flash

https://1drv.ms:443/o/s!BPlqEAvSnD9FhF2O8mEJ2egpMWSY?e=fOTayHsLEEiU05h11yffVA&at=9

Status: finished
Submission Time: 11.06.2021 05:22:52
Malicious

Comments

Tags

Details

  • Analysis ID:
    433011
  • API (Web) ID:
    800615
  • Analysis Started:
    11.06.2021 05:22:53
  • Analysis Finished:
    11.06.2021 05:31:59
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
48/100

malicious

IPs

IP Country Detection
13.105.66.144
United States
20.150.89.132
United States
13.107.42.12
United States
Click to see the 7 hidden entries
192.229.221.185
United States
152.199.21.175
United States
52.239.152.74
United States
13.104.158.180
United States
31.13.92.14
Ireland
95.101.18.109
European Union
151.101.65.26
United States

Domains

Name IP Detection
i-am4p-cor001.api.p001.1drv.com
13.105.66.144
sni1gl.wpc.gammacdn.net
152.199.21.175
scontent.xx.fbcdn.net
31.13.92.14
Click to see the 35 hidden entries
blob.dsm07prdstr05a.store.core.windows.net
20.150.89.132
microsoftwindows.112.2o7.net
13.36.218.177
i-am3p-cor006.api.p001.1drv.com
13.104.158.180
blob.bl6prdstr14a.store.core.windows.net
52.239.152.74
cs1227.wpc.alphacdn.net
192.229.221.185
polyfill.io
151.101.65.26
aka.ms
95.101.18.109
1drv.ms
13.107.42.12
js.monitor.azure.com
0.0.0.0
logincdn.msauth.net
0.0.0.0
statics-eas.onestore.ms
0.0.0.0
messaging.office.com
0.0.0.0
assets.onestore.ms
0.0.0.0
c.live.com
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0
stedgecommercialdev.blob.core.windows.net
0.0.0.0
statics-wcus.onestore.ms
0.0.0.0
cart.production.store-web.dynamics.com
0.0.0.0
onedrive.live.com
0.0.0.0
p.sfx.ms
0.0.0.0
amcdn.msftauth.net
0.0.0.0
www.onenote.com
0.0.0.0
consentreceiverfd-prod.azurefd.net
0.0.0.0
onenoteonlinesync.onenote.com
0.0.0.0
assets.adobedtm.com
0.0.0.0
storage.live.com
0.0.0.0
connect.facebook.net
0.0.0.0
skyapi.onedrive.live.com
0.0.0.0
mem.gfx.ms
0.0.0.0
statics-neu.onestore.ms
0.0.0.0
statics-eus.onestore.ms
0.0.0.0
dc.services.visualstudio.com
0.0.0.0
amp.azure.net
0.0.0.0
spoprod-a.akamaihd.net
0.0.0.0
offertooldataprod.blob.core.windows.net
0.0.0.0

URLs

Name Detection
http://search.chol.com/favicon.ico
http://www.mercadolivre.com.br/
http://www.merlin.com.pl/favicon.ico
Click to see the 97 hidden entries
http://www.dailymail.co.uk/
https://assets.onestore.ms
https://codepen.io/tigt/post/optimizing-svgs-in-data-uris
http://www.fontbureau.com/designers
http://w.b
http://fr.search.yahoo.com/
http://in.search.yahoo.com/
http://www.opensource.org/licenses/mit-license.php
http://img.shopzilla.com/shopzilla/shopzilla.ico
http://www.galapagosdesign.com/DPlease
https://aka.ms/PrivacyReport
http://msk.afisha.ru/
http://www.reddit.com/
http://busca.igbusca.com.br//app/static/images/favicon.ico
http://www.ya.com/favicon.ico
http://www.etmall.com.tw/favicon.ico
http://it.search.dada.net/favicon.ico
http://search.hanafos.com/favicon.ico
https://www.skype.com/en/
http://cgi.search.biglobe.ne.jp/favicon.ico
https://css-tricks.com/probably-dont-base64-svg/
http://search.msn.co.jp/results.aspx?q=
http://buscar.ozu.es/
http://www.microsofttranslator.com/BVPrev.aspx?ref=IE8Activity
http://www.ask.com/
https://privacy.microsoft
http://www.google.it/
http://search.auction.co.kr/
http://www.amazon.de/
http://sads.myspace.com/
https://assets.adobedtm.com/5ef092d1efb5/e6b4ca74378c/6b5c31f9d7fc/RC7c28b0d9a1954800aeb7faf1c52abef
http://www.pchome.com.tw/favicon.ico
http://browse.guardian.co.uk/favicon.ico
http://google.pchome.com.tw/
http://list.taobao.com/browse/search_visual.htm?n=15&q=
http://www.rambler.ru/favicon.ico
http://uk.search.yahoo.com/
http://www.ozu.es/favicon.ico
http://search.sify.com/
http://www.michaelbromley.co.uk/blog/193/a-note-on-touch-pointer-events-in-ie11
http://openimage.interpark.com/interpark.ico
http://search.yahoo.co.jp/favicon.ico
http://www.gmarket.co.kr/
http://www.founder.com.cn/cn/bThe
http://search.nifty.com/
https://support.office.com/en-us/article/accounts-in-office-628ea040-f265-49de-b986-be09c3ebf8a9
http://www.google.si/
http://www.amazon.com/azon.url
http://www.soso.com/
http://busca.orange.es/
http://cnweb.search.live.com/results.aspx?q=
https://onedrive.live.com/redir?resid=453F9CD20B106AF9
http://www.twitter.com/
https://www.xbox.com/2Ie
http://auto.search.msn.com/response.asp?MT=
http://www.target.com/
https://onedrive.live.com/redir?resid=453F9CD20B106AF9%21605&authkey=%21Ao7yYQnZ6CkxZJg&page=View&wd=target%28New%20Section%201.one%7C80ad529f-1552-420d-bb5a-d50e6a192b23%2FLen%20Pearson%20%28ID%5C%29%7Cdbbfcf9d-1ae4-48ed-865e-22967eb5e535%2F%29
https://c1-onenote-15.cdn.offic
http://search.orange.co.uk/favicon.ico
http://www.iask.com/
https://assets.adobedtm.com/5ef092d1efb5/4c272e8cc694/6332adb53a7e/RCc7634fed214d4e4587c020aeabdb94a
http://search.centrum.cz/favicon.ico
http://service2.bfast.com/
http://ariadna.elmundo.es/
http://www.news.com.au/favicon.ico
http://www.cdiscount.com/
http://www.tiscali.it/favicon.ico
http://it.search.yahoo.com/
http://www.ceneo.pl/favicon.ico
http://www.servicios.clarin.com/
http://search.daum.net/favicon.ico
https://www.xbox.com/H
http://www.kkbox.com.tw/
http://search.goo.ne.jp/favicon.ico
http://search.msn.com/results.aspx?q=
http://list.taobao.com/
http://www.nytimes.com/
http://www.taobao.com/favicon.ico
http://www.etmall.com.tw/
https://onedrive.live.com/redir?resid=453F9CD210
http://ie.search.yahoo.com/os?command=
http://www.cnet.com/favicon.ico
http://www.linternaute.com/favicon.ico
https://onedrive.live.com/view.aspx?resid=453F9CD20B106AF9
http://www.amazon.co.uk/
http://www.cdiscount.com/favicon.ico
http://www.asharqalawsat.com/favicon.ico
http://www.google.fr/
https://www.xbox.com/osoft.com/en-us/windows/icrosoft-office
http://search.gismeteo.ru/
http://www.rtl.de/
http://www.movable-type.co.uk/dev/keyboardevent-key-values.html
https://mem.gfx.ms
http://www.soso.com/favicon.ico
http://www.univision.com/favicon.ico
http://search.ipop.co.kr/
http://www.auction.co.kr/auction.ico

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-18270793970\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-21706820\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-4759708130\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-6757900\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-8760897390\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20259167780\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin20332743330\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin8215062560\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\ynfz0jx\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1-WebBrowsing-01[1].png
PNG image data, 800 x 370, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1083_Panel09_4Up_LearningDisability[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 235x132, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1083_Panel11_4Up_Organize[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 235x132, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1083_Panel15_Mosaic_Item1_Gray[1].jpg
[TIFF image data, little-endian, direntries=0], baseline, precision 8, 1083x400, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1083_Panel15_Mosaic_Item2_Apps[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 542x400, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1083_Panel24_3Up_Footer_Surface[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 321x180, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\17-f90ef1[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\17-f90ef1[2].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel03_Banner_StayonTrack[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 319x175, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel05_PriorityFeature_GetThingsDone[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1040x585, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel06_PriorityFeature_Security[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1040x585, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel07_PriorityFeature_GamePass[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1040x585, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel09_4Up_HearingTool[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel09_4Up_LearningDisability[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel09_4Up_Neurodiversity[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel09_4Up_VisionTool[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel11_4Up_Bring[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel11_4Up_Connect[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel11_4Up_Organize[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\1920_Panel11_4Up_Protect[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 358x201, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\2-PlacesYouGo-01[1].png
PNG image data, 800 x 370, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\22561495Platform_20200401_22561495[1].json
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\3-DataThatHelpsUsAssistYou-01[1].png
PNG image data, 800 x 370, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\35204097Platform_20210602_35204097[1].json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\5-InterestingAds-01[1].png
PNG image data, 800 x 369, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\6-SigninAndPayment-01[1].png
PNG image data, 800 x 371, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Acl1033[1].js
UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Enterprise_Trust_Center_32x32[1].png
PNG image data, 16 x 16, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\FavIcon_OneNote[1].ico
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Government_info_req_32x32[1].png
PNG image data, 16 x 16, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\MWFMDL2[1].woff
Web Open Font Format, TrueType, length 11480, version 0.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\MWF_SocialFacebook.png[1].svg
SVG Scalable Vector Graphics image
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Manage_Privacy_settings_32x32[1].png
PNG image data, 32 x 32, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Meetings_manifest[1].xml
XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\MicrosoftAjax[1].js
ASCII text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\NewErrorPageTemplate[1]
UTF-8 Unicode (with BOM) text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\OneNote[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Panel02_QuickLinks_Icons_Deals-1[1].jpg
[TIFF image data, little-endian, direntries=0], baseline, precision 8, 193x150, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\PrivacyStatement_32x32[1].png
PNG image data, 16 x 16, 8-bit/color RGB, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC0238d8e49fc8405f878b79a26e794e4c-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC07c0b441f30340d784ae92a04518bb48-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC0ee8c30f496b428a91d7f3289a2b8a2f-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC14999a828e04437b9286a3e42d5f4876-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC15f7af7ffcd7475eaff80a9c2d39f0cf-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC30b69654d14a4895ae64b6e5cf0cf812-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC30bdc9ab3a2c421791b40b90f3faa2a7-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC5d61fc978e53410f9823920e6f6ceece-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC5f812135e64f48ad85ea100034bc60a2-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RC95d5954deda24aa780e2bd87a6eabf8f-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RCa0f960a4cdc5494b98a97fc54841f54e-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RCaa8c2590551c47139847f13b302081cf-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RCbd62e4abe80c4cc5b3bcbaf6aaa28980-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RCbdb0f3827f8d43f3a1e00247bf63d9e4-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RCd01d50cad19649bf857a22be5995480e-source.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RE4hgqN[1].jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 359x234, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RWBtR2[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\RWF2OQ[1].jpg
JPEG image data, baseline, precision 8, 320x96, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Surface_Home_HMC_HighlightFeature_Spring_21_V1[1].jpg
[TIFF image data, little-endian, direntries=0], baseline, precision 8, 1920x720, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Surface_Home_Hero_20_mosaic_Book3_SingleTile_V2[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1067x1204, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Surface_Home_Hero_Spring_21_color_V3[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1083x609, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Surface_Home_Mosic_Fall_20_Duo_en-us_V2[1].png
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1067x1204, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Surface_Home_Pride_5_21_V1[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x720, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Surface_Lg_Generic_ContentPlacement_3UP_20_Acc_V2[1].jpg
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 321x180, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Surface_Lg_Generic_ContentPlacement_3UP_20_Business_V2[1].jpg
[TIFF image data, little-endian, direntries=0], baseline, precision 8, 321x180, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\Windows_Cortana_AppStore_img[1].jpg
[TIFF image data, little-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CS6 Windows, datetime=2017-05-08T13:01+05:30], baseline, precision 8, 303x90, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\agavedefaulticon96x96[1].png
PNG image data, 96 x 96, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\ai.0[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\app[1].css
ASCII text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\bullet[1]
PNG image data, 15 x 15, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\c9-860587[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\c[1].gif
GIF image data, version 89a, 1 x 1
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\cartcount[1].htm
HTML document, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\d7-de3320[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\de-bbcd6e[1].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\de-bbcd6e[2].css
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\e3-082b89[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\e3-082b89[2].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0W10PBUV\edge[1].htm
HTML document, UTF-8 Unicode text, with very long lines, with CRLF, LF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\15TFWFSP\account.microsoft[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\15TFWFSP\onedrive.live[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\S30Y26QX\www.microsoft[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\TGLKQ5GA\onenote.officeapps.live[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\Z2REQ4WQ\www.onenote[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{D7B2A239-CAAF-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{D7B2A23B-CAAF-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{E40D82AC-CAAF-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{ECE3944F-CAAF-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{ECE39450-CAAF-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{F639C9D3-CAAF-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{FF8CF6E6-CAAF-11EB-90E4-ECF4BB862DED}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-17529550060\msapplication.xml
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
#