IOC Report
bc3c228ad2c13f96cb14375c3860e802.pdf

loading gif

Files

File Path
Type
Category
Malicious
bc3c228ad2c13f96cb14375c3860e802.pdf
PDF document, version 1.7, 1 pages
initial sample
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG.old (copy)
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG.old (copy)
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State (copy)
JSON data
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State~RF662ae8.TMP (copy)
JSON data
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\a59859c2-46b5-4638-a3f3-8cc497d17331.tmp
JSON data
modified
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\ed7554e8-e1f9-40e5-a432-1e96251107c0.tmp
JSON data
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\000003.log
data
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG.old (copy)
ASCII text
dropped
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-241024201908Z-156.bmp
PC bitmap, Windows 3.x format, 95 x -152 x 32, cbSize 57814, bits offset 54
dropped
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages
SQLite 3.x database, last written using SQLite version 3040000, file counter 2, database pages 14, cookie 0x5, schema 4, UTF-8, version-valid-for 2
dropped
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages-journal
SQLite Rollback Journal
dropped
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2D85F72862B55C4EADD9E66E06947F3D
Certificate, Version=3
dropped
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
Microsoft Cabinet archive data, Windows 2000/XP setup, 71954 bytes, 1 file, at 0x2c +A "authroot.stl", number 1, 6 datablocks, 0x1 compression
dropped
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2D85F72862B55C4EADD9E66E06947F3D
data
dropped
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
data
modified
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeFnt23.lst.812
PostScript document text
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeSysFnt23.lst (copy)
PostScript document text
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\ACROBAT_READER_MASTER_SURFACEID
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Home_View_Surface
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Right_Sec_Surface
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_READER_LAUNCH_CARD
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Convert_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Retention
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Edit_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Home_LHP_Trial_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_More_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Intent_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Retention
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Sign_LHP_Banner
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Upsell_Cards
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\Edit_InApp_Aug2020
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\TESTING
data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\SOPHIA.json
JSON data
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents
SQLite 3.x database, last written using SQLite version 3040000, file counter 19, database pages 3, cookie 0x2, schema 4, UTF-8, version-valid-for 19
dropped
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents-journal
SQLite Rollback Journal
dropped
C:\Users\user\AppData\Local\Temp\MSI51d41.LOG
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-10-24 16-19-06-718.log
ASCII text, with very long lines (393)
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6.log
ASCII text, with very long lines (392), with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\acrobat_sbx\acroNGLLog.txt
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\64685554-0418-41e1-a907-7895dc1aa7af.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1311022
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\bba953aa-d004-473b-b767-8dff539dc6ec.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 299538
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\c622fbcf-5e4f-45dc-bd6a-0072f280e0d0.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 5111142
dropped
C:\Users\user\AppData\Local\Temp\acrocef_low\e6c5892d-7790-4ab7-819d-e53841a11af4.tmp
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 33081
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 24 19:19:31 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 24 19:19:31 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 24 19:19:31 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 24 19:19:31 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 24 19:19:31 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
dropped
Chrome Cache Entry: 1000
Java source, ASCII text, with very long lines (23457)
downloaded
Chrome Cache Entry: 1001
ASCII text, with very long lines (42509)
dropped
Chrome Cache Entry: 1002
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 1003
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 72x72, components 3
dropped
Chrome Cache Entry: 1004
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 1005
Unicode text, UTF-8 text, with very long lines (7518)
downloaded
Chrome Cache Entry: 1006
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 1007
ASCII text, with very long lines (57564)
downloaded
Chrome Cache Entry: 1008
ASCII text, with very long lines (2368)
downloaded
Chrome Cache Entry: 1009
ASCII text, with very long lines (59323)
dropped
Chrome Cache Entry: 1010
ASCII text, with very long lines (8323)
downloaded
Chrome Cache Entry: 1011
PNG image data, 65 x 28, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 1012
ASCII text, with very long lines (27907)
downloaded
Chrome Cache Entry: 1013
PDF document, version 1.5, 1 pages
downloaded
Chrome Cache Entry: 1014
ASCII text, with very long lines (5436)
downloaded
Chrome Cache Entry: 1015
ASCII text, with very long lines (8777)
downloaded
Chrome Cache Entry: 1016
Unicode text, UTF-8 text, with very long lines (10515)
downloaded
Chrome Cache Entry: 1017
JSON data
downloaded
Chrome Cache Entry: 1018
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 1019
ASCII text, with very long lines (12213)
dropped
Chrome Cache Entry: 1020
HTML document, ASCII text, with very long lines (1928)
dropped
Chrome Cache Entry: 1021
Unicode text, UTF-8 text, with very long lines (5314)
dropped
Chrome Cache Entry: 1022
ASCII text, with very long lines (59001)
downloaded
Chrome Cache Entry: 1023
ASCII text, with very long lines (9791)
downloaded
Chrome Cache Entry: 1026
ASCII text, with very long lines (59323)
downloaded
Chrome Cache Entry: 1027
ASCII text, with very long lines (3565)
dropped
Chrome Cache Entry: 1028
PNG image data, 65 x 28, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 1029
ASCII text, with very long lines (11546)
downloaded
Chrome Cache Entry: 1030
ASCII text, with very long lines (4979)
downloaded
Chrome Cache Entry: 1031
Unicode text, UTF-8 text, with very long lines (22120)
downloaded
Chrome Cache Entry: 1032
ASCII text, with very long lines (11744)
downloaded
Chrome Cache Entry: 1033
ASCII text, with very long lines (24799)
dropped
Chrome Cache Entry: 1035
ASCII text, with very long lines (7716)
downloaded
Chrome Cache Entry: 1037
ASCII text, with very long lines (10778)
downloaded
Chrome Cache Entry: 1038
Web Open Font Format, TrueType, length 12708, version 1.3277
downloaded
Chrome Cache Entry: 1039
ASCII text, with very long lines (3841)
downloaded
Chrome Cache Entry: 1040
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 1041
Unicode text, UTF-8 text, with very long lines (45741)
downloaded
Chrome Cache Entry: 1042
ASCII text, with very long lines (12213)
downloaded
Chrome Cache Entry: 1043
ASCII text, with very long lines (35973)
dropped
Chrome Cache Entry: 1044
Web Open Font Format, TrueType, length 16456, version 1.3277
downloaded
Chrome Cache Entry: 1045
Web Open Font Format, TrueType, length 14648, version 1.3277
downloaded
Chrome Cache Entry: 1046
ASCII text, with very long lines (7401)
dropped
Chrome Cache Entry: 1047
ASCII text, with very long lines (62513)
downloaded
Chrome Cache Entry: 1048
HTML document, ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 1049
HTML document, ASCII text, with very long lines (56780), with CRLF line terminators
downloaded
Chrome Cache Entry: 1050
HTML document, ASCII text, with very long lines (1899)
downloaded
Chrome Cache Entry: 1051
ASCII text, with very long lines (3095)
dropped
Chrome Cache Entry: 1052
ASCII text, with very long lines (48338)
dropped
Chrome Cache Entry: 1053
XML 1.0 document, ASCII text, with very long lines (443), with no line terminators
dropped
Chrome Cache Entry: 1054
ASCII text, with very long lines (7069)
downloaded
Chrome Cache Entry: 1055
ASCII text, with very long lines (48338)
downloaded
Chrome Cache Entry: 1056
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 1057
ASCII text, with very long lines (24799)
downloaded
Chrome Cache Entry: 1058
ASCII text, with very long lines (65457)
dropped
Chrome Cache Entry: 1059
ASCII text, with very long lines (6813)
downloaded
Chrome Cache Entry: 1060
ASCII text, with very long lines (30298)
downloaded
Chrome Cache Entry: 1061
C source, ASCII text, with very long lines (11725)
dropped
Chrome Cache Entry: 1062
ASCII text, with very long lines (65474)
dropped
Chrome Cache Entry: 1063
ASCII text, with very long lines (4551), with no line terminators
dropped
Chrome Cache Entry: 1064
ASCII text, with very long lines (12380)
downloaded
Chrome Cache Entry: 1065
JSON data
downloaded
Chrome Cache Entry: 1066
ASCII text, with very long lines (62513)
dropped
Chrome Cache Entry: 1067
ASCII text, with very long lines (7247)
downloaded
Chrome Cache Entry: 1068
ASCII text, with very long lines (63604)
downloaded
Chrome Cache Entry: 1069
ASCII text, with very long lines (37567)
dropped
Chrome Cache Entry: 1070
ASCII text, with very long lines (25927)
downloaded
Chrome Cache Entry: 1071
Unicode text, UTF-8 text, with very long lines (36614)
dropped
Chrome Cache Entry: 679
ASCII text, with very long lines (3214)
downloaded
Chrome Cache Entry: 680
Unicode text, UTF-8 text, with very long lines (10524)
downloaded
Chrome Cache Entry: 681
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 682
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 683
TrueType Font data, digitally signed, 25 tables, 1st "DSIG", 58 names, Unicode, \251 2017 The Monotype Corporation. All Rights Reserved.
dropped
Chrome Cache Entry: 685
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 686
ASCII text, with very long lines (7031)
downloaded
Chrome Cache Entry: 687
ASCII text, with very long lines (4078)
downloaded
Chrome Cache Entry: 688
ASCII text, with very long lines (42915)
downloaded
Chrome Cache Entry: 690
ASCII text, with very long lines (4829)
dropped
Chrome Cache Entry: 691
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
downloaded
Chrome Cache Entry: 692
ASCII text, with very long lines (64938)
downloaded
Chrome Cache Entry: 694
ASCII text, with very long lines (7328)
dropped
Chrome Cache Entry: 695
ASCII text, with very long lines (34942)
dropped
Chrome Cache Entry: 696
ASCII text, with very long lines (12337)
dropped
Chrome Cache Entry: 697
Java source, ASCII text
dropped
Chrome Cache Entry: 698
ASCII text, with very long lines (6639)
downloaded
Chrome Cache Entry: 699
ASCII text, with very long lines (5394)
dropped
Chrome Cache Entry: 700
ASCII text, with very long lines (8693)
downloaded
Chrome Cache Entry: 701
ASCII text, with very long lines (7236)
dropped
Chrome Cache Entry: 702
Web Open Font Format, TrueType, length 27376, version 1.3277
downloaded
Chrome Cache Entry: 703
ASCII text, with very long lines (5977)
downloaded
Chrome Cache Entry: 704
ASCII text, with very long lines (17807)
downloaded
Chrome Cache Entry: 705
ASCII text, with very long lines (22018)
downloaded
Chrome Cache Entry: 706
ASCII text, with very long lines (65461)
downloaded
Chrome Cache Entry: 707
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 710
ASCII text, with very long lines (56956)
downloaded
Chrome Cache Entry: 711
Web Open Font Format, TrueType, length 15152, version 1.3277
downloaded
Chrome Cache Entry: 712
Java source, ASCII text
downloaded
Chrome Cache Entry: 713
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 714
Unicode text, UTF-8 text, with very long lines (65308), with no line terminators
downloaded
Chrome Cache Entry: 715
Unicode text, UTF-8 text, with very long lines (20899)
downloaded
Chrome Cache Entry: 716
ASCII text, with very long lines (7060)
dropped
Chrome Cache Entry: 717
Web Open Font Format, TrueType, length 15908, version 1.3277
downloaded
Chrome Cache Entry: 718
ASCII text, with very long lines (65474)
downloaded
Chrome Cache Entry: 719
ASCII text, with very long lines (5394)
downloaded
Chrome Cache Entry: 720
ASCII text, with very long lines (5612)
downloaded
Chrome Cache Entry: 721
Unicode text, UTF-8 text, with very long lines (32702)
dropped
Chrome Cache Entry: 722
Web Open Font Format, TrueType, length 15620, version 1.3277
downloaded
Chrome Cache Entry: 723
ASCII text, with very long lines (45506)
dropped
Chrome Cache Entry: 724
ASCII text, with very long lines (47671)
dropped
Chrome Cache Entry: 725
ASCII text, with very long lines (4723)
dropped
Chrome Cache Entry: 726
ASCII text, with very long lines (4829)
downloaded
Chrome Cache Entry: 727
ASCII text, with very long lines (9848)
dropped
Chrome Cache Entry: 728
ASCII text, with very long lines (2626)
downloaded
Chrome Cache Entry: 729
ASCII text, with very long lines (4185)
downloaded
Chrome Cache Entry: 730
ASCII text, with very long lines (1539)
downloaded
Chrome Cache Entry: 731
WebAssembly (wasm) binary module version 0x1 (MVP)
dropped
Chrome Cache Entry: 732
ASCII text, with very long lines (17088)
downloaded
Chrome Cache Entry: 733
ASCII text, with very long lines (63604)
dropped
Chrome Cache Entry: 734
PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 735
JSON data
dropped
Chrome Cache Entry: 736
ASCII text, with very long lines (6070)
downloaded
Chrome Cache Entry: 737
ASCII text, with very long lines (10654)
downloaded
Chrome Cache Entry: 738
ASCII text, with very long lines (4723)
downloaded
Chrome Cache Entry: 739
ASCII text, with very long lines (15079)
downloaded
Chrome Cache Entry: 740
ASCII text, with very long lines (4715)
downloaded
Chrome Cache Entry: 741
ASCII text, with very long lines (12946)
dropped
Chrome Cache Entry: 744
ASCII text, with very long lines (688)
downloaded
Chrome Cache Entry: 745
ASCII text, with very long lines (3381)
dropped
Chrome Cache Entry: 746
ASCII text, with very long lines (20802)
downloaded
Chrome Cache Entry: 747
Unicode text, UTF-8 text, with very long lines (34121)
downloaded
Chrome Cache Entry: 748
ASCII text, with very long lines (15442)
downloaded
Chrome Cache Entry: 749
ASCII text, with very long lines (59425)
downloaded
Chrome Cache Entry: 750
ASCII text, with very long lines (12116)
dropped
Chrome Cache Entry: 751
ASCII text, with very long lines (911)
dropped
Chrome Cache Entry: 752
ASCII text, with very long lines (37567)
downloaded
Chrome Cache Entry: 753
Unicode text, UTF-8 text, with very long lines (41526)
downloaded
Chrome Cache Entry: 754
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 755
ASCII text, with very long lines (4956)
downloaded
Chrome Cache Entry: 756
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 757
ASCII text, with very long lines (14734)
dropped
Chrome Cache Entry: 758
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 759
ASCII text, with very long lines (7328)
downloaded
Chrome Cache Entry: 760
ASCII text, with very long lines (2283)
downloaded
Chrome Cache Entry: 761
ASCII text, with very long lines (13143)
dropped
Chrome Cache Entry: 762
ASCII text
downloaded
Chrome Cache Entry: 763
ASCII text, with very long lines (2202)
downloaded
Chrome Cache Entry: 764
JSON data
dropped
Chrome Cache Entry: 765
ASCII text, with very long lines (59425)
dropped
Chrome Cache Entry: 766
XML 1.0 document, ASCII text, with very long lines (443), with no line terminators
dropped
Chrome Cache Entry: 767
Web Open Font Format, TrueType, length 17724, version 1.3277
downloaded
Chrome Cache Entry: 768
ASCII text, with very long lines (4956)
dropped
Chrome Cache Entry: 769
ASCII text, with very long lines (10255)
dropped
Chrome Cache Entry: 770
JSON data
dropped
Chrome Cache Entry: 771
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 772
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 773
ASCII text, with very long lines (8158)
downloaded
Chrome Cache Entry: 774
ASCII text, with very long lines (5380)
downloaded
Chrome Cache Entry: 775
Web Open Font Format, TrueType, length 17436, version 1.3277
downloaded
Chrome Cache Entry: 776
ASCII text, with very long lines (12946)
downloaded
Chrome Cache Entry: 777
ASCII text, with very long lines (44683)
downloaded
Chrome Cache Entry: 778
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 779
ASCII text, with very long lines (6757)
dropped
Chrome Cache Entry: 780
data
dropped
Chrome Cache Entry: 781
ASCII text, with very long lines (4715)
dropped
Chrome Cache Entry: 782
ASCII text, with very long lines (2063)
downloaded
Chrome Cache Entry: 783
ASCII text, with very long lines (59227)
downloaded
Chrome Cache Entry: 784
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 785
MS Windows icon resource - 3 icons, 32x32, 32 bits/pixel, 24x24, 32 bits/pixel
dropped
Chrome Cache Entry: 786
Web Open Font Format, TrueType, length 15812, version 1.3277
downloaded
Chrome Cache Entry: 787
ASCII text, with very long lines (7236)
downloaded
Chrome Cache Entry: 788
ASCII text, with very long lines (8777)
dropped
Chrome Cache Entry: 789
ASCII text, with very long lines (45506)
downloaded
Chrome Cache Entry: 790
HTML document, ASCII text, with very long lines (1899)
dropped
Chrome Cache Entry: 791
Web Open Font Format, TrueType, length 14892, version 1.3277
downloaded
Chrome Cache Entry: 792
ASCII text, with very long lines (12428)
downloaded
Chrome Cache Entry: 793
ASCII text, with very long lines (3857)
downloaded
Chrome Cache Entry: 794
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 795
JSON data
dropped
Chrome Cache Entry: 796
ASCII text, with very long lines (6882)
downloaded
Chrome Cache Entry: 797
ASCII text, with very long lines (477)
downloaded
Chrome Cache Entry: 798
Unicode text, UTF-8 text, with very long lines (32702)
downloaded
Chrome Cache Entry: 799
JSON data
dropped
Chrome Cache Entry: 800
ASCII text, with very long lines (7247)
dropped
Chrome Cache Entry: 801
Unicode text, UTF-8 text, with very long lines (65471)
downloaded
Chrome Cache Entry: 802
Unicode text, UTF-8 text, with very long lines (8565)
downloaded
Chrome Cache Entry: 803
ASCII text, with very long lines (7109)
downloaded
Chrome Cache Entry: 804
ASCII text, with very long lines (10451)
dropped
Chrome Cache Entry: 805
ASCII text, with very long lines (12167)
downloaded
Chrome Cache Entry: 806
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 807
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 808
ASCII text, with very long lines (7031)
dropped
Chrome Cache Entry: 809
Web Open Font Format, TrueType, length 15504, version 1.3277
downloaded
Chrome Cache Entry: 810
ASCII text, with very long lines (10255)
downloaded
Chrome Cache Entry: 811
ASCII text, with very long lines (5176)
downloaded
Chrome Cache Entry: 812
ASCII text, with very long lines (911)
downloaded
Chrome Cache Entry: 813
ASCII text, with very long lines (35244)
dropped
Chrome Cache Entry: 814
ASCII text, with very long lines (17029)
downloaded
Chrome Cache Entry: 815
ASCII text, with very long lines (4142)
downloaded
Chrome Cache Entry: 816
Web Open Font Format, TrueType, length 16776, version 1.3277
downloaded
Chrome Cache Entry: 817
Unicode text, UTF-8 text, with very long lines (45476)
downloaded
Chrome Cache Entry: 818
ASCII text, with very long lines (8158)
dropped
Chrome Cache Entry: 819
ASCII text, with very long lines (20802)
dropped
Chrome Cache Entry: 820
Web Open Font Format, TrueType, length 12324, version 1.3277
downloaded
Chrome Cache Entry: 821
ASCII text, with very long lines (43609)
dropped
Chrome Cache Entry: 822
ASCII text, with very long lines (7109)
dropped
Chrome Cache Entry: 823
ASCII text, with very long lines (10451)
downloaded
Chrome Cache Entry: 824
ASCII text, with very long lines (25069)
dropped
Chrome Cache Entry: 825
ASCII text, with very long lines (4551), with no line terminators
downloaded
Chrome Cache Entry: 826
ASCII text, with very long lines (12428)
dropped
Chrome Cache Entry: 827
ASCII text, with very long lines (14090)
downloaded
Chrome Cache Entry: 828
ASCII text, with very long lines (62740)
downloaded
Chrome Cache Entry: 829
Unicode text, UTF-8 text, with very long lines (45476)
dropped
Chrome Cache Entry: 830
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 831
Unicode text, UTF-8 text, with very long lines (22120)
dropped
Chrome Cache Entry: 832
Web Open Font Format, TrueType, length 15684, version 1.3277
downloaded
Chrome Cache Entry: 833
ASCII text, with very long lines (47671)
downloaded
Chrome Cache Entry: 834
ASCII text, with very long lines (16356)
downloaded
Chrome Cache Entry: 835
ASCII text, with very long lines (4670)
downloaded
Chrome Cache Entry: 836
ASCII text, with very long lines (30298)
dropped
Chrome Cache Entry: 837
ASCII text, with very long lines (14008)
downloaded
Chrome Cache Entry: 838
ASCII text, with very long lines (6088)
downloaded
Chrome Cache Entry: 839
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 840
ASCII text, with very long lines (40143)
dropped
Chrome Cache Entry: 841
ASCII text, with very long lines (12380)
dropped
Chrome Cache Entry: 842
ASCII text, with very long lines (5527)
dropped
Chrome Cache Entry: 843
ASCII text, with very long lines (1231)
downloaded
Chrome Cache Entry: 844
Web Open Font Format, TrueType, length 4420, version 1.3277
downloaded
Chrome Cache Entry: 845
ASCII text, with very long lines (14734)
downloaded
Chrome Cache Entry: 846
Web Open Font Format, TrueType, length 17344, version 1.3277
downloaded
Chrome Cache Entry: 847
ASCII text, with very long lines (60347)
downloaded
Chrome Cache Entry: 848
TrueType Font data, digitally signed, 25 tables, 1st "DSIG", 58 names, Unicode, \251 2017 The Monotype Corporation. All Rights Reserved.
downloaded
Chrome Cache Entry: 849
ASCII text, with very long lines (15442)
dropped
Chrome Cache Entry: 850
ASCII text, with very long lines (14090)
dropped
Chrome Cache Entry: 851
ASCII text, with very long lines (4715)
downloaded
Chrome Cache Entry: 852
ASCII text, with very long lines (7708)
downloaded
Chrome Cache Entry: 853
JSON data
dropped
Chrome Cache Entry: 854
ASCII text, with very long lines (22038)
downloaded
Chrome Cache Entry: 855
ASCII text, with very long lines (4142)
dropped
Chrome Cache Entry: 856
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 707x539, components 3
downloaded
Chrome Cache Entry: 857
ASCII text, with very long lines (6813)
dropped
Chrome Cache Entry: 858
ASCII text, with very long lines (4599)
downloaded
Chrome Cache Entry: 859
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 860
ASCII text, with very long lines (23022)
downloaded
Chrome Cache Entry: 861
ASCII text, with very long lines (6279)
downloaded
Chrome Cache Entry: 862
ASCII text, with very long lines (11267)
downloaded
Chrome Cache Entry: 863
Unicode text, UTF-8 text, with very long lines (10100)
downloaded
Chrome Cache Entry: 864
ASCII text, with very long lines (15123)
downloaded
Chrome Cache Entry: 865
ASCII text, with very long lines (7026)
downloaded
Chrome Cache Entry: 866
ASCII text, with very long lines (4483)
downloaded
Chrome Cache Entry: 867
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 868
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 869
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 870
ASCII text, with very long lines (3095)
downloaded
Chrome Cache Entry: 871
ASCII text, with no line terminators
downloaded
Chrome Cache Entry: 872
ASCII text, with very long lines (36586)
dropped
Chrome Cache Entry: 873
ASCII text, with very long lines (6757)
downloaded
Chrome Cache Entry: 874
ASCII text, with very long lines (13510)
downloaded
Chrome Cache Entry: 875
ASCII text, with very long lines (1521)
downloaded
Chrome Cache Entry: 876
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 877
ASCII text, with very long lines (2683)
downloaded
Chrome Cache Entry: 879
Unicode text, UTF-8 text, with very long lines (12469)
downloaded
Chrome Cache Entry: 881
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 882
ASCII text, with very long lines (52343)
downloaded
Chrome Cache Entry: 883
ASCII text, with very long lines (14008)
dropped
Chrome Cache Entry: 884
ASCII text, with very long lines (3381)
downloaded
Chrome Cache Entry: 886
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 887
ASCII text, with very long lines (11267)
dropped
Chrome Cache Entry: 888
ASCII text
downloaded
Chrome Cache Entry: 890
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 891
ASCII text, with very long lines (65301)
downloaded
Chrome Cache Entry: 892
ASCII text, with very long lines (7060)
downloaded
Chrome Cache Entry: 893
Web Open Font Format, TrueType, length 13772, version 1.3277
downloaded
Chrome Cache Entry: 894
Unicode text, UTF-8 text, with very long lines (41526)
dropped
Chrome Cache Entry: 895
ASCII text, with very long lines (29492)
downloaded
Chrome Cache Entry: 896
ASCII text, with very long lines (29492)
dropped
Chrome Cache Entry: 897
ASCII text, with very long lines (53652)
dropped
Chrome Cache Entry: 898
ASCII text, with very long lines (36586)
downloaded
Chrome Cache Entry: 899
JSON data
dropped
Chrome Cache Entry: 900
ASCII text, with very long lines (7296)
dropped
Chrome Cache Entry: 901
Unicode text, UTF-8 text, with very long lines (7518)
dropped
Chrome Cache Entry: 902
ASCII text, with very long lines (65457)
downloaded
Chrome Cache Entry: 903
ASCII text, with very long lines (53652)
downloaded
Chrome Cache Entry: 904
ASCII text, with very long lines (30298)
downloaded
Chrome Cache Entry: 905
Unicode text, UTF-8 text, with very long lines (36614)
downloaded
Chrome Cache Entry: 906
Web Open Font Format, TrueType, length 2524, version 4.-22282
downloaded
Chrome Cache Entry: 907
ASCII text, with very long lines (6243)
downloaded
Chrome Cache Entry: 908
SVG Scalable Vector Graphics image
dropped
Chrome Cache Entry: 909
ASCII text, with very long lines (13143)
downloaded
Chrome Cache Entry: 910
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 911
Unicode text, UTF-8 text, with very long lines (18772)
downloaded
Chrome Cache Entry: 912
Java source, ASCII text, with CRLF, LF line terminators
downloaded
Chrome Cache Entry: 913
ASCII text, with very long lines (12116)
downloaded
Chrome Cache Entry: 914
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 915
ASCII text, with very long lines (35244)
downloaded
Chrome Cache Entry: 916
ASCII text, with very long lines (3820)
downloaded
Chrome Cache Entry: 917
ASCII text, with very long lines (20654)
dropped
Chrome Cache Entry: 918
ASCII text, with very long lines (30923)
downloaded
Chrome Cache Entry: 919
WebAssembly (wasm) binary module version 0x1 (MVP)
downloaded
Chrome Cache Entry: 920
Web Open Font Format, TrueType, length 17844, version 1.3277
downloaded
Chrome Cache Entry: 921
Unicode text, UTF-8 text, with very long lines (5314)
downloaded
Chrome Cache Entry: 922
ASCII text, with very long lines (7401)
downloaded
Chrome Cache Entry: 923
ASCII text, with very long lines (12337)
downloaded
Chrome Cache Entry: 924
ASCII text, with very long lines (16803)
downloaded
Chrome Cache Entry: 925
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 926
ASCII text, with very long lines (6660)
downloaded
Chrome Cache Entry: 927
ASCII text, with very long lines (11010)
downloaded
Chrome Cache Entry: 928
ASCII text, with very long lines (8323)
dropped
Chrome Cache Entry: 929
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 930
ASCII text, with very long lines (40143)
downloaded
Chrome Cache Entry: 931
ASCII text, with very long lines (5527)
downloaded
Chrome Cache Entry: 932
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 72x72, components 3
downloaded
Chrome Cache Entry: 933
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 934
ASCII text, with very long lines (5436)
dropped
Chrome Cache Entry: 935
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 707x539, components 3
dropped
Chrome Cache Entry: 936
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 937
JSON data
downloaded
Chrome Cache Entry: 938
ASCII text, with very long lines (30298)
dropped
Chrome Cache Entry: 939
Web Open Font Format, TrueType, length 15284, version 1.3277
downloaded
Chrome Cache Entry: 940
ASCII text, with very long lines (20654)
downloaded
Chrome Cache Entry: 941
ASCII text, with very long lines (5977)
dropped
Chrome Cache Entry: 942
ASCII text, with very long lines (10852)
downloaded
Chrome Cache Entry: 943
Web Open Font Format, TrueType, length 13164, version 1.3277
downloaded
Chrome Cache Entry: 944
JSON data
dropped
Chrome Cache Entry: 945
ASCII text, with very long lines (34942)
downloaded
Chrome Cache Entry: 946
ASCII text, with very long lines (65466)
downloaded
Chrome Cache Entry: 947
ASCII text, with very long lines (65536), with no line terminators
downloaded
Chrome Cache Entry: 948
JSON data
dropped
Chrome Cache Entry: 949
ASCII text, with very long lines (3565)
downloaded
Chrome Cache Entry: 950
ASCII text, with very long lines (44921)
dropped
Chrome Cache Entry: 951
PNG image data, 512 x 512, 8-bit/color RGBA, non-interlaced
downloaded
Chrome Cache Entry: 952
ASCII text, with very long lines (3060)
downloaded
Chrome Cache Entry: 953
Web Open Font Format, TrueType, length 11912, version 1.3277
downloaded
Chrome Cache Entry: 954
ASCII text, with very long lines (43609)
downloaded
Chrome Cache Entry: 955
PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
dropped
Chrome Cache Entry: 956
ASCII text, with very long lines (4825)
downloaded
Chrome Cache Entry: 957
C source, ASCII text, with very long lines (11725)
downloaded
Chrome Cache Entry: 958
PDF document, version 1.5, 1 pages
dropped
Chrome Cache Entry: 959
ASCII text, with very long lines (44921)
downloaded
Chrome Cache Entry: 960
ASCII text, with very long lines (16126)
downloaded
Chrome Cache Entry: 961
ASCII text, with very long lines (3701)
downloaded
Chrome Cache Entry: 962
ASCII text, with very long lines (6755)
downloaded
Chrome Cache Entry: 963
HTML document, ASCII text, with very long lines (1899)
downloaded
Chrome Cache Entry: 964
ASCII text, with very long lines (25069)
downloaded
Chrome Cache Entry: 965
ASCII text, with very long lines (2368)
dropped
Chrome Cache Entry: 966
ASCII text, with very long lines (4670)
dropped
Chrome Cache Entry: 967
ASCII text, with very long lines (16803)
dropped
Chrome Cache Entry: 968
ASCII text, with very long lines (17029)
dropped
Chrome Cache Entry: 969
Unicode text, UTF-8 text, with very long lines (23194)
downloaded
Chrome Cache Entry: 970
ASCII text, with very long lines (42915)
dropped
Chrome Cache Entry: 971
ASCII text, with very long lines (35973)
downloaded
Chrome Cache Entry: 972
ASCII text, with very long lines (65466)
dropped
Chrome Cache Entry: 973
ASCII text, with very long lines (6882)
dropped
Chrome Cache Entry: 974
JSON data
downloaded
Chrome Cache Entry: 975
ASCII text, with very long lines (7026)
dropped
Chrome Cache Entry: 976
ASCII text, with very long lines (10778)
dropped
Chrome Cache Entry: 977
RIFF (little-endian) data, Web/P image
downloaded
Chrome Cache Entry: 978
Unicode text, UTF-8 text, with very long lines (10524)
dropped
Chrome Cache Entry: 979
ASCII text, with very long lines (9455)
downloaded
Chrome Cache Entry: 980
ASCII text, with very long lines (19649)
downloaded
Chrome Cache Entry: 981
ASCII text, with very long lines (7296)
downloaded
Chrome Cache Entry: 982
ASCII text, with very long lines (4621)
dropped
Chrome Cache Entry: 983
ASCII text, with very long lines (65536), with no line terminators
dropped
Chrome Cache Entry: 984
ASCII text, with very long lines (55173)
downloaded
Chrome Cache Entry: 985
ASCII text, with very long lines (4621)
downloaded
Chrome Cache Entry: 986
data
downloaded
Chrome Cache Entry: 987
ASCII text, with very long lines (42509)
downloaded
Chrome Cache Entry: 988
ASCII text, with very long lines (5159)
downloaded
Chrome Cache Entry: 989
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 990
Web Open Font Format, TrueType, length 16704, version 1.3277
downloaded
Chrome Cache Entry: 991
ASCII text, with very long lines (9848)
downloaded
Chrome Cache Entry: 992
ASCII text, with very long lines (3820)
dropped
Chrome Cache Entry: 993
SVG Scalable Vector Graphics image
downloaded
Chrome Cache Entry: 994
Unicode text, UTF-8 text, with very long lines (18764)
downloaded
Chrome Cache Entry: 995
PNG image data, 2 x 2, 8-bit/color RGB, non-interlaced
downloaded
Chrome Cache Entry: 996
Unicode text, UTF-8 text, with very long lines (18772)
dropped
Chrome Cache Entry: 997
ASCII text
downloaded
Chrome Cache Entry: 998
Unicode text, UTF-8 text, with very long lines (65308), with no line terminators
dropped
Chrome Cache Entry: 999
SVG Scalable Vector Graphics image
downloaded
There are 423 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Desktop\bc3c228ad2c13f96cb14375c3860e802.pdf"
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=1648 --field-trial-handle=1552,i,14824447783216249022,15538149311993325529,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://neweranet0-my.sharepoint.com/:f:/g/personal/malahmar_neweranet_com/Etd2wgQOOMlAnCPcJokAti0Br6HyyfMaB6MiwzMZjEF3xw?e=8rf3aZ
C:\Program Files\Google\Chrome\Application\chrome.exe
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2088 --field-trial-handle=2024,i,8418923506075728781,9654654873541631301,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8

URLs

Name
IP
Malicious
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?ga=1&id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445%2FView%20docs%2Epdf&parent=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445
malicious
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445&ga=1
malicious
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/pat/8d7caad09dd84794/1729801225888/0901550898927346355fe5d75953a03f77ad87d1b032785307d7034a8398a9b7/3fJSEn3o2gWLDJ3
104.18.95.41
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-light.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semilight.woff2
unknown
https://support.office.com/en-us/article/Manage-lists-and-libraries-with-many-items-b8588dae-9387-48
unknown
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_api/SP.OAuth.Token/Acquire()
13.107.136.10
https://static2.sharepointonline.com/files/fabric/assets/fonts/leelawadeeui-thai/leelawadeeui-regula
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-light.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semibold.woff2
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-semibold.w
unknown
http://www.opensource.org/licenses/mit-license.php
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-bold.woff
unknown
https://eastus1-mediap.svc.ms/transform/thumbnail?provider=spo&inputFormat=pdf&cs=fFNQTw&docid=https%3A%2F%2Fneweranet0-my.sharepoint.com%3A443%2F_api%2Fv2.0%2Fdrives%2Fb!8LVLDi5f_ESbIAFRkBb_wuVRh8JOqJNMty5azIcUhKaoh_V28urHQpwy_nU-LkKj%2Fitems%2F01Z3M5PR5D36TZOXWFAVBIEQGHQ734MSXQ%3Fversion%3DPublished&access_token=v1.eyJzaXRlaWQiOiIwZTRiYjVmMC01ZjJlLTQ0ZmMtOWIyMC0wMTUxOTAxNmZmYzIiLCJhdWQiOiIwMDAwMDAwMy0wMDAwLTBmZjEtY2UwMC0wMDAwMDAwMDAwMDAvbmV3ZXJhbmV0MC1teS5zaGFyZXBvaW50LmNvbUBkM2VlM2ZlZC1iNTVlLTQ5MzItYTM1NC1kOTI1ZGY1YzUwZGMiLCJleHAiOiIxNzI5ODE0NDAwIn0.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.SI8cQ4SXFo4rwUupfSxWZVMv9gk7P3-noB-kUG8aoOk&cTag=%22c%3A%7B97A7DFA3-C55E-4205-8240-C787F7C64AF0%7D%2C1%22&encodeFailures=1&width=1024&height=1024&srcWidth=&srcHeight=
13.107.136.10
https://northcentralus1-medias.svc.ms
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-light.woff2
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-light.wo
unknown
https://qiagens.com/?cczaakcn=8e046e7478bbf41c4cf7f968bdde58ccc0c8096e13ca756c0ff9f4e4f59a51b115684b7074dddc35db930f1d04fff40d449be6179b7d8fa41e235872a3a257c0
89.185.80.154
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-regular.woff2
unknown
https://tr-ooc-acdc.office.com/apc/trans.gif?0c3d74797a89e425b23c11ed7a62611f
52.98.252.66
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-light.woff2
unknown
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_api/v2.1/graphql
13.107.136.10
https://neweranet0-my.sharepoint.com/:f:/g/personal/malahmar_neweranet_com/Etd2wgQOOMlAnCPcJokAti0Br
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-light.woff2
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-bold.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semibold.woff
unknown
https://neweranet0-my.sharepoint.com/_layouts/15/odspserviceworkerproxy.aspx?swManifestName=spserviceworker&debug=false&bypass=false&navigationPreloadHeaderValue=%7B%22supportsFeatures%22%3A%5B1855%2C61313%5D%7D&dataHost=Nucleus&applications=%5B%7B%22id%22%3A%22STS%22%2C%22swPrefetchManifestName%22%3A%22stsserviceworkerprefetch%22%7D%2C%7B%22id%22%3A%22SPHome%22%7D%2C%7B%22id%22%3A%22SitePages%22%7D%2C%7B%22id%22%3A%22Embed%22%7D%2C%7B%22id%22%3A%22CreateGroup%22%7D%2C%7B%22id%22%3A%22SingleWebPart%22%7D%2C%7B%22id%22%3A%22VivaHome%22%7D%2C%7B%22id%22%3A%22BrokerLogon%22%7D%2C%7B%22id%22%3A%22Clipchamp%22%7D%2C%7B%22id%22%3A%22MeeBridge%22%7D%2C%7B%22id%22%3A%22SPStart%22%7D%2C%7B%22id%22%3A%22Agreements%22%7D%5D&list=v2&prefetchListData=true&defaultBrotli=true&authenticateFast=true&inlineAuth=v2&wwData=true&enableTheming=true&prefetchFilebrowserPageInTeams=true&FUIV9Flights=[-83099905,3]&spStartApplicationWebBundle=true&enableIntegrities=true&streamViewServerLoad=true&streamInlineScript=true&siteConfigRace=true
13.107.136.10
https://my.microsoftpersonalcontent.com
unknown
https://neweranet0-my.sharepoint.com/_layouts/15/SPComponentRegistry.ashx?projects=[%22STS%22]&languages=%5B%5D
13.107.136.10
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-semilight.
unknown
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/CSPReporting.aspx
13.107.136.10
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semibold.woff2
unknown
https://challenges.cloudflare.com/turnstile/v0/api.js?onload=onloadTurnstileCallback
104.18.95.41
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/AccessDenied.aspx?correlation=d0255da1%2Db0b7%2D6000%2Dc603%2D53c63453d726
13.107.136.10
https://1drv.com/
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-bold.wof
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-light.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-bold.woff
unknown
https://substrate.office.com
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-semibold
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-regular.woff
unknown
https://tr-ooc-atm.office.com/apc/trans.gif?ee3d09ce5c171ae002cab98841c92b86
40.99.150.82
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-regular.woff2
unknown
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/i/8d7caad09dd84794/1729801225888/xf_Rm4yg23a7UoE
104.18.95.41
https://tr-ooc-atm.office.com/apc/trans.gif?3df352edd7d3ab59a9ec9e022a676c2e
40.99.150.82
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-bold.woff2
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-regular.woff
unknown
https://qiagens.com/?cczaakcn
89.185.80.154
https://homelumbernic.com/mail/
89.185.80.154
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/flow/ov1/1690534537:1729797106:Vr6q-IfjiwD6LK05wqCpAUcSrx-7RJxtkzzY_oxFyss/8d7caad09dd84794/EXKKNKWsr0IjKeBDAMkvL6v72k0sq1lrBIlW7T0kpZk-1729801223-1.1.1.1-F0kXuPT8b0ur6i8U1cP7ENtEd2xj77x4cJtTXmdkVaiTFxNjzFCYh.xa2WRiDIE9
104.18.95.41
https://onedrive.dev.cloud.microsoft
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-bold.woff2
unknown
https://homelumbernic.com/
89.185.80.154
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-regular.
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-light.wo
unknown
https://neweranet0-my.sharepoint.com/_layouts/15/spwebworkerproxy.ashx
13.107.136.10
https://shellppe.msocdn.com
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-semibold.woff
unknown
https://neweranet0-my.sharepoint.com/_layouts/15/images/odbfavicon.ico?rev=47
13.107.136.10
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-semibold.wof
unknown
http://www.unicode.org/copyright.html
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-bold.woff2
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-easteuropean/segoeui-semiligh
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-semilight.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-regular.wo
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/leelawadeeui-thai/leelawadeeui-bold.w
unknown
https://microsoft.spfx3rdparty.com
unknown
https://reactjs.org/link/react-polyfills
unknown
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/cmg/1
104.18.95.41
https://login.microsoftonline.com
unknown
https://onedrive.live.com/sa
unknown
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/orchestrate/chl_api/v1?ray=8d7caad09dd84794&lang=auto
104.18.95.41
https://onedrive.cloud.microsoft
unknown
https://shellprod.msocdn.com
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-regular.woff2
unknown
https://centralus1-mediad.svc.ms
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-cyrillic/segoeui-semilight.wo
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-regular.woff
unknown
https://16b69e33.0cced60565238cd25cf4ed69.workers.dev/
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-semibold.woff2
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-vietnamese/segoeui-bold.woff2
unknown
https://challenges.cloudflare.com/turnstile/v0/b/e1a56f38220d/api.js
104.18.95.41
https://chrome.cloudflare-dns.com
unknown
https://16b69e33.0cced60565238cd25cf4ed69.workers.dev/)
unknown
https://portal.office.com/
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-bold.woff
unknown
https://neweranet0-my.sharepoint.com/_layouts/15/SPComponentRegistry.ashx?projects=[%22spfx%22]&languages=%5B%5D
13.107.136.10
https://clients.config.office.net/user/v1.0/web/policies
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-light.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-semilight.woff
unknown
https://homelumbernic.com/?dataXX0=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJ1cmwiOiJodHRwczovL2hvbWVsdW1iZXJuaWMuY29tLyIsImRvbWFpbiI6ImhvbWVsdW1iZXJuaWMuY29tIiwia2V5IjoiMXNqR21RSU55b09xIiwicXJjIjpudWxsLCJpYXQiOjE3Mjk4MDEyNjYsImV4cCI6MTcyOTgwMTM4Nn0.o6YNK3nB1E9a9nybI_l6eF5h2Dq7umIM8cxLkpUztDs
89.185.80.154
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-arabic/segoeui-semilight.woff
unknown
http://fb.me/use-check-prop-types
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-light.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-hebrew/segoeui-light.woff2
unknown
https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/e0eoo/0x4AAAAAAAyORc_In180R-LS/auto/fbE/normal/auto/
104.18.95.41
https://livefilestore.com/
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-greek/segoeui-regular.woff
unknown
https://static2.sharepointonline.com/files/fabric/assets/fonts/segoeui-westeuropean/segoeui-bold.wof
unknown
https://neweranet0-my.sharepoint.com/:f:/g/personal/malahmar_neweranet_com/Etd2wgQOOMlAnCPcJokAti0Br6HyyfMaB6MiwzMZjEF3xw?e=8rf3aZ
13.107.136.10
There are 90 hidden URLs, click here to show them.

Domains

Name
IP
Malicious
qiagens.com
89.185.80.154
dual-spo-0005.spo-msedge.net
13.107.136.10
mira-ooc.tm-4.office.com
40.99.150.82
challenges.cloudflare.com
104.18.95.41
www.google.com
172.217.18.4
FRA-efz.ms-acdc.office.com
52.98.252.66
homelumbernic.com
89.185.80.154
16b69e33.0cced60565238cd25cf4ed69.workers.dev
104.21.52.38
x1.i.lencr.org
unknown
neweranet0.sharepoint.com
unknown
r4.res.office365.com
unknown
7d922087c09d72a0e525b959f027fa71.fp.measure.office.com
unknown
m365cdn.nel.measure.office.net
unknown
tr-ooc-atm.office.com
unknown
spo.nel.measure.office.net
unknown
upload.fp.measure.office.com
unknown
config.fp.measure.office.com
unknown
tr-ooc-acdc.office.com
unknown
eastus1-mediap.svc.ms
unknown
There are 9 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
13.107.136.10
dual-spo-0005.spo-msedge.net
United States
192.168.2.16
unknown
unknown
52.98.252.66
FRA-efz.ms-acdc.office.com
United States
172.67.194.203
unknown
United States
104.21.52.38
16b69e33.0cced60565238cd25cf4ed69.workers.dev
United States
172.217.18.4
www.google.com
United States
104.18.95.41
challenges.cloudflare.com
United States
239.255.255.250
unknown
Reserved
52.98.152.242
unknown
United States
89.185.80.154
qiagens.com
Russian Federation
40.99.150.82
mira-ooc.tm-4.office.com
United States
There are 1 hidden IPs, click here to show them.

Registry

Path
Value
Malicious
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
aFS
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
tDIText
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
tFileName
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
tFileSource
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sFileAncestors
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sDI
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sDate
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
uFileSize
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
uPageCount
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
sAssetId
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
bisSharedFile
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
aFS
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
tDIText
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
tFileName
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
sDI
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
sDate
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
uFileSize
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
uPageCount
There are 8 hidden registries, click here to show them.

DOM / HTML

URL
Malicious
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445&ga=1
malicious
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?ga=1&id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445%2FView%20docs%2Epdf&parent=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445
malicious
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445&ga=1
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445&ga=1
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?ga=1&id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445%2FView%20docs%2Epdf&parent=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445
https://neweranet0-my.sharepoint.com/personal/malahmar_neweranet_com/_layouts/15/onedrive.aspx?ga=1&id=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445%2FView%20docs%2Epdf&parent=%2Fpersonal%2Fmalahmar%5Fneweranet%5Fcom%2FDocuments%2FRfq82020%2D382039302%2D42445
https://16b69e33.0cced60565238cd25cf4ed69.workers.dev/
https://16b69e33.0cced60565238cd25cf4ed69.workers.dev/