Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
Score: 52
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
172.217.168.13 | United States | |
172.217.168.78 | United States | |
239.255.255.250 | Reserved | |
Click to see the 1 hidden entries | ||
172.217.168.65 | United States |
Name | IP | Detection |
---|---|---|
accounts.google.com | 172.217.168.13 | |
clients.l.google.com | 172.217.168.78 | |
googlehosted.l.googleusercontent.com | 172.217.168.65 | |
Click to see the 2 hidden entries | ||
clients2.googleusercontent.com | 0.0.0.0 | |
clients2.google.com | 0.0.0.0 |
Name | Detection |
---|---|
https://github.com/Pester/Pester | |
https://clients2.google.com/service/update2/crx | |
https://clients2.google.com | |
Click to see the 27 hidden entries | |
https://feedback.googleusercontent.com | |
https://www.google.com/ | |
http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name | |
https://apis.google.com | |
https://clients2.googleusercontent.com | |
https://support.google.com/chromecast/answer/2998456 | |
https://nuget.org/nuget.exe | |
https://contoso.com/ | |
https://accounts.google.com | |
https://www.google.com | |
https://clients2.googleusercontent.com/crx/blobs/Acy1k0bLIjHsvnKaKN_oRpVaYYvFs25d7GKYF1WXrT6yizCMksBO0c_ggE0B6tx6HPRHe6q1GOEe3_NcIbSiGG8kXeLMUY0sAKVvC6R89zvKM13s5VqoAMZSmuUgjQL5vlygJuArQghXXE_qTL7NlQ/extension_8520_615_0_5.crx | |
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=85.0.4183.121&lang=en-GB&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1&x=id%3Dpkedcjkdefgpdelpbcmbmeomcjbeemfm%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1 | |
http://nuget.org/NuGet.exe | |
https://sandbox.google.com/payments/v4/js/integrator.js | |
https://hangouts.google.com/ | |
https://contoso.com/Icon | |
https://www.google.com; | |
https://contoso.com/License | |
https://payments.google.com/payments/v4/js/integrator.js | |
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard | |
https://play.google.com | |
http://www.apache.org/licenses/LICENSE-2.0.html | |
http://pesterbdd.com/images/Pester.png | |
https://support.google.com/chromecast/troubleshooter/2995236 | |
http://crl.microsoft.cop | |
https://ogs.google.com | |
https://dns.google |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG.old. (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\c183c4da-d2ab-4f66-b9ff-47bf49b97808.tmp |
ASCII text, with very long lines, with no line terminators | # | |
Click to see the 97 hidden entries | |||
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Network Persistent Statemp (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG.old2R (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\GPUCache\data_1 |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\a7510191-16ab-4671-9550-4fb13f033936.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Platform Notifications\LOG.old)& (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Platform Notifications\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Network Persistent State36 (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Local Storage\leveldb\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Local Storage\leveldb\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1 |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old. (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\e4314d77-c1fd-4514-a9fb-a4be164d25ce.tmp |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\f3cece48-223d-4753-a159-c724d79ae441.tmp |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\e2de578c-a2c7-427d-8dff-ae670eafeb60.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\dfe461e7-fa5a-4aac-8bb6-8a6c9e0ffd39.tmp |
SysEx File - | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Subresource Filter\Indexed Rules\27\scoped_dir2228_1026622718\Ruleset Data |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Subresource Filter\Indexed Rules\27\9.29.4\Indexing in Progress |
empty | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Module Info Cache (copy) |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local StateR (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version |
ASCII text, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Browser |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG.old8 (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\e1fb2620-62cd-4e7a-98d8-4369e7ca40dd.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\MANIFEST-000004 |
MPEG-4 LOAS | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENT (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000004.dbtmp |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\c0fb72d2-3f66-480b-b636-83285bce6078.tmp |
very short file (no magic) | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\a655cdbe-39ca-4e7c-9a73-cb49dc9a93a1.tmp |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.oldR (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Tabs |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Session |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies |
SQLite 3.x database, last written using SQLite version 3032001 | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\850e8bdb-67f2-4547-9f98-68779ea5eb46.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\46eef4a0-b62a-4a1a-ab55-a2693d5156fa.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\3eb7cefc-6597-41c1-9c0f-b4d06327dea2.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\0ca64a62-4741-4ad4-bd21-40680e3d42ac.tmp |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\061e9331-91f1-4612-b80c-ec5b0e599ebc.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\99fc9dfb-ce20-44c3-bb78-09a0b64ce541.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\85197f05-3a0b-4a8e-8e24-afb2f75451a0.tmp |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\72321490-ce67-47b1-9c62-ad8c86a06e4a.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\26b3707e-e3c0-4f3a-97d8-c489b3d6ee06.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferencess. (copy) |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure PreferencesTM (copy) |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (copy) |
UTF-8 Unicode text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\PreferencesTM (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG.oldo. (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State} (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State (copy) |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\0c0e04c7-057e-4187-910a-ff15b0dcdf82.tmp |
ASCII text, with very long lines, with no line terminators | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Last Tabsdb (copy) |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Last SessionG. (copy) |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History-journal |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG.oldn (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old (copy) |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG |
ASCII text | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log |
data | # | |
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\8520.615.0.5_1\_metadata\computed_hashes.json |
ASCII text, with very long lines, with no line terminators | # |