Windows Analysis Report
http://45.138.26.12/?MzI3Njk2&VVKrZWx&fhcbc5dfsdf=irreverent&sddxcvxcdfg=abettor&o3fdffvb4gn4=wnjQMvXcKxXQFYPHJf7cT6JDKUfYG1iJz5Gf3fqSCZj9JHT11NzUSkr06B2aClvh&dRdfdfg43t=p6YtK7tYPgrm2E2EKABgldxaVQhF8_2piBLdyRPIhcGL-haPZw1DrqKlJLd_mhj2&cxsfxcvvxcv=126leveryone.77lj111.406n2c9r2&KIxYFUMjQ5NjE=

Overview

General Information

Sample URL: http://45.138.26.12/?MzI3Njk2&VVKrZWx&fhcbc5dfsdf=irreverent&sddxcvxcdfg=abettor&o3fdffvb4gn4=wnjQMvXcKxXQFYPHJf7cT6JDKUfYG1iJz5Gf3fqSCZj9JHT11NzUSkr06B2aClvh&dRdfdfg43t=p6YtK7tYPgrm2E2EKABgldxaVQhF8_
Analysis ID: 562528
Infos:

Detection

Score: 0
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

No high impact signatures.

Classification

There are no high impact signatures.

Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic Jump to behavior
Source: global traffic HTTP traffic detected: GET /crx/blobs/Acy1k0bLIjHsvnKaKN_oRpVaYYvFs25d7GKYF1WXrT6yizCMksBO0c_ggE0B6tx6HPRHe6q1GOEe3_NcIbSiGG8kXeLMUY0sAKVvC6R89zvKM13s5VqoAMZSmuUgjQL5vlygJuArQghXXE_qTL7NlQ/extension_8520_615_0_5.crx HTTP/1.1Host: clients2.googleusercontent.comConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.121 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /?MzI3Njk2&VVKrZWx&fhcbc5dfsdf=irreverent&sddxcvxcdfg=abettor&o3fdffvb4gn4=wnjQMvXcKxXQFYPHJf7cT6JDKUfYG1iJz5Gf3fqSCZj9JHT11NzUSkr06B2aClvh&dRdfdfg43t=p6YtK7tYPgrm2E2EKABgldxaVQhF8_2piBLdyRPIhcGL-haPZw1DrqKlJLd_mhj2&cxsfxcvvxcv=126leveryone.77lj111.406n2c9r2&KIxYFUMjQ5NjE= HTTP/1.1Host: 45.138.26.12Connection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.121 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: 45.138.26.12Connection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.121 Safari/537.36Accept: image/avif,image/webp,image/apng,image/*,*/*;q=0.8Referer: http://45.138.26.12/?MzI3Njk2&VVKrZWx&fhcbc5dfsdf=irreverent&sddxcvxcdfg=abettor&o3fdffvb4gn4=wnjQMvXcKxXQFYPHJf7cT6JDKUfYG1iJz5Gf3fqSCZj9JHT11NzUSkr06B2aClvh&dRdfdfg43t=p6YtK7tYPgrm2E2EKABgldxaVQhF8_2piBLdyRPIhcGL-haPZw1DrqKlJLd_mhj2&cxsfxcvvxcv=126leveryone.77lj111.406n2c9r2&KIxYFUMjQ5NjE=Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: unknown DNS traffic detected: queries for: clients2.google.com
Source: unknown Network traffic detected: HTTP traffic on port 49758 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49750
Source: unknown Network traffic detected: HTTP traffic on port 49750 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49758
Source: History.2.dr String found in binary or memory: http://45.138.26.12/
Source: Current Session.2.dr, data_1.5.dr String found in binary or memory: http://45.138.26.12/?MzI3Njk2&VVKrZWx&fhcbc5dfsdf=irreverent&sddxcvxcdfg=abettor&o3fdffvb4gn4=wnjQMv
Source: data_1.5.dr String found in binary or memory: http://45.138.26.12/favicon.ico
Source: angular.js.2.dr String found in binary or memory: http://angularjs.org
Source: angular.js.2.dr String found in binary or memory: http://errors.angularjs.org/1.6.4-local
Source: mirroring_hangouts.js.2.dr String found in binary or memory: http://tools.ietf.org/html/rfc1950
Source: mirroring_hangouts.js.2.dr String found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: mirroring_hangouts.js.2.dr String found in binary or memory: http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions
Source: mirroring_hangouts.js.2.dr String found in binary or memory: http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions-01
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, manifest.json2.2.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://accounts.google.com
Source: craw_window.js.2.dr String found in binary or memory: https://accounts.google.com/MergeSession
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, manifest.json2.2.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://apis.google.com
Source: mirroring_common.js.2.dr String found in binary or memory: https://apis.google.com/js/client.js
Source: mirroring_common.js.2.dr String found in binary or memory: https://castedumessaging-pa.googleapis.com/v1
Source: Top Sites.2.dr String found in binary or memory: https://chrome.google.com/webstore?hl=en
Source: Top Sites.2.dr String found in binary or memory: https://chrome.google.com/webstore?hl=enWeb
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://clients2.google.com
Source: mirroring_hangouts.js.2.dr, mirroring_cast_streaming.js.2.dr String found in binary or memory: https://clients2.google.com/cr/report
Source: manifest.json2.2.dr, manifest.json.2.dr String found in binary or memory: https://clients2.google.com/service/update2/crx
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://clients2.googleusercontent.com
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://clients6.google.com
Source: manifest.json2.2.dr String found in binary or memory: https://content.googleapis.com
Source: common.js.2.dr, mirroring_cast_streaming.js.2.dr String found in binary or memory: https://crash.corp.google.com/samples?reportid=&q=
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://creativecommons.org/publicdomain/zero/1.0/.
Source: Reporting and NEL.5.dr String found in binary or memory: https://csp.withgoogle.com/csp/report-to/IdentityListAccountsHttp/external
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, f3afdd69-a9d1-4066-b07f-81dd4ec247e9.tmp.5.dr, 4fcab76c-17e7-4412-ad9c-7b4fd6bab084.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://dns.google
Source: mirroring_common.js.2.dr String found in binary or memory: https://docs.google.com
Source: manifest.json2.2.dr String found in binary or memory: https://feedback.googleusercontent.com
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr String found in binary or memory: https://fonts.googleapis.com
Source: manifest.json2.2.dr String found in binary or memory: https://fonts.googleapis.com;
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://fonts.gstatic.com
Source: manifest.json2.2.dr String found in binary or memory: https://fonts.gstatic.com;
Source: material_css_min.css.2.dr, angular.js.2.dr String found in binary or memory: https://github.com/angular/material
Source: craw_window.js.2.dr, craw_background.js.2.dr String found in binary or memory: https://github.com/google/closure-library/wiki/goog.module:-an-ES6-module-like-alternative-to-goog.p
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://github.com/madler/zlib/blob/master/zlib.h
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://hangouts.clients6.google.com
Source: manifest.json2.2.dr String found in binary or memory: https://hangouts.google.com/
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://hangouts.google.com/hangouts/_/logpref
Source: mirroring_common.js.2.dr String found in binary or memory: https://meet.google.com
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://meetings.clients6.google.com
Source: mirroring_common.js.2.dr String found in binary or memory: https://networktraversal.googleapis.com/v1alpha
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://ogs.google.com
Source: craw_window.js.2.dr, manifest.json.2.dr String found in binary or memory: https://payments.google.com/payments/v4/js/integrator.js
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://play.google.com
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://play.google.com/log?format=json&hasfast=true
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://preprod-hangouts-googleapis.sandbox.google.com
Source: 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://r4---sn-4g5edn6r.gvt1.com
Source: data_1.5.dr String found in binary or memory: https://r4---sn-4g5edn6r.gvt1.com/edgedl/chrome/dict/en-us-9-0.bdic?cms_redirect=yes&mh=I2&mip=102.1
Source: 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://redirector.gvt1.com
Source: data_1.5.dr String found in binary or memory: https://redirector.gvt1.com/edgedl/chrome/dict/en-us-9-0.bdic
Source: craw_window.js.2.dr, manifest.json.2.dr String found in binary or memory: https://sandbox.google.com/payments/v4/js/integrator.js
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://ssl.gstatic.com
Source: messages.json55.2.dr, messages.json0.2.dr, messages.json15.2.dr, messages.json67.2.dr, messages.json50.2.dr, messages.json17.2.dr, messages.json36.2.dr, messages.json16.2.dr, messages.json51.2.dr, messages.json5.2.dr, messages.json49.2.dr, messages.json81.2.dr, messages.json66.2.dr, messages.json18.2.dr, messages.json53.2.dr, messages.json79.2.dr, messages.json82.2.dr, messages.json48.2.dr, messages.json23.2.dr, messages.json6.2.dr, messages.json3.2.dr String found in binary or memory: https://support.google.com/chromecast/answer/2998456
Source: messages.json55.2.dr, messages.json0.2.dr, messages.json15.2.dr, messages.json67.2.dr, messages.json50.2.dr, messages.json17.2.dr, messages.json36.2.dr, messages.json16.2.dr, messages.json51.2.dr, messages.json5.2.dr, messages.json49.2.dr, messages.json81.2.dr, messages.json66.2.dr, messages.json18.2.dr, messages.json53.2.dr, messages.json79.2.dr, messages.json82.2.dr, messages.json48.2.dr, messages.json23.2.dr, messages.json6.2.dr, messages.json3.2.dr String found in binary or memory: https://support.google.com/chromecast/troubleshooter/2995236
Source: craw_window.js.2.dr, craw_background.js.2.dr String found in binary or memory: https://www-googleapis-staging.sandbox.google.com
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, manifest.json2.2.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://www.google.com
Source: manifest.json.2.dr String found in binary or memory: https://www.google.com/
Source: craw_window.js.2.dr String found in binary or memory: https://www.google.com/accounts/OAuthLogin?issueuberauth=1
Source: craw_window.js.2.dr String found in binary or memory: https://www.google.com/images/cleardot.gif
Source: craw_window.js.2.dr String found in binary or memory: https://www.google.com/images/dot2.gif
Source: craw_window.js.2.dr String found in binary or memory: https://www.google.com/images/x2.gif
Source: craw_background.js.2.dr String found in binary or memory: https://www.google.com/intl/en-US/chrome/blank.html
Source: mirroring_hangouts.js.2.dr String found in binary or memory: https://www.google.com/log?format=json&hasfast=true
Source: feedback_script.js.2.dr String found in binary or memory: https://www.google.com/tools/feedback
Source: manifest.json2.2.dr String found in binary or memory: https://www.google.com;
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, craw_window.js.2.dr, craw_background.js.2.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://www.googleapis.com
Source: manifest.json.2.dr String found in binary or memory: https://www.googleapis.com/
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/calendar.readonly
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/cast-edu-messaging
Source: manifest.json.2.dr String found in binary or memory: https://www.googleapis.com/auth/chromewebstore
Source: manifest.json.2.dr String found in binary or memory: https://www.googleapis.com/auth/chromewebstore.readonly
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/clouddevices
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/hangouts
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/hangouts.readonly
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/meetings
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/plus.peopleapi.readwrite
Source: manifest.json.2.dr String found in binary or memory: https://www.googleapis.com/auth/sierra
Source: manifest.json.2.dr String found in binary or memory: https://www.googleapis.com/auth/sierrasandbox
Source: manifest.json2.2.dr String found in binary or memory: https://www.googleapis.com/auth/userinfo.email
Source: mirroring_common.js.2.dr String found in binary or memory: https://www.googleapis.com/calendar/v3
Source: mirroring_common.js.2.dr String found in binary or memory: https://www.googleapis.com/hangouts/v1
Source: 5c3ac93d-9626-47a7-a530-b91929a8f574.tmp.5.dr, 328c5818-42b2-4761-ba3e-76fc99a5c54c.tmp.5.dr String found in binary or memory: https://www.gstatic.com
Source: common.js.2.dr String found in binary or memory: https://www.gstatic.com/hangouts_echo_detector/release/%
Source: manifest.json2.2.dr String found in binary or memory: https://www.gstatic.com;
Source: unknown HTTP traffic detected: POST /ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard HTTP/1.1Host: accounts.google.comConnection: keep-aliveContent-Length: 1Origin: https://www.google.comContent-Type: application/x-www-form-urlencodedSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.121 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: unknown TCP traffic detected without corresponding DNS query: 45.138.26.12
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Local\Temp\6674c68e-1584-4722-a336-454b93df7ba8.tmp Jump to behavior
Source: classification engine Classification label: clean0.win@33/252@3/6
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --enable-automation "http://45.138.26.12/?MzI3Njk2&VVKrZWx&fhcbc5dfsdf=irreverent&sddxcvxcdfg=abettor&o3fdffvb4gn4=wnjQMvXcKxXQFYPHJf7cT6JDKUfYG1iJz5Gf3fqSCZj9JHT11NzUSkr06B2aClvh&dRdfdfg43t=p6YtK7tYPgrm2E2EKABgldxaVQhF8_2piBLdyRPIhcGL-haPZw1DrqKlJLd_mhj2&cxsfxcvvxcv=126leveryone.77lj111.406n2c9r2&KIxYFUMjQ5NjE=
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1492,13825956740073535789,2325458381764974999,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1920 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1492,13825956740073535789,2325458381764974999,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1920 /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-61F4FC48-1AE4.pma Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic Jump to behavior
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs