top title background image
flash

Michal November 23, 2021.html

Status: finished
Submission Time: 2021-11-25 14:49:54 +01:00
Malicious
Phishing
HTMLPhisher

Comments

Tags

Details

  • Analysis ID:
    528605
  • API (Web) ID:
    896133
  • Analysis Started:
    2021-11-25 14:52:12 +01:00
  • Analysis Finished:
    2021-11-25 15:01:03 +01:00
  • MD5:
    57b81aab69a15a368f4511496425cad5
  • SHA1:
    fff99ef9677568e679cb308ae17cc6b726aa65c5
  • SHA256:
    3ba873c662213a7bc04a54fbd74c54294e91e9f2d36a5be0a23aa18fca74b9c3
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 76
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

Third Party Analysis Engines

malicious

IPs

IP Country Detection
142.250.203.110
United States
172.217.168.45
United States
142.250.203.97
United States
Click to see the 2 hidden entries
239.255.255.250
Reserved
152.199.23.37
United States

Domains

Name IP Detection
cs1100.wpc.omegacdn.net
152.199.23.37
accounts.google.com
172.217.168.45
clients.l.google.com
142.250.203.110
Click to see the 7 hidden entries
googlehosted.l.googleusercontent.com
142.250.203.97
clients2.googleusercontent.com
0.0.0.0
passwordreset.microsoftonline.com
0.0.0.0
clients2.google.com
0.0.0.0
code.jquery.com
0.0.0.0
aadcdn.msftauth.net
0.0.0.0
ajax.aspnetcdn.com
0.0.0.0

URLs

Name Detection
https://harperette.com/module/project_theme/NaturalQuality/src/User/Option/Auth/form.php
file:///C:/Users/user/Desktop/Michal%20November%2023,%202021.html
https://payments.google.com/payments/v4/js/integrator.js
Click to see the 92 hidden entries
https://play.google.com/log?format=json&hasfast=true
https://meetings.clients6.google.com
https://www.google.com/images/dot2.gif
http://llvm.org/):
https://passwordreset.microsoftonline.com/images/header_Microsoft.png
https://www.google.com/images/x2.gif
https://passwordreset.microsoftonline.com/favicon.ico?v=1342177280Ci0KBw1EWxT8GgAKBw2L4FIoGgAKBw3Er9
https://passwordreset.microsoftonline.com/images/hip_text.gifX.
https://hangouts.google.com/
https://chromium.googlesource.com/a/native_client/pnacl-llvm.git
https://aadcdn.msftauth.net/shared/1.0/content/images/arrow_left_a9cc2824ef3517b6c4160dcf8ff7d410.svg
https://www.google.com;
https://code.google.com/p/nativeclient/issues/entry%s:
https://accounts.google.com/ListAccounts?gpsia=1&source=ChromiumBrowser&json=standard
https://code.jquery.com/jquery-3.1.1.min.js
https://clients2.google.com/service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=85.0.4183.121&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1&x=id%3Dpkedcjkdefgpdelpbcmbmeomcjbeemfm%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1
https://passwordreset.microsoftonline.com/js/Button.js?v=1342177280
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions
https://aadcdn.msftauth.net/shared/1.0/content/images/microsoft_logo_ee5c8d9fb6248c938fd0dc19370e90b
https://support.google.com/chromecast/troubleshooter/2995236
https://passwordreset.microsoftonline.com/css/ltrStyle.css?v=1342177280
https://ogs.google.com
https://www.google.com/intl/en-US/chrome/blank.html
https://csp.withgoogle.com/csp/report-to/IdentityListAccountsHttp/external
https://clients6.google.com
https://clients2.google.com/service/update2/crx
https://passwordreset.microsoftonline.com/images/hip_speaker.png
https://chromium.googlesource.com/a/native_client/pnacl-clang.git
https://passwordreset.microsoftonline.com/js/Captcha.js?v=1342177280
https://passwordreset.microsoftonline.com/images/hip_reload.png
https://feedback.googleusercontent.com
https://www.google.com/
https://passwordreset.microsoftonline.com/js/Webtrends.js
https://docs.google.com
https://passwordreset.microsoftonline.com/images/hip_text.gif
https://ajax.aspnetcdn.com/
https://clients2.googleusercontent.com
https://aadcdn.msftauth.net/shared/1.0/content/images/microsoft_logo_ee5c8d9fb6248c938fd0dc19370e90bd.svg
https://support.google.com/chromecast/answer/2998456
https://passwordreset.microsoftonline.com/WebResource.axd?d=K8SG-wKQphiVYLlIdWNflHCKk9laM7b9jg1MsaXM
https://passwordreset.microsoftonline.com/
https://code.google.com/p/nativeclient/issues/entry
https://ajax.aspnetcdn.com/ajax/jQuery/jquery-3.5.0.min.js
http://tools.ietf.org/html/rfc1950
https://passwordreset.microsoftonline.com/favicon.ico?v=1342177280
https://github.com/google/closure-library/wiki/goog.module:-an-ES6-module-like-alternative-to-goog.p
https://passwordreset.microsoftonline.com/ScriptResource.axd?d=dKkdrB5w_YByjM1hzQdaPGMZwL6KMOpdrP-i7
https://github.com/easylist)
https://passwordreset.microsoftonline.com/images/header_Microsoft.pngGIF89a
https://www.google.com
https://clients2.googleusercontent.com/crx/blobs/Acy1k0bLIjHsvnKaKN_oRpVaYYvFs25d7GKYF1WXrT6yizCMksBO0c_ggE0B6tx6HPRHe6q1GOEe3_NcIbSiGG8kXeLMUY0sAKVvC6R89zvKM13s5VqoAMZSmuUgjQL5vlygJuArQghXXE_qTL7NlQ/extension_8520_615_0_5.crx
https://preprod-hangouts-googleapis.sandbox.google.com
https://creativecommons.org/compatiblelicenses
https://passwordreset.microsoftonline.com/js/Common.js
https://accounts.google.com/MergeSession
https://passwordreset.microsoftonline.com/images/header_microsoft.png
http://www.ietf.org/id/draft-holmer-rmcat-transport-wide-cc-extensions-01
https://sandbox.google.com/payments/v4/js/integrator.js
https://creativecommons.org/.
https://passwordreset.microsoftonline.com/?ru=https%3a%2f%2flogin.microsoftonline.com%2fcommon%2freprocess%3fctx%3drQIIAYWSvY_jZBDG42Q3l82BOQ50Oqi2QAIhOXn9Ha90RbLO5mv9Otk4iZ0mSpw39pvYsddxEq91f8B2XIXQFRRXLg06GkQD9VZXb4MrCkSBqOgOL9QnmpnnmRnNFPMrFoQSTZdACXyZY0rg5DNOFHiO42cUy5gCxUkzQFVYJFD0XGLTFiMK5jR4XHyU-XbbePXzp_JX17-2P__j9dc3xLEdhv7mpFze7_clb7HAJiqZnlt2pus5Xls75keCeEMQL7OHaE214E12I6QbKzxdkQSaY9LMMCVlWWWNuIahZoRKnGoMABz1onPNxjBWQuie2QZztoSy7SqawcCRwd7PKbIVKrIRwT4AqnZmn4_qEZTraa0aw7jFq5oRGZrF3WU_UKvb0GbugxfgGP2VPVp4gTvxvU34MvddtrcIK3DYHW4D3FtYQqPriOq66VF9fchfDeZtSR9VO_OY61LKGWWtxzt_jxn2dIlGjo7ZWA_clR_xSNYG7UmsX1CIbrMdgevVL82ep0StcGqd-p2W0YmXs7jLXQYAs3UFS2tTafr7CnZ1X_V9sJd0eFEzqb5cgcqw2xVWYxzy8AqsRnxdVDe-Ptb1sYlGW1rTRV6YtOgd06BCIwpFx572-_JgoDembU9aCEPLReO6PatGWnp9KUZNLrD0sd2RXY2KLgeUvnFrLduaDuUJu0Jow830xrlU29U4wUYhRV-cjvB4aLG9lX_acAHw1KHiD6yb3Cfv-PmOeZ3Lp8L11rc50fPRGs-P_cBbYAe9i5MdU1b_dU3PRaWq47w5IH4_eFLIP3r4NHOc-eJjkDspFFLy7t3fB8SrwxTDrnj3HP_wW-ubyffg-O115vawvGArQWCcr1S7P0C1pQO1q_IOADeEUqcX1r2dLDXL_Y7m0eYz8YR-kSde5PO3-Q9b8gTWtb5WhXL1QmYm4M88cf0g89PR_4J9995HxeIWTxzPnDpo8_g_wH95P5OQREJmEzKXkAcJeZiQ-YR8kJCFhDxKyGJCPvwH0&mkt=en-IN&hosted=0&device_platform=Windows+10
https://passwordreset.microsoftonline.com/images/footer_logo_grey_bg.png
https://easylist.to/)
https://www.google.com/log?format=json&hasfast=true
https://passwordreset.microsoftonline.com/ScriptResource.axd?d=q5w5thCcfM-puGUfx2IvVvou0xwZRExIT95KU
https://crash.corp.google.com/samples?reportid=&q=
https://aadcdn.msftauth.net/shared/1.0/content/images/backgrounds/2_bc3d32a696895f78c19df6c717586a5d.svg
https://www.google.com/images/cleardot.gif
https://passwordreset.microsoftonline.com/images/wait_animation.gif
https://apis.google.com/js/client.js
https://apis.google.com
https://passwordreset.microsoftonline.com/js/Common.js1$
https://dns.google
http://www.apache.org/licenses/LICENSE-2.0
https://www.google.com/tools/feedback
https://aadcdn.msftauth.net/shared/1.0/content/images/backgrounds/2_bc3d32a696895f78c19df6c717586a5d
https://clients2.google.com
https://www-googleapis-staging.sandbox.google.com
https://passwordreset.microsoftonline.com/WebResource.axd?d=HAV6PjMKiAmtAvxBgE9JDGqR1xYgZB9pt2QBI2F1
https://github.com/madler/zlib/blob/master/zlib.h
https://www.google.com/accounts/OAuthLogin?issueuberauth=1
https://aadcdn.msftauth.net/shared/1.0/content/images/arrow_left_a9cc2824ef3517b6c4160dcf8ff7d410.sv
https://passwordreset.microsoftonline.com/css/Style.css?v=1342177280
https://passwordreset.microsoftonline.com/ScriptResource.axd?d=OUH-1awPDbalk0VCLValPdS0n633hJORT180q
https://passwordreset.microsoftonline.com/?ru=https%3a%2f%2flogin.microsoftonline.com%2fcommon%2frep
https://github.com/angular/material
https://creativecommons.org/publicdomain/zero/1.0/.
http://angularjs.org
https://clients2.google.com/cr/report
https://accounts.google.com
https://hangouts.google.com/hangouts/_/logpref
https://meet.google.com
https://hangouts.clients6.google.com

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences.. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG.oldgs (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Site Characteristics Database\LOG
ASCII text
#
Click to see the 97 hidden entries
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure PreferencesMP (copy)
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences (copy)
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Reporting and NEL
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferencesi\ (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences\* (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences\ (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\PreferencesMP (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\3b30358e-9b55-40bb-9ed9-879d79086488.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Preferences (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent StateMP (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Persistent State.. (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network Action Predictor
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG.oldMP (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Last Tabs.. (copy)
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG.oldut (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\pkedcjkdefgpdelpbcmbmeomcjbeemfm\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG.old/l (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG.old. (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Platform Notifications\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Network Persistent StateMP (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\Local Storage\leveldb\LOG.old. (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Last Session. (copy)
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\nmmhkkegccagdldgiimedpiccmgmieda\def\368ed337-4a75-49c4-95ec-63f98674234c.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Session Storage\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Platform Notifications\LOG.oldmW (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Platform Notifications\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Network Persistent State (copy)
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Local Storage\leveldb\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\Local Storage\leveldb\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Storage\ext\gfdkimpbcpahaombhbimeihdjnejgicl\def\GPUCache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\64350120-f9ee-42f4-ae48-a30d1f1252d6.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG.old. (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\BudgetDatabase\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\AutofillStrikeDatabase\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\9f108e1a-7669-4464-a782-5f31365cce8d.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\87a8332c-3a9c-4a64-9371-0f61521e8c07.tmp
very short file (no magic)
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\8359288c-a50a-46fa-9809-71e603319210.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\834db08d-ccdb-41ee-bc7f-dd3e833cea4a.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\80f6cce7-cf8b-48cf-8ada-a1286d5db66c.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\73b4b623-41e7-4e5b-a2c7-d3791255cb14.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\6eb3b165-b94d-449a-84c1-edc57e7b01a7.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\3a2837c4-d8e8-469c-9069-60e8da51a9c6.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\2b3f2815-d331-433a-80ef-f0574c7bc284.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\1e3a9b42-4721-4a4c-a183-ceabe96147aa.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\1438042b-f735-44e6-8a42-8aab82316710.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\13373234-e187-4cc9-ae11-55770141d85a.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\10595e4a-9962-4be9-ba84-787eedc9996d.tmp
UTF-8 Unicode text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\7461f93a-bb7b-4729-acf3-9077a7d22d72.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\24e0cc05-cc01-4f06-a6c0-8dd3b6dbf6e2.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\085b320e-381d-4521-ae03-7484706c9bca.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\07910a4c-b41d-4297-8fc6-73cab0eb04d7.tmp
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History-journal
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History Provider Cache
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\History
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\GCM Store\Encryption\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG.old\. (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\EventDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG.old (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Feature Engagement Tracker\AvailabilityDB\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Favicons
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\8520.615.0.5_1\_metadata\computed_hashes.json
ASCII text, with very long lines, with no line terminators
#
C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old. (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension State\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG.old.. (copy)
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\LOG
ASCII text
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extension Rules\000003.log
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Tabs
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Current Session
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies
SQLite 3.x database, last written using SQLite version 3032001
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3
data
#
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2
data
#