top title background image
flash

https://www.surveymonkey.com/r/BPZXMSK

Status: finished
Submission Time: 2021-05-13 01:45:15 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    412855
  • API (Web) ID:
    780459
  • Analysis Started:
    2021-05-13 01:45:15 +02:00
  • Analysis Finished:
    2021-05-13 01:50:21 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 60
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious

IPs

IP Country Detection
172.67.194.129
United States
158.177.118.97
United States
108.174.11.37
United States
Click to see the 19 hidden entries
13.225.74.19
United States
104.20.185.68
United States
13.225.74.39
United States
52.217.65.116
United States
13.225.74.91
United States
52.218.184.72
United States
104.19.154.83
United States
104.17.211.204
United States
104.19.155.83
United States
161.71.23.42
United States
104.17.236.204
United States
34.255.12.101
United States
104.20.184.68
United States
104.17.115.176
United States
13.225.74.49
United States
104.17.200.204
United States
13.225.74.85
United States
104.18.20.191
United States
104.17.68.176
United States

Domains

Name IP Detection
cdn.smassets.net
0.0.0.0
s3-us-west-2.amazonaws.com
52.218.184.72
fast.wistia.com
0.0.0.0
Click to see the 35 hidden entries
www.surveymonkey.com
0.0.0.0
surveymonkey-assets.s3.amazonaws.com
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
eitobucket32.s3.eu-de.cloud-object-storage.appdomain.cloud
0.0.0.0
bam-cell.nr-data.net
0.0.0.0
privacy-policy.truste.com
0.0.0.0
secure.surveymonkey.com
0.0.0.0
geolocation.onetrust.com
104.20.184.68
cdn.ywxi.net
0.0.0.0
js-agent.newrelic.com
0.0.0.0
www.linkedin.com
0.0.0.0
aadcdn.msauth.net
0.0.0.0
prod.smassets.net
0.0.0.0
px.ads.linkedin.com
0.0.0.0
help.surveymonkey.com
0.0.0.0
snap.licdn.com
0.0.0.0
4.0p130000000gnk0cak.00d30000001hukjea0.gslb.siteforce.com
161.71.23.42
cdn-ukwest.onetrust.com
104.20.185.68
pop-esv5.mix.linkedin.com
108.174.11.37
js.hsadspixel.net
104.17.115.176
js.hs-analytics.net
104.17.68.176
d2pj9rkatqbt38.cloudfront.net
13.225.74.85
d15akbylw3vqc5.cloudfront.net
13.225.74.91
w.usabilla.com
34.255.12.101
s3-w.us-east-1.amazonaws.com
52.217.65.116
d2yx97y2ukjhui.cloudfront.net
13.225.74.39
js.hs-banner.com
104.18.20.191
api.hubspot.com
104.19.155.83
smtpro101.com
172.67.194.129
track.hubspot.com
104.19.154.83
js.hs-scripts.com
104.17.211.204
api.hubapi.com
104.17.200.204
dtx9pzf7ji0d9.cloudfront.net
13.225.74.19
js.usemessages.com
104.17.236.204
s3.eu-de.cloud-object-storage.appdomain.cloud
158.177.118.97

URLs

Name Detection
https://eitobucket32.s3.eu-de.cloud-object-storage.appdomain.cloud/lignocellulose/index.html&SharePo
https://cdn.ywxi.net/meter/
http://www.twitter.com/
Click to see the 97 hidden entries
https://www.surveymonkey.com/mp/legal/privacy-basics/?ut_source=survey_pp
https://www.surveymonkey.ru/
https://prod.smassets.net/assets/cms/cc/uploads//mp-takeatour-tabs1-v4-180x180.jpg
http://www.amazon.com/
https://smtpro101.com/email-list/sharepint6666/css-img/4.png
https://www.surveymonkey.com/?ut_source=survey_poweredby_home
https://www.surveymonkey.com/mp/legal/region-specific-privacy-statement/
https://code.corp.surveymonkey.com/pages/wrench/wds/components/button
http://www.hubspot.com
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-93c72913.bundle.js
https://nl.surveymonkey.com/mp/take-a-tour/
https://eitobucket32.s
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-cec7e413.bundle.js
https://prod.smassets.net/assets/cms/cc/app/2.118.0/images/audience.svg');mask:url('https:
https://github.com/js-cookie/js-cookie
https://www.trustedsite.com/widget/tm-
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-01e7b97c.bundle.js
https://github.com/twbs/bootstrap/blob/master/LICENSE)
https://help.surveymonkey.com/articles/en_US/kb/SurveyMonkey-Data-Transfers-and-EU-Laws?bc=Your_Data
https://sv.surveymonkey.com/
https://da.surveymonkey.com/mp/take-a-tour/
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-f45d36cf.bundle.js
https://fi.surveymonkey.com/mp/take-a-tour/
https://smtpro101.com/email-list/sharepint6666/css-img/bootstrap.min.css
https://cdn.smassets.net/assets/wds/4_20_2/wds-react/wds-react.min.css
https://www.surveymonkey.co.uk/mp/take-a-tour/
https://www.mcafeesecure.com/verify?host=www.surveymonkey.com
https://secure.gravatar.com/avatar/bf8cf8a39945de8e1470c8accfca845d?s=50&d=https%3A%2F%2Fcdn.smasset
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-34e3d95a.bundle.js
https://smtpro101.com/email-list/sharepint6666/css-img/9.png
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-684085e2.bundle.js
https://es.surveymonkey.com/
https://www.surveymonkey.com/r/BPZXMSKn
https://secure.gravatar.com/avatar/637a77ef3c79002215cfbf2b0b94d7a3?s=50&d=https%3A%2F%2Fcdn.smasset
https://prod.smassets.net/assets/cms/cc/uploads//Homepage-mobile-survey-v3-320x311.jpg
https://smtpro101.com/email-list/sharepint6666/css-img/c.png
https://help.surveymonkey.com/articles/en_US/kb/About-the-cookies-we-use/?ut_source=survey_pp
https://www.surveymonkey.com/mp/legal/privacy
https://www.surveymonkey.com/
https://go.usabilla.com/klm-case-study-customer-centric-app-development/?utm_source=surveymonkey&ut_
https://www.surveymonkey.com/mp/legRoot
https://prod.smassets.net/assets/cms/cc/uploads//Homepage-mobile-survey-v3-185x180.jpg
https://platform.twitter.com/widgets.js
https://jp.surveymonkey.com/mp/legal/privacy-basics/
https://aadcdn.msauth.net/ests/2.1/content/images/favicon_a_eupayfgghqiai7k9sol6lg2.ico~
https://cdn-ukwest.onetrust.com/vendorlist/iab2Data.json
https://www.surveymonkey.com/mp/legal/privacy-basics/?ut_source=survey_ppwitworks
https://no.surveymonkey.com/mp/take-a-tour/
https://smtpro101.com/email-list/sharepint6666/css-img/1.png
https://stats.g.doubleclick.net/j/collect
https://pt.surveymonkey.com/mp/take-a-tour/
https://tr.surveymonkey.com/mp/take-a-tour/
https://www.surveymonkey.com/mp/sample-size-calculator/?ut_source=storybook
https://www.surveymonkey.com/pricing/teams/
https://www.surveymonkey.com/feed/
https://cdn.smassets.net/assets/cms/cc/app/static/sm-logo-fb.png
https://prod.smassets.net/assets/cms/cc/app/2.118.0/images/logo-surveymonkey.svg
https://www.surveymonkey.com/r/BPZXMSKRoot
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-9b312c24.bundle.js
https://tr.surveymonkey.com/mp/legal/privacy-basics/
https://www.trustedsite.com
https://twitter.com/SurveyMonkey/timelines/989616324501389312
https://prod.smassets.net/assets/cms/cc/uploads//mp-takeatour-tabs1-v4-400x400.jpg
https://px.ads.linkedin.com/collect?
https://prod.smassets.net/assets/cms/cc/uploads//homepage-survey-computer-v3-360x117.jpg
https://owy.mn/35MDuDz
https://no.surveymonkey.com/
https://www.surveymonkey.com/r/BPZXMSK
https://js.usemessages.com/conversations-embed.js
https://prod.smassets.net/assets/responseweb/responseweb-base-bundle-min.3aac8aac.css
https://smtpro101.com/email-list/sharepint6666/css-img/d.png
https://secure.surveymonkey.com/r/themes/4.3.32_9418609_palette-1_fedb6efb-0584-4319-8233-162c4d20a1
https://www.surveymonkey.com/mp/take-a-tour/?ut_source=survey_poweredby_howitworks6How
https://js.hs-banner.com/cookie-banner
https://www.surveymonkey.de/mp/take-a-tour/
http://jqueryui.com/themeroller/?scope=.hasDatePicker&folderName=hasDatepicker&cornerRadiusShadow=8p
https://smtpro101.com/email-list/sharepint6666/css-img/a.png
https://smtpro101.com/email-list/onedrive25/finish.php
https://ko.surveymonkey.com/
https://www.surveymonkey.com/mp/take-a-tour/?ut_source=survey_poweredby_howitworks
https://prod.smassets.net/assets/responseweb/responseweb-jquery-bundle-min.91443e27.js
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-04b36419.bundle.js
https://github.com/cssinjs/jss
https://smtpro101.com/email-list/sharepint6666/css-img/8.png
https://nl.surveymonkey.com/mp/legal/privacy-basics/
https://smtpro101.com/email-list/sharepint6666/css-img/12.png
https://prod.smassets.net/assets/cms/cc/app/2.118.0/images/click.svg')
https://zh.surveymonkey.com/
https://nl.surveymonkey.com/
https://cdn-ukwest.onetrust.com/vendorlist/iabData.json
https://prod.smassets.net/assets/cms/cc/uploads//homepage-survey-computer-v3-scaled.jpg
https://www.mcafeesecure.com
https://prod.smassets.net/assets/cms/cc/app/2.118.0/app-main-e4dfd1bd.bundle.js
https://treehouse.surveymonkey.com/display/UAP/Unified
http://www.reddit.com/
https://pt.surveymonkey.com/
http://www.klim.co.nzKlim

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\National2Web-Regular[1].eot
Embedded OpenType (EOT), Copyright Klim Type Foundry family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\bootstrap.min[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\b[1].png
PNG image data, 182 x 182, 8-bit/color RGBA, non-interlaced
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-f45d36cf.bundle[1].js
UTF-8 Unicode text, with very long lines, with LF, NEL line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-e4dfd1bd.bundle[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-cec7e413.bundle[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-c7b8ce09.bundle[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-93c72913.bundle[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-84d06160.bundle[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-74226ea0.bundle[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-34e3d95a.bundle[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\app-main-04b36419.bundle[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\SM_Common[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\fb[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\National2Web-Medium[1].eot
Embedded OpenType (EOT), Copyright Klim Type Foundry family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\National2Web-Light[1].woff
Web Open Font Format, TrueType, length 48626, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\National2Web-Light[1].eot
Embedded OpenType (EOT), Copyright Klim Type Foundry family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\750e9545e9[2].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\750e9545e9[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\750e9545e9[1].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\750e9545e9[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\6T2WHU8V.htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\63b291cb-5c88-4a9c-998a-b73fe0da2552-test[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\5811593[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\102[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\3[1].png
PNG image data, 1926 x 669, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\app-curiosity-homepage-curiosity-media-hub-resources-homepage-shared-components-Post-shared-componen-88dc0450.bundle[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\app-curiosity-homepage-curiosity-media-hub-gfpApp-pages-helpApp-pages-resources-homepage-shared-comp-eb4a38e6.bundle[1].js
HTML document, UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\app-curiosity-homepage-curiosity-media-hub-gfpApp-pages-helpApp-pages-resources-homepage-shared-comp-82b0ef29.bundle[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\app-curiosity-homepage-curiosity-media-hub-gfpApp-pages-helpApp-pages-resources-homepage-shared-comp-52070573.bundle[1].js
HTML document, UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\National2Web-Regular[1].woff
Web Open Font Format, TrueType, length 47322, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\National2Web-Medium[1].woff
Web Open Font Format, TrueType, length 50162, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\Mateo[1].eot
Embedded OpenType (EOT), Mateo family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\HC-english[1].png
PNG image data, 144 x 25, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\750e9545e9[3].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\750e9545e9[2].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\750e9545e9[1].js
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PSUEOSZZ\750e9545e9[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\03_box[1].png
PNG image data, 202 x 68, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\style[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\smlib.surveytemplates-survey_page-bundle-min.34934bd2[1].css
UTF-8 Unicode (with BOM) text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\smlib.surveytemplates-sm-polyfill-bundle-min.c105a2db[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\responseweb-ui_bundle-bundle-min.a165823c[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\public[1].txt
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\mp-takeatour-tabs4[1].jpg
[TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CC 2019 (Macintosh), datetime=2019:09:25 13:43:33], baseline, precision 8, 700x700, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\mp-takeatour-logointuit[1].png
PNG image data, 202 x 68, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\mp-takeatour-logocisco[1].png
PNG image data, 202 x 68, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\jquery.swiftype.autocomplete[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\insight.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\MEEXW4H4\homepage-survey-computer-v3-scaled[1].jpg
gd-jpeg v1.0 (using IJG JPEG v80), quality = 82", baseline, precision 8, 2560x833, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\National2Web-Regular.2[1].eot
Embedded OpenType (EOT), Copyright Klim Type Foundry family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\National2Web-Medium.2[1].eot
Embedded OpenType (EOT), Copyright Klim Type Foundry family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\National2Web-Light.2[1].eot
Embedded OpenType (EOT), Copyright Klim Type Foundry family
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\715dd183-ee1c-4af7-812f-92f74d39780a[1].png
PNG image data, 662 x 260, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\6[1].png
PNG image data, 199 x 72, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\5[1].png
PNG image data, 511 x 23, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\5811593[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\4[1].png
PNG image data, 594 x 346, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\4.3.32_9418609_palette-1_fedb6efb-0584-4319-8233-162c4d20a10b[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1[1].png
PNG image data, 318 x 114, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\a[1].png
PNG image data, 182 x 182, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{A9F85A7E-B3C7-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{A3EF9C67-B3C7-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{A3EF9C65-B3C7-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\FPUD83QS\help.surveymonkey[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\gtm[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\take-a-tour[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\sm_logo_footer[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\sem-corevideo-thumbnail[1].png
PNG image data, 955 x 570, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\seal[1].png
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\responseweb-response-bundle-min.6922e04d[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\privacy-basics[1].htm
HTML document, UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\otBannerSdk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\mp-takeatour-videobg-v4[1].jpg
[TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CC 2019 (Macintosh), datetime=2019:09:24 17:02:13], baseline, precision 8, 700x600, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\mp-takeatour-hero-v3[1].jpg
[TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CC 2019 (Macintosh), datetime=2019:09:25 16:14:44], baseline, precision 8, 660x460, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\legal_sidebar__stats-image[1].png
PNG image data, 321 x 561, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\jquery.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\jquery-3.3.1.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\BNKN5HH8\www.surveymonkey[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\favicon[1].ico
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\f[1].png
PNG image data, 182 x 182, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\en[1].js
HTML document, UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\e[1].png
PNG image data, 181 x 182, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\d[1].png
PNG image data, 181 x 182, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\customer-satisfaction[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\create-your-survey[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\c[1].png
PNG image data, 182 x 182, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\audience[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\app-main-01d99f6b.bundle[1].js
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\analytics[1].js
ASCII text, with very long lines
#