top title background image
flash

https://admin26.wildapricot.org/page-18044

Status: finished
Submission Time: 2021-10-28 02:24:31 +02:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    510628
  • API (Web) ID:
    878194
  • Analysis Started:
    2021-10-28 02:24:31 +02:00
  • Analysis Finished:
    2021-10-28 02:31:59 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 48
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
clean
0/100

IPs

IP Country Detection
104.244.42.69
United States
104.16.94.65
United States
151.101.12.157
United States
Click to see the 50 hidden entries
54.220.193.224
United States
52.34.133.113
United States
104.18.10.207
United States
142.250.186.130
United States
157.240.17.15
United States
13.225.87.74
United States
13.224.193.16
United States
13.225.87.73
United States
13.104.208.162
United States
104.17.182.73
United States
199.232.80.84
United States
108.174.11.37
United States
13.224.193.5
United States
142.250.186.163
United States
104.244.42.195
United States
104.18.11.207
United States
104.19.142.111
United States
142.250.185.174
United States
104.16.89.5
United States
216.58.212.141
United States
142.250.186.168
United States
51.79.72.201
Canada
13.225.87.25
United States
13.224.193.116
United States
104.16.18.94
United States
104.19.155.83
United States
151.101.0.84
United States
104.21.233.182
United States
13.225.87.100
United States
157.240.17.35
United States
13.224.193.38
United States
104.18.22.207
United States
104.18.21.191
United States
13.225.87.11
United States
34.226.77.200
United States
35.190.80.1
United States
142.250.184.228
United States
104.18.23.207
United States
51.79.20.113
Canada
142.250.186.33
United States
54.75.159.38
United States
104.19.154.83
United States
74.125.140.155
United States
239.255.255.250
Reserved
89.187.165.193
Czech Republic
104.17.131.171
United States
142.250.186.142
United States
104.17.212.204
United States
152.199.23.37
United States
104.17.70.176
United States

Domains

Name IP Detection
www.wildapricot.com
0.0.0.0
connect.facebook.net
0.0.0.0
aadcdn.msauth.net
0.0.0.0
Click to see the 89 hidden entries
aadcdn.msftauth.net
0.0.0.0
use.typekit.net
0.0.0.0
load.sumo.com
0.0.0.0
www.youtube.com
0.0.0.0
amcdn.msftauth.net
0.0.0.0
static.hotjar.com
0.0.0.0
clients2.google.com
0.0.0.0
clients2.googleusercontent.com
0.0.0.0
stats.g.doubleclick.net
0.0.0.0
px.ads.linkedin.com
0.0.0.0
kit-pro.fontawesome.com
0.0.0.0
v.pinimg.com
0.0.0.0
kimballequipment-my.sharepoint.com
0.0.0.0
static.ads-twitter.com
0.0.0.0
d.wildapricot.net
0.0.0.0
js.hscollectedforms.net
104.17.131.171
vars.hotjar.com
13.224.193.116
sf.wildapricot.org
13.224.193.5
d2jichs37wsfba.cloudfront.net
13.225.87.100
files.envoke.com
51.79.72.201
login.windows.net
0.0.0.0
s.wildapricot.net
0.0.0.0
login.microsoftonline.com
0.0.0.0
www.pinterest.ch
0.0.0.0
s.pinimg.com
0.0.0.0
snap.licdn.com
0.0.0.0
analytics.twitter.com
0.0.0.0
storage.live.com
0.0.0.0
www.linkedin.com
0.0.0.0
www.facebook.com
0.0.0.0
i.pinimg.com
0.0.0.0
code.jquery.com
0.0.0.0
www-googletagmanager.l.google.com
142.250.186.168
aadcdn.msftauthimages.net
0.0.0.0
ct.pinterest.com
0.0.0.0
load.sumome.com
0.0.0.0
messaging.office.com
0.0.0.0
in.hotjar.com
0.0.0.0
ws13.hotjar.com
0.0.0.0
www.pinterest.com
0.0.0.0
identity.nel.measure.office.net
0.0.0.0
cdn.raygun.io
0.0.0.0
p.typekit.net
0.0.0.0
ec2-54-220-193-224.eu-west-1.compute.amazonaws.com
54.220.193.224
www.google.co.uk
142.250.186.163
dualstack.pinterest.map.fastly.net
199.232.80.84
googleads.g.doubleclick.net
142.250.186.130
in-live.live.eks.hotjar.com
54.75.159.38
prod.pinterest.global.map.fastly.net
151.101.0.84
youtube-ui.l.google.com
142.250.186.174
maxcdn.bootstrapcdn.com
104.18.11.207
s.twitter.com
104.244.42.195
stats.l.doubleclick.net
74.125.140.155
js.hs-banner.com
104.18.21.191
star-mini.c10r.facebook.com
157.240.17.35
clients.l.google.com
142.250.185.174
static-cdn.hotjar.com
13.224.193.16
www.google.com
142.250.184.228
js.hs-scripts.com
104.17.212.204
cdnjs.cloudflare.com
104.16.18.94
track.hubspot.com
104.19.154.83
t.co
104.244.42.69
platform.twitter.map.fastly.net
151.101.12.157
sumo.com
52.34.133.113
codesandbox.io
104.18.22.207
forms.hubspot.com
104.19.155.83
script.hotjar.com
13.224.193.38
i.gyazo.com
104.19.142.111
pop-esv5.mix.linkedin.com
108.174.11.37
d367hej0olzqs6.cloudfront.net
13.225.87.74
www-google-analytics.l.google.com
142.250.186.142
icons.iconarchive.com
104.21.233.182
accounts.google.com
216.58.212.141
a.nel.cloudflare.com
35.190.80.1
i-db3p-cor004.api.p001.1drv.com
13.104.208.162
stackpath.bootstrapcdn.com
104.18.10.207
e1.envoke.com
51.79.20.113
js.hsforms.net
104.17.182.73
admin26.wildapricot.org
34.226.77.200
scontent.xx.fbcdn.net
157.240.17.15
v5jkr.codesandbox.io
104.18.23.207
js.hs-analytics.net
104.17.70.176
cs1100.wpc.omegacdn.net
152.199.23.37
static.cloudflareinsights.com
104.16.94.65
forms.hsforms.com
104.16.89.5
d1bs4b7zdgd8l3.cloudfront.net
13.225.87.25
dcrozuwcqql0x.cloudfront.net
13.225.87.11
googlehosted.l.googleusercontent.com
142.250.186.33
load.b-cdn.net
89.187.165.193

URLs

Name Detection
https://kimballequipment-my.sharepoint.com/:w:/p/brainbolt/ERXqIgoZZqFJoTxt4x_tZgoBHx-5T_50QqhG5tLxuk9-Sg?rtime=EgSmdKmZ2Ug
https://v5jkr.codesandbox.io/cdn-cgi/rum?
https://www.google.com/log?format=json&hasfast=true
Click to see the 97 hidden entries
https://s.wildapricot.net/StaticImages/v7/Logo/WildApricotTransparent.png
https://s.wildapricot.net/Styles/v123/WildApricot.css
https://play.google.com
https://i.gyazo.com/cc41020ecb5162014937e0d1c83fa617.png
https://v5jkr.codesandbox.io/
https://www.google.com/images/cleardot.gif
https://d.wildapricot.net/images/home/banner-03-csw.png?v=4
https://www.pinterest.ch/ct.html
https://d.wildapricot.net/images/home/top-background-b.png?v=0
https://clients6.google.com
https://www.wildapricot.com
https://www.google.co.uk
https://feedback.googleusercontent.com
https://www.google.com/
https://docs.google.com
https://sf.wildapricot.org/WebUI/built7.23.0.18384/css/shared/ui/shared-ui-compiled.css
https://s.wildapricot.net/Scripts/v123/Combined.js
https://www.wildapricot.com/
https://admin26.wildapricot.org/page-180442
https://codesandbox.io/static/js/banner.be879265d.js
http://tools.ietf.org/html/rfc1950
https://vars.hotjar.com/box-d09a446edefba0dcce5d5143e1840e9a.html
https://play.google.com/log?format=json&hasfast=true
https://hangouts.clients6.google.com
https://www-googleapis-staging.sandbox.google.com
https://s.wildapricot.net/Styles/v123/Pages/home.css
https://d.wildapricot.net/images/slider/features-events.png?v=4
https://apis.google.com
https://github.com/angular/material
http://www.wildapricot.com/
https://d.wildapricot.net/images/home/banner-05-ywl.png?v=2
http://angularjs.org
https://d.wildapricot.net/images/slider/features-store.png?v=2
https://clients2.google.com/cr/report
https://accounts.google.com
https://meet.google.com
https://sf.wildapricot.org/WebUI/built7.23.0.18384/scripts/public/react/index-44a7298.css
https://d.wildapricot.net/images/slider/features-website.png?v=2
https://d.wildapricot.net/images/home/banner-06-hste.png?v=4
https://v5jkr.codesandbox.io/
https://d.wildapricot.net/images/home/leader-spring-2021.png?v=0
https://clients2.googleusercontent.com/crx/blobs/Acy1k0bLIjHsvnKaKN_oRpVaYYvFs25d7GKYF1WXrT6yizCMksBO0c_ggE0B6tx6HPRHe6q1GOEe3_NcIbSiGG8kXeLMUY0sAKVvC6R89zvKM13s5VqoAMZSmuUgjQL5vlygJuArQghXXE_qTL7NlQ/extension_8520_615_0_5.crx
https://accounts.google.com/MergeSession
https://sf.wildapricot.org/WebUI/built7.23.0.18384/General.js
https://v5jkr.codesandbox.io/favicon.ico
https://sf.wildapricot.org/BuiltTheme/whiteboard_maya_blue.v3.0/current/b39e2b4d/images/lightbox/loading.gif
https://sandbox.google.com/payments/v4/js/integrator.js
https://d.wildapricot.net/images/slider/features-payments.png?v=2
https://d.wildapricot.net/images/home/momentum-leader-spring-2021.png?v=0
https://www.google.com/accounts/OAuthLogin?issueuberauth=1
https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0/js/bootstrap.min.js
https://creativecommons.org/publicdomain/zero/1.0/.
https://d.wildapricot.net/images/home/banner-04-wccc.png?v=2
https://hangouts.google.com/hangouts/_/logpref
https://d.wildapricot.net/images/slider/features-emails.png?v=2
https://d.wildapricot.net/images/home/banner-08-hsn.png?v=2
https://d.wildapricot.net/images/home/banner-07-bnmi.png?v=2
https://www.google.com
https://www.youtube.com
https://preprod-hangouts-googleapis.sandbox.google.com
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions-01
https://github.com/madler/zlib/blob/master/zlib.h
https://admin26.wildapricot.org/page-18044
https://a.nel.cloudflare.com/report/v3?s=w%2B0NNtoBoxTmPzTO%2Botls3PrUN7wvQ0kDdlfUa5QNZ%2BnO3eVdZq4uTF7SOfP1IE%2FUA%2Bc33DU%2FPVOkxR5zPxewF90UkVn1EzyKSZ3g9cSudRDmlevDyX%2FUX7AZw7a4mPfw9YilaoE
https://s.wildapricot.net/StaticImages/v7/Logo/WildApricot.png
https://crash.corp.google.com/samples?reportid=&q=
https://icons.iconarchive.com/icons/custom-icon-design/flatastic-1/256/folder-icon.png
https://www.wildapricot.com/Telerik.Web.UI.WebResource.axd?_TSM_HiddenField_=ctl16_TSM&compress=2&_TSM_CombinedScripts_=%3b%3bSystem.Web.Extensions%2c+Version%3d4.0.0.0%2c+Culture%3dneutral%2c+PublicKeyToken%3d31bf3856ad364e35%3aen%3aba1d5018-bf9d-4762-82f6-06087a49b5f6%3aea597d4b%3ab25378d2
https://apis.google.com/js/client.js
https://codesandbox.io/api/v1/sandboxes/v5jkr/phishing
https://stats.g.doubleclick.net
https://admin26.wildapricot.org/page-18044
https://sf.wildapricot.org/BuiltTheme/whiteboard_maya_blue.v3.0/current/b39e2b4d/images/lightbox/next.png
https://i.gyazo.com/b308246805567e68aad040e42c453a7f.png
https://www.google.com/images/dot2.gif
https://sf.wildapricot.org/BuiltTheme/whiteboard_maya_blue.v3.0/current/b39e2b4d/scripts/combined.js
https://s.wildapricot.net/StaticImages/v123/Controls/Footer/pci-dss.png
https://www.google.com/images/x2.gif
https://stackpath.bootstrapcdn.com/bootstrap/4.1.3/js/bootstrap.min.js
https://sf.wildapricot.org/WebUI/built7.23.0.18384/scripts/shared/bonapagetop/bonapagetop-compiled.js
https://sf.wildapricot.org/BuiltTheme/whiteboard_maya_blue.v3.0/current/b39e2b4d/Fonts/opensans-regular-webfont.woff
https://www.google.com;
https://payments.google.com/payments/v4/js/integrator.js
https://sf.wildapricot.org/BuiltTheme/whiteboard_maya_blue.v3.0/current/b39e2b4d/fonts/fontawesome-webfont.woff
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=85.0.4183.121&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1&x=id%3Dpkedcjkdefgpdelpbcmbmeomcjbeemfm%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
https://www.wildapricot.com/customer-testimonials
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions
https://s.wildapricot.net/Styles/v123/FullWidth.css
https://codesandbox.io/public/sse-hooks/sse-hooks.f648b14c15c640a14a557113a991cb8d.js
https://support.google.com/chromecast/troubleshooter/2995236
https://sf.wildapricot.org/WebUI/built7.23.0.18384/scripts/public/react/index-44a7298.js
https://github.com/google/closure-library/wiki/goog.module:-an-ES6-module-like-alternative-to-goog.p
https://dns.google
https://www.google.com/tools/feedback
https://d.wildapricot.net/images/home/highest-user-adoption-spring-2021.png?v=0
https://admin26.wildapricot.org/Admin/html_res/images/async-load-progress-01.gif
https://d.wildapricot.net/images/slider/features-database.png?v=2

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_crtend_o
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_o
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_for_eh_o
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_pnacl_json
ASCII text
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_metadata\verified_contents.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\ebc9ccd8-83cd-47f5-b8d2-a318f2f252bc.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\d6b1b1ae-5d06-45fc-b46c-1b9e5df3d40c.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\d41f4666-61e9-44aa-97d8-bfb9a3ea5775.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\c415c574-4a36-44a3-a604-e190d95c9330.tmp
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Module Info Cache-d (copy)
SysEx File -
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Module Info Cache* (copy)
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local Stateca (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_ld_nexe
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=7511538a3a6a0b862c772eace49075ed1bbe2377, stripped
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Browser
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\f67a5a64-8e17-4828-ac58-98ddfee0556f.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENTMP (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000004.dbtmp
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\d952ce24-c33f-4748-bc14-1494f9ba77aa.tmp
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\d0072ea5-eaf1-4961-b62d-b84d7662d209.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\b2fa7063-f900-42c5-a945-6b570b767871.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\aaf3553e-f0d8-49d9-be3d-ec85c90dab9a.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity.f (copy)
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Temp\1964_802559370\ssl_error_assistant.pb
data
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\en\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\el\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\de\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\da\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\cs\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\ca\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\bn\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\bg\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\ar\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir1964_1183017050\CRX_INSTALL\_locales\am\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\dc6429ab-40cc-4140-8579-c642f391fad5.tmp
very short file (no magic)
#
C:\Users\user\AppData\Local\Temp\84c9c8b6-0154-45ce-9be6-55c3f67ad8a7.tmp
Google Chrome extension, version 3
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
ASCII text
#
C:\Users\user\AppData\Local\Temp\1964_802559370\manifest.json
ASCII text
#
C:\Users\user\AppData\Local\Temp\1964_802559370\manifest.fingerprint
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Temp\1964_802559370\_metadata\verified_contents.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\manifest.json
ASCII text
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\manifest.fingerprint
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_sz_nexe
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=4b15de4ab227d5e46213978b8518d53c53ce1db9, stripped
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=309d6d3d463e6b1b0690f39eb226b1e4c469b2ce, stripped
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_dummy_a
current ar archive
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a
current ar archive
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a
current ar archive
#
C:\Users\user\AppData\Local\Temp\1964_1116799711\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a
current ar archive
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000005.ldb
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000004.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_usc-word-view.officeapps.live.com_0.indexeddb.leveldb\MANIFEST-000001
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_usc-word-view.officeapps.live.com_0.indexeddb.leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_usc-word-view.officeapps.live.com_0.indexeddb.leveldb\CURRENT (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_usc-word-view.officeapps.live.com_0.indexeddb.leveldb\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\IndexedDB\https_usc-word-view.officeapps.live.com_0.indexeddb.leveldb\000001.dbtmp
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.oldvF (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\8520.615.0.5_1\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\96ca86b2-56f9-4117-b027-9a27dda72fa9.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\86bad7ed-9fe8-4793-b616-af1ec3882cc4.tmp
very short file (no magic)
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\54f13619-a641-4935-b858-5899c4b2df28.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\2e48a092-2574-4711-9d7e-c7f0bf14a073.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\2aeea7d7-5ed1-4b4d-bb32-27e5ecab7ad9.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\28309edc-5529-42cf-bbb7-d2f9bc55ed6e.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\0551ebae-4b06-461a-bb25-b68e70ef27c9.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\96bf5583-fea1-4e5c-8ea8-ed3d5ef58c32.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\939cfb5d-f33d-480c-88cf-d8f705c424f2.tmp
SysEx File -
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\43cae03b-b74f-4ccb-ab30-46326cec8e0e.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Network Persistent State.. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\7640ed7b-344b-40a4-8bba-6d5d555ae678.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\d77d1c40-0161-460a-bc4c-b2d70d00740e.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG.old. (copy)
ASCII text
#
C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Network Persistent State.. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a08cdc8ff613b62b020d7014068198f124a0867e\index.txt.tmp
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a08cdc8ff613b62b020d7014068198f124a0867e\eaee0f09-8064-47a6-a73f-e3369965a05f\index-dir\temp-index
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Service Worker\CacheStorage\a08cdc8ff613b62b020d7014068198f124a0867e\eaee0f09-8064-47a6-a73f-e3369965a05f\index
ISO-8859 text, with no line terminators, with escape sequences
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (copy)
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\QuotaManager-journal
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\QuotaManager
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State2 (copy)
ASCII text, with very long lines, with no line terminators
#