Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 14:21:27 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 14:21:27 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 14:21:27 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 14:21:27 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Dec 24 14:21:27 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\MpCmdRun.log
|
Unicode text, UTF-16, little-endian text, with CRLF line terminators
|
modified
|
||
Chrome Cache Entry: 116
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 117
|
Unicode text, UTF-8 text, with very long lines (51384), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 118
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 119
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 120
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 121
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 122
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 7445
|
downloaded
|
||
Chrome Cache Entry: 123
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 124
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 125
|
Unicode text, UTF-8 (with BOM) text, with very long lines (13631), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 126
|
PNG image data, 300 x 200, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 127
|
ASCII text, with very long lines (494), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 128
|
PNG image data, 1000 x 234, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 129
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 130
|
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 131
|
ASCII text, with very long lines (23482)
|
dropped
|
||
Chrome Cache Entry: 132
|
Web Open Font Format, TrueType, length 31080, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 133
|
ASCII text, with CRLF, LF line terminators
|
downloaded
|
||
Chrome Cache Entry: 134
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 135
|
ASCII text, with very long lines (39537), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 136
|
GIF image data, version 89a, 84 x 84
|
dropped
|
||
Chrome Cache Entry: 137
|
ASCII text, with very long lines (1961), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 138
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 150x150, segment length 16, baseline, precision 8, 1366x400,
components 3
|
downloaded
|
||
Chrome Cache Entry: 139
|
ASCII text, with very long lines (21084)
|
downloaded
|
||
Chrome Cache Entry: 140
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 141
|
ASCII text, with very long lines (21084)
|
dropped
|
||
Chrome Cache Entry: 142
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 143
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 144
|
ASCII text, with very long lines (56734), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 145
|
ASCII text, with very long lines (65451)
|
downloaded
|
||
Chrome Cache Entry: 146
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 147
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 148
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 149
|
MS Windows icon resource - 3 icons, 48x48, 8 bits/pixel, 32x32, 8 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 150
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 151
|
gzip compressed data, original size modulo 2^32 2320
|
downloaded
|
||
Chrome Cache Entry: 152
|
ASCII text, with very long lines (2343)
|
downloaded
|
||
Chrome Cache Entry: 153
|
ASCII text, with very long lines (59765)
|
downloaded
|
||
Chrome Cache Entry: 154
|
ASCII text, with very long lines (39537), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 155
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 56x63, components
3
|
dropped
|
||
Chrome Cache Entry: 156
|
ASCII text, with very long lines (23525)
|
downloaded
|
||
Chrome Cache Entry: 157
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 158
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 159
|
ASCII text, with very long lines (43601), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 160
|
ASCII text, with very long lines (17021)
|
downloaded
|
||
Chrome Cache Entry: 161
|
PNG image data, 300 x 200, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 162
|
ASCII text, with very long lines (6511), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 163
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 164
|
PNG image data, 300 x 200, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 165
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 166
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 167
|
PNG image data, 282 x 188, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 168
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 169
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 170
|
gzip compressed data, original size modulo 2^32 2320
|
dropped
|
||
Chrome Cache Entry: 171
|
PNG image data, 1 x 1, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 172
|
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 173
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 174
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 175
|
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian,
direntries=6, orientation=upper-left, xresolution=176, yresolution=184, resolutionunit=2], baseline, precision 8, 280x186,
components 3
|
dropped
|
||
Chrome Cache Entry: 176
|
JSON data
|
dropped
|
||
Chrome Cache Entry: 177
|
ASCII text, with very long lines (43601), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 178
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 179
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 180
|
ASCII text, with very long lines (7557)
|
downloaded
|
||
Chrome Cache Entry: 181
|
PNG image data, 280 x 187, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 182
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 183
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 184
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 185
|
ASCII text, with very long lines (8965), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 186
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 92287
|
downloaded
|
||
Chrome Cache Entry: 187
|
PNG image data, 100 x 25, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 188
|
PNG image data, 300 x 200, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 189
|
GIF image data, version 89a, 84 x 84
|
downloaded
|
||
Chrome Cache Entry: 190
|
ASCII text, with very long lines (23525)
|
dropped
|
||
Chrome Cache Entry: 191
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 192
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 193
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 300x300, segment length 16, Exif Standard: [TIFF image data,
big-endian, direntries=11, description=Loving young couple looking at dream house., manufacturer=Canon, model=Canon EOS 5D
Mark III, orientation=upper-left, xresolution=218, yresolution=226, resolutionunit=2, software=Adobe Photoshop CC 2015.5 (Windows),
datetime=2016:08:25 22:42:19], baseline, precision 8, 280x186, components 3
|
downloaded
|
||
Chrome Cache Entry: 194
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 195
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 196
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 197
|
ASCII text, with very long lines (19752)
|
dropped
|
||
Chrome Cache Entry: 198
|
ASCII text, with very long lines (2343)
|
dropped
|
||
Chrome Cache Entry: 199
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 200
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 23675
|
dropped
|
||
Chrome Cache Entry: 201
|
JSON data
|
downloaded
|
||
Chrome Cache Entry: 202
|
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian,
direntries=6, orientation=upper-left, xresolution=176, yresolution=184, resolutionunit=2], baseline, precision 8, 300x200,
components 3
|
dropped
|
||
Chrome Cache Entry: 203
|
PNG image data, 282 x 188, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 204
|
Web Open Font Format, TrueType, length 31760, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 205
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 92287
|
dropped
|
||
Chrome Cache Entry: 206
|
ASCII text, with very long lines (65464), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 207
|
Web Open Font Format (Version 2), TrueType, length 25452, version 773.768
|
downloaded
|
||
Chrome Cache Entry: 208
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 209
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 210
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 211
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 212
|
Unicode text, UTF-8 text, with very long lines (65481), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 213
|
ASCII text, with very long lines (8965), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 214
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 215
|
MS Windows icon resource - 3 icons, 48x48, 8 bits/pixel, 32x32, 8 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 216
|
Web Open Font Format, TrueType, length 31728, version 0.0
|
downloaded
|
||
Chrome Cache Entry: 217
|
ASCII text, with very long lines (58912), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 218
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 219
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 220
|
gzip compressed data, original size modulo 2^32 46247
|
downloaded
|
||
Chrome Cache Entry: 221
|
gzip compressed data, original size modulo 2^32 2097
|
downloaded
|
||
Chrome Cache Entry: 222
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 223
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 224
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 225
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 56x63, components
3
|
downloaded
|
||
Chrome Cache Entry: 226
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 227
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 228
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 229
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 230
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 231
|
ASCII text, with very long lines (494), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 232
|
PNG image data, 1000 x 234, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 233
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 234
|
ASCII text, with very long lines (2054)
|
downloaded
|
||
Chrome Cache Entry: 235
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 236
|
ASCII text, with very long lines (2054)
|
dropped
|
||
Chrome Cache Entry: 237
|
ASCII text, with very long lines (2783), with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 238
|
ASCII text, with very long lines (25054), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 239
|
ASCII text, with very long lines (8039), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 240
|
ASCII text, with very long lines (23482)
|
downloaded
|
||
Chrome Cache Entry: 241
|
ASCII text, with CRLF, LF line terminators
|
dropped
|
||
Chrome Cache Entry: 242
|
PNG image data, 1 x 1, 1-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 243
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 244
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 245
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 246
|
ASCII text, with very long lines (19752)
|
downloaded
|
||
Chrome Cache Entry: 247
|
Unicode text, UTF-8 text, with very long lines (51384), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 248
|
ASCII text, with very long lines (65464), with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 249
|
ASCII text, with very long lines (2783), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 250
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 251
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 252
|
ASCII text, with very long lines (6179)
|
downloaded
|
||
Chrome Cache Entry: 253
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 254
|
ASCII text, with very long lines (65450), with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 255
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 256
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 257
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 258
|
ASCII text, with very long lines (65536), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 259
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 150x150, segment length 16, baseline, precision 8, 1366x400,
components 3
|
dropped
|
||
Chrome Cache Entry: 260
|
ASCII text, with very long lines (6511), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 261
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 262
|
ASCII text, with very long lines (65450), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 263
|
ASCII text, with very long lines (65451)
|
dropped
|
||
Chrome Cache Entry: 264
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 265
|
ASCII text, with very long lines (25054), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 266
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 267
|
gzip compressed data, original size modulo 2^32 46247
|
dropped
|
||
Chrome Cache Entry: 268
|
ASCII text, with very long lines (65326)
|
downloaded
|
||
Chrome Cache Entry: 269
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 270
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 271
|
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian,
direntries=6, orientation=upper-left, xresolution=176, yresolution=184, resolutionunit=2], baseline, precision 8, 280x186,
components 3
|
downloaded
|
||
Chrome Cache Entry: 272
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 273
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 274
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 275
|
PNG image data, 300 x 200, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 276
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 277
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 278
|
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian,
direntries=6, orientation=upper-left, xresolution=176, yresolution=184, resolutionunit=2], baseline, precision 8, 300x200,
components 3
|
downloaded
|
||
Chrome Cache Entry: 279
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 280
|
ASCII text, with very long lines (58912), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 281
|
JPEG image data, JFIF standard 1.01, resolution (DPI), density 300x300, segment length 16, Exif Standard: [TIFF image data,
big-endian, direntries=11, description=Loving young couple looking at dream house., manufacturer=Canon, model=Canon EOS 5D
Mark III, orientation=upper-left, xresolution=218, yresolution=226, resolutionunit=2, software=Adobe Photoshop CC 2015.5 (Windows),
datetime=2016:08:25 22:42:19], baseline, precision 8, 280x186, components 3
|
dropped
|
||
Chrome Cache Entry: 282
|
PNG image data, 100 x 25, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 283
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 284
|
PNG image data, 280 x 187, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 285
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 286
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 287
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 288
|
HTML document, ASCII text, with very long lines (388), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 289
|
PNG image data, 300 x 200, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 290
|
Web Open Font Format (Version 2), TrueType, length 156496, version 773.768
|
downloaded
|
||
Chrome Cache Entry: 291
|
ASCII text, with very long lines (59765)
|
dropped
|
||
Chrome Cache Entry: 292
|
ASCII text, with very long lines (52276)
|
downloaded
|
||
Chrome Cache Entry: 293
|
ASCII text, with very long lines (17021)
|
dropped
|
||
Chrome Cache Entry: 294
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 295
|
ASCII text, with very long lines (980), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 296
|
gzip compressed data, max speed, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 23675
|
downloaded
|
||
Chrome Cache Entry: 297
|
GIF image data, version 89a, 1 x 1
|
dropped
|
There are 180 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2184 --field-trial-handle=1716,i,18151879704382222237,8677820542303648411,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.phhmortgage.com/"
|
||
C:\Program Files\Windows Defender\MpCmdRun.exe
|
"C:\Program Files\Windows Defender\mpcmdrun.exe" -wdenable
|
||
C:\Windows\System32\conhost.exe
|
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://www.phhmortgage.com/
|
|||
https://stats.g.doubleclick.net/g/collect
|
unknown
|
||
https://map.go.affec.tv/map/im/2d3a8ef4-f422-42ab-bdf5-806d67244610?ch=676ad1a87b48c000011b7130&chc=st&redirect_url=&gdpr=0&gdpr_consent=&gdpr=0&gdpr_consent=
|
34.248.79.160
|
||
https://www.slideshare.net/
|
unknown
|
||
https://ps.eyeota.net/match?uid=3160677840871762541&bid=2cr76e1&dc_rc=4&dc_mr=5&dc_orig=m4omg6v&&referrer_pid=m4omg6v
|
3.125.70.222
|
||
https://del.icio.us/save?
|
unknown
|
||
https://ce.lijit.com/merge?pid=8050&3pid=ZHiAAmdq0YgAAAAIYsofAw%3D%3D&location=https%3A%2F%2Fsync.sharethis.com%2Fsovrn%3Fuid%3D%5BSOVRNID%5D&dnr=1
|
100.20.25.36
|
||
https://www.phhmortgage.com/PHHMortgage/media/PhhMortgage/images/home-owner.svg?ext=.svg
|
34.197.11.167
|
||
http://prismstandard.org/namespaces/prismusagerights/2.1/
|
unknown
|
||
https://ps.eyeota.net/pixel?pid=m4omg6v&t=gif&call=2&gdpr=0&gdpr_consent=
|
3.125.70.222
|
||
https://platform-api.sharethis.com/navistone.js
|
unknown
|
||
https://www.phhmortgage.com/
|
|||
https://www.quora.com/
|
unknown
|
||
https://www.airbnb.com/rooms/
|
unknown
|
||
https://ampcid.google.com/v1/publisher:getClientId
|
unknown
|
||
https://ib.adnxs.com/getuid?https://id5-sync.com/c/121/2/0/3.gif?puid=$UID&gdpr=0&gdpr_consent=
|
37.252.171.149
|
||
https://pixel.mathtag.com/sync/img?gdpr=0&gdpr_consent=&redir=https%3A%2F%2Fsync.sharethis.com%2Fmediamath%3Fuid%3D%5BMM_UUID%5D
|
216.200.232.253
|
||
https://www.froala.com/wysiwyg-editor)
|
unknown
|
||
https://idsync.rlcdn.com/395886.gif?partner_uid=3649349776287203361
|
35.244.154.8
|
||
https://sync.sharethis.com/yahoo?uid=y-l3VcKyBE2oMuYgSMpgqp3jxyNMvs9034ujg-~A&gdpr=0
|
18.194.154.81
|
||
https://www.fark.com/submit?
|
unknown
|
||
https://www.phhmortgage.com/Scripts/phh-mortgage.min.js
|
34.197.11.167
|
||
https://pinboard.in/add?
|
unknown
|
||
https://www.dexerto.com/entertainment/top-10-most-viewed-twitch-clips-of-all-time-2-310900
|
unknown
|
||
https://fontawesome.com
|
unknown
|
||
https://www.phhmortgage.com/static/js/main.44bd5807.js
|
34.197.11.167
|
||
https://giphy.com/posts/how-to-embed-giphy-gifs-on-your-website
|
unknown
|
||
https://github.com/twbs/bootstrap/graphs/contributors)
|
unknown
|
||
https://foursquare.com/v/
|
unknown
|
||
http://www.douban.com/recommend/?
|
unknown
|
||
https://www.tumblr.com/
|
unknown
|
||
https://open.spotify.com/
|
unknown
|
||
https://api5137.d41.co/sync/img?req=api5137&cust=269&p1=ZHiAAmdq0YgAAAAIYsofAw%3D%3D
|
3.216.71.61
|
||
https://sync.sharethis.com/int/lotame?uid=d3e41da2ee2bf8df7c97117f309cd057&gdpr=0&gdpr_consent=
|
18.194.154.81
|
||
https://idsync.rlcdn.com/1000.gif?memo=CO6UGBIeChoIARCuXxoTMzY0OTM0OTc3NjI4NzIwMzM2MRAAGg0Il6OruwYSBQjoBxAAQgBKAA
|
35.244.154.8
|
||
https://sharethis.com/platform/share-buttons?
|
unknown
|
||
https://trello.com/add-card?
|
unknown
|
||
https://www.phhmortgage.com/Content/images/information.svg
|
34.197.11.167
|
||
https://electricbikereview.com/gocycle/gs/
|
unknown
|
||
https://ws.rqtrk.eu/pull?pid=2583191d-9d1a-483f-97ec-86ebd89e7576&tr=1&g=1&return-unstable=true&gdpr=0&gdpr_consent=&redirect=https%3A%2F%2Fsync.sharethis.com%2Froqad%3Fuid%3D%24BROWSER_ID%26gdpr%3D0%26gdpr_consent%3D
|
57.129.18.109
|
||
http://wordpress.com/wp-admin/press-this.php?
|
unknown
|
||
http://ns.attribution.com/ads/1.0/
|
unknown
|
||
https://foursquare.com/intent/venue/
|
unknown
|
||
https://stats.g.doubleclick.net/j/collect
|
unknown
|
||
https://www.snapchat.com/
|
unknown
|
||
https://widget.trustpilot.com/trustboxes/5419b732fbfb950b10de65e5/main.js
|
3.160.77.34
|
||
https://www.phhmortgage.com/Content/images/right-arrow.svg
|
34.197.11.167
|
||
https://aa.agkn.com/adscores/r.pixel?sid=9212270798&puid=ZHiAAmdq0YgAAAAIYsofAw%3D%3D&gdpr=0&gdpr_consent=
|
35.75.86.132
|
||
https://vimeo.com/
|
unknown
|
||
https://www.instagram.com/
|
unknown
|
||
https://d.turn.com/r/dd/id/L2NzaWQvMS9jaWQvMTc1MDM5MzI3NS90LzA/url/https%3A%2F%2Fsync.sharethis.com%2Fnexxen%3Fuid%3D%24!%7BTURN_UUID%7D%26gdpr%3D0%26gdpr_consent%3D
|
46.228.164.13
|
||
https://ok.ru/
|
unknown
|
||
https://cdnjs.cloudflare.com/ajax/libs/bootstrap-slider/10.0.0/css/bootstrap-slider.min.css
|
104.17.24.14
|
||
https://platform-api.sharethis.com
|
unknown
|
||
https://www.blogger.com/blog-this.g?
|
unknown
|
||
https://cm.g.doubleclick.net/pixel?google_nid=eye&google_cm=&google_sc=&google_hm=MjlwcklYc3Y3Z011U3NPcFJmc2gtR1RyWF9Ra2l2WUxXZ3pQN1BoSU85T2s&gdpr=0&gdpr_consent=&uid=1&bid=gdo9o51&newuser=1&dc_rc=1&dc_mr=5&dc_orig=m4omg6v&referrer_pid=m4omg6v&google_tc=
|
142.250.181.66
|
||
https://developers.gfycat.com/iframe/#gfycat-iframe
|
unknown
|
||
https://schema.org
|
unknown
|
||
https://datasphere-sbsvc.sharethis.com?n=
|
unknown
|
||
https://t.me/share/url?
|
unknown
|
||
https://match.adsrvr.org/track/cmf/generic?ttd_pid=tapad&ttd_tpi=1&ttd_puid=03983d20-fa70-4060-acb4-9a02459a324f%252C%252C&gdpr=0&gdpr_consent=
|
3.33.220.150
|
||
https://www.youtube.com/
|
unknown
|
||
https://share.flipboard.com/bookmarklet/popout?
|
unknown
|
||
https://t.sharethis.com/1/k/t.dhj?
|
unknown
|
||
https://sync.sharethis.com/pubmatic?uid=A4236EC7-18F8-4736-A055-23962E0CA703&gdpr=0&gdpr_consent=
|
18.194.154.81
|
||
https://www.weibo.com/
|
unknown
|
||
https://cm.g.doubleclick.net/pixel?google_nid=epsilon&google_cm
|
142.250.181.66
|
||
https://a.nel.cloudflare.com/report/v4?s=5RgwvsM6%2FjPWkxDUY6Uit11Bx6ufihpMb6C6Zd8swKS6ri78567q8nRV1CtOURZDRWT5PZnNowYgaj%2BfafenRR%2FyiukPXkFeOuERogEjRUJHAo46b9kLqJLTmxF85Y4RDlmPkZJd
|
35.190.80.1
|
||
https://ce.lijit.com/merge?pid=8050&3pid=ZHiAAmdq0YgAAAAIYsofAw%3D%3D&location=https%3A%2F%2Fsync.sharethis.com%2Fsovrn%3Fuid%3D%5BSOVRNID%5D
|
100.20.25.36
|
||
http://widget.renren.com/dialog/share?
|
unknown
|
||
https://gdpr-api.sharethis.com/cmp.js
|
unknown
|
||
https://sync.sharethis.com/oiq?uid=Q7883401241206070335
|
18.194.154.81
|
||
http://www.plurk.com/?
|
unknown
|
||
https://www.linkedin.com/shareArticle?
|
unknown
|
||
https://www.phhmortgage.com/getmedia/f1312f08-dd5f-4b47-b09a-5c6f9166f0fc/Cash-Out-Debt-Consolidation.png?width=280&height=186&ext=.png&ext=.png
|
34.197.11.167
|
||
http://sns.qzone.qq.com/cgi-bin/qzshare/cgi_qzshare_onekey?
|
unknown
|
||
https://sync.sharethis.com/powr/hem?
|
unknown
|
||
https://ps.eyeota.net/match?gdpr=0&gdpr_consent=&uid=1&bid=gdo9o51&newuser=1&dc_rc=1&dc_mr=5&dc_orig=m4omg6v&referrer_pid=m4omg6v&google_gid=CAESELi0xIXyAU_XBqvV0MeiZgo&google_cver=1
|
3.125.70.222
|
||
http://service.weibo.com/share/share.php?
|
unknown
|
||
https://www.meetup.com/members/
|
unknown
|
||
https://www.trustpilot.com/evaluate/embed/phhmortgage.com
|
unknown
|
||
https://www.nmlsconsumeraccess.org/
|
unknown
|
||
https://business.phhmortgage.com/
|
unknown
|
||
https://twitter.com/intent/tweet?
|
unknown
|
||
https://github.com/marcj/css-element-queries
|
unknown
|
||
https://loadus.exelator.com/load/?p=847&g=001&j=0&gdpr=0&gdpr_consent=
|
50.16.197.56
|
||
https://www.phhmortgage.com/Scripts/Chart.min.js
|
34.197.11.167
|
||
https://pixel.tapad.com/idsync/ex/receive?partner_id=2326&gdpr=0&gdpr_consent=&partner_device_id=ZHiAAmdq0YgAAAAIYsofAw%3D%3D
|
34.111.113.62
|
||
https://thrtle.com/sync?vxii_pid=5015&vxii_pdid=88ccfd69-60a0-4942-947e-600fed5630d5
|
54.225.117.250
|
||
https://dribbble.com/
|
unknown
|
||
https://sync.sharethis.com/mediamath?uid=36d8676a-d1ad-4e00-b447-5ce13b8c3a56&gdpr=0&gdpr_consent=
|
18.194.154.81
|
||
https://api.qrserver.com/v1/create-qr-code/?
|
unknown
|
||
https://discord.gg/
|
unknown
|
||
https://www.phhmortgage.com/Scripts/owl.carousel.min.js
|
34.197.11.167
|
||
https://www.phhmortgage.com/PHHMortgage/media/PhhMortgage/VirtualAssisstantIcon.jpg
|
34.197.11.167
|
||
https://www.phhmortgage.com/Scripts/owl.navigation.min.js
|
34.197.11.167
|
||
https://mail.google.com/mail/?view=cm&
|
unknown
|
||
https://stackoverflow.com/a/9493060/2688027
|
unknown
|
||
https://web.whatsapp.com/send?
|
unknown
|
||
https://secure.actblue.com/donate/ms_blm_homepage_2019
|
unknown
|
||
https://cdnjs.cloudflare.com/ajax/libs/bootstrap-slider/4.5.0/bootstrap-slider.min.js
|
104.17.24.14
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
pugm-sin12.pubmnet.com
|
207.65.33.83
|
||
raptor-prd-uw2-alb-898559071.us-west-2.elb.amazonaws.com
|
100.20.25.36
|
||
pixel-origin.mathtag.com
|
216.200.232.253
|
||
segments.company-target.com
|
52.84.45.21
|
||
id5-sync.com
|
162.19.138.120
|
||
load-use1.exelator.com
|
50.16.197.56
|
||
ws.rqtrk.eu
|
57.129.18.109
|
||
vici-asg-prod-alb-2112236320.us-east-1.elb.amazonaws.com
|
3.216.71.61
|
||
d-ams1.turn.com
|
46.228.164.13
|
||
www.phhmortgage.com
|
34.197.11.167
|
||
ps.eyeota.net
|
3.125.70.222
|
||
idsync.rlcdn.com
|
35.244.154.8
|
||
httplogserver-lb.global.unified-prod.sharethis.net
|
18.194.154.81
|
||
ActivationEdge-activation-886544353.ap-northeast-1.elb.amazonaws.com
|
35.75.86.132
|
||
cdnjs.cloudflare.com
|
104.17.24.14
|
||
platform-api.sharethis.com
|
3.160.77.63
|
||
cm.g.doubleclick.net
|
142.250.181.66
|
||
idaas-ext.cph.liveintent.com
|
52.73.207.134
|
||
www.google.com
|
142.250.181.68
|
||
m.ib-ibi.com
|
64.58.232.180
|
||
dcs-ups.g03.yahoodns.net
|
188.125.88.206
|
||
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
|
54.154.234.207
|
||
thrtle.com
|
54.225.117.250
|
||
id.rlcdn.com
|
35.244.154.8
|
||
bcp.crwdcntrl.net
|
3.1.88.234
|
||
match.adsrvr.org
|
3.33.220.150
|
||
pixel.tapad.com
|
34.111.113.62
|
||
d2znr2yi078d75.cloudfront.net
|
18.165.220.15
|
||
a.nel.cloudflare.com
|
35.190.80.1
|
||
pippio.com
|
107.178.254.65
|
||
us-u.openx.net
|
34.98.64.218
|
||
s.amazon-adsystem.com
|
98.82.156.207
|
||
maxcdn.bootstrapcdn.com
|
104.18.10.207
|
||
pixel.onaudience.com
|
54.38.113.7
|
||
pixel-sync.sitescout.com
|
34.36.216.150
|
||
ax-0001.ax-msedge.net
|
150.171.27.10
|
||
map.go.affec.tv
|
34.248.79.160
|
||
analytics-alv.google.com
|
216.239.34.181
|
||
global.ib-ibi.com
|
216.46.185.183
|
||
d1ogq2f3ibpb2g.cloudfront.net
|
108.158.75.110
|
||
ext-lb-aws-prod.ccgateway.net
|
52.91.215.149
|
||
ml314.com
|
34.117.77.79
|
||
rc-ext-geo.rlcdn.com
|
35.244.154.8
|
||
widget.trustpilot.com
|
3.160.77.93
|
||
ib.anycast.adnxs.com
|
37.252.171.149
|
||
ap-ice.360yield.com
|
18.141.134.220
|
||
buttons-config.sharethis.com
|
unknown
|
||
px.owneriq.net
|
unknown
|
||
secure.adnxs.com
|
unknown
|
||
ib.mookie1.com
|
unknown
|
||
jadserve.postrelease.com
|
unknown
|
||
audience.synocdn.com
|
unknown
|
||
ecf.d41.co
|
unknown
|
||
ce.lijit.com
|
unknown
|
||
px.ads.linkedin.com
|
unknown
|
||
d.turn.com
|
unknown
|
||
cms.analytics.yahoo.com
|
unknown
|
||
stags.bluekai.com
|
unknown
|
||
c.cintnetworks.com
|
unknown
|
||
sync-tm.everesttech.net
|
unknown
|
||
pixel.mathtag.com
|
unknown
|
||
rc.rlcdn.com
|
unknown
|
||
sync.sharethis.com
|
unknown
|
||
t.sharethis.com
|
unknown
|
||
image6.pubmatic.com
|
unknown
|
||
ups.analytics.yahoo.com
|
unknown
|
||
loadus.exelator.com
|
unknown
|
||
eus-api.ccgateway.net
|
unknown
|
||
aa.agkn.com
|
unknown
|
||
dpm.demdex.net
|
unknown
|
||
i.liadm.com
|
unknown
|
||
api5137.d41.co
|
unknown
|
||
l.sharethis.com
|
unknown
|
||
analytics.google.com
|
unknown
|
||
ib.adnxs.com
|
unknown
|
||
match.360yield.com
|
unknown
|
There are 66 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
108.158.75.110
|
d1ogq2f3ibpb2g.cloudfront.net
|
United States
|
||
37.252.171.149
|
ib.anycast.adnxs.com
|
European Union
|
||
216.239.34.181
|
analytics-alv.google.com
|
United States
|
||
35.244.154.8
|
idsync.rlcdn.com
|
United States
|
||
3.125.70.222
|
ps.eyeota.net
|
United States
|
||
54.154.234.207
|
dcs-public-edge-irl1-150041215.eu-west-1.elb.amazonaws.com
|
United States
|
||
98.82.156.207
|
s.amazon-adsystem.com
|
United States
|
||
52.91.215.149
|
ext-lb-aws-prod.ccgateway.net
|
United States
|
||
185.89.211.116
|
unknown
|
Germany
|
||
216.46.185.185
|
unknown
|
United States
|
||
3.160.77.34
|
unknown
|
United States
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
50.16.197.56
|
load-use1.exelator.com
|
United States
|
||
3.216.71.61
|
vici-asg-prod-alb-2112236320.us-east-1.elb.amazonaws.com
|
United States
|
||
34.117.77.79
|
ml314.com
|
United States
|
||
216.46.185.183
|
global.ib-ibi.com
|
United States
|
||
3.33.220.150
|
match.adsrvr.org
|
United States
|
||
3.160.77.63
|
platform-api.sharethis.com
|
United States
|
||
18.165.220.15
|
d2znr2yi078d75.cloudfront.net
|
United States
|
||
107.178.254.65
|
pippio.com
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
64.58.232.180
|
m.ib-ibi.com
|
United States
|
||
52.73.207.134
|
idaas-ext.cph.liveintent.com
|
United States
|
||
44.219.198.27
|
unknown
|
United States
|
||
104.17.25.14
|
unknown
|
United States
|
||
34.248.79.160
|
map.go.affec.tv
|
United States
|
||
3.1.88.234
|
bcp.crwdcntrl.net
|
United States
|
||
104.18.10.207
|
maxcdn.bootstrapcdn.com
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
54.225.117.250
|
thrtle.com
|
United States
|
||
216.200.232.253
|
pixel-origin.mathtag.com
|
United States
|
||
3.160.77.93
|
widget.trustpilot.com
|
United States
|
||
52.197.189.192
|
unknown
|
United States
|
||
46.228.164.13
|
d-ams1.turn.com
|
United Kingdom
|
||
54.38.113.7
|
pixel.onaudience.com
|
France
|
||
162.19.138.120
|
id5-sync.com
|
United States
|
||
188.125.88.206
|
dcs-ups.g03.yahoodns.net
|
United Kingdom
|
||
192.168.2.23
|
unknown
|
unknown
|
||
142.250.181.68
|
www.google.com
|
United States
|
||
18.141.134.220
|
ap-ice.360yield.com
|
United States
|
||
207.65.33.83
|
pugm-sin12.pubmnet.com
|
United States
|
||
35.75.86.132
|
ActivationEdge-activation-886544353.ap-northeast-1.elb.amazonaws.com
|
United States
|
||
142.250.181.66
|
cm.g.doubleclick.net
|
United States
|
||
104.17.24.14
|
cdnjs.cloudflare.com
|
United States
|
||
3.125.21.30
|
unknown
|
United States
|
||
34.36.216.150
|
pixel-sync.sitescout.com
|
United States
|
||
34.197.11.167
|
www.phhmortgage.com
|
United States
|
||
100.20.25.36
|
raptor-prd-uw2-alb-898559071.us-west-2.elb.amazonaws.com
|
United States
|
||
57.129.18.109
|
ws.rqtrk.eu
|
Belgium
|
||
3.160.77.80
|
unknown
|
United States
|
||
34.111.113.62
|
pixel.tapad.com
|
United States
|
||
104.18.11.207
|
unknown
|
United States
|
||
18.194.154.81
|
httplogserver-lb.global.unified-prod.sharethis.net
|
United States
|
||
34.98.64.218
|
us-u.openx.net
|
United States
|
||
52.84.45.21
|
segments.company-target.com
|
United States
|
There are 45 hidden IPs, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|
||
https://www.phhmortgage.com/
|