top title background image
flash

http://bit.ly/3b7ion9

Status: finished
Submission Time: 2021-10-29 01:40:17 +02:00
Malicious

Comments

Tags

Details

  • Analysis ID:
    511374
  • API (Web) ID:
    878940
  • Analysis Started:
    2021-10-29 01:40:17 +02:00
  • Analysis Finished:
    2021-10-29 01:46:17 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 48
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
clean
0/100

IPs

IP Country Detection
67.199.248.14
United States
205.251.222.39
United States
216.137.37.110
United States
Click to see the 21 hidden entries
13.33.93.196
United States
34.195.187.5
United States
239.255.255.250
Reserved
142.250.145.155
United States
172.217.168.2
United States
162.242.174.138
United States
52.205.230.231
United States
67.199.248.11
United States
67.199.248.15
United States
192.28.144.124
United States
13.33.93.32
United States
205.251.222.189
United States
172.217.168.3
United States
13.33.93.56
United States
142.250.203.97
United States
172.217.168.8
United States
172.217.168.45
United States
172.217.168.68
United States
100.24.227.158
United States
142.250.203.110
United States
104.16.96.80
United States

Domains

Name IP Detection
logx.optimizely.com
0.0.0.0
www.google.com
172.217.168.68
d1ayxb9ooonjts.cloudfront.net
205.251.222.189
Click to see the 34 hidden entries
clients.l.google.com
142.250.203.110
googlehosted.l.googleusercontent.com
142.250.203.97
app-ab01.marketo.com
0.0.0.0
stats.g.doubleclick.net
0.0.0.0
clients2.googleusercontent.com
0.0.0.0
clients2.google.com
0.0.0.0
ws.qualified.com
0.0.0.0
lit-wildwood-9179.fathomless-lake-7710.herokuspace.com
100.24.227.158
use.typekit.net
0.0.0.0
js.qualified.com
0.0.0.0
public.profitwell.com
0.0.0.0
munchkin.marketo.net
0.0.0.0
cdn.optimizely.com
0.0.0.0
a16488430484.cdn.optimizely.com
0.0.0.0
p.typekit.net
0.0.0.0
analytics.google.com
0.0.0.0
zippyfrog.co
162.242.174.138
www-google-analytics.l.google.com
216.58.215.238
stats.l.doubleclick.net
142.250.145.155
bitly.com
67.199.248.14
www-googletagmanager.l.google.com
172.217.168.8
p13nlog-1106815646.us-east-1.elb.amazonaws.com
52.205.230.231
dry-bastion-1897.fathomless-lake-7710.herokuspace.com
34.195.187.5
ab01.mktoedge.com
104.16.96.80
dna8twue3dlxq.cloudfront.net
216.137.37.110
accounts.google.com
172.217.168.45
d3h5jhobc20ump.cloudfront.net
205.251.222.39
754-kbj-733.mktoresp.com
192.28.144.124
www3.l.google.com
142.250.203.110
googleads.g.doubleclick.net
172.217.168.2
dl6fh5ptkejqa.cloudfront.net
13.33.93.196
bit.ly
67.199.248.11
docrdsfx76ssb.cloudfront.net
13.33.93.56
www.google.co.uk
172.217.168.3

URLs

Name Detection
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/recognizable-brands-buzzfeed.svg
https://clients6.google.com
https://754-kbj-733.mktoresp.com/webevents/visitWebPage?_mchNc=1635496920609&_mchCn=&_mchId=754-KBJ-733&_mchTk=_mch-bitly.com-1635496889137-41538&_mchHo=bitly.com&_mchPo=&_mchRu=%2F&_mchPc=https%3A&_mchVr=160&_mchEcid=&_mchHa=&_mchRe=&_mchQp=
Click to see the 97 hidden entries
https://bitly.com/pages/resources
https://www.google.co.uk
https://feedback.googleusercontent.com
https://www.google.com/
https://docs.google.com
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/recognizable-brands-amazon.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2020/05/illo-desktop-1440x651-1.jpg
https://www.google.co.uk/pagead/1p-user-list/768371374/?random=1635496890052&cv=9&fst=1635494400000&num=1&bg=ffffff&guid=ON&u_h=1024&u_w=1280&u_ah=984&u_aw=1280&u_cd=24&u_his=1&u_tz=-420&u_java=false&u_nplug=1&u_nmime=2&gtm=2oaar0&sendb=1&data=event%3Dgtag.config&frm=0&url=https%3A%2F%2Fbitly.com%2F&tiba=URL%20Shortener%20-%20Short%20URLs%20%26%20Custom%20Free%20Link%20Shortener%20%7C%20Bitly&async=1&fmt=3&is_vtc=1&random=515538994&resp=GooglemKTybQhCsO&rmt_tld=1&ipr=y
https://754-kbj-733.mktoresp.com/webevents/visitWebPage?_mchNc=1635496924644&_mchCn=&_mchId=754-KBJ-733&_mchTk=_mch-bitly.com-1635496889137-41538&_mchHo=bitly.com&_mchPo=&_mchRu=%2F&_mchPc=https%3A&_mchVr=160&_mchEcid=&_mchHa=&_mchRe=&_mchQp=
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/feather-icon-anchor.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/feather-icon-smartphone.svg
http://bit.ly/static/graphics/ProximaNova-Regular.woff2
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2020/05/illo-mobile-810x480-1.jpg
https://stats.g.doubleclick.net/g/collect?v=2&tid=G-567GCTL9BB&cid=733574328.1635496890&gtm=2oear0&aip=1
https://public.profitwell.com/js/profitwell.js?auth=36daba674ba5cfc0ff20888a386b766b
http://tools.ietf.org/html/rfc1950
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/cache/fvm/1634669362/out/header-9891569b3c4b6dec68a9e27be97b6acfb5b38937.min.css
http://bit.ly/static/graphics/bitly_logo_red.svg
https://bitly.com/pages/privacy
https://play.google.com/log?format=json&hasfast=true
https://www.google.com/images/dot2.gif
https://www.google.com/pagead/1p-user-list/768371374/?random=1635496890052&cv=9&fst=1635494400000&num=1&bg=ffffff&guid=ON&u_h=1024&u_w=1280&u_ah=984&u_aw=1280&u_cd=24&u_his=1&u_tz=-420&u_java=false&u_nplug=1&u_nmime=2&gtm=2oaar0&sendb=1&data=event%3Dgtag.config&frm=0&url=https%3A%2F%2Fbitly.com%2F&tiba=URL%20Shortener%20-%20Short%20URLs%20%26%20Custom%20Free%20Link%20Shortener%20%7C%20Bitly&async=1&fmt=3&is_vtc=1&random=515538994&resp=GooglemKTybQhCsO&rmt_tld=0&ipr=y
https://bitly.com/pages/privacy
https://d1ayxb9ooonjts.cloudfront.net/3e574ee721bb592fd3e6aab4a3780dbc.otf
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/cache/fvm/1634669362/out/footer-60627096f137ab88738232f7482a14824d52f875.min.js
https://dl6fh5ptkejqa.cloudfront.net/fb109d9025d267d9abe5cb936f758846.css
https://clients2.googleusercontent.com/crx/blobs/Acy1k0bLIjHsvnKaKN_oRpVaYYvFs25d7GKYF1WXrT6yizCMksBO0c_ggE0B6tx6HPRHe6q1GOEe3_NcIbSiGG8kXeLMUY0sAKVvC6R89zvKM13s5VqoAMZSmuUgjQL5vlygJuArQghXXE_qTL7NlQ/extension_8520_615_0_5.crx
https://bitly.com/pages/pricing
https://accounts.google.com/MergeSession
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/anchor.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/feather-icon-thumbs-up.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/chevron.png
https://sandbox.google.com/payments/v4/js/integrator.js
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/radio.svg
https://bitly.com/a/sign_up?utm_content=404&utm_source=organic&utm_medium=website&utm_campaign=website&utm_cta=web2-blank-404-page-learnmore-learnmore-pricing
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/smartphone.svg
https://bitly.com/#content
https://754-kbj-733.mktoresp.com/webevents/visitWebPage?_mchNc=1635496901433&_mchCn=&_mchId=754-KBJ-733&_mchTk=_mch-bitly.com-1635496889137-41538&_mchHo=bitly.com&_mchPo=&_mchRu=%2F&_mchPc=https%3A&_mchVr=160&_mchEcid=&_mchHa=&_mchRe=&_mchQp=utm_source%3D404
https://www.google.com/log?format=json&hasfast=true
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/thumbs-up.svg
https://d3h5jhobc20ump.cloudfront.net/7eedb3d760d7794b248cf62bbbfd1d93.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/cache/fvm/1634669362/out/footer-9aeac2324781fc7e4d9d490e58b00a92b6638220.min.js
https://play.google.com
https://www.google.com/images/cleardot.gif
https://754-kbj-733.mktoresp.com/webevents/visitWebPage?_mchNc=1635496889138&_mchCn=&_mchId=754-KBJ-733&_mchTk=_mch-bitly.com-1635496889137-41538&_mchHo=bitly.com&_mchPo=&_mchRu=%2F&_mchPc=https%3A&_mchVr=160&_mchEcid=&_mchHa=&_mchRe=&_mchQp=
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/feather-icon-globe.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/12/developer-icon-1.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/recognizable-brands-gartner.svg
https://www.google.co.uk/ads/ga-audiences?v=1&t=sr&slf_rd=1&_r=4&tid=G-567GCTL9BB&cid=733574328.1635496890&gtm=2oear0&aip=1&z=49478520
https://hangouts.google.com/hangouts/_/logpref
https://d1ayxb9ooonjts.cloudfront.net/8bc625062aeffa94729b9336243bed9d.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/recognizable-brands-disney.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/themes/JointsWP-CSS-master/assets/fonts/fonts.css
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/feather-icon-code.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/recognizable-brands-espn.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/favicon.ico
https://www.google.com
https://preprod-hangouts-googleapis.sandbox.google.com
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/code.svg
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions-01
https://dl6fh5ptkejqa.cloudfront.net/eab92125cd7cb346e7f291bafce0a82f.svg
https://crash.corp.google.com/samples?reportid=&q=
http://bit.ly/3b7ion9
https://d1ayxb9ooonjts.cloudfront.net/03885108b01f0b92601b9be97af3aa9a.otf
http://bitly.com/pages/privacy/
https://apis.google.com/js/client.js
https://bitly.com/pages/privacy/
https://stats.g.doubleclick.net
https://bitly.com/s/js/unauth.shorten.js
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/08/Homepage-Branded-Links-Illustration-1.png
https://dl6fh5ptkejqa.cloudfront.net/2b21cdf7bb0327252f60662d1fdfbc32.svg
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/message-circle.svg
https://support.google.com/chromecast/troubleshooter/2995236
https://bitly.com/a/sign_in
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/03/feather-icon-book-open.svg
http://bit.ly/3b7ion9
https://www.google.com/images/x2.gif
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2021/08/bitly_logo.svg
https://zippyfrog.co/anywhere/cdc700557af740f28db94c45b02cb6b743603d29033348e9a0e2a5bd72d41572/core.js
https://www.google.com;
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/cache/fvm/1634669362/out/footer-e9fa9f6e64887c0b7945fcf0a4d4a4b81108d836.min.js
https://payments.google.com/payments/v4/js/integrator.js
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/themes/JointsWP-CSS-master/assets/foundation-icons/foundation-icons.woff
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=85.0.4183.121&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1&x=id%3Dpkedcjkdefgpdelpbcmbmeomcjbeemfm%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions
https://bitly.com/
https://github.com/google/closure-library/wiki/goog.module:-an-ES6-module-like-alternative-to-goog.p
https://dns.google
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2019/02/link-2.svg
https://www.google.com/tools/feedback
http://bit.ly/favicon.ico
https://analytics.google.com/g/collect?v=2&tid=G-567GCTL9BB&gtm=2oear0&_p=1046751958&sr=1280x1024&_gaz=1&ul=en-us&cid=733574328.1635496890&_s=1&dl=https%3A%2F%2Fbitly.com%2F&dt=URL%20Shortener%20-%20Short%20URLs%20%26%20Custom%20Free%20Link%20Shortener%20%7C%20Bitly&sid=1635496889&sct=1&seg=0&en=page_view&_fv=1&_ss=1
https://docrdsfx76ssb.cloudfront.net/static/1634669372/pages/wp-content/uploads/2021/09/Site_Basic_Popup.png
https://github.com/madler/zlib/blob/master/zlib.h
https://bitly.com/
https://www.google.com/accounts/OAuthLogin?issueuberauth=1
https://creativecommons.org/publicdomain/zero/1.0/.

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Temp\6920_2082335762\manifest.json
ASCII text
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\en\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\el\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\de\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\da\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\cs\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\ca\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\bn\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\bg\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\ar\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\am\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\ecac61bd-ebb3-4364-b7c6-b6aa2c4c0720.tmp
Google Chrome extension, version 3
#
C:\Users\user\AppData\Local\Temp\88373e1a-c767-417e-868d-995222cc9d61.tmp
very short file (no magic)
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\es\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\6920_2082335762\manifest.fingerprint
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Temp\6920_2082335762\crl-set
data
#
C:\Users\user\AppData\Local\Temp\6920_2082335762\_metadata\verified_contents.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\6920_2082335762\LICENSE
ASCII text
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_sz_nexe
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=4b15de4ab227d5e46213978b8518d53c53ce1db9, stripped
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe
ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, BuildID[sha1]=309d6d3d463e6b1b0690f39eb226b1e4c469b2ce, stripped
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_dummy_a
current ar archive
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a
current ar archive
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a
current ar archive
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a
current ar archive
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_o
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\iw\messages.json
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\pt\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\pl\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\nl\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\nb\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\ms\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\mr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\ml\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\lv\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\lt\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\ko\messages.json
UTF-8 Unicode text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\kn\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\ja\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_for_eh_o
ELF 64-bit LSB relocatable, x86-64, version 1 (SYSV), not stripped
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\it\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\id\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\hu\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\hr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\hi\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\gu\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\fr\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\fil\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\fi\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\fa\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\scoped_dir6920_1395087000\CRX_INSTALL\_locales\et\messages.json
UTF-8 Unicode text, with very long lines, with CRLF line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\4da0d483-1dee-4e55-b627-5e4e82485a3c.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State.. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old.. (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\8520.615.0.5_1\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\91e48063-929b-45e6-96ad-fb610f0f332d.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\89c02874-0681-4a8e-a500-b0cf73646863.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\86174b47-ec5a-4009-8413-7ba1d1af2481.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\6ccc2e57-e101-4e74-9f64-3a036c0c5566.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\513cf1dc-2874-4a20-8c04-3d26067b2d7f.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\4e4e48e7-4c58-40e2-8bdc-ee4acdce7394.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\PreferencesMP (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\492f3b72-0788-49c6-af92-c963a8cf7298.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\36238c3c-d360-435c-a7aa-43a708d251dd.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\3106e034-b80d-4e97-95c3-91154580747d.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\14582493-8448-4c52-953e-850984fb5b65.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\05e5e305-eb94-4bed-b13f-1564a37b3aaa.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\9a9cd393-9a2e-48db-ab1f-07426adfde76.tmp
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\8bd004c2-c3b5-4c5c-81f3-42ba04dfd333.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\4541a714-fc46-4f64-9d5b-fe4660031d2c.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\0f46b8a2-87b0-433e-bf2d-250e7103ccaf.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\09600f9f-b8e3-4b9c-858c-999dabff350a.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\b75b5603-967e-4c4f-a8bb-b28d6e62e9c7.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\6920_1170629082\_platform_specific\x86_64\pnacl_public_pnacl_json
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\ecba306f-8823-4334-a741-2b28096a83ce.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\d25110fb-a52c-4447-acf1-b13b404fd366.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local Staten (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Browser
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\fc1b1dfb-0097-425e-8e9c-bcf449fc81c4.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\e849d40d-708f-498e-ac27-0a9efe3e545b.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\CURRENTJ (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\data_reduction_proxy_leveldb\000004.dbtmp
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\c8328d34-aae8-4f65-81a2-29737f8d27af.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\TransportSecurityMP (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity.6 (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\TransportSecurity (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Network Persistent State.. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\6148ee9f-246b-4a5e-9f53-600eb219ed14.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Network Persistent State (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\5c13e46d-0c3c-48ce-8eea-fe011aac4f9b.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (copy)
UTF-8 Unicode text, with very long lines, with no line terminators
#