top title background image
flash

2021-02-18 Fivoor - Overleg - Kwartaaloverleg.docx

Status: finished
Submission Time: 2021-02-25 21:25:46 +01:00
Malicious
Evader
Phishing

Comments

Tags

Details

  • Analysis ID:
    358573
  • API (Web) ID:
    619152
  • Analysis Started:
    2021-02-25 21:25:47 +01:00
  • Analysis Finished:
    2021-02-25 21:48:52 +01:00
  • MD5:
    14b364f395dd53fa6b36d00e46c514da
  • SHA1:
    0b97138df21f05c020e43f2c882694bdc805c4a1
  • SHA256:
    1f39fb321c3902a9506b3f3529f5fdbf868053018099991d95e254596658bdfd
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 48
System: Windows 7 x64 SP1 with Office 2010 SP1 (IE 11, FF52, Chrome 57, Adobe Reader DC 15, Flash 25.0.0.127, Java 8 Update 121, .NET 4.6.2)
malicious
Score: 52
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
Run Condition: Potential for more IOCs and behavior

IPs

IP Country Detection
40.118.185.161
United States
151.101.1.192
United States
140.82.121.3
United States
Click to see the 4 hidden entries
34.253.10.100
United States
192.229.221.185
United States
185.199.108.133
Netherlands
152.199.21.175
United States

Domains

Name IP Detection
lemontree1.sharepoint.com
0.0.0.0
logincdn.msauth.net
0.0.0.0
consentdeliveryfd.azurefd.net
0.0.0.0
Click to see the 16 hidden entries
dc.services.visualstudio.com
0.0.0.0
publisher.liveperson.net
0.0.0.0
www.iis.net
0.0.0.0
mem.gfx.ms
0.0.0.0
assets.onestore.ms
0.0.0.0
login.iis.net
0.0.0.0
www.asp.net
0.0.0.0
sni1gl.wpc.gammacdn.net
152.199.21.175
sn.webrootcloudav.com
34.253.10.100
waws-prod-bay-029.sip.azurewebsites.windows.net
40.118.185.161
liveperson.map.fastly.net
151.101.1.192
cs1227.wpc.alphacdn.net
192.229.221.185
asp.net
40.118.185.161
github.com
140.82.121.3
microsoftwindows.112.2o7.net
15.237.136.106
avatars.githubusercontent.com
185.199.108.133

URLs

Name Detection
https://www.microsoft.
https://www.iis.net/?utm_medium=iis-deployment#hero
https://www.iis.net/downloads
Click to see the 97 hidden entries
https://www.microsoftstore.com.cn/microsoft-365/microsoft-365
https://autodiscover-s.outlook.com/autodiscover/autodiscover.xml
https://www.iis.net/configreference
https://word.uservoice.com/forums/304948-word-for-ipad-iphone-ios
https://sizzlejs.com/
https://github.com/Rich-Lang.png?size=32
http://weather.service.msn.com/data.aspx
http://github.com/aFarkas/lazysizes
https://webdir.online.lync.com/autodiscover/autodiscoverservice.svc/root/
https://github.com/js-cookie/js-cookie
http://schema.org/BreadcrumbList
https://github.com/MicrosoftDocs/iis-docs/blob/live/iis/get-started/whats-new-in-iis-10-version-1709
https://g59.p4.webrootcloudav.com
https://pf.directory.live.com/profile/mine/System.ShortCircuitProfile.json
https://dotnet.microso
http://gambit.ph
https://jquery.com/
https://lpcdn.lpsnmedia.net/le_unified_window/9.12.0.19-release_4769/resources/loader_on_warmGray5_7
https://blogs.iis.net/
https://www.surveymonkey.com/r/netcoresupport_dotnetwebsite
http://github.com/jquery/jquery-tmpl
https://github.com/shirhatti
https://outlook.office.com/
https://messaging.office.com/
https://devnull.onenote.com
https://graph.windows.net/
https://www.iis.net/?utm_medium=iis-deployment#herojH
https://forums.iis.net/1080.aspx
https://blogs.iis.net/iisteam/url-rewrite-v2-1
https://www.microsoftstore.com.cn/hardware/surface
https://www.iis.net
https://github.com/
https://www.iis.net/com/de-ch/n?ReturnUrl=https://www.iis.net/
https://sn.webrootcloudav.com/
https://storage.live.com/clientlogs/uploadlocation
https://graph.windows.net
https://pf.directory.live.com/profile/mine/WLX.Profiles.IC.json
https://login.iis.net/account/login?ReturnUrl=https://www.iis.net/
https://www.clarity.ms/tag/
https://entitlement.diagnostics.office.com
https://clients.config.office.net/user/v1.0/android/policies
https://www.skype.com/de/
https://outlook.office365.com/api/v1.0/me/Activities
https://o365auditrealtimeingestion.manage.office.com
https://clients.config.office.net/user/v1.0/ios
https://github.com/MicrosoftDocs/iis-docs/blob/22f8c6108ea9ed9330333ede82568276a3162b34/iis/configur
https://blogs.iis.net/adminapi
https://tools.ietf.org/html/rfc6797
https://github.com/nschonni.png?size=32
https://sn.webrootcloudav.com/oudav.com/
https://github.com/twbs/bootstrap/graphs/contributors)
https://www.twitter.com/inetsrv/
https://forums.iis.net/members/saucecontrol.aspx
https://forums.asp.net/
https://api.aadrm.com/
https://na01.oscs.protection.outlook.com/api/SafeLinksApi/GetPolicy
https://syncservice.protection.outlook.com/PolicySync/PolicySync.svc/SyncFile
https://github.com/MicrosoftDocs/iis-docs/blob/live/iis/configuration/index.md
https://lookup.onenote.com/lookup/geolocation/v1
https://rpsticket.partnerservices.getmicrosoftkey.com
https://blogs.iis.net/iisteam/introducing-iis-cors-1-0
https://login.iis.net/favicon.ico
https://dev.virtualearth.net/REST/V1/GeospatialEndpoint/
https://github.com/MicrosoftDocs/IIS.Administration-docs/blob/live/IIS-Administration/index.md
https://assets.onestore.ms
https://products.office.com/de-ch/academic/compare-office-365-education-plans
https://cdn.entity.
https://insertmedia.bing.office.net/images/officeonlinecontent/browse?cp=Flickr
https://autodiscover-s.outlook.com/
https://www.iis.net/downloadsus/IIS-Administration/
https://www.iis.net/?utm_medium=iis-deploymentLHome
https://shell.suite.office.com:1443
https://officeci.azurewebsites.net/api/
http://fontello.comIcon
https://web.microsoftstream.com/video/
https://api.powerbi.com/v1.0/myorg/groups
https://www.microsoftstore.com.cn/software/microsoft-365
https://www.odwebp.svc.ms
https://nam.learningtools.onenote.com/learningtoolsapi/v2.0/getfreeformspeech
https://forums.iis.net/members/$
https://www.iis.net/?utm_medium=iis-deployment
https://www.microsoftstore.com.cn/cart
https://wus2-000.pagecontentsync.
https://store.office.cn/addinstemplate
https://www.microsoftstore.com.cn/checkout
https://outlook.live.com/owa/
https://tasks.office.com
https://res.getmicrosoftkey.com/api/redemptionevents
https://manage.iis.net
https://skyversion.webrootcloudav.com
https://www.iis.net/favicon.ico
https://stats.g.doubleclick.net/j/collect
https://publisher.liveperson.net/iframe-le-tag/iframe.html?lpsite=60270350&lpsection=store-sales-de-
https://cr.office.com
https://insertmedia.bing.office.net/images/hosted?host=office&adlt=strict&hostType=Immersive
https://api.microsoftstream.com/api/
https://dataservice.protection.outlook.com/PsorWebService/v1/ClientSyncFile/MipPolicies

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\docons.225ca470[1].eot
Embedded OpenType (EOT), docons family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\main[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\login[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\jsll-4[1].js
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\jquery-3.3.1.min[1].js
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\iisstart[1].png
PNG image data, 960 x 600, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\iis-new-logo[1].png
PNG image data, 94 x 70, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\free-code-editor-tools-bot-desk[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\fb[1].png
PNG image data, 16 x 16, 4-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\errorPageStrings[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\downloads[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\dotnetmdl2-icons[1].woff
Web Open Font Format, TrueType, length 13256, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\meBoot.min[1].js
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\customers-stackoverflow[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\customers-raygun[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\configreference[1].htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\build-2020-background[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1792x300, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\ai.0[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\a96de1e1.conceptual[1].css
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\a4-539297[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\RE4qZxW[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\MeControl_mDEQjNo-v8fzxvfr-ss1Pw2[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\97269d6d.site-ltr[1].css
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\94-3cd1e0[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\4643903[1].jpg
JPEG image data, baseline, precision 8, 32x32, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\e3-082b89[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\down[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\dnserror[1]
HTML document, UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\customers-ge-aviation[1].png
PNG image data, 511 x 173, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\cookie-consent.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\cartcount[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\bluebird.min[1].js
ASCII text, with very long lines, with CRLF line terminators, with escape sequences
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\XDCN866V.htm
HTML document, ASCII text
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\RE4pndL[1].png
PNG image data, 40 x 40, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\RE4H9G0[1].wdp
JPEG-XR
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\IIS-Administration[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\6RJ6ZB23.htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\18338075[1].jpg
JPEG image data, baseline, precision 8, 32x32, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\38636870[1].jpg
JPEG image data, baseline, precision 8, 32x32, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\3605364[1].png
PNG image data, 32 x 32, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\twitter[1].png
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\tech-empower-results[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\swimlane-subscribe-to-news-tips[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\spot-azure-accessible-everywhere[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\social[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\mwfmdl2-v3.54[1].woff
Web Open Font Format, TrueType, length 26288, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\microsoft-logo2[1].png
PNG image data, 89 x 19, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\meversion[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\me[1].htm
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.MSO\EF142ED.png
PNG image data, 175 x 81, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RE4pkvE[1].png
PNG image data, 40 x 40, 8-bit gray+alpha, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RE4DRie[1].png
PNG image data, 1259 x 472, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\65-478888[1].css
UTF-8 Unicode (with BOM) text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\4734691[1].jpg
JPEG image data, baseline, precision 8, 32x32, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\21000428[1].jpg
JPEG image data, baseline, precision 8, 32x32, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1x1clear[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\17-f90ef1[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\12971179[1].jpg
JPEG image data, baseline, precision 8, 32x32, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{F7D58E8D-739A-48B6-B99E-11D35D7AABFB}.tmp
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{D5993233-DA6C-4F31-A159-3A5C447B0181}.tmp
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{A3851AEE-AECA-436C-8A5A-BC14FD1EA042}.tmp
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{31CB24EF-1DEB-4C38-BB46-32AB8B1362AD}.tmp
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RE4pxBu[1].png
PNG image data, 40 x 40, 8-bit gray+alpha, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.MSO\6C0FD40A.jpeg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, baseline, precision 8, 1024x224, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.MSO\25299F9C.png
PNG image data, 654 x 923, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Office\16.0\WebServiceCache\AllUsers\officeclient.microsoft.com\C35D0C9B-162A-4BE1-BAF9-F09B9C11FBF9
XML 1.0 document, UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Office\16.0\OfficeFileCache\CentralTable.laccdb
data
#
C:\Users\user\AppData\Local\Microsoft\Office\16.0\OfficeFileCache\CentralTable.ini
data
#
C:\Users\user\AppData\Local\Microsoft\Office\16.0\OfficeFileCache\CentralTable.accdb
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{518F19A3-77F5-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{3A9550E0-77F5-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{3A9550DE-77F5-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\OFGISG8J\docs.microsoft[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\favicon[1].ico
MS Windows icon resource - 6 icons, 128x128, 16 colors, 72x72, 16 colors
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\twitter[1].png
PNG image data, 32 x 32, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\toc[1].json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\swimlane-aspnet-extends-dotnet[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\sprite[1].png
PNG image data, 140 x 540, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\scripts-jquery-validate[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\new-features-introduced-in-iis-10-1709[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\microsoft-logo2[1].png
PNG image data, 89 x 19, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\jsll-4[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\iis-new-logo[1].png
PNG image data, 94 x 70, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\httpErrorPagesScripts[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\home.min[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\home-hero-bg[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\NY1GEO55\dotnet.microsoft[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\facebook[1].png
PNG image data, 32 x 32, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\downloadshome[1].js
UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\customers-ups[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\customers-godaddy[1].png
PNG image data, 637 x 177, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\configuration[1].htm
HTML document, ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\common[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\bootstrap-custom.min[1].css
UTF-8 Unicode (with BOM) text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\ZSQPH9MF.htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\SegoeUI-Roman-VF_web[1].woff
Web Open Font Format, TrueType, length 149700, version 1.66
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RE4sQDc[1].png
PNG image data, 40 x 40, 2-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RE4rriw[1].png
PNG image data, 40 x 40, 8-bit colormap, non-interlaced
#