/projects/marion-arts-and-environmental-center-at-lowe-park
http://www.rdgusa.com/news
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/10/Collage-1-300x172.png
https://rdgusa.com/markets/college-university
https://certs.godaddy.com/repository/0
https://rdgusa.com/sites/news/wp-content/themes/marketblog-child/style.css?ver=5.1.6
https://rdgusa.com/ites/news/20/03/rdg-planning-designs-response-to-covid-19/H
https://rdgusa.coes/news/20/03/rdg-planning-designs-response-to-covid-19/Root
https://rdgusa.com/projects/integer-office-remodel#/markets/corporate
http://crl.godaddy.com/gdroot-g2.crl0F
https://rdgusa.com/sites/news/4RDG
https://stats.g.doubleclick.net/j/collect?
https://rdgusa.com/favicon.ico~
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/10/Radicia_Alysia-3-768x510.jpg
https://www.ies.org/lda-magazine/
http://www.linkedin.com/shareArticle?mini=true&url=https://rdgusa.com/sites/news/2020/09/going-for-t
https://www.ihaonline.org/Education/IHA-Annual-Meeting
https://rdgusa.com/sites/news/?p=3350
https://rdgusa.com/sites/news/wp-content/themes/marketblog/font-awesome/css/font-awesome.min.css?ver
http://rdgusa.com/projects/convergence-marston-welcome-center">Convergence
http://rdgusa.com/projects/needles-and-thread
http://www.pinterest.com/pin/create/button/?source_url=https://rdgusa.com/sites/news/2020/10/rdg-rec
https://rdgusa.com/sites/news/2017/07/1364/
https://rdgusa.com/projects/loyola-university-chicago-alfie-norville-practice-facility#/markets/spor
https://vimeo.com/99761505
https://rdgusa.com/markets/community-regional-planning
https://rdgusa.com/markets/governmentFGovernmtps://rdgusa.com/markets/early-learning
http://rdgusa.com/projects/harrison-county-iowa-welcome-center
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/03/rdg-logo2-768x548.jpg
http://rdgusa.com/projects/convergence-marston-welcome-center
http://rdgusa.com/projects/the-view-from-our-window-grant-wood-in-iowa-linn-county-rest-area
http://rdgusa.com/files/2019_10_04_222032_29147100/UNK-web.jpg
http://rdgusa.com/files/2019_10_04_215028_49798800/WAN-AWARDS.jpg
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/10/Hilton_KZ_Ext_Lighting_Dusk-Extreme
http://wopethemes.com/
https://rdgusa.com/projects/women-s-center-for-advancement#/markets/corporate
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/03/rdg-logo2-300x214.jpg
https://rdgusa.com/markets/government
https://rdgusa.com/sites/news/2018/06/extraordinary-people-rdg-welcomes-new-stockholders-2/
https://vimeo.com/96110733
https://rdgusa.com/markets/parks-recreation
https://rdgusa.com/sites/news/wp-admin/admin-ajax.php
https://rdgusa.com/sites/news/
https://rdgusa.com/sites/news/2020/03/rdg-planning-designs-response-to-covid-19/
https://player.vimeo.com/video/%id%?byline=0&portrait=0&autoplay=1
http://www.rdgusa.com/projects/retail-corporate-headquarters#/markets/corporate
https://vimeo.com/383393537
https://www.cdc.gov/coronavirus/2019-ncov/prepare/prevention.html
https://rdgusa.comRoot
https://vimeo.com/31733740
http://rdgusa.com/projects/lowe-park-amphitheater
https://idahoapa.org/2020-conference/
http://rdgusa.com/files/2016_05_18_092847_23384000/2010-0-PRB-John
http://www.pinterest.com/rdgusa
https://www.grandforksherald.com/news/government-and-politics/4511233-designing-downtown
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/09/RDG_CUSoDent_00525_UHR_highres-768x
https://www.omaha.com/livewellnebraska/creighton-university-plans-nearly-million-project-in-phoenix/
https://rdgusa.co
https://rdgusa.com/sites/news/tag/community/
http://www.rdgusa.com/projects/west-des-moines-hillside-elementary-school#/markets/k12
https://rdgusa.com/projects/buffett-early-childhood-institute-office
https://www.linkedin.com/company/rdg-planning-&-design
https://rdgusa.com/markets/parks-recreation
http://www.rdgusa.com/projects/iowa-state-university-morrill-hall
https://rdgusa.com/sites/news/wp-content/themes/marketblog/responsive.css?ver=5.1.6
https://rdgusa.cokets/governmentingRoot
https://rdgusa.com/mar
https://use.typekit.net/af/7fee16/00000000000000000000e805/23/
https://rdgusa.com/markets/early-learningNEarly
https://missouri.planning.org/conferences-and-meetings/chapter-conference/
https://rdgusa.com/projects/hilton-des-moines-downtown#/markets/corporate
https://rdgusa.coRoot
https://use.typekit.net/af/0a2e7c/00000000000000000000e803/23/
https://rdgusa.com/markets/healthcareFHealthcare
https://rdgusa.com/projects/erfurt-park
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/09/2020_SocMed-BestOf_Final-Ad.jpg
https://rdgusa.com/sites/news/20/03/rdg-planning-designs-response-to-covid-19/=
https://rdgusa.com/sites/news/wp-content/themes/marketblog/js/jquery.easing.1.3.js?ver=5.1.6
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/10/Radicia_Alysia-3-770x512.jpg
https://www.inforum.com/news/4423959-when-it-comes-revamped-detroit-lakes-waterfront-possibilities-a
http://www.rdgusa.com/projects/burlington-north-hill-elementary-school#/markets/k12
http://www.reddit.com/
https://rdgusa.com/sites/news/2020/09/going-for-the-gold-in-sustainable-college-campus-design/
https://twitter.com/intent/tweet?source=webclient&text=Checkout
https://rdgusa.com/sites/news/wp-content/themes/marketblog/color-scheme/color.css?ver=5.1.6
https://www.omaha.com/sponsored/creighton/take-a-virtual-tour-of-creighton-s-new-state-of/article_fb
https://www.news-star.com/news/20190214/city-commissioners-hear-comprehensive-plan-visionhttps://www
https://rdgusa.cokets/k-12-educationRoot
https://rdgusa.com/markets/early-learningNEarent
https://use.typekit.net/af/5ec812/00000000000000000000e804/23/
http://rdgusa.com/projects/marshalltown-community-schools-roundhouse-renovation#/markets/k-12-educat
https://www.news-star.com/news/20190214/city-commissioners-hear-comprehensive-plan-vision
https://rdgusa.com/sites/news/category/awards/
http://rdgusa.com/files/2020_03_05_194358_37745800/Marty-MAPA-Award-Asset.jpg
https://rdgusa.com/sites/news/wp-content/uploads/sites/2/2020/10/Collage-1-1024x588.png
https://rdgusa.com/sites/news/2020/03/rdg-receives-multiple-honors-for-design-excellence-in-communit
http://certs.godaddy.com/repository/1301

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
Microsoft Cabinet archive data, 58918 bytes, 1 file
#
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A4B782275DC1682E4DC39E697A49B151
data
#
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
data
#
Click to see the 78 hidden entries
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A4B782275DC1682E4DC39E697A49B151
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{46008D5E-0FCB-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{46008D60-0FCB-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{4D11DE25-0FCB-11EB-90EB-ECF4BBEA1588}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\gee00pr\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\CorpWidget-Wellness-Photo[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\WAN-AWARDS[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\community-regional-planning[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\css[2].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\css[3].css
ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\d[1]
Web Open Font Format, TrueType, length 17884, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\favicon[3].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\favicon[4].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\favicon[5].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\favicon[6].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\ga[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\k-12-education[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\news[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\p[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\p[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2WF3MMUU\rdg-planning-designs-response-to-covid-19[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\5SO2L1KF.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\Mag-Image[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\Marty-MAPA-Award-Asset[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\api[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\favicon[2].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\favicon[3].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\favicon[4].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\font-awesome.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\government[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\p[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\p[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\p[3].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\p[4].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\public-art[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9026IKNJ\recaptcha__en[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\LBD2[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\Murmuration-Widget-image[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\college-university[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\corporate[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\d[1]
Web Open Font Format, TrueType, length 18008, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\d[2]
Web Open Font Format, TrueType, length 17508, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\d[3]
Web Open Font Format, TrueType, length 17492, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\favicon[2].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\favicon[3].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\favicon[4].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\fontawesome-webfont[1].eot
Embedded OpenType (EOT), FontAwesome family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\healthcare[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\p[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\p[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\p[3].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\CS6IXJW6\p[4].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\UNK-web[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\d[1]
Web Open Font Format, TrueType, length 18068, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\d[2]
Web Open Font Format, TrueType, length 18152, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\d[3]
Web Open Font Format, TrueType, length 17292, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\d[4]
Web Open Font Format, TrueType, length 17528, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\early-learning[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\favicon[1].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\favicon[2].ico
MS Windows icon resource - 1 icon, 16x16
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\jix8tox[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\p[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\p[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\parks-recreation[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OR0WKIO1\twitter_web_sprite_icons[1].png
PNG image data, 300 x 1329, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Temp\~DF2CC7EC427319EA65.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF86A21FBCDB28BB57.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DFB056D3EA8F9855F4.TMP
data
#
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\OC3R2E10Y6YWO8OEJL9U.temp
data
#