Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Local\Google\Chrome\User Data\0deb9743-a339-4ec8-a30e-9a0c4bf59ac0.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\1686b79c-c0c7-4ef8-9a07-7258ea3c68a1.tmp
|
ASCII text, with very long lines, with no line terminators
|
modified
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\507fe456-014a-4556-9ac0-e42128722ec5.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\88b44522-9290-4862-bf7f-7b805cffd30a.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
|
data
|
modified
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\06a6c307-66fc-465e-8ea2-65e41771b8b3.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\074fb633-2a16-48b4-9c6d-43a63c06db45.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\08ad05fd-6f1b-477c-a510-235b7799f905.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\1cbb4b11-a095-4c37-a171-625eb6e688d4.tmp
|
ASCII text, with very long lines, with no line terminators
|
modified
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\20058bb0-b012-46f3-a23c-8f495c96de9a.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\3a1e030d-6929-4172-91e2-b7ffcbd15293.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\6253e9ba-ed74-4600-a10e-090b38ca745f.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\710bbc90-4c1d-4047-86db-0f30d24f66ab.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\7f3632bc-c88f-48fa-9cba-5ad4ee2bf4b2.tmp
|
UTF-8 Unicode text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\912f0f70-5ed1-4e46-b3d0-3bab71cfbf2d.tmp
|
very short file (no magic)
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State (copy)
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences (copy)
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (copy)
|
UTF-8 Unicode text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Network Persistent
State (copy)
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\cb5f58c1-5f1d-4a96-9a1e-0de7ecde74e3.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\GPUCache\data_1
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Network Persistent
State (copy)
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\ad78c969-ba02-4d17-9a4f-f758bd6b9c10.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\a36eedd9-a811-4888-9909-5d21904c96b6.tmp
|
UTF-8 Unicode text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\d485dfda-a03d-4059-a8f1-3abcc914fc6c.tmp
|
UTF-8 Unicode text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000004.dbtmp
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\f75d2699-bebd-4705-b6c5-97cf32f1f3b3.tmp
|
UTF-8 Unicode text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\fa5b721e-e62a-4730-b5c8-b6507517b4b4.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Browser
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State (copy)
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Module Info Cache (copy)
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\a8fd4281-c9e0-4bd8-b064-a8dd00225688.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\aaf5fac2-bf0b-46ce-907e-eed7f03ba0fd.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\b6794442-3ca2-4f76-bd30-8e0c62d8d72b.tmp
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\c8506f3d-6054-43a1-bc68-ca1bd3774dca.tmp
|
SysEx File -
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\d5d35829-ddf2-4850-9ea2-07f3c5767ead.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\e6229705-68f3-4a28-af2f-9cd206e8ac0a.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Google\Chrome\User Data\ff9a958a-01b6-4c78-815d-4a48c2149786.tmp
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_metadata\verified_contents.json
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_pnacl_json
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_for_eh_o
|
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_o
|
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_crtend_o
|
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_ld_nexe
|
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=7511538a3a6a0b862c772eace49075ed1bbe2377,
stripped
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a
|
current ar archive
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a
|
current ar archive
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a
|
current ar archive
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_dummy_a
|
current ar archive
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe
|
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=309d6d3d463e6b1b0690f39eb226b1e4c469b2ce,
stripped
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_sz_nexe
|
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=4b15de4ab227d5e46213978b8518d53c53ce1db9,
stripped
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\manifest.fingerprint
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_202146406\manifest.json
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_456613470\Recovery.crx3
|
Google Chrome extension, version 3
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_456613470\_metadata\verified_contents.json
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_456613470\manifest.fingerprint
|
ASCII text, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\5968_456613470\manifest.json
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\6bffe78d-b2ab-4ea1-8398-02ce34a85e67.tmp
|
very short file (no magic)
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\e6db15ff-6bfa-43af-9d10-d9e6d9f38063.tmp
|
Google Chrome extension, version 3
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\bg\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\ca\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\cs\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\da\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\de\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\el\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\en\messages.json
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\en_GB\messages.json
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\es\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\es_419\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\et\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\fi\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\fil\messages.json
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\fr\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\hi\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\hr\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\hu\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\id\messages.json
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\it\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\ja\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\ko\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\lt\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\lv\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\nb\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\nl\messages.json
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\pl\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\pt_BR\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\pt_PT\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\ro\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\ru\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\sk\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\sl\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\sr\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\sv\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\th\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\tr\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\uk\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\vi\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\zh_CN\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_locales\zh_TW\messages.json
|
UTF-8 Unicode text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\_metadata\verified_contents.json
|
ASCII text, with very long lines, with no line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\craw_background.js
|
ASCII text, with very long lines
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\craw_window.js
|
ASCII text, with very long lines
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\css\craw_window.css
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\html\craw_window.html
|
HTML document, ASCII text
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\flapper.gif
|
GIF image data, version 89a, 30 x 30
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\icon_128.png
|
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\icon_16.png
|
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\topbar_floating_button.png
|
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\topbar_floating_button_close.png
|
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\topbar_floating_button_hover.png
|
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\topbar_floating_button_maximize.png
|
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\images\topbar_floating_button_pressed.png
|
PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\CRX_INSTALL\manifest.json
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\scoped_dir5968_189028360\e6db15ff-6bfa-43af-9d10-d9e6d9f38063.tmp
|
Google Chrome extension, version 3
|
dropped
|
There are 111 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1528,17853924459910557261,9694031306703536905,131072
--lang=en-GB --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1784 /prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
C:\Program Files\Google\Chrome\Application\chrome.exe" "http://recp.mkt51.net/ctt?m=27097482&r=NzgzMjA3MzI5NTYxS0&j=MjI0NDQyMzQ1NgS2&b=3&mt=1&rt=0&kx=1&kt=12&k=ShopName&kd=https://login.lnspirationhm.com/?username=thomas.thueler@bdo.ch
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://recp.mkt51.net/ctt?m=27097482&r=NzgzMjA3MzI5NTYxS0&j=MjI0NDQyMzQ1NgS2&b=3&mt=1&rt=0&kx=1&kt=12&k=ShopName&kd=https://login.lnspirationhm.com/?username=thomas.thueler@bdo.ch
|
|||
https://brave.com/learn/most-secure-browser/
|
|||
https://brave.com/static-assets/images/brave-logo-no-shadow.png
|
18.66.122.122
|
||
https://stats.g.doubleclick.net
|
unknown
|
||
https://brave.com/download-beta/
|
|||
https://brave.com/static-assets/images/icon-download.svg
|
18.66.122.122
|
||
https://brave.com/js/referral.min.js
|
18.66.122.122
|
||
https://brave.com/static-assets/images/optimized/learn/images/fastest-browser@1x.webp
|
18.66.122.122
|
||
https://www.google.com
|
unknown
|
||
https://brave.com/static-assets/images/safari-logo.svg
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/WKlNHhjh9npwwp0m-3Jc4O2yRLg0xFaF0HO2fX9piYhHg_r_rNkFB60MSWsfuOYsPGUt=w526-h296-rw
|
172.217.168.54
|
||
https://brave.com/static-assets/images/optimized/learn/images/secure-browser@1x.webp
|
18.66.122.122
|
||
https://brave.com/download/
|
18.66.122.122
|
||
https://brave.com/js/accordion-faq.min.js
|
18.66.122.122
|
||
https://brave.com/static-assets/icons/close-icon.svg
|
18.66.122.122
|
||
https://brave.com/static-assets/images/coding-background-texture.jpg
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/12USW7aflgz466ifDehKTnMoAep_VHxDmKJ6jEBoDZWCSefOC-ThRX14Mqe0r8KF9XCzrpMqJts=s20-rw
|
172.217.168.54
|
||
https://brave.com/static-assets/icons/chevron-right-icon.svg
|
18.66.122.122
|
||
https://brave.com/static-assets/fonts/Poppins/Poppins-Medium.ttf
|
18.66.122.122
|
||
https://analytics.brave.com/piwik.php?action_name=Download%20Brave%20%7C%20Brave%20Browser&idsite=2&rec=1&r=297710&h=6&m=58&s=39&url=https%3A%2F%2Fbrave.com%2Fdownload%2F&_id=&_idn=1&_refts=0&send_image=1&pdf=0&qt=0&realp=0&wma=0&fla=0&java=0&ag=0&cookie=1&res=1280x1024&pv_id=LTXqSP&pf_net=236&pf_srv=22&pf_tfr=74&pf_dm1=922
|
18.65.82.70
|
||
https://www.google.com/accounts/OAuthLogin?issueuberauth=1
|
unknown
|
||
https://brave.com/static-assets/images/optimized/browser-1280x339.webp
|
18.66.122.122
|
||
https://brave.com/static-assets/images/category-thumbnail-web3-browsers.svg
|
18.66.122.122
|
||
https://brave.com/static-assets/fonts/Poppins/Poppins-Regular.ttf
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/a-/AFdZucq-n-xeG5uGTjul0mkdclqMgRWwjr1D0zdKd_Ov0A=s32-rw
|
172.217.168.54
|
||
https://play-lh.googleusercontent.com/Yxa9AnKKAnMGFov2uBQ5dWfovUpIKtZs2tLgJUbh6AzEv3owH8lBSux975PEuaB8aIc=w526-h296-rw
|
172.217.168.54
|
||
https://brave.com/static-assets/images/optimized/home-illustration-01.webp
|
18.66.122.122
|
||
https://brave.com/js/vimeo.min.js
|
18.66.122.122
|
||
https://analytics.brave.com/piwik.php?action_name=Secure%2C%20Fast%20%26%20Private%20Web%20Browser%20with%20Adblocker%20%7C%20Brave%20Browser&idsite=2&rec=1&r=241403&h=6&m=58&s=26&url=https%3A%2F%2Fbrave.com%2F&_id=&_idn=1&_refts=0&send_image=1&pdf=0&qt=0&realp=0&wma=0&fla=0&java=0&ag=0&cookie=1&res=1280x1024&pv_id=Sn441r&pf_net=131&pf_srv=25&pf_tfr=112&pf_dm1=2354
|
18.65.82.70
|
||
https://brave.com/static-assets/images/interstitial-download-qr.png
|
18.66.122.122
|
||
https://dns.google
|
unknown
|
||
https://github.com/google/closure-library/wiki/goog.module:-an-ES6-module-like-alternative-to-goog.p
|
unknown
|
||
https://brave.com/static-assets/js/announcement-banner.js
|
18.66.122.122
|
||
https://brave.com/static-assets/images/app-store-badge.png
|
18.66.122.122
|
||
https://brave.com/ios/
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/rWoDevKXfJpuqVmCKiwMxfWWFzci7Ts7eXCNqc3UnVJTYgyEJ9RjkZAugxl3c95LhA=w526-h296-rw
|
172.217.168.54
|
||
https://payments.google.com/payments/v4/js/integrator.js
|
unknown
|
||
https://brave.com/static-assets/images/site-nav-download-qr.png
|
18.66.122.122
|
||
https://brave.com/static-assets/images/optimized/home-illustration-02.webp
|
18.66.122.122
|
||
https://brave.com/static-assets/images/optimized/security-illustration.webp
|
18.66.122.122
|
||
https://brave.com/js/is-browser.min.js
|
18.66.122.122
|
||
https://brave.com/static-assets/vendors/lodash.throttle.min.js
|
18.66.122.122
|
||
https://www.google.com/images/x2.gif
|
unknown
|
||
https://brave.com/static-assets/images/playstore.png
|
18.66.122.122
|
||
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=85.0.4183.121&lang=en-GB&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1&x=id%3Dpkedcjkdefgpdelpbcmbmeomcjbeemfm%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
|
172.217.168.14
|
||
https://www.google.com/images/dot2.gif
|
unknown
|
||
https://brave.com/static-assets/images/optimized/desktop-hero-screenshot@1x.webp
|
18.66.122.122
|
||
https://brave.com/android/
|
18.66.122.122
|
||
https://brave.com/static-assets/images/logo-verizon.svg
|
18.66.122.122
|
||
https://brave.com/static-assets/images/optimized/1.41-release/images/featured.webp
|
18.66.122.122
|
||
https://brave.com/js/1-ie-compat.min.js
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/4ttZsI2w3mI--LU7I2lOvjSELTxqvGTlLTUec43HtTof0ma9l7NerEnPGxHbPRYFbjo=s64-rw
|
172.217.168.54
|
||
https://brave.com/
|
|||
https://play-lh.googleusercontent.com/Ea12V8BesGX1BqYZT8UEC6r7zfn_Njdx-IkljrMvi_NGcnThCQ__CpbApLwJYmLLB6Y=w526-h296-rw
|
172.217.168.54
|
||
https://brave.com/static-assets/images/mobile.svg
|
18.66.122.122
|
||
https://brave.com/static-assets/images/optimized/mobile-plank-download-qr.png
|
18.66.122.122
|
||
https://www.google.com/
|
unknown
|
||
https://brave.com/static-assets/images/optimized/import-settings.svg
|
18.66.122.122
|
||
https://brave.com/js/detect-platform.min.js
|
18.66.122.122
|
||
https://login.lnspirationhm.com/?username=thomas.thueler@bdo.ch
|
104.238.35.138
|
||
https://www.google.com/images/cleardot.gif
|
unknown
|
||
https://www.google.de/ads/ga-audiences?t=sr&aip=1&_r=4&slf_rd=1&v=1&_v=j96&tid=UA-19995903-1&cid=1703701030.1660193925&jid=2146713379&_u=YEBAAEAAAAAAAC~&z=2115431390
|
172.217.168.35
|
||
https://brave.com/linux/
|
18.66.122.122
|
||
https://play.google.com/store/apps/details?id=com.brave.browser
|
|||
https://play.google.com
|
unknown
|
||
https://brave.com/static-assets/images/optimized/speed-past-chrome-cover.png
|
18.66.122.122
|
||
https://brave.com/learn/
|
|||
https://brave.com/js/diagonal-movement.min.js
|
18.66.122.122
|
||
https://sandbox.google.com/payments/v4/js/integrator.js
|
unknown
|
||
https://brave.com/static-assets/fonts/Poppins/Poppins-Bold.ttf
|
18.66.122.122
|
||
https://brave.com/js/navigation.min.js
|
18.66.122.122
|
||
https://brave.com/static-assets/images/separator_curve.svg
|
18.66.122.122
|
||
https://brave.com/static-assets/css/main.min.css
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/rh_JsaDPC_ArUMPdZFSEgCM6N-EbS0urR6k9VETap0CAQROivBPjJ6K5g99bXwHXUd1m=w526-h296-rw
|
172.217.168.54
|
||
https://accounts.google.com/MergeSession
|
unknown
|
||
https://brave.com/static-assets/images/logo-etoro.svg
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/maODa6yJ4GcLMwJ0oqbOOa2zUfy8hZPeTclRoH__2B1Ch5yV7L2hRa-Gk7PeIu_utgMr=w526-h296-rw
|
172.217.168.54
|
||
https://brave.com/static-assets/images/brave-logo.svg
|
18.66.122.122
|
||
https://www.google.com/tools/feedback/chat_load.js
|
142.250.203.100
|
||
https://brave.com/static-assets/images/brave-favicon.png
|
18.66.122.122
|
||
https://brave.com/static-assets/images/filler.png
|
18.66.122.122
|
||
https://brave.com/static-assets/images/optimized/1.42-release/images/featured.webp
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/6eOk4kfniz8QOP_OhKMuw4ILpK-6TlQGIVdD3unMG0zZBgdaJnMxZKyJqSRQsZe-WmvN=w526-h296-rw
|
172.217.168.54
|
||
https://play-lh.googleusercontent.com/vvjvZn0l16nn8j1KfCAbHlBn7wm6la_55pfxGOW9Wg0ut6C51wKVb3DWJTqSJc-eCnA=s64-rw
|
172.217.168.54
|
||
https://accounts.google.com
|
unknown
|
||
https://play-lh.googleusercontent.com/Y88L5CyJR1oB8-a4pjUuki4i-k_EHupoFGToj-X_851mlA3GBQZMN6ygW7F7e07iK8I=s64-rw
|
172.217.168.54
|
||
https://play-lh.googleusercontent.com
|
unknown
|
||
https://brave.com/static-assets/images/browser-embellishments.svg
|
18.66.122.122
|
||
https://apis.google.com
|
unknown
|
||
https://play-lh.googleusercontent.com/a/AItbvmmz3Oj7lQV-1FaKpNzYw3XomAL5UwJCtsvPnIAL=s32-rw-mo
|
172.217.168.54
|
||
https://www-googleapis-staging.sandbox.google.com
|
unknown
|
||
https://brave.com/static-assets/images/logo-dentsu.svg
|
18.66.122.122
|
||
https://play-lh.googleusercontent.com/diXzCee0FKktbzQrA7Bnzw1HjjISjhWLGpqBB7hTp6R_Yqgr1jQaLuhFA0V3eTTI8qg=w526-h296-rw
|
172.217.168.54
|
||
https://brave.com/static-assets/images/optimized/brave-ads/podcast/images/logo-Cega.png
|
18.66.122.122
|
||
https://brave.com/static-assets/images/optimized/home-illustration-04.webp
|
18.66.122.122
|
||
https://clients2.google.com
|
unknown
|
||
https://play-lh.googleusercontent.com/-jHGUjkL3A6gnNHLpgSolXlS1ApKPRrp8nIZ_xaLqTsTDbn-MMli74O7oUnk-S1BB7Y=w526-h296-rw
|
172.217.168.54
|
||
https://play-lh.googleusercontent.com/4IWJn8mb2xBO5sT46TFyaG2P_-1rCjlrZUs1MdZ3E0zmoJ0sBvLyP5meTHK0jct4Fg=w526-h296-rw
|
172.217.168.54
|
||
https://brave.com/static-assets/icons/arrow-down.svg
|
18.66.122.122
|
||
https://www.google.com/intl/en-US/chrome/blank.html
|
unknown
|
||
https://brave.com/static-assets/css/fonts-latin.css
|
18.66.122.122
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
gstaticadssl.l.google.com
|
172.217.168.3
|
||
www.google.de
|
172.217.168.35
|
||
accounts.google.com
|
142.250.203.109
|
||
play.google.com
|
216.58.215.238
|
||
stats.l.doubleclick.net
|
172.217.218.154
|
||
recp.mkt51.net
|
35.169.253.76
|
||
brave.com
|
18.66.122.122
|
||
play-lh.googleusercontent.com
|
172.217.168.54
|
||
login.lnspirationhm.com
|
104.238.35.138
|
||
d2cbcq2c2d2d1v.cloudfront.net
|
18.65.82.70
|
||
www.google.com
|
142.250.203.100
|
||
clients.l.google.com
|
172.217.168.14
|
||
is2-ssl.mzstatic.com
|
unknown
|
||
analytics.brave.com
|
unknown
|
||
is4-ssl.mzstatic.com
|
unknown
|
||
stats.g.doubleclick.net
|
unknown
|
||
is3-ssl.mzstatic.com
|
unknown
|
||
clients2.google.com
|
unknown
|
||
is1-ssl.mzstatic.com
|
unknown
|
||
is5-ssl.mzstatic.com
|
unknown
|
There are 10 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
192.168.2.1
|
unknown
|
unknown
|
||
216.58.215.238
|
play.google.com
|
United States
|
||
18.66.122.122
|
brave.com
|
United States
|
||
172.217.218.154
|
stats.l.doubleclick.net
|
United States
|
||
35.169.253.76
|
recp.mkt51.net
|
United States
|
||
104.238.35.138
|
login.lnspirationhm.com
|
United States
|
||
172.217.168.3
|
gstaticadssl.l.google.com
|
United States
|
||
142.250.203.109
|
accounts.google.com
|
United States
|
||
142.250.203.100
|
www.google.com
|
United States
|
||
172.217.168.35
|
www.google.de
|
United States
|
||
172.217.168.14
|
clients.l.google.com
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
172.217.168.54
|
play-lh.googleusercontent.com
|
United States
|
||
18.65.82.70
|
d2cbcq2c2d2d1v.cloudfront.net
|
United States
|
||
127.0.0.1
|
unknown
|
unknown
|
There are 5 hidden IPs, click here to show them.
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}\LastWasDefault
|
S-1-5-21-3853321935-2125563209-4053062332-1002
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
ahfgeienlihckogmohjhadlkjgocpleb
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
gdaefkejpgkiemlaofpalmlakkmbjdnl
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
gfdkimpbcpahaombhbimeihdjnejgicl
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
kmendfapggjehodndflmmgagdbamhnfd
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
mfehgcgbbipciphmccgaenjidiccnmng
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
mhjfbmdgcfjbbpaeojofohoefgiehjai
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
neajdppkdcdipfabeoofebfddakdcjhd
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
nkeimhogjdpnpccoofpliimaahmaaome
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
nmmhkkegccagdldgiimedpiccmgmieda
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
pkedcjkdefgpdelpbcmbmeomcjbeemfm
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
prefs.preference_reset_time
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
gfdkimpbcpahaombhbimeihdjnejgicl
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
nmmhkkegccagdldgiimedpiccmgmieda
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings
|
nmmhkkegccagdldgiimedpiccmgmieda
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
|
state
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
|
StatusCodes
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
|
StatusCodes
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
|
state
|
||
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
|
dr
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
software_reporter.reporting
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
module_blacklist_cache_md5_digest
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
media.storage_id_salt
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
google.services.last_account_id
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
google.services.account_id
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
software_reporter.prompt_seed
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
settings_reset_prompt.last_triggered_for_homepage
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
default_search_provider_data.template_url_data
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
safebrowsing.incidents_sent
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
pinned_tabs
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
search_provider_overrides
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
settings_reset_prompt.last_triggered_for_default_search
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
prefs.preference_reset_time
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
google.services.last_username
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
session.startup_urls
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
session.restore_on_startup
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
software_reporter.prompt_version
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
settings_reset_prompt.last_triggered_for_startup_urls
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
settings_reset_prompt.prompt_wave
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
homepage
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
homepage_is_newtabpage
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\PreferenceMACs\Default
|
browser.show_home_button
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\StabilityMetrics
|
user_experience_metrics.stability.exited_cleanly
|
||
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
|
lastrun
|
||
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
|
lastrun
|
||
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}\LastWasDefault
|
S-1-5-21-3853321935-2125563209-4053062332-1002
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
|
state
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
|
StatusCodes
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
|
StatusCodes
|
||
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
|
state
|
There are 40 hidden registries, click here to show them.
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
5035D7E000
|
stack
|
page read and write
|
||
274F3269000
|
heap
|
page read and write
|
||
1DB131DE000
|
heap
|
page read and write
|
||
2EA46E60000
|
heap
|
page read and write
|
||
274F324E000
|
heap
|
page read and write
|
||
1B5AF802000
|
trusted library allocation
|
page read and write
|
||
1DB18100000
|
trusted library allocation
|
page read and write
|
||
1DB17D56000
|
trusted library allocation
|
page read and write
|
||
1DEF3E29000
|
heap
|
page read and write
|
||
1DB17D80000
|
trusted library allocation
|
page read and write
|
||
274F3247000
|
heap
|
page read and write
|
||
1A6C3802000
|
heap
|
page read and write
|
||
E742F7E000
|
stack
|
page read and write
|
||
1DB1810E000
|
trusted library allocation
|
page read and write
|
||
8BA8BF9000
|
stack
|
page read and write
|
||
1DB6F67B000
|
heap
|
page read and write
|
||
1DB17F08000
|
heap
|
page read and write
|
||
11B0EFE000
|
stack
|
page read and write
|
||
1DEF3E48000
|
heap
|
page read and write
|
||
274F3A02000
|
trusted library allocation
|
page read and write
|
||
1A6C3720000
|
heap
|
page read and write
|
||
1DB17EDA000
|
heap
|
page read and write
|
||
259CE3E0000
|
remote allocation
|
page read and write
|
||
EBC8DFC000
|
stack
|
page read and write
|
||
34FB27B000
|
stack
|
page read and write
|
||
1DB17EDA000
|
heap
|
page read and write
|
||
1DEF3E2E000
|
heap
|
page read and write
|
||
1DB17F19000
|
heap
|
page read and write
|
||
274F325C000
|
heap
|
page read and write
|
||
1B5AEE5C000
|
heap
|
page read and write
|
||
1DB127A0000
|
trusted library allocation
|
page read and write
|
||
1DB6F65A000
|
heap
|
page read and write
|
||
1B5AED40000
|
heap
|
page read and write
|
||
1A6C3813000
|
heap
|
page read and write
|
||
34FB07B000
|
stack
|
page read and write
|
||
274F3261000
|
heap
|
page read and write
|
||
274F3241000
|
heap
|
page read and write
|
||
259CE402000
|
heap
|
page read and write
|
||
11B137D000
|
stack
|
page read and write
|
||
1DB13159000
|
heap
|
page read and write
|
||
22BE2002000
|
trusted library allocation
|
page read and write
|
||
43E79FE000
|
stack
|
page read and write
|
||
1DB6F520000
|
heap
|
page read and write
|
||
11B0FFE000
|
stack
|
page read and write
|
||
274F3245000
|
heap
|
page read and write
|
||
34FAB4B000
|
stack
|
page read and write
|
||
1DEF3E24000
|
heap
|
page read and write
|
||
22BE1680000
|
heap
|
page read and write
|
||
1A6C3710000
|
heap
|
page read and write
|
||
259CE45A000
|
heap
|
page read and write
|
||
274F3263000
|
heap
|
page read and write
|
||
259CE413000
|
heap
|
page read and write
|
||
43E797B000
|
stack
|
page read and write
|
||
259CE424000
|
heap
|
page read and write
|
||
1DB17EFD000
|
heap
|
page read and write
|
||
1DEF3F02000
|
heap
|
page read and write
|
||
2EA47802000
|
heap
|
page read and write
|
||
8B9177C000
|
stack
|
page read and write
|
||
1DEF3E54000
|
heap
|
page read and write
|
||
1DB6F4B0000
|
heap
|
page read and write
|
||
22BE1913000
|
heap
|
page read and write
|
||
22BE1881000
|
heap
|
page read and write
|
||
C79F87F000
|
stack
|
page read and write
|
||
1DB6F63E000
|
heap
|
page read and write
|
||
1DB18110000
|
trusted library allocation
|
page read and write
|
||
8BA89FE000
|
stack
|
page read and write
|
||
259CE44C000
|
heap
|
page read and write
|
||
1A6C3902000
|
heap
|
page read and write
|
||
EBC8C7F000
|
stack
|
page read and write
|
||
2EA46DF0000
|
heap
|
page read and write
|
||
34FB17B000
|
stack
|
page read and write
|
||
1DB17EFF000
|
heap
|
page read and write
|
||
1DB12913000
|
heap
|
page read and write
|
||
C79F7FF000
|
stack
|
page read and write
|
||
274F3213000
|
heap
|
page read and write
|
||
C79FB7F000
|
stack
|
page read and write
|
||
1DB17D5A000
|
trusted library allocation
|
page read and write
|
||
1DB18108000
|
trusted library allocation
|
page read and write
|
||
5035A7F000
|
stack
|
page read and write
|
||
22BE1802000
|
heap
|
page read and write
|
||
1DB13113000
|
heap
|
page read and write
|
||
274F3258000
|
heap
|
page read and write
|
||
2EA47000000
|
heap
|
page read and write
|
||
1DB6FE02000
|
trusted library allocation
|
page read and write
|
||
22BE1852000
|
heap
|
page read and write
|
||
8B9197F000
|
stack
|
page read and write
|
||
1DB181A0000
|
remote allocation
|
page read and write
|
||
1DB17F02000
|
heap
|
page read and write
|
||
1B5AEE02000
|
heap
|
page read and write
|
||
1A6C3829000
|
heap
|
page read and write
|
||
1DB1286F000
|
heap
|
page read and write
|
||
1DB17F0B000
|
heap
|
page read and write
|
||
1DB181A0000
|
remote allocation
|
page read and write
|
||
1DB1289E000
|
heap
|
page read and write
|
||
1A6C3780000
|
heap
|
page read and write
|
||
1B5AEDE0000
|
trusted library allocation
|
page read and write
|
||
EBC8AFC000
|
stack
|
page read and write
|
||
503547B000
|
stack
|
page read and write
|
||
22BE186E000
|
heap
|
page read and write
|
||
1A6C3857000
|
heap
|
page read and write
|
||
259CE1E0000
|
heap
|
page read and write
|
||
1DB17EB4000
|
heap
|
page read and write
|
||
1DB6F628000
|
heap
|
page read and write
|
||
259CE443000
|
heap
|
page read and write
|
||
274F3244000
|
heap
|
page read and write
|
||
1DB1319B000
|
heap
|
page read and write
|
||
274F323F000
|
heap
|
page read and write
|
||
1B5AEF13000
|
heap
|
page read and write
|
||
1DB13100000
|
heap
|
page read and write
|
||
1DB127B0000
|
trusted library section
|
page read and write
|
||
EBC8EFC000
|
stack
|
page read and write
|
||
1DB17F1D000
|
heap
|
page read and write
|
||
503597E000
|
stack
|
page read and write
|
||
1B5AEDB0000
|
heap
|
page read and write
|
||
22BE1827000
|
heap
|
page read and write
|
||
259CE1F0000
|
heap
|
page read and write
|
||
2EA47900000
|
heap
|
page read and write
|
||
1A6C37E0000
|
remote allocation
|
page read and write
|
||
1DB13300000
|
trusted library allocation
|
page read and write
|
||
1A6C385F000
|
heap
|
page read and write
|
||
274F3200000
|
heap
|
page read and write
|
||
8B9147F000
|
stack
|
page read and write
|
||
22BE1864000
|
heap
|
page read and write
|
||
C79F57B000
|
stack
|
page read and write
|
||
259CE513000
|
heap
|
page read and write
|
||
274F325F000
|
heap
|
page read and write
|
||
1DB17D55000
|
trusted library allocation
|
page read and write
|
||
259CE478000
|
heap
|
page read and write
|
||
259CE500000
|
heap
|
page read and write
|
||
274F3050000
|
heap
|
page read and write
|
||
274F325E000
|
heap
|
page read and write
|
||
1DB17EFF000
|
heap
|
page read and write
|
||
274F30C0000
|
heap
|
page read and write
|
||
274F3275000
|
heap
|
page read and write
|
||
274F325B000
|
heap
|
page read and write
|
||
1DB17D51000
|
trusted library allocation
|
page read and write
|
||
1DEF3E46000
|
heap
|
page read and write
|
||
274F3233000
|
heap
|
page read and write
|
||
1B5AEF02000
|
heap
|
page read and write
|
||
259CE400000
|
heap
|
page read and write
|
||
5035C7F000
|
stack
|
page read and write
|
||
43E7AF7000
|
stack
|
page read and write
|
||
274F3246000
|
heap
|
page read and write
|
||
274F3260000
|
heap
|
page read and write
|
||
274F3249000
|
heap
|
page read and write
|
||
1DB13000000
|
heap
|
page read and write
|
||
503567C000
|
stack
|
page read and write
|
||
274F327D000
|
heap
|
page read and write
|
||
22BE1620000
|
heap
|
page read and write
|
||
274F325A000
|
heap
|
page read and write
|
||
1DEF4602000
|
trusted library allocation
|
page read and write
|
||
1DB12879000
|
heap
|
page read and write
|
||
C79F17A000
|
stack
|
page read and write
|
||
1DB6F602000
|
heap
|
page read and write
|
||
503557F000
|
stack
|
page read and write
|
||
1B5AEE26000
|
heap
|
page read and write
|
||
1DEF3E13000
|
heap
|
page read and write
|
||
1DB12902000
|
heap
|
page read and write
|
||
274F3229000
|
heap
|
page read and write
|
||
1DB17EF6000
|
heap
|
page read and write
|
||
1A6C37E0000
|
remote allocation
|
page read and write
|
||
1DEF3DD0000
|
trusted library allocation
|
page read and write
|
||
259CE44A000
|
heap
|
page read and write
|
||
1DB1283E000
|
heap
|
page read and write
|
||
1DB12640000
|
heap
|
page read and write
|
||
1DB6F668000
|
heap
|
page read and write
|
||
5035B7E000
|
stack
|
page read and write
|
||
1DB13118000
|
heap
|
page read and write
|
||
1DB17F02000
|
heap
|
page read and write
|
||
C79EF7E000
|
stack
|
page read and write
|
||
43E777E000
|
stack
|
page read and write
|
||
1DB6F700000
|
heap
|
page read and write
|
||
259CFE02000
|
trusted library allocation
|
page read and write
|
||
C79F47A000
|
stack
|
page read and write
|
||
1DB18121000
|
trusted library allocation
|
page read and write
|
||
274F324F000
|
heap
|
page read and write
|
||
274F3257000
|
heap
|
page read and write
|
||
1DEF3E37000
|
heap
|
page read and write
|
||
C79F77F000
|
stack
|
page read and write
|
||
1DB6F613000
|
heap
|
page read and write
|
||
1B5AED50000
|
heap
|
page read and write
|
||
43E76FD000
|
stack
|
page read and write
|
||
11B0E7F000
|
stack
|
page read and write
|
||
8BA85CC000
|
stack
|
page read and write
|
||
1DB17F18000
|
heap
|
page read and write
|
||
274F327E000
|
heap
|
page read and write
|
||
274F3240000
|
heap
|
page read and write
|
||
8B90EDB000
|
stack
|
page read and write
|
||
1B5AEE78000
|
heap
|
page read and write
|
||
1DEF3E4C000
|
heap
|
page read and write
|
||
C79F5FF000
|
stack
|
page read and write
|
||
1A6C3841000
|
heap
|
page read and write
|
||
C79F279000
|
stack
|
page read and write
|
||
43E7CFA000
|
stack
|
page read and write
|
||
1DB12813000
|
heap
|
page read and write
|
||
1DB12893000
|
heap
|
page read and write
|
||
8B91A7D000
|
stack
|
page read and write
|
||
2EA46F60000
|
trusted library allocation
|
page read and write
|
||
274F3302000
|
heap
|
page read and write
|
||
274F3267000
|
heap
|
page read and write
|
||
11B117F000
|
stack
|
page read and write
|
||
1DB6F664000
|
heap
|
page read and write
|
||
274F327B000
|
heap
|
page read and write
|
||
1A6C3800000
|
heap
|
page read and write
|
||
1DB12877000
|
heap
|
page read and write
|
||
2EA47102000
|
heap
|
page read and write
|
||
1DB17D5B000
|
trusted library allocation
|
page read and write
|
||
2EA47026000
|
heap
|
page read and write
|
||
22BE186E000
|
heap
|
page read and write
|
||
1A6C4202000
|
trusted library allocation
|
page read and write
|
||
259CFDA0000
|
trusted library allocation
|
page read and write
|
||
1B5AEE13000
|
heap
|
page read and write
|
||
1DB17F0D000
|
heap
|
page read and write
|
||
43E7BFF000
|
stack
|
page read and write
|
||
503587D000
|
stack
|
page read and write
|
||
274F323D000
|
heap
|
page read and write
|
||
1DB13118000
|
heap
|
page read and write
|
||
22BE185C000
|
heap
|
page read and write
|
||
1B5AEE5E000
|
heap
|
page read and write
|
||
8B9157F000
|
stack
|
page read and write
|
||
8B9187C000
|
stack
|
page read and write
|
||
1B5AEE00000
|
heap
|
page read and write
|
||
274F322F000
|
heap
|
page read and write
|
||
E742E7E000
|
stack
|
page read and write
|
||
1B5AEE29000
|
heap
|
page read and write
|
||
2EA470CE000
|
heap
|
page read and write
|
||
274F3242000
|
heap
|
page read and write
|
||
1DB17F08000
|
heap
|
page read and write
|
||
259CE44D000
|
heap
|
page read and write
|
||
8B9167F000
|
stack
|
page read and write
|
||
1DEF3E02000
|
heap
|
page read and write
|
||
1DEF3E00000
|
heap
|
page read and write
|
||
1DB126A0000
|
heap
|
page read and write
|
||
2EA47029000
|
heap
|
page read and write
|
||
1DB181A0000
|
remote allocation
|
page read and write
|
||
274F3262000
|
heap
|
page read and write
|
||
2EA4708A000
|
heap
|
page read and write
|
||
EBC927C000
|
stack
|
page read and write
|
||
1A6C37B0000
|
trusted library allocation
|
page read and write
|
||
274F3297000
|
heap
|
page read and write
|
||
259CE3E0000
|
remote allocation
|
page read and write
|
||
EBC869C000
|
stack
|
page read and write
|
||
1DB17F0A000
|
heap
|
page read and write
|
||
1DB6FDC0000
|
trusted library allocation
|
page read and write
|
||
274F326D000
|
heap
|
page read and write
|
||
1DEF3C80000
|
heap
|
page read and write
|
||
274F3060000
|
heap
|
page read and write
|
||
2EA470BD000
|
heap
|
page read and write
|
||
1DB13118000
|
heap
|
page read and write
|
||
1DB6F4C0000
|
heap
|
page read and write
|
||
1DB17EFA000
|
heap
|
page read and write
|
||
C79EE7B000
|
stack
|
page read and write
|
||
1DB17F06000
|
heap
|
page read and write
|
||
1DB17F2C000
|
heap
|
page read and write
|
||
259CE502000
|
heap
|
page read and write
|
||
1DB12829000
|
heap
|
page read and write
|
||
1DB1319B000
|
heap
|
page read and write
|
||
2EA46E00000
|
heap
|
page read and write
|
||
274F3264000
|
heap
|
page read and write
|
||
1DB17F24000
|
heap
|
page read and write
|
||
E74307E000
|
stack
|
page read and write
|
||
1DB6F702000
|
heap
|
page read and write
|
||
259CE46B000
|
heap
|
page read and write
|
||
EBC8F7B000
|
stack
|
page read and write
|
||
1DB128FD000
|
heap
|
page read and write
|
||
11B127D000
|
stack
|
page read and write
|
||
2EA4703E000
|
heap
|
page read and write
|
||
1DB17D84000
|
trusted library allocation
|
page read and write
|
||
43E767B000
|
stack
|
page read and write
|
||
22BE1902000
|
heap
|
page read and write
|
||
8BA8CFE000
|
stack
|
page read and write
|
||
274F323A000
|
heap
|
page read and write
|
||
C79F6FE000
|
stack
|
page read and write
|
||
1DB1319B000
|
heap
|
page read and write
|
||
1DB13159000
|
heap
|
page read and write
|
||
1A6C37E0000
|
remote allocation
|
page read and write
|
||
259CE250000
|
heap
|
page read and write
|
||
1DB12800000
|
heap
|
page read and write
|
||
274F326F000
|
heap
|
page read and write
|
||
22BE1900000
|
heap
|
page read and write
|
||
EBC8D7F000
|
stack
|
page read and write
|
||
274F3233000
|
heap
|
page read and write
|
||
274F326B000
|
heap
|
page read and write
|
||
E7428FB000
|
stack
|
page read and write
|
||
274F3284000
|
heap
|
page read and write
|
||
1DB1288C000
|
heap
|
page read and write
|
||
1DB13015000
|
heap
|
page read and write
|
||
22BE1829000
|
heap
|
page read and write
|
||
E742D7F000
|
stack
|
page read and write
|
||
11B13FC000
|
stack
|
page read and write
|
||
22BE183C000
|
heap
|
page read and write
|
||
274F3231000
|
heap
|
page read and write
|
||
1DB6F600000
|
heap
|
page read and write
|
||
22BE1908000
|
heap
|
page read and write
|
||
E7429FE000
|
stack
|
page read and write
|
||
1DEF3CD0000
|
heap
|
page read and write
|
||
1DB12858000
|
heap
|
page read and write
|
||
11B098B000
|
stack
|
page read and write
|
||
1B5AEE3D000
|
heap
|
page read and write
|
||
1DB12874000
|
heap
|
page read and write
|
||
2EA47013000
|
heap
|
page read and write
|
||
274F322E000
|
heap
|
page read and write
|
||
C79F37E000
|
stack
|
page read and write
|
||
1DB12630000
|
heap
|
page read and write
|
||
EBC907F000
|
stack
|
page read and write
|
||
1DB17D40000
|
trusted library allocation
|
page read and write
|
||
259CE518000
|
heap
|
page read and write
|
||
1DB17D50000
|
trusted library allocation
|
page read and write
|
||
259CE3E0000
|
remote allocation
|
page read and write
|
||
22BE1813000
|
heap
|
page read and write
|
||
274F3274000
|
heap
|
page read and write
|
||
22BE1800000
|
heap
|
page read and write
|
||
EBC937F000
|
stack
|
page read and write
|
||
22BE188A000
|
heap
|
page read and write
|
||
11B10FD000
|
stack
|
page read and write
|
||
1DB6F713000
|
heap
|
page read and write
|
||
22BE185F000
|
heap
|
page read and write
|
||
1DB13118000
|
heap
|
page read and write
|
||
1DB13118000
|
heap
|
page read and write
|
||
259CE476000
|
heap
|
page read and write
|
||
1DB17ECE000
|
heap
|
page read and write
|
||
1DEF3C70000
|
heap
|
page read and write
|
||
22BE1780000
|
trusted library allocation
|
page read and write
|
||
1DB17D50000
|
trusted library allocation
|
page read and write
|
||
E74297E000
|
stack
|
page read and write
|
||
1DB17D70000
|
trusted library allocation
|
page read and write
|
||
2EA470C5000
|
heap
|
page read and write
|
||
22BE1610000
|
heap
|
page read and write
|
||
2EA470E2000
|
heap
|
page read and write
|
||
259CE45D000
|
heap
|
page read and write
|
||
259CE42A000
|
heap
|
page read and write
|
||
1DB17F06000
|
heap
|
page read and write
|
||
1DB18124000
|
trusted library allocation
|
page read and write
|
||
8BA8AFA000
|
stack
|
page read and write
|
||
2EA4706E000
|
heap
|
page read and write
|
||
259CE350000
|
trusted library allocation
|
page read and write
|
||
C79F67F000
|
stack
|
page read and write
|
||
C79F97A000
|
stack
|
page read and write
|
||
C79FA7E000
|
stack
|
page read and write
|
||
1DB13002000
|
heap
|
page read and write
|
||
1DEF3E3D000
|
heap
|
page read and write
|
||
EBC917F000
|
stack
|
page read and write
|
||
259CE45C000
|
heap
|
page read and write
|
||
259CE370000
|
trusted library allocation
|
page read and write
|
||
503527B000
|
stack
|
page read and write
|
||
2EA47113000
|
heap
|
page read and write
|
||
274F31C0000
|
trusted library allocation
|
page read and write
|
||
C79F078000
|
stack
|
page read and write
|
||
259CE3A0000
|
trusted library allocation
|
page read and write
|
||
22BE1859000
|
heap
|
page read and write
|
||
1DB17F08000
|
heap
|
page read and write
|
||
34FB37E000
|
stack
|
page read and write
|
There are 342 hidden memdumps, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://brave.com/
|
||
https://brave.com/download/
|
||
https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LcA2tEZAAAAAJj7FTYTF9cZ4NL3ShgBCBfkWov0&co=aHR0cHM6Ly9wbGF5Lmdvb2dsZS5jb206NDQz&hl=en&v=gWN_U6xTIPevg0vuq7g1hct0&size=invisible&cb=4d4gkglg63ek
|
||
https://play.google.com/store/apps/details?id=com.brave.browser
|
||
https://apps.apple.com/ch/app/brave-private-internet-browser/id1052879175?uo=4&mt=8
|
||
https://brave.com/linux/
|
||
https://brave.com/download-beta/
|
||
https://brave.com/download-nightly/
|
||
https://brave.com/learn/
|
||
https://brave.com/learn/most-secure-browser/
|