Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
|
||
|
malicious
Score: 76
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
141.136.36.32 | Lithuania | |
151.101.1.44 | United States |
Name | IP | Detection |
---|---|---|
contextual.media.net | 104.84.56.24 | |
tls13.taboola.map.fastly.net | 151.101.1.44 | |
hblg.media.net | 104.84.56.24 | |
Click to see the 8 hidden entries | ||
lg3.media.net | 104.84.56.24 | |
windowclient.com | 141.136.36.32 | |
assets.msn.com | 0.0.0.0 | |
web.vortex.data.msn.com | 0.0.0.0 | |
www.msn.com | 0.0.0.0 | |
srtb.msn.com | 0.0.0.0 | |
img.img-taboola.com | 0.0.0.0 | |
cvision.media.net | 0.0.0.0 |
Name | Detection |
---|---|
https://contextual.media.net/medianet.php?cid=8CU157172&crid=858412214&size=306x271&https=1 | |
https://clk.tradedoubler.com/click?p=245744&a=3064090url(https://store.hp.com/SwitzerlandStore/M | |
https://outlook.live.com/calendar | |
Click to see the 88 hidden entries | |
http://www.msn.com/de-ch | |
https://contextual.media.net/medianet.php?cid=8CU157172&crid=722878611&size=306x271&http | |
https://www.awin1.com/cread.php?awinmid=11518&awinaffid=696593&clickref=dech-edge-dhp-infopa | |
https://twitter.com/i/notifications;Ich | |
https://sp.booking.com/index.html?aid=1589774&label=dech-prime-verticals-shoppinghub | |
https://twitter.com/ | |
https://clk.tradedoubler.com/click?p=295926&a=3064090 | |
https://fluege.msn.com/de-ch/flugsuche | |
https://www.awin1.com/cread.php?awinmid=15168&awinaffid=696593&clickref=de-ch-edge-dhp-river | |
https://img.img-taboola.com/taboola/image/fetch/f_jpg%2Cq_auto%2Ch_311%2Cw_207%2Cc_fill%2Cg_faces:au | |
https://office.live.com/start/PowerPoint.aspx?WT.mc_id=MSN_site | |
https://www.ricardo.ch/?utm_source=msn&utm_medium=affiliate&utm_campaign=msn_mestripe_logo_d | |
https://www.msn.com/de-ch/news/other/abfallgeb%c3%bchren-gehen-den-preis%c3%bcberwacher-laut-dem-kan | |
https://client-s.gateway.messenger.live.com | |
https://www.skype.com/go/onedrivepromo.download?cm_mmc=MSFT_2390_MSN-com | |
https://amzn.to/2TTxhNg | |
http://popup.taboola.com/german | |
https://www.msn.com/de-ch/news/other/natalie-rickli-will-grossanl%c3%a4sse-wieder-verbieten/ar-BB1a9 | |
https://onedrive.live.com/about/en/download/ | |
https://www.bidstack.com/privacy-policy/ | |
https://www.msn.com/de-ch/news/other/kehrichtverbrennung-dietikon-zh-will-preise-nicht-senken/ar-BB1 | |
http://www.msn.com/de-ch/?ocid=iehp&item=deferred_page%3a1&ignorejs=webcore%2fmodules%2fjsbu | |
https://www.msn.com/de-ch/news/other/jetzt-werden-die-erz-oldtimer-versteigert/ar-BB1aaZxD?ocid=hplo | |
https://onedrive.live.com?wt.mc_id=oo_msn_msnhomepage_header | |
http://www.msn.com/de-ch/homepage/api/modules/fetch" | |
https://login.skype.com/login/oauth/microsoft?client_id=738133 | |
https://www.skype.com/de | |
https://onedrive.live.com/?qt=mru;OneDrive-App | |
http://www.msn.com/de-ch/homepage/api/pdp/updatepdpdata" | |
http://windowclient.com/images/_2F1ccoiyTtB6YZEwQ/dKFOP4xEA/skeQCa3x5m9Aix2UtH7H/VPH4wNo6aV_2BNOFzKP/jg6uU32Dj89fL1VLn0392E/pFm8hyWwd4tqX/tcXXS9lY/mAY_2FWkW1UlCJ1zkcB5fXi/Iyt2Yiak2O/L0JwgtJ_2BAkZ_2Bb/0.avi | |
https://www.ricardo.ch/?utm_source=msn&utm_medium=affiliate&utm_campaign=msn_shop_de&utm | |
https://contextual.media.net/medianet.php?cid=8CU157172&crid=858412214&size=306x271&http | |
https://onedrive.live.com/?qt=allmyphotos;Aktuelle | |
http://ogp.me/ns# | |
https://contextual.media.net/medianet.php?cid=8CU157172&crid=722878611&size=306x271&https=1 | |
http://www.msn.com/de-ch/ | |
https://support.skype.com | |
http://windowclient.com/images/4_2F08h_2FMEiz/pW1jycgG4RGtXYPXLn5vB/eUoQSxUMxcgUiCau/SF8Wp8yMhysEKjz | |
https://www.sway.com/?WT.mc_id=MSN_site&utm_source=MSN&utm_medium=Topnav&utm_campaign=link;PowerPoin | |
https://api.taboola.com/2.0/json/msn-ch-de-home/recommendations.notify-click?app.type=desktop&ap | |
https://onedrive.live.com/#qt=mru | |
https://www.msn.com/de-ch/news/other/so-kickt-die-schweiz-der-fc-st-gallen-bleibt-leader-und-hat-ein | |
http://www.msn.com/de-ch/?ocid=iehp | |
https://onedrive.live.com;Fotos | |
https://www.msn.com/de-ch/news/other/die-geplanten-hundezonen-in-der-stadt-z%c3%bcrich-wecken-unmut- | |
https://clk.tradedoubler.com/click?p=220135&a=3064090&url(https://www.lehner-versand.ch/?utm | |
https://clkde.tradedoubler.com/click?p=220135&a=3064090&g=24798744 | |
https://office.live.com/start/Excel.aspx?WT.mc_id=MSN_site;Sway | |
http://ogp.me/ns/fb# | |
http://windowclient.com/images/4_2F08h_2FMEiz/pW1jycgG4RGtXYPXLn5vB/eUoQSxUMxcgUiCau/SF8Wp8yMhysEKjz/rg_2F6sMiyyD9nyN2N/zuAV6BkEj/PrcUkR2KVWO7lJQc_2BJ/ButqVheqzsDP8Ompb8Y/O184sTRSbTuym5M22Zg_2F/xDEecz.avi | |
https://www.msn.com/de-ch/news/other/z%c3%bcrcher-s-bahnnetz-zehn-stunden-lang-im-st%c3%b6rungsmodus | |
https://office.live.com/start/Word.aspx?WT.mc_id=MSN_site;Excel | |
https://www.onenote.com/notebooks?WT.mc_id=MSN_OneNote_TopMenu&auth=1&wdorigin=msn | |
https://www.onenote.com/notebooks?WT.mc_id=MSN_OneNote_QuickNote&auth=1 | |
https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location | |
https://cdn.cookielaw.org/vendorlist/googleData.json | |
https://onedrive.live.com;OneDrive-App | |
http://www.hotmail.msn.com/pii/ReadOutlookEmail/ | |
https://www.msn.com/de-ch/news/other/klassiker-fcz-fcb-wegen-positivem-corona-fall-abgesagt/ar-BB1a8 | |
https://onedrive.live.com/?wt.mc_id=oo_msn_msnhomepage_header | |
https://www.msn.com/de-ch/news/other/sozialisten-schliessen-ja-gerne-leute-im-land-ein-contra-solche | |
https://www.msn.com/de-ch/nachrichten/coronareisen | |
https://contextual.media.net/medianet.php?cid=8CU157172 | |
http://searchads.msn.net/.cfm?&&kp=1& | |
https://www.stroeer.de/fileadmin/de/Konvergenz_und_Konzepte/Daten_und_Technologien/Stroeer_SSP/Downl | |
https://www.skype.com/de/download-skype | |
https://web.vortex.data.msn.com/collect/v1 | |
https://web.vortex.data.msn.com/collect/v1/t.gif?name=%27Ms.Webi.PageView%27&ver=%272.1%27&a | |
http://windowclient.com/images/_2F1ccoiyTtB6YZEwQ/dKFOP4xEA/skeQCa3x5m9Aix2UtH7H/VPH4wNo6aV_2BNOFzKP | |
https://www.msn.com/de-ch/nachrichten/regional | |
https://mem.gfx.ms/meversion/?partner=msn&market=de-ch" | |
https://sp.booking.com/index.html?aid=1589774&label=travelnavlink | |
https://www.msn.com/de-ch/news/other/z%c3%bcrcher-club-gewinnt-l%c3%a4rmstreit/ar-BB1acxae?ocid=hplo | |
https://img.img-taboola.com/taboola/image/fetch/f_jpg%2Cq_auto%2Ce_sharpen%2Ch_311%2Cw_207%2Cc_fill% | |
https://www.skype.com/ | |
https://www.office.com/?omkt=de-ch%26WT.mc_id=MSN_site | |
https://www.jumbo.ch/de/saisonal/fruehling?utm_source=microspot_msn_shopping&utm_medium=display& | |
https://sp.booking.com/index.html?aid=1589774&label=dech-prime-hp-me | |
http://clkuk.tradedoubler.com/click?p(245744)a(3064090)g(21928104)url(https://store.hp.com/Switzerla | |
https://onedrive.live.com/?qt=mru;Aktuelle | |
https://cdn.cookielaw.org/vendorlist/iabData.json | |
https://www.onenote.com/notebooks?WT.mc_id=MSN_OneNote_Recent&auth=1&wdorigin=msn | |
https://contextual.media.net/checksync.php?&vsSync=1&cs=1&hb=1&cv=37&ndec=1&cid=8HBI57XIG&prvid=77%2 | |
https://www.skyscanner.net/g/referrals/v1/cars/home?associateid=API_B2B_19305_00002 | |
https://assets.msn.com/statics/oneTrustV2/consent/55a804ab-e5c6-4b97-9319-86263d365d28/iab2Data.json | |
https://res-a.akamaihd.net/__media__/pics/8000/72/941/fallback1.jpg | |
https://outlook.live.com/mail/deeplink/compose;Kalender | |
https://outlook.com/ |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\down[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\AAyuliQ[1].png |
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\85-0f8009-68ddb2ab[1].js |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
Click to see the 84 hidden entries | |||
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\52bb119d-a224-408a-b348-14eeed2818bc[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\otTCF-ie[1].js |
UTF-8 Unicode text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\medianet[1].htm |
HTML document, ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\https___mk0agefitcomcpwjs4eo.kinstacdn.com_wp-content_uploads_2020_09_agefit-mood-3[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\http___cdn.taboola.com_libtrc_static_thumbnails_d71dc57518c31753744734f54fb0df95[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\http___cdn.taboola.com_libtrc_static_thumbnails_8d8e55fee68ce7185c5b82f5a54df0f6[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\httpErrorPagesScripts[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\errorPageStrings[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\BB1abX1s[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 0x0, segment length 16, baseline, precision 8, 311x333, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\de-ch[2].json |
UTF-8 Unicode text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\NewErrorPageTemplate[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\BBnYSFZ[1].png |
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\BBO5Geh[1].png |
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\55a804ab-e5c6-4b97-9319-86263d365d28[2].json |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\G62TDH9B\153f245c-f1bd-4224-926d-ee9e9ea053f3[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 300x300, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\otSDKStub[1].js |
ASCII text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\otBannerSdk[1].js |
ASCII text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\iab2Data[2].json |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\httpErrorPagesScripts[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\https___mk0agefitcomcpwjs4eo.kinstacdn.com_wp-content_uploads_2020_09_agefit-mood-2[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\YGA1PSMRGKT6BHRYN40O.temp |
data | # | |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\0OCT5EW7DGDPKKMNNRWE.temp |
data | # | |
C:\Users\user\AppData\Local\Temp\~DFDDCFB94FD41F42DE.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF52F297B1F47FBE5B.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF4950C3113E78F273.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF3C2A0CB13BB2D152.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF339DD9DF9569618C.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF280E6A6B1B110A29.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF2013DC4DF845E31C.TMP |
data | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\nrrV75198[1].js |
ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\fcmain[2].js |
HTML document, ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\http___cdn.taboola.com_libtrc_static_thumbnails_GETTY_IMAGES_IBK_606910635__VqZNjsRU[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\http___cdn.taboola.com_libtrc_static_thumbnails_GETTY_IMAGES_IBK_542734683__clsfZCtG[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\http___cdn.taboola.com_libtrc_static_thumbnails_9ffa53e5b1eeab07e1cfff7a6c24b39a[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\http___cdn.taboola.com_libtrc_static_thumbnails_7dd2a86f1c1eaa068b2d7783bfb385ea[1].jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 207x311, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\de-ch[1].htm |
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\BB1kvzy[1].png |
PNG image data, 30 x 30, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\BB1acwzr[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 0x0, segment length 16, baseline, precision 8, 100x75, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\BB1ac4pW[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 100x75, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\BB1ac2HP[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 0x0, segment length 16, baseline, precision 8, 310x166, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\OTUW0Q90\BB1abr3z[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 0x0, segment length 16, baseline, precision 8, 310x166, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\BB17milU[1].png |
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\checksync[4].htm |
HTML document, ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\checksync[3].htm |
HTML document, ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\checksync[2].htm |
HTML document, ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\checksync[1].htm |
HTML document, ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\auction[1].htm |
HTML document, ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\NewErrorPageTemplate[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\BBPfCZL[1].png |
GIF image data, version 89a, 50 x 50 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\BB1abzzE[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 310x166, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\BB1abtCa[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 0x0, segment length 16, baseline, precision 8, 100x75, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\BB1ablUJ[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 0x0, segment length 16, baseline, precision 8, 311x333, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\dnserror[1] |
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\58-acd805-185735b[1].css |
UTF-8 Unicode text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\41-0bee62-68ddb2ab[2].js |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\wlm7n14\imagestore.dat |
data | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8A8A467B-12F6-11EB-90E5-ECF4BB2D2496}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{7D5173C8-12F6-11EB-90E5-ECF4BB2D2496}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{6F7CF3C5-12F6-11EB-90E5-ECF4BB2D2496}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{61EB35EF-12F6-11EB-90E5-ECF4BB2D2496}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{54A5C2E2-12F6-11EB-90E5-ECF4BB2D2496}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{486DB89F-12F6-11EB-90E5-ECF4BB2D2496}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{486DB89D-12F6-11EB-90E5-ECF4BB2D2496}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\BB1abfuJ[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 100x75, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\fcmain[1].js |
HTML document, ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\errorPageStrings[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\down[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\dnserror[3] |
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\dnserror[2] |
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\dnserror[1] |
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\NewErrorPageTemplate[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\BBX2afX[1].png |
PNG image data, 27 x 27, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\BB7gRE[1].png |
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\BB1abwA0[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 170x170, segment length 16, baseline, precision 8, 310x166, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\IB42RK38\contextual.media[1].xml |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\BB1abQzs[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 0x0, segment length 16, baseline, precision 8, 300x250, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\BB19RFPK[1].jpg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 300x250, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\9QTQHWWN\BB16g6qc[2].png |
PNG image data, 27 x 27, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\medianet[3].htm |
HTML document, ASCII text, with very long lines | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\iab2Data[1].json |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\httpErrorPagesScripts[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\errorPageStrings[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\down[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\3Y2ADQKS\dnserror[2] |
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators | # |