Windows Analysis Report
https:/www.citrix.com/content/dam/citrix/en_us/partnercentral/other/w-9-form-request-for-taxpayer-identification-number-and-certification.pdf

Overview

General Information

Sample URL: https:/www.citrix.com/content/dam/citrix/en_us/partnercentral/other/w-9-form-request-for-taxpayer-identification-number-and-certification.pdf
Analysis ID: 1525749
Infos:

Detection

Score: 1
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

HTML page contains string obfuscation
Program does not show much activity (idle)

Classification

Source: https://ga.jspm.io/npm:urijs@1.19.11/src/SecondLevelDomains.js HTTP Parser: Found new string: script var o="undefined"!==typeof globalThis?globalThis:"undefined"!==typeof self?self:global;var e={};(function(o,n){e?e=n():o.SecondLevelDomains=n(o)})(e,(function(e){var n=e&&e.SecondLevelDomains;var r={list:{ac:" com gov mil net org ",ae:" ac co gov mil name net org pro sch ",af:" com edu gov net org ",al:" com edu gov mil net org ",ao:" co ed gv it og pb ",ar:" com edu gob gov int mil net org tur ",at:" ac co gv or ",au:" asn com csiro edu gov id net org ",ba:" co com edu gov mil net org rs unbi unmo unsa untz unze ",bb:" biz co com edu gov info net org store tv ",bh:" biz cc com edu gov info net org ",bn:" com edu gov net org ",bo:" com edu gob gov int mil net org tv ",br:" adm adv agr am arq art ato b bio blog bmd cim cng cnt com coop ecn edu eng esp etc eti far flog fm fnd fot fst g12 ggf gov imb ind inf jor jus lel mat med mil mus net nom not ntr odo org ppg pro psc psi qsl rec slg srv tmp trd tur tv vet vlog wiki zlg ",bs:" com edu gov net org ",bz:" du et om ov rg ",ca:" ab bc mb nb nf nl ns nt nu on pe q...
Source: https://www.citrix.com/content/dam/citrix/en_us/partnercentral/other/w-9-form-request-for-taxpayer-identification-number-and-certification.pdf HTTP Parser: No favicon
Source: https://www.citrix.com/news/ HTTP Parser: No favicon
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="author".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="author".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="author".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="author".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="author".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="copyright".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="copyright".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="copyright".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="copyright".. found
Source: https://careers.cloud.com/ HTTP Parser: No <meta name="copyright".. found
Source: chromecache_986.2.dr String found in binary or memory: <li class="last"><a href="https://www.youtube.com/citrix" aria-label="Follow us on Youtube" target="_blank" class="social-icon icon-dotcom-youtube"><span class="path1"></span><span class="path2"></span><span class="path3"></span></a></li> equals www.youtube.com (Youtube)
Source: chromecache_986.2.dr String found in binary or memory: <li><a href="https://www.facebook.com/Citrix/" aria-label="Follow us on Facebook" target="_blank" class="social-icon icon-dotcom-facebook"><span class="path1"></span><span class="path2"></span><span class="path3"></span></a></li> equals www.facebook.com (Facebook)
Source: chromecache_986.2.dr String found in binary or memory: <li><a href="https://www.linkedin.com/company/citrix" aria-label="Follow us on linkedin" target="_blank" class="social-icon icon-dotcom-linkedin"><span class="path1"></span><span class="path2"></span></a></li> equals www.linkedin.com (Linkedin)
Source: chromecache_1081.2.dr String found in binary or memory: return "https://www.youtube.com/watch?v=" + url; equals www.youtube.com (Youtube)
Source: chromecache_1081.2.dr String found in binary or memory: var html = '<div class="content flex-video-content"><div class="flex-video"><iframe frameborder="0" allowfullscreen="" src="https://www.youtube.com/embed/'+options.data.videoId+'?autoplay=0&amp;rel=0&amp;modestbranding=1&amp;showinfo=1&amp;wmode=transparent&amp;enablejsapi=1" type="text/html" id="'+options.data.videoId+'"></iframe></div></div>'; equals www.youtube.com (Youtube)
Source: chromecache_1081.2.dr String found in binary or memory: youTubeApiUrl : 'https://www.googleapis.com/youtube/v3/' equals www.youtube.com (Youtube)
Source: chromecache_1307.2.dr String found in binary or memory: <a aria-label="facebook icon" href="http://www.facebook.com/citrixcareers" target="blank" alt="Citrix Facebook Page"><i class="fab fa-facebook-f"></i></a> equals www.facebook.com (Facebook)
Source: chromecache_1307.2.dr String found in binary or memory: <a aria-label="linkedin icon" href="https://www.linkedin.com/company/cloudsoftwaregroup" target="blank" alt="Citrix LinkedIn Page"><i class="fab fa-linkedin-in"></i></a> equals www.linkedin.com (Linkedin)
Source: chromecache_1307.2.dr String found in binary or memory: <a aria-label="twitter icon" href="http://www.twitter.com/citrixcareers" target="blank" alt="Citrix Twitter Page"><i class="fa fa-brands fa-x-twitter"></i></a> equals www.twitter.com (Twitter)
Source: chromecache_1307.2.dr String found in binary or memory: <a aria-label="youtube icon" href="https://www.youtube.com/citrix" target="blank" alt="Citrix YouTube Page"><i class="fab fa-youtube"></i></a> equals www.youtube.com (Youtube)
Source: chromecache_1081.2.dr String found in binary or memory: tag.src = "https://www.youtube.com/iframe_api"; equals www.youtube.com (Youtube)
Source: chromecache_749.2.dr, chromecache_1141.2.dr String found in binary or memory: return b}JC.F="internal.enableAutoEventOnTimer";var gc=la(["data-gtm-yt-inspected-"]),LC=["www.youtube.com","www.youtube-nocookie.com"],MC,NC=!1; equals www.youtube.com (Youtube)
Source: chromecache_1222.2.dr String found in binary or memory: return function(a,b,c,d){var e={exports:{}};e.exports;(function(){"use strict";var b=f.getFbeventsModules("signalsFBEventsGetTier"),c=d();function d(){try{if(a.trustedTypes&&a.trustedTypes.createPolicy){var b=a.trustedTypes;return b.createPolicy("facebook.com/signals/iwl",{createScriptURL:function(a){var b=new URL(a);b=b.hostname.endsWith(".facebook.com")&&b.pathname=="/signals/iwl.js";if(!b)throw new Error("Disallowed script URL");return a}})}}catch(a){}return null}e.exports=function(a,d){d=b(d);d=d==null?"www.facebook.com":"www."+d+".facebook.com";d="https://"+d+"/signals/iwl.js?pixel_id="+a;if(c!=null)return c.createScriptURL(d);else return d}})();return e.exports}(a,b,c,d)}); equals www.facebook.com (Facebook)
Source: chromecache_1222.2.dr String found in binary or memory: return function(f,b,c,d){var e={exports:{}};e.exports;(function(){"use strict";var a=/^https:\/\/www\.([A-Za-z0-9\.]+)\.facebook\.com\/tr\/?$/,b=["https://www.facebook.com/tr","https://www.facebook.com/tr/"];e.exports=function(c){if(b.indexOf(c)!==-1)return null;var d=a.exec(c);if(d==null)throw new Error("Malformed tier: "+c);return d[1]}})();return e.exports}(a,b,c,d)}); equals www.facebook.com (Facebook)
Source: chromecache_1222.2.dr String found in binary or memory: return function(f,g,h,i){var j={exports:{}};j.exports;(function(){"use strict";var a={ENDPOINT:"https://www.facebook.com/tr/",INSTAGRAM_TRIGGER_ATTRIBUTION:"https://www.instagram.com/tr/",AEM_ENDPOINT:"https://www.facebook.com/.well-known/aggregated-event-measurement/",GPS_ENDPOINT:"https://www.facebook.com/privacy_sandbox/pixel/register/trigger/",TOPICS_API_ENDPOINT:"https://www.facebook.com/privacy_sandbox/topics/registration/"};j.exports=a})();return j.exports}(a,b,c,d)}); equals www.facebook.com (Facebook)
Source: chromecache_1081.2.dr String found in binary or memory: http://benalman.com/about/license/
Source: chromecache_1081.2.dr String found in binary or memory: http://benalman.com/code/projects/jquery-throttle-debounce/examples/debounce/
Source: chromecache_1081.2.dr String found in binary or memory: http://benalman.com/code/projects/jquery-throttle-debounce/examples/throttle/
Source: chromecache_1081.2.dr String found in binary or memory: http://benalman.com/code/projects/jquery-throttle-debounce/unit/
Source: chromecache_1081.2.dr String found in binary or memory: http://benalman.com/projects/jquery-throttle-debounce-plugin/
Source: chromecache_1081.2.dr String found in binary or memory: http://bit.ly/getsizebug1
Source: chromecache_1081.2.dr String found in binary or memory: http://blog.alexmaccaw.com/css-transitions
Source: chromecache_1212.2.dr String found in binary or memory: http://citrix.com
Source: chromecache_1197.2.dr String found in binary or memory: http://consent.trustarc.com/noticemsg?
Source: chromecache_1081.2.dr String found in binary or memory: http://github.com/cowboy/jquery-throttle-debounce/
Source: chromecache_1081.2.dr String found in binary or memory: http://github.com/cowboy/jquery-throttle-debounce/raw/master/jquery.ba-throttle-debounce.js
Source: chromecache_1081.2.dr String found in binary or memory: http://github.com/cowboy/jquery-throttle-debounce/raw/master/jquery.ba-throttle-debounce.min.js
Source: chromecache_1081.2.dr String found in binary or memory: http://github.com/kenwheeler/slick
Source: chromecache_1081.2.dr String found in binary or memory: http://github.com/kenwheeler/slick/issues
Source: chromecache_697.2.dr String found in binary or memory: http://github.com/pawelczak)
Source: chromecache_1081.2.dr String found in binary or memory: http://isotope.metafizzy.co
Source: chromecache_1081.2.dr String found in binary or memory: http://isotope.metafizzy.co/layout-modes/cellsbycolumn.html
Source: chromecache_1081.2.dr String found in binary or memory: http://isotope.metafizzy.co/layout-modes/fitcolumns.html
Source: chromecache_1081.2.dr String found in binary or memory: http://jamesroberts.name/blog/2010/02/22/string-functions-for-javascript-trim-to-camel-case-to-dashe
Source: chromecache_1081.2.dr String found in binary or memory: http://kenwheeler.github.io
Source: chromecache_1081.2.dr String found in binary or memory: http://kenwheeler.github.io/slick
Source: chromecache_1081.2.dr String found in binary or memory: http://masonry.desandro.com
Source: chromecache_1081.2.dr String found in binary or memory: http://oli.me.uk/
Source: chromecache_1081.2.dr String found in binary or memory: http://perfectionkills.com/feature-testing-css-properties/
Source: chromecache_1050.2.dr String found in binary or memory: http://scripts.sil.org/OFLPublic
Source: chromecache_1081.2.dr String found in binary or memory: http://stackoverflow.com/a/384380/182183
Source: chromecache_1081.2.dr String found in binary or memory: http://support.citrix.com/search/basic/
Source: chromecache_1081.2.dr String found in binary or memory: http://support.citrix.com/search/basic/?searchQuery=
Source: chromecache_1081.2.dr String found in binary or memory: http://teamdf.com/jquery-plugins/license/
Source: chromecache_1081.2.dr String found in binary or memory: http://unlicense.org/
Source: chromecache_1081.2.dr String found in binary or memory: http://unscriptable.com/index.php/2009/03/20/debouncing-javascript-methods/
Source: chromecache_1081.2.dr String found in binary or memory: http://www.amazon.co.uk/wishlist/HNTU0468LQON
Source: chromecache_575.2.dr, chromecache_1035.2.dr String found in binary or memory: http://www.day.com/dam/1.0
Source: chromecache_1081.2.dr String found in binary or memory: http://www.opensource.org/licenses/mit-license.php
Source: chromecache_1307.2.dr String found in binary or memory: http://www.twitter.com/citrixcareers
Source: chromecache_789.2.dr String found in binary or memory: http://www.videolan.org/x264.html
Source: chromecache_1307.2.dr String found in binary or memory: https://583ec472ee7d.edge.sdk.awswaf.com/583ec472ee7d/ff2b87c263f8/challenge.js
Source: chromecache_749.2.dr String found in binary or memory: https://adservice.google.com/pagead/regclk?
Source: chromecache_534.2.dr String found in binary or memory: https://ampcid.google.com/v1/publisher:getClientId
Source: chromecache_608.2.dr String found in binary or memory: https://ams-itm-radar-testobject.citrix.com/r20.gif
Source: chromecache_1197.2.dr String found in binary or memory: https://api-js-log.trustarc.com/error
Source: chromecache_1131.2.dr String found in binary or memory: https://api.crazyegg.com/abtests/preview
Source: chromecache_1131.2.dr String found in binary or memory: https://api.crazyegg.com/surveys/preview
Source: chromecache_1131.2.dr String found in binary or memory: https://app.crazyegg.com
Source: chromecache_1307.2.dr, chromecache_986.2.dr String found in binary or memory: https://app.smartsheet.com/b/form/5a4f963f77fb4acc91bb6e4a3b47cda3
Source: chromecache_1053.2.dr String found in binary or memory: https://assets.adobedtm.com/3af873facf65/e0c89d356ff7/8c1fe6d8467c/RC0b61ce3920bc45baa362ceae8bd2bf0
Source: chromecache_952.2.dr String found in binary or memory: https://assets.adobedtm.com/3af873facf65/e0c89d356ff7/8c1fe6d8467c/RCb55afa7b08da491285c15aa6af692f1
Source: chromecache_1008.2.dr String found in binary or memory: https://assets.adobedtm.com/3af873facf65/e0c89d356ff7/8c1fe6d8467c/RCdd430120b6264e388538e2656f5992c
Source: chromecache_358.2.dr String found in binary or memory: https://assets.adobedtm.com/3af873facf65/e0c89d356ff7/launch-6e0ae5d7345e.js
Source: chromecache_1096.2.dr String found in binary or memory: https://benchmark.1e100cdn.net/r20.gif
Source: chromecache_1081.2.dr String found in binary or memory: https://bugzilla.mozilla.org/show_bug.cgi?id=548397
Source: chromecache_986.2.dr String found in binary or memory: https://careers.cloud.com/
Source: chromecache_1307.2.dr String found in binary or memory: https://careers.cloud.com/CloudCareers
Source: chromecache_1307.2.dr String found in binary or memory: https://careers.cloud.com/CloudTeams
Source: chromecache_1307.2.dr String found in binary or memory: https://careers.cloud.com/blogs/talent-stories
Source: chromecache_1307.2.dr String found in binary or memory: https://careers.cloud.com/call_to_actions/0f6c9ae70d16cd3fb60ed47186a9a22e/form_submissions?page_id=
Source: chromecache_1307.2.dr String found in binary or memory: https://careers.cloud.com/call_to_actions/56028edd43383be786f201275ec2dbf0/form_submissions?page_id=
Source: chromecache_1307.2.dr String found in binary or memory: https://careers.cloud.com/jobs/search
Source: chromecache_749.2.dr, chromecache_1141.2.dr String found in binary or memory: https://cct.google/taggy/agent.js
Source: chromecache_1009.2.dr String found in binary or memory: https://cdn.jsdelivr.net/npm/intl-tel-input
Source: chromecache_986.2.dr String found in binary or memory: https://citrix.citrixcloud.jp/
Source: chromecache_986.2.dr String found in binary or memory: https://citrix.cloud.us/
Source: chromecache_986.2.dr String found in binary or memory: https://citrix.seismic.com/
Source: chromecache_986.2.dr String found in binary or memory: https://cloud.citrix.com
Source: chromecache_986.2.dr String found in binary or memory: https://community.citrix.com/
Source: chromecache_986.2.dr String found in binary or memory: https://community.citrix.com/tech-zone-home/
Source: chromecache_1222.2.dr String found in binary or memory: https://connect.facebook.net/
Source: chromecache_1085.2.dr String found in binary or memory: https://connect.facebook.net/en_US/fbevents.js
Source: chromecache_1222.2.dr String found in binary or memory: https://connect.facebook.net/log/fbevents_telemetry/
Source: chromecache_1197.2.dr String found in binary or memory: https://consent-pref.trustarc.com?type=citrix_granular&layout=gdpr
Source: chromecache_1197.2.dr String found in binary or memory: https://consent.trustarc.com/
Source: chromecache_1197.2.dr String found in binary or memory: https://consent.trustarc.com/bannermsg?
Source: chromecache_1197.2.dr String found in binary or memory: https://consent.trustarc.com/log
Source: chromecache_1131.2.dr String found in binary or memory: https://core.crazyegg.com
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/companies/favi
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/companies/logo
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/0
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/4
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/5
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/6
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/7
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/8
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/9
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/a
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/b
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/c
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/d
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/e
Source: chromecache_1307.2.dr String found in binary or memory: https://d25wby5c7p9100.cloudfront.net/public/uploads/9fb91edda965c01cd3e74d26622fbd16/images/files/f
Source: chromecache_986.2.dr String found in binary or memory: https://docs.citrix.com/
Source: chromecache_1096.2.dr, chromecache_608.2.dr String found in binary or memory: https://fastly.cedexis-test.com/img/20367/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://fastly.cedexis-test.com/img/20367/r20.gif
Source: chromecache_1307.2.dr String found in binary or memory: https://files.clinchtalent.com/191df0c8dc982628f6bb64cf3619612b/a70cedc93aa71d2702fbfa32dd9383ad/E-V
Source: chromecache_1307.2.dr String found in binary or memory: https://files.clinchtalent.com/191df0c8dc982628f6bb64cf3619612b/a70cedc93aa71d2702fbfa32dd9383ad/IER
Source: chromecache_705.2.dr, chromecache_355.2.dr, chromecache_488.2.dr String found in binary or memory: https://fontawesome.com
Source: chromecache_705.2.dr, chromecache_355.2.dr, chromecache_488.2.dr String found in binary or memory: https://fontawesome.com/license/free
Source: chromecache_1294.2.dr String found in binary or memory: https://fonts.googleapis.com/css?family=Public
Source: chromecache_900.2.dr String found in binary or memory: https://fonts.gstatic.com/s/publicsans/v18/ijwRs572Xtc6ZYQws9YVwnNGfJ4.woff2)
Source: chromecache_900.2.dr String found in binary or memory: https://fonts.gstatic.com/s/publicsans/v18/ijwRs572Xtc6ZYQws9YVwnNIfJ7Cww.woff2)
Source: chromecache_900.2.dr String found in binary or memory: https://fonts.gstatic.com/s/publicsans/v18/ijwRs572Xtc6ZYQws9YVwnNJfJ7Cww.woff2)
Source: chromecache_900.2.dr String found in binary or memory: https://fonts.gstatic.com/s/publicsans/v18/ijwTs572Xtc6ZYQws9YVwnNDTJLax9k0.woff2)
Source: chromecache_900.2.dr String found in binary or memory: https://fonts.gstatic.com/s/publicsans/v18/ijwTs572Xtc6ZYQws9YVwnNDTJPax9k0.woff2)
Source: chromecache_900.2.dr String found in binary or memory: https://fonts.gstatic.com/s/publicsans/v18/ijwTs572Xtc6ZYQws9YVwnNDTJzaxw.woff2)
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:dom-walk
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:global
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:is-function
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:keycode
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:local-time
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:m3u8-parser
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:min-document
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:mpd-parser
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:mux.js
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:rails-ujs
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:safe-json-parse
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:urijs
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:url-toolkit
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:video.js
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:videojs-vtt.js
Source: chromecache_1307.2.dr String found in binary or memory: https://ga.jspm.io/npm:videojs-youtube
Source: chromecache_1081.2.dr String found in binary or memory: https://gist.github.com/3062955
Source: chromecache_1081.2.dr String found in binary or memory: https://github.com/jaubourg/jquery-jsonp
Source: chromecache_1081.2.dr String found in binary or memory: https://github.com/js-cookie/js-cookie
Source: chromecache_1104.2.dr, chromecache_439.2.dr String found in binary or memory: https://github.com/kesla/parse-headers/
Source: chromecache_1104.2.dr, chromecache_439.2.dr String found in binary or memory: https://github.com/kesla/parse-headers/blob/master/LICENCE
Source: chromecache_1081.2.dr String found in binary or memory: https://github.com/louisremi/jquery-smartresize
Source: chromecache_644.2.dr String found in binary or memory: https://github.com/pawelczak/EasyAutocomplete/issues/300
Source: chromecache_1081.2.dr String found in binary or memory: https://github.com/rvalitov)
Source: chromecache_1081.2.dr String found in binary or memory: https://grsmto.github.io/simplebar/
Source: chromecache_354.2.dr String found in binary or memory: https://hippocampusband.bandcamp.com
Source: chromecache_1131.2.dr String found in binary or memory: https://hud.crazyegg.com
Source: chromecache_1081.2.dr String found in binary or memory: https://i.youku.com/i/UMzU2OTI4MzY0
Source: chromecache_1081.2.dr String found in binary or memory: https://i.ytimg.com/vi/no/no.jpg
Source: chromecache_1307.2.dr, chromecache_986.2.dr String found in binary or memory: https://instagram.com/citrix/
Source: chromecache_756.2.dr String found in binary or memory: https://issues.chromium.org/issues/40196176
Source: chromecache_986.2.dr String found in binary or memory: https://jobs.citrix.com/citrix-life-learn-about-us
Source: chromecache_608.2.dr String found in binary or memory: https://las-itm-radar-testobject.citrix.com/r20.gif
Source: chromecache_1096.2.dr String found in binary or memory: https://media-akam.licdn.com/cdo/cdxs/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://mia-itm-radar-testobject.citrix.com/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p101422.cedexis-test.com/img/r20.gif
Source: chromecache_1096.2.dr, chromecache_608.2.dr String found in binary or memory: https://p19888.cedexis-test.com/img/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://p19888.cedexis-test.com/img/r20.gif
Source: chromecache_1096.2.dr String found in binary or memory: https://p20311.cedexis-test.com/img/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p28416.itm.cloud.com/img/r20.gif
Source: chromecache_1096.2.dr String found in binary or memory: https://p29.cedexis-test.com/img/29/iuni4.html
Source: chromecache_1096.2.dr String found in binary or memory: https://p29.cedexis-test.com/img/r20.gif
Source: chromecache_1096.2.dr String found in binary or memory: https://p33245.cedexis-test.com/img/r20.gif
Source: chromecache_1096.2.dr, chromecache_608.2.dr String found in binary or memory: https://p34246.cedexis-test.com/img/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://p34246.cedexis-test.com/img/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p34247.cedexis-test.com/img/34247/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p34247.cedexis-test.com/img/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://p34249.cedexis-test.com/img/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://p34249.cedexis-test.com/img/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p36.cedexis-test.com/img/36/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://p36.cedexis-test.com/img/36/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p40267.cedexis-test.com/img/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p46125.cedexis-test.com/img/46125/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://p46125.cedexis-test.com/img/46125/r20.gif
Source: chromecache_1096.2.dr String found in binary or memory: https://p46403.cedexis-test.com/img/46403/iuni4.html
Source: chromecache_1096.2.dr String found in binary or memory: https://p46403.cedexis-test.com/img/46403/r20.gif
Source: chromecache_608.2.dr String found in binary or memory: https://p81967.cedexis-test.com/img/81967/iuni4.html
Source: chromecache_608.2.dr String found in binary or memory: https://p81967.cedexis-test.com/img/81967/r20.gif
Source: chromecache_749.2.dr, chromecache_1141.2.dr String found in binary or memory: https://pagead2.googlesyndication.com
Source: chromecache_749.2.dr, chromecache_1141.2.dr String found in binary or memory: https://pagead2.googlesyndication.com/pagead/gen_204?id=tcfe
Source: chromecache_608.2.dr String found in binary or memory: https://ptcfc.com/img/34844/r20.gif
Source: chromecache_1307.2.dr String found in binary or memory: https://px.ads.linkedin.com/collect/?pid=4735148&fmt=gif
Source: chromecache_1307.2.dr String found in binary or memory: https://rec-marketing-usea1-customer-files.s3.us-east-1.amazonaws.com/public%2Fuploads%2F9fb91edda96
Source: chromecache_1307.2.dr String found in binary or memory: https://s3.us-east-1.amazonaws.com/rec-marketing-usea1-uploads/public/uploads/9fb91edda965c01cd3e74d
Source: chromecache_1081.2.dr String found in binary or memory: https://schema.org
Source: chromecache_1131.2.dr String found in binary or memory: https://script.crazyegg.com/pages/data-scripts/0020/1111/sampling/SITENAME.json
Source: chromecache_1131.2.dr String found in binary or memory: https://script.crazyegg.com/pages/data-scripts/0020/1111/site/SITENAME.json
Source: chromecache_1131.2.dr String found in binary or memory: https://script.crazyegg.com/pages/data-scripts/0020/1111/status.json
Source: chromecache_1131.2.dr String found in binary or memory: https://script.crazyegg.com/pages/versioned/common-scripts/549a6814898f6b7cf24792d03d7de2b7.js
Source: chromecache_1131.2.dr String found in binary or memory: https://script.crazyegg.com/scripts/hud
Source: chromecache_1307.2.dr String found in binary or memory: https://secure.ethicspoint.com/domain/media/en/gui/2034/index.html
Source: chromecache_608.2.dr String found in binary or memory: https://sin-itm-radar-testobject.citrix.com/r20.gif
Source: chromecache_1307.2.dr String found in binary or memory: https://snap.licdn.com/li.lms-analytics/insight.min.js
Source: chromecache_749.2.dr String found in binary or memory: https://stats.g.doubleclick.net/g/collect
Source: chromecache_534.2.dr String found in binary or memory: https://stats.g.doubleclick.net/j/collect
Source: chromecache_986.2.dr String found in binary or memory: https://support.citrix.com/
Source: chromecache_534.2.dr String found in binary or memory: https://tagassistant.google.com/
Source: chromecache_1081.2.dr String found in binary or memory: https://tc39.github.io/ecma262/#sec-array.prototype.find
Source: chromecache_749.2.dr, chromecache_1141.2.dr String found in binary or memory: https://td.doubleclick.net
Source: chromecache_1307.2.dr String found in binary or memory: https://tibco.wd5.myworkdayjobs.com/Cloud_Software_Group/login
Source: chromecache_1131.2.dr String found in binary or memory: https://tracking.crazyegg.com/clock
Source: chromecache_1075.2.dr String found in binary or memory: https://turbo.hotwired.dev/handbook/building#working-with-script-elements
Source: chromecache_1081.2.dr String found in binary or memory: https://twitter.com/
Source: chromecache_986.2.dr String found in binary or memory: https://twitter.com/citrix
Source: chromecache_1081.2.dr String found in binary or memory: https://twitter.com/hashtag/
Source: chromecache_986.2.dr String found in binary or memory: https://updates.cloud.com/
Source: chromecache_1307.2.dr String found in binary or memory: https://www.cigna.com/legal/compliance/machine-readable-files
Source: chromecache_986.2.dr String found in binary or memory: https://www.citrix.com/about/
Source: chromecache_986.2.dr String found in binary or memory: https://www.citrix.com/blogs/
Source: chromecache_986.2.dr String found in binary or memory: https://www.citrix.com/c-lib/assets/lib/icon-library/latest/fonts/Citrix-Icon-Lib.ttf?y6mbfm
Source: chromecache_986.2.dr String found in binary or memory: https://www.citrix.com/c-lib/assets/lib/icon-library/latest/fonts/Citrix-Icon-Lib.woff?y6mbfm
Source: chromecache_986.2.dr String found in binary or memory: https://www.citrix.com/c-lib/assets/lib/icon-library/latest/style.min.css?90px4t
Source: chromecache_986.2.dr String found in binary or memory: https://www.citrix.com/c-lib/assets/lib/public-sans/font.css
Source: chromecache_1307.2.dr String found in binary or memory: https://www.citrix.com/content/dam/citrix61/en_us/images/logos/csg-logo.svg
Source: chromecache_986.2.dr String found in binary or memory: https://www.citrix.com/etc/designs/citrix-dotcom/clientlibs/main/images/citrix-logo-social-1200x630.
Source: chromecache_986.2.dr String found in binary or memory: https://www.cloud.com
Source: chromecache_1307.2.dr String found in binary or memory: https://www.cloud.com/
Source: chromecache_986.2.dr String found in binary or memory: https://www.cloud.com/leadership.html
Source: chromecache_986.2.dr String found in binary or memory: https://www.cloud.com/legal
Source: chromecache_986.2.dr String found in binary or memory: https://www.cloud.com/legal/governance
Source: chromecache_986.2.dr String found in binary or memory: https://www.cloud.com/privacy-policy
Source: chromecache_1307.2.dr String found in binary or memory: https://www.cloud.com/privacy-policy/candidate
Source: chromecache_1307.2.dr String found in binary or memory: https://www.cloud.com/privacy-policy/candidate.html
Source: chromecache_1307.2.dr String found in binary or memory: https://www.cloud.com/terms-of-use.html
Source: chromecache_1307.2.dr String found in binary or memory: https://www.dol.gov/sites/dolgov/files/OFCCP/pdf/pay-transp_%20English_formattedESQA508c.pdf
Source: chromecache_1307.2.dr String found in binary or memory: https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf
Source: chromecache_1085.2.dr, chromecache_1141.2.dr String found in binary or memory: https://www.google-analytics.com/analytics.js
Source: chromecache_534.2.dr String found in binary or memory: https://www.google-analytics.com/debug/bootstrap?id=
Source: chromecache_534.2.dr String found in binary or memory: https://www.google-analytics.com/gtm/js?id=
Source: chromecache_534.2.dr String found in binary or memory: https://www.google.%/ads/ga-audiences
Source: chromecache_749.2.dr, chromecache_1141.2.dr String found in binary or memory: https://www.google.com
Source: chromecache_986.2.dr String found in binary or memory: https://www.google.com/
Source: chromecache_534.2.dr String found in binary or memory: https://www.google.com/ads/ga-audiences
Source: chromecache_926.2.dr, chromecache_595.2.dr String found in binary or memory: https://www.google.com/pagead/1p-user-list/1053846422/?random
Source: chromecache_749.2.dr, chromecache_1141.2.dr String found in binary or memory: https://www.googleadservices.com
Source: chromecache_1081.2.dr String found in binary or memory: https://www.googleapis.com/youtube/v3/
Source: chromecache_1141.2.dr String found in binary or memory: https://www.googletagmanager.com
Source: chromecache_534.2.dr String found in binary or memory: https://www.googletagmanager.com/gtag/js?id=
Source: chromecache_1085.2.dr String found in binary or memory: https://www.googletagmanager.com/gtag/js?id=$
Source: chromecache_331.2.dr String found in binary or memory: https://www.jsdelivr.com/using-sri-with-dynamic-files
Source: chromecache_986.2.dr String found in binary or memory: https://www.linkedin.com/company/citrix
Source: chromecache_1307.2.dr String found in binary or memory: https://www.linkedin.com/company/cloudsoftwaregroup
Source: chromecache_749.2.dr String found in binary or memory: https://www.merchant-center-analytics.goog
Source: chromecache_1307.2.dr, chromecache_986.2.dr String found in binary or memory: https://www.youtube.com/citrix
Source: chromecache_1081.2.dr String found in binary or memory: https://www.youtube.com/embed/
Source: chromecache_1081.2.dr String found in binary or memory: https://www.youtube.com/iframe_api
Source: chromecache_1081.2.dr String found in binary or memory: https://www.youtube.com/watch?v=
Source: classification engine Classification label: clean1.win@32/1563@0/100
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2100 --field-trial-handle=1944,i,17571363130019281656,1674915778171281938,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https:/www.citrix.com/content/dam/citrix/en_us/partnercentral/other/w-9-form-request-for-taxpayer-identification-number-and-certification.pdf"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6604 --field-trial-handle=1944,i,17571363130019281656,1674915778171281938,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2100 --field-trial-handle=1944,i,17571363130019281656,1674915778171281938,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=6604 --field-trial-handle=1944,i,17571363130019281656,1674915778171281938,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Automated click: Accept
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Automated click: Accept
Source: Window Recorder Window detected: More than 3 window changes detected
Source: all processes Thread injection, dropped files, key value created, disk infection and DNS query: no activity detected
Source: all processes Thread injection, dropped files, key value created, disk infection and DNS query: no activity detected
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs