Click to jump to signature section
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com | LLM: Score: 9 brands: Microsoft, Adobe Reasons: The URL 'https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com' is highly suspicious. It uses a long and complex subdomain structure which is often a tactic used in phishing attacks to mislead users. The domain 'linodeobjects.com' is not associated with Microsoft or Adobe, which are the brands displayed on the page. The page prominently asks for a Microsoft email address for 'document verification,' which is a common phishing tactic to steal credentials. There is no CAPTCHA, which is often used in legitimate sites to prevent automated attacks. The combination of these factors strongly suggests that this is a phishing site. DOM: 3.4.pages.csv |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com | LLM: Score: 9 brands: Microsoft, Adobe Reasons: The URL 'https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com' is highly suspicious. It uses a long and complex subdomain structure which is a common tactic in phishing attacks to confuse users. The main domain 'linodeobjects.com' does not match the legitimate domains of Microsoft or Adobe, which are 'microsoft.com' and 'adobe.com' respectively. The page prominently features a login form asking for an email address, which is a common phishing technique. The use of logos from well-known brands (Microsoft and Adobe) is another social engineering technique to gain the user's trust. There is no CAPTCHA present, which is often used in legitimate sites to prevent automated attacks. Overall, the combination of these factors strongly indicates that this is a phishing site. DOM: 3.5.pages.csv |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com | LLM: Score: 8 brands: Microsoft Reasons: The URL 'https://new-pdf-document-approval.us-lax-1.linodeobjects.com' is suspicious because it uses a subdomain structure that is not associated with the legitimate Microsoft domain 'microsoft.com'. The image shows a Microsoft logo, indicating that the site is attempting to impersonate Microsoft. The use of a third-party domain (linodeobjects.com) is a common technique in phishing attacks to mislead users. There is no prominent login form or captcha visible in the image, but the URL and the use of the Microsoft logo without being on a Microsoft domain are strong indicators of phishing. Therefore, the site is likely a phishing site. DOM: 4.7.pages.csv |
Source: Yara match | File source: 4.8.pages.csv, type: HTML |
Source: Yara match | File source: 4.7.pages.csv, type: HTML |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | Matcher: Found strong image similarity, brand: MICROSOFT |
Source: Chrome DOM: 0.0 | OCR Text: 1719926468358 1 OneDrive for Business Jeff Fisher shared a folder with you. Here's the folder Jeff Fisher with you. You Have received (2) documents for your review. This message was sent to you to protect sensitive information. Date created: 02/07/2024 07:30 AM Size | 2.3 11/07/2024 Ref: Review Shared Documents from Jeff Fisher "Click View and Print Online" To this file "cEck nd printonline" Download the app for Windows |
Source: Chrome DOM: 1.2 | OCR Text: 1 OneDrive for Business Jeff Fisher shared a folder with you. Here's the folder Jeff Fisher with you. You Have received (2) documents for your review. This message was sent to you to protect sensitive information. Date created: 02/07/2024 07:30 AM Size | 2.3 11/07/2024 Ref: Review Shared Documents from Jeff Fisher "Click View and Print Online" To this file "cEck nd printonline" Download the app for Windows |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: Number of links: 0 |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: Number of links: 0 |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: <input type="password" .../> found but no <form action="... |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: Total embedded image size: 18628 |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: Title: Verification Defender Associate does not match URL |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: Title: Sign in to Best Productivity Provider does not match URL |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: Invalid link: Jordi Mas was born in () on 14 March 1930. At 24 he was ordained and his first destinations as vicar were , la Geltr () and the Miraculosa parish in . In 1961 he left as a missionary to a much harder scenery, which he himself chose: first some cities in the south of Cameroon and later in the Far North Region of the country in the wide strip. His last towns were and , close to lake Chad, in Muslim . From 1961 to 2010 he worked supporting his small congregations and helping them in educational, healthy and social areas. |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: Invalid link: Jordi Mas was born in () on 14 March 1930. At 24 he was ordained and his first destinations as vicar were , la Geltr () and the Miraculosa parish in . In 1961 he left as a missionary to a much harder scenery, which he himself chose: first some cities in the south of Cameroon and later in the Far North Region of the country in the wide strip. His last towns were and , close to lake Chad, in Muslim . From 1961 to 2010 he worked supporting his small congregations and helping them in educational, healthy and social areas. |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: <input type="password" .../> found |
Source: https://media.licdn.com/dms/document/media/D4E1FAQGKDP-pyW5NBA/feedshare-document-pdf-analyzed/0/1719926468358?e=1720656000&v=beta&t=U5spx8e2I63OvMIgieNyUJBTwIfMrRkjObPURrnycPM | HTTP Parser: No favicon |
Source: file:///C:/Users/user/Downloads/downloaded.pdf | HTTP Parser: No favicon |
Source: file:///C:/Users/user/Downloads/downloaded.pdf | HTTP Parser: No favicon |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: No favicon |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: No favicon |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: No favicon |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: No <meta name="author".. found |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: No <meta name="author".. found |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: No <meta name="author".. found |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: No <meta name="author".. found |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: No <meta name="copyright".. found |
Source: https://document-display-verifycation-download-pdf.us-east-1.linodeobjects.com/safe.html | HTTP Parser: No <meta name="copyright".. found |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: No <meta name="copyright".. found |
Source: https://new-pdf-document-approval.us-lax-1.linodeobjects.com/app.html#admin@halton.ca | HTTP Parser: No <meta name="copyright".. found |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries |
Source: unknown | HTTPS traffic detected: 52.165.165.26:443 -> 192.168.2.18:49709 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.165.165.26:443 -> 192.168.2.18:49717 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.190.159.0:443 -> 192.168.2.18:49718 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.15.178.171:443 -> 192.168.2.18:49719 version: TLS 1.2 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.182.141.63 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.182.141.63 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.182.141.63 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.182.141.63 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.182.141.63 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.182.141.63 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.182.141.63 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 20.190.159.0 |
Source: unknown | TCP traffic detected without corresponding DNS query: 20.190.159.0 |
Source: global traffic | DNS traffic detected: DNS query: lnkd.in |
Source: global traffic | DNS traffic detected: DNS query: media.licdn.com |
Source: global traffic | DNS traffic detected: DNS query: www.google.com |
Source: global traffic | DNS traffic detected: DNS query: document-display-verifycation-download-pdf.us-east-1.linodeobjects.com |
Source: global traffic | DNS traffic detected: DNS query: 4454275f.rwnbqwuligbumyzvpodsthfkaftacy.pages.dev |
Source: global traffic | DNS traffic detected: DNS query: new-pdf-document-approval.us-lax-1.linodeobjects.com |
Source: global traffic | DNS traffic detected: DNS query: a9d041c33434.wazo-biawalkeks.ru |
Source: global traffic | DNS traffic detected: DNS query: openfpcdn.io |
Source: global traffic | DNS traffic detected: DNS query: cdnjs.cloudflare.com |
Source: global traffic | DNS traffic detected: DNS query: code.jquery.com |
Source: global traffic | DNS traffic detected: DNS query: a.nel.cloudflare.com |
Source: unknown | Network traffic detected: HTTP traffic on port 49708 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49733 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49710 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49741 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49740 |
Source: unknown | Network traffic detected: HTTP traffic on port 49727 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49739 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49738 |
Source: unknown | Network traffic detected: HTTP traffic on port 49717 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49736 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49736 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49735 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49734 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49733 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49732 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49731 |
Source: unknown | Network traffic detected: HTTP traffic on port 49707 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49730 |
Source: unknown | Network traffic detected: HTTP traffic on port 49732 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49696 |
Source: unknown | Network traffic detected: HTTP traffic on port 49679 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49693 |
Source: unknown | Network traffic detected: HTTP traffic on port 49696 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49728 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49729 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49728 |
Source: unknown | Network traffic detected: HTTP traffic on port 49714 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49727 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49726 |
Source: unknown | Network traffic detected: HTTP traffic on port 49718 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49725 |
Source: unknown | Network traffic detected: HTTP traffic on port 49735 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49739 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49722 |
Source: unknown | Network traffic detected: HTTP traffic on port 49731 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49702 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49693 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49725 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49741 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49729 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49719 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49722 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49719 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49718 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49717 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49716 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49714 |
Source: unknown | Network traffic detected: HTTP traffic on port 49738 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49710 |
Source: unknown | Network traffic detected: HTTP traffic on port 49709 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49734 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49673 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49705 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49730 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49726 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49740 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49709 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49708 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49707 |
Source: unknown | Network traffic detected: HTTP traffic on port 49716 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49705 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49702 |
Source: unknown | HTTPS traffic detected: 52.165.165.26:443 -> 192.168.2.18:49709 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.165.165.26:443 -> 192.168.2.18:49717 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.190.159.0:443 -> 192.168.2.18:49718 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.15.178.171:443 -> 192.168.2.18:49719 version: TLS 1.2 |
Source: classification engine | Classification label: mal64.phis.win@25/24@28/163 |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Program Files\Google\Chrome\Application\Dictionaries |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps |
Source: unknown | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://lnkd.in/e7UhDEpW |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2192 --field-trial-handle=1808,i,7907740191966097708,8960209169092282209,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2192 --field-trial-handle=1808,i,7907740191966097708,8960209169092282209,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown |
Source: Window Recorder | Window detected: More than 3 window changes detected |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk |