IOC Report
https://aka.ms/privacy

loading gif

Files

File Path
Type
Category
Malicious
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Jul 8 16:42:50 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Jul 8 16:42:50 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:56:51 2023, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Jul 8 16:42:50 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Jul 8 16:42:50 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Jul 8 16:42:50 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 153
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 154
ASCII text, with very long lines (316), with CRLF line terminators
downloaded
Chrome Cache Entry: 155
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 156
ASCII text, with very long lines (27809)
downloaded
Chrome Cache Entry: 157
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 158
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 159
ASCII text, with very long lines (378), with CRLF line terminators
downloaded
Chrome Cache Entry: 160
Unicode text, UTF-8 (with BOM) text, with very long lines (434), with CRLF line terminators
dropped
Chrome Cache Entry: 161
Unicode text, UTF-8 (with BOM) text, with very long lines (512), with CRLF line terminators
dropped
Chrome Cache Entry: 162
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 163
Unicode text, UTF-8 (with BOM) text, with very long lines (503), with CRLF line terminators
downloaded
Chrome Cache Entry: 164
ASCII text, with very long lines (314), with CRLF line terminators
downloaded
Chrome Cache Entry: 165
ASCII text, with very long lines (318), with CRLF line terminators
downloaded
Chrome Cache Entry: 166
ASCII text, with very long lines (27809)
downloaded
Chrome Cache Entry: 167
Web Open Font Format (Version 2), TrueType, length 22904, version 0.0
downloaded
Chrome Cache Entry: 168
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 169
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 170
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 171
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 172
Unicode text, UTF-8 (with BOM) text, with very long lines (7625), with CRLF line terminators
downloaded
Chrome Cache Entry: 173
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 174
JSON data
downloaded
Chrome Cache Entry: 175
HTML document, ASCII text, with very long lines (322), with CRLF line terminators
dropped
Chrome Cache Entry: 176
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 177
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 178
ASCII text, with very long lines (32047)
downloaded
Chrome Cache Entry: 179
Unicode text, UTF-8 (with BOM) text, with very long lines (480), with CRLF line terminators
dropped
Chrome Cache Entry: 180
ASCII text, with very long lines (1245), with no line terminators
downloaded
Chrome Cache Entry: 181
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 182
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 183
Unicode text, UTF-8 (with BOM) text, with very long lines (497), with CRLF line terminators
downloaded
Chrome Cache Entry: 184
ASCII text, with very long lines (4050), with no line terminators
downloaded
Chrome Cache Entry: 185
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 186
Unicode text, UTF-8 (with BOM) text, with very long lines (503), with CRLF line terminators
dropped
Chrome Cache Entry: 187
ASCII text, with very long lines (421), with CRLF line terminators
downloaded
Chrome Cache Entry: 188
ASCII text, with very long lines (395), with CRLF line terminators
downloaded
Chrome Cache Entry: 189
Unicode text, UTF-8 (with BOM) text, with very long lines (529), with CRLF line terminators
dropped
Chrome Cache Entry: 190
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 191
Unicode text, UTF-8 (with BOM) text, with very long lines (512), with CRLF line terminators
downloaded
Chrome Cache Entry: 192
ASCII text, with very long lines (31463), with no line terminators
downloaded
Chrome Cache Entry: 193
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 194
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 195
Web Open Font Format, TrueType, length 41280, version 0.0
downloaded
Chrome Cache Entry: 196
Unicode text, UTF-8 text, with very long lines (65514), with no line terminators
downloaded
Chrome Cache Entry: 197
Unicode text, UTF-8 (with BOM) text, with very long lines (16609), with CRLF line terminators
downloaded
Chrome Cache Entry: 198
ASCII text, with very long lines (816), with CRLF line terminators
downloaded
Chrome Cache Entry: 199
Unicode text, UTF-8 (with BOM) text, with very long lines (1072), with CRLF line terminators
downloaded
Chrome Cache Entry: 200
ASCII text, with very long lines (356), with CRLF line terminators
downloaded
Chrome Cache Entry: 201
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 202
Unicode text, UTF-8 text, with very long lines (37565)
dropped
Chrome Cache Entry: 203
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 204
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 205
Unicode text, UTF-8 (with BOM) text, with very long lines (480), with CRLF line terminators
downloaded
Chrome Cache Entry: 206
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 207
HTML document, ASCII text, with very long lines (322), with CRLF line terminators
downloaded
Chrome Cache Entry: 208
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 209
Unicode text, UTF-8 (with BOM) text, with very long lines (34199), with CRLF line terminators, with escape sequences
downloaded
Chrome Cache Entry: 210
Unicode text, UTF-8 (with BOM) text, with very long lines (653), with CRLF line terminators
downloaded
Chrome Cache Entry: 211
JSON data
dropped
Chrome Cache Entry: 212
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 213
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 214
JSON data
downloaded
Chrome Cache Entry: 215
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
dropped
Chrome Cache Entry: 216
exported SGML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 217
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 218
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
downloaded
Chrome Cache Entry: 219
Unicode text, UTF-8 text, with very long lines (65520), with no line terminators
downloaded
Chrome Cache Entry: 220
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 221
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 222
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 223
Unicode text, UTF-8 text, with very long lines (64241)
downloaded
Chrome Cache Entry: 224
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 225
JSON data
downloaded
Chrome Cache Entry: 226
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 227
Unicode text, UTF-8 text, with very long lines (64174)
downloaded
Chrome Cache Entry: 228
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 229
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 230
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 231
Unicode text, UTF-8 (with BOM) text, with very long lines (529), with CRLF line terminators
downloaded
Chrome Cache Entry: 232
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 233
Unicode text, UTF-8 (with BOM) text, with very long lines (497), with CRLF line terminators
dropped
Chrome Cache Entry: 234
ASCII text, with very long lines (327), with CRLF line terminators
downloaded
Chrome Cache Entry: 235
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 236
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 237
Web Open Font Format, TrueType, length 33556, version 0.0
downloaded
Chrome Cache Entry: 238
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 239
Web Open Font Format, TrueType, length 35900, version 0.0
downloaded
Chrome Cache Entry: 240
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 241
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 242
ASCII text, with very long lines (42133)
downloaded
Chrome Cache Entry: 243
JSON data
dropped
Chrome Cache Entry: 244
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 245
Unicode text, UTF-8 text, with very long lines (37565)
downloaded
Chrome Cache Entry: 246
ASCII text, with very long lines (878), with CRLF line terminators
downloaded
Chrome Cache Entry: 247
Web Open Font Format, TrueType, length 2576, version 1.0
downloaded
Chrome Cache Entry: 248
PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 249
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
dropped
Chrome Cache Entry: 250
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 251
JSON data
dropped
Chrome Cache Entry: 252
Unicode text, UTF-8 (with BOM) text, with very long lines (434), with CRLF line terminators
downloaded
Chrome Cache Entry: 253
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 254
ASCII text, with very long lines (415), with CRLF line terminators
downloaded
Chrome Cache Entry: 255
Unicode text, UTF-8 text, with very long lines (557), with CRLF line terminators
downloaded
Chrome Cache Entry: 256
JSON data
dropped
Chrome Cache Entry: 257
JSON data
dropped
Chrome Cache Entry: 258
HTML document, ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 259
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 260
Unicode text, UTF-8 (with BOM) text, with very long lines (36076), with CRLF line terminators
downloaded
Chrome Cache Entry: 261
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 262
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 263
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 264
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 265
exported SGML document, ASCII text, with CRLF line terminators
dropped
Chrome Cache Entry: 266
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 267
ASCII text, with very long lines (32089)
downloaded
Chrome Cache Entry: 268
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 269
ASCII text, with very long lines (65397)
downloaded
Chrome Cache Entry: 270
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 271
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
downloaded
Chrome Cache Entry: 272
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
Chrome Cache Entry: 273
ASCII text, with very long lines (301), with CRLF line terminators
downloaded
Chrome Cache Entry: 274
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 275
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
downloaded
Chrome Cache Entry: 276
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 277
JSON data
downloaded
Chrome Cache Entry: 278
ASCII text, with very long lines (42133)
downloaded
Chrome Cache Entry: 279
ASCII text, with very long lines (385), with CRLF line terminators
downloaded
Chrome Cache Entry: 280
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 281
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 282
Unicode text, UTF-8 text, with very long lines (64241)
downloaded
Chrome Cache Entry: 284
ASCII text, with very long lines (402)
downloaded
Chrome Cache Entry: 285
ASCII text, with CRLF line terminators
downloaded
Chrome Cache Entry: 286
ASCII text, with very long lines (312), with CRLF line terminators
downloaded
Chrome Cache Entry: 288
PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
dropped
Chrome Cache Entry: 289
ASCII text, with very long lines (65450), with CRLF line terminators
downloaded
There are 132 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2264 --field-trial-handle=2156,i,15213237878609829063,2922594446817837923,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://aka.ms/privacy"

URLs

Name
IP
Malicious
https://aka.ms/privacy
https://aka.ms/youngpeopleprivacy
unknown
http://www.apache.org/licenses/LICENSE-2.0
unknown
http://www.opensource.org/licenses/mit-license.php)
unknown
http://live.xbox.com/MyXbox/Profile
unknown
https://minecraft.net
unknown
https://aka.ms/privacy
104.119.110.121
https://outlook.live.com/mail/inbox
unknown
https://www.w3.org/WAI/ARIA/apg/
104.18.23.19
http://goo.gl/MqrFmX
unknown
http://knockoutjs.com/
unknown
https://github.com/chemerisuk/better-dom
unknown
https://github.com/h5bp/html5-boilerplate/blob/master/src/css/main.css
unknown
https://js.monitor.azure.com/scripts/c/ms.analytics-web-3.gbl.min.js
13.107.246.60
about:blank
http://github.com/requirejs/almond/LICENSE
unknown
https://github.com/chemerisuk/better-dateinput-polyfill
unknown
http://www.json.org/json2.js
unknown
https://aka.ms/dpa
unknown
http://NSwag.org)
unknown
https://www.w3.org/TR/wai-aria-practices/examples/dialog-modal/css/datepicker.css
104.18.23.19
https://onedrive.live.com/
unknown
There are 11 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
waws-prod-am2-46f973ed.sip.p.azurewebsites.windows.net
20.76.252.24
www.google.com
172.217.16.196
www.w3.org
104.18.23.19
aka.ms
104.119.110.121
fp2e7a.wpc.phicdn.net
192.229.221.95
s-part-0032.t-0009.t-msedge.net
13.107.246.60
js.monitor.azure.com
unknown
c.s-microsoft.com
unknown
assets.onestore.ms
unknown
i.s-microsoft.com
unknown
ajax.aspnetcdn.com
unknown
There are 1 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
104.119.110.121
aka.ms
United States
192.168.2.9
unknown
unknown
13.107.246.60
s-part-0032.t-0009.t-msedge.net
United States
192.168.2.6
unknown
unknown
104.18.23.19
www.w3.org
United States
20.76.252.24
waws-prod-am2-46f973ed.sip.p.azurewebsites.windows.net
United States
239.255.255.250
unknown
Reserved
172.217.16.196
www.google.com
United States

DOM / HTML

URL
Malicious
https://privacy.microsoft.com/en-us/privacystatement
https://privacy.microsoft.com/en-US/updates
https://privacy.microsoft.com/en-us/privacystatement#maincookiessimilartechnologiesmodule
https://privacy.microsoft.com/en-us/privacystatement#maincookiessimilartechnologiesmodule
https://privacy.microsoft.com/en-us/privacystatement#mainwherewestoreandprocessdatamodule
https://www.microsoft.com/en-us/concern/privacy
https://www.microsoft.com/en-us/concern/privacy
https://www.microsoft.com/en-us/concern/privacy
https://www.microsoft.com/en-us/concern/privacy
https://www.microsoft.com/en-us/concern/privacy
about:blank
https://www.microsoft.com/store/buy/cartcount
https://privacy.microsoft.com/en-US/privacystatement#mainhowtocontactusmodule
https://privacy.microsoft.com/en-US/privacystatement#mainhowtocontactusmodule
https://privacy.microsoft.com/en-us/privacystatement#mainenterprisedeveloperproductsmodule
https://privacy.microsoft.com/en-us/privacystatement#mainnoticetoendusersmodule
https://privacy.microsoft.com/en-us/privacystatement#mainmicrosoftaccountmodule
There are 7 hidden doms, click here to show them.