Windows Analysis Report
A-217 Eurorepar Oil Filter E149247.pdf

Overview

General Information

Sample name: A-217 Eurorepar Oil Filter E149247.pdf
Analysis ID: 1525984
MD5: 6b4fa6263cc8c5b1c027b9e5359431c0
SHA1: fe2e4436ae1e3e38829757a0bd1a3650049b7451
SHA256: 0b08fddaa344c19b1568f4cbb6a7935c9fd227c8d4dec42d7dbbf1ea4b3cbe35
Infos:

Detection

Score: 21
Range: 0 - 100
Whitelisted: false
Confidence: 80%

Signatures

AI detected landing page (webpage, office document or email)
Document contains embedded VBA macros
Document misses a certain OLE stream usually present in this Microsoft Office document type
IP address seen in connection with other malware

Classification

Source: https://www.stellantis.com/en HTTP Parser: No favicon
Source: https://www.stellantis.com/en HTTP Parser: No favicon
Source: https://www.stellantis.com/en/news/insights/paint-by-numbers HTTP Parser: No favicon
Source: https://www.stellantis.com/fr HTTP Parser: No favicon
Source: https://www.stellantis.com/it HTTP Parser: No favicon
Source: https://www.freedomofmobility.stellantis.com/en/featured-content/2024/brazil--the-way-forward-to-sustainable-transportation HTTP Parser: No favicon
Source: Joe Sandbox View IP Address: 18.66.102.53 18.66.102.53
Source: Joe Sandbox View IP Address: 172.64.147.188 172.64.147.188
Source: Joe Sandbox View IP Address: 184.27.96.174 184.27.96.174
Source: Joe Sandbox View IP Address: 184.28.88.176 184.28.88.176
Source: Joe Sandbox View IP Address: 13.32.27.19 13.32.27.19
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: <a href="https://www.facebook.com/Stellantis" data-ga-event="06;social;click;link to facebook" aria-label="link to facebook" target="_blank"> equals www.facebook.com (Facebook)
Source: chromecache_624.12.dr String found in binary or memory: <a href="https://www.facebook.com/Stellantis" data-ga-event="06;social;click;link vers facebook" aria-label="link vers facebook" target="_blank"> equals www.facebook.com (Facebook)
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: <a href="https://www.linkedin.com/company/stellantis/" data-ga-event="06;social;click;link to linkedin" aria-label="link to linkedin" target="_blank"> equals www.linkedin.com (Linkedin)
Source: chromecache_624.12.dr String found in binary or memory: <a href="https://www.linkedin.com/company/stellantis/" data-ga-event="06;social;click;link vers linkedin" aria-label="link vers linkedin" target="_blank"> equals www.linkedin.com (Linkedin)
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: <a href="https://www.youtube.com/channel/UCKgSLvI1SYKOTpEToycAz7Q" data-ga-event="06;social;click;link to youtube" aria-label="link to youtube" target="_blank"> equals www.youtube.com (Youtube)
Source: chromecache_624.12.dr String found in binary or memory: <a href="https://www.youtube.com/channel/UCKgSLvI1SYKOTpEToycAz7Q" data-ga-event="06;social;click;link vers youtube" aria-label="link vers youtube" target="_blank"> equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: (g.sk(c,"redirector.googlevideo.com"),d=c.toString()):c.j.match("rr?[1-9].*\\.c\\.youtube\\.com$")?(g.sk(c,"www.youtube.com"),d=c.toString()):(c=nwa(d),xE(c)&&(d=c));c=new g.kM(d);c.set("cmo=pf","1");e&&c.set("cmo=td","a1.googlevideo.com");return c}; equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: 0?"http":"https";this.Ca=wE((b?b.customBaseYoutubeUrl:a.BASE_YT_URL)||"")||wE(this.nf)||this.protocol+"://www.youtube.com/";h=b?b.eventLabel:a.el;d="detailpage";h==="adunit"?d=this.D?"embedded":"detailpage":h==="embedded"||this.N?d=xs(d,h,MJa):h&&(d="embedded");this.Ja=d;Vqa();h=null;d=b?b.playerStyle:a.ps;f=g.Vb(NJa,d);!d||f&&!this.N||(h=d);this.playerStyle=h;this.K=g.Vb(NJa,this.playerStyle);this.houseBrandUserStatus=b==null?void 0:b.houseBrandUserStatus;this.qa=this.K&&this.playerStyle!=="play"&& equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: Jo.prototype.Ia=function(){return this.C};var pna=(new Date).getTime();var ula="://secure-...imrworldwide.com/ ://cdn.imrworldwide.com/ ://aksecure.imrworldwide.com/ ://[^.]*.moatads.com ://youtube[0-9]+.moatpixel.com ://pm.adsafeprotected.com/youtube ://pm.test-adsafeprotected.com/youtube ://e[0-9]+.yt.srs.doubleverify.com www.google.com/pagead/xsul www.youtube.com/pagead/slav".split(" "),vla=/\bocr\b/;var xla=/(?:\[|%5B)([a-zA-Z0-9_]+)(?:\]|%5D)/g;var abb=0,bbb=0,cbb=0;var So;g.Lo=null;g.No=!1;g.To=1;So=Symbol("SIGNAL");g.Uo={version:0,r_:0,Qm:!1,fg:void 0,Ry:void 0,Dn:void 0,KL:0,ij:void 0,Ru:void 0,ZE:!1,oP:!1,O1:function(){return!1}, equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: RIa=function(a,b){if(!a.j["0"]){var c=new iG("0","fakesb",{video:new eG(0,0,0,void 0,void 0,"auto")});a.j["0"]=b?new CN(new g.kM("http://www.youtube.com/videoplayback"),c,"fake"):new TN(new g.kM("http://www.youtube.com/videoplayback"),c,new nN(0,0),new nN(0,0))}}; equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: a))):this.api.U().L("enable_adb_handling_in_sabr")&&c==="BROWSER_OR_EXTENSION_ERROR"&&!d.K?(d=d.hostLanguage,a="//support.google.com/youtube/answer/3037019#zippy=%2Cupdate-your-browser-and-check-your-extensions",d&&(a=g.Vi(a,{hl:d})),this.Dd(DY(this,"BROWSER_OR_EXTENSION_ERROR",a))):this.Dd(g.BY(a.errorMessage)):this.Dd(DY(this,"HTML5_NO_AVAILABLE_FORMATS_FALLBACK_WITH_LINK_SHORT","//www.youtube.com/supported_browsers")):(a=d.hostLanguage,c="//support.google.com/youtube/?p=player_error1",a&&(c=g.Vi(c, equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: a.details.rc!=="429"?a.errorCode==="ump.spsrejectfailure"&&(e="HTML5_SPS_UMP_STATUS_REJECTED"):(e="TOO_MANY_REQUESTS",f="6");this.ea.Qf(a.errorCode,a.severity,e,RF(a.details),f)}else this.ea.publish("nonfatalerror",a),d=/^pp/.test(this.videoData.clientPlaybackNonce),this.Gd(a.errorCode,a.details),d&&a.errorCode==="manifest.net.connect"&&(a="https://www.youtube.com/generate_204?cpn="+this.videoData.clientPlaybackNonce+"&t="+(0,g.Wt)(),uT(a,"manifest",function(h){b.K=!0;b.ma("pathprobe",h)},function(h){b.Gd(h.errorCode, equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: a.ismb);this.cq?(r=a.vss_host||"s.youtube.com",r==="s.youtube.com"&&(r=GP(this.Ca)||"www.youtube.com")):r="video.google.com";this.Tn=r;HP(this,a,!0);this.La=new bP;g.P(this,this.La);q=b?b.innertubeApiKey:zs("",a.innertube_api_key);p=b?b.innertubeApiVersion:zs("",a.innertube_api_version);r=b?b.innertubeContextClientVersion:zs("",a.innertube_context_client_version);q=g.nr("INNERTUBE_API_KEY")||q;p=g.nr("INNERTUBE_API_VERSION")||p;l=g.nr("INNERTUBE_CONTEXT_CLIENT_CONFIG_INFO");m=VO(this);n=typeof this.j.c=== equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: b=this.api.U();a=this.api.getVideoData();var c="";b.C||(b=g.LP(b),b.indexOf("www.")===0&&(b=b.substring(4)),c=g.RR(a)?"Watch on YouTube Music":b==="youtube.com"?"Watch on YouTube":g.OE("Watch on $WEBSITE",{WEBSITE:b}));this.updateValue("title",c)}; equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: g.LP=function(a){a=GP(a.Ca);return a==="www.youtube-nocookie.com"?"www.youtube.com":a}; equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: g.YP=function(a){var b=g.LP(a);XJa.includes(b)&&(b="www.youtube.com");return a.protocol+"://"+b}; equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: g.k.getVideoUrl=function(a,b,c,d,e,f,h){b={list:b};c&&(e?b.time_continue=c:b.t=c);c=h?"music.youtube.com":g.LP(this);e=c==="www.youtube.com";!f&&d&&e?f="https://youtu.be/"+a:g.CP(this)?(f="https://"+c+"/fire",b.v=a):(f&&e?(f=this.protocol+"://"+c+"/shorts/"+a,d&&(b.feature="share")):(f=this.protocol+"://"+c+"/watch",b.v=a),ou&&(a=fna())&&(b.ebc=a));return g.Vi(f,b)}; equals www.youtube.com (Youtube)
Source: chromecache_592.12.dr String found in binary or memory: return b}JC.F="internal.enableAutoEventOnTimer";var gc=la(["data-gtm-yt-inspected-"]),LC=["www.youtube.com","www.youtube-nocookie.com"],MC,NC=!1; equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: this.Y.Aa&&(a.authuser=this.Y.Aa);this.Y.pageId&&(a.pageid=this.Y.pageId);isNaN(this.cryptoPeriodIndex)||(a.cpi=this.cryptoPeriodIndex.toString());var e=(e=/_(TV|STB|GAME|OTT|ATV|BDP)_/.exec(g.Bb()))?e[1]:"";e==="ATV"&&(a.cdt=e);this.G=a;this.G.session_id=d;this.oa=!0;this.B.flavor==="widevine"&&(this.G.hdr="1");this.B.flavor==="playready"&&(b=Number(XO(b.experiments,"playready_first_play_expiration")),!isNaN(b)&&b>=0&&(this.G.mfpe=""+b),this.oa=!1);b="";g.zO(this.B)?yO(this.B)?(d=c.B)&&(b="https://www.youtube.com/api/drm/fps?ek="+ equals www.youtube.com (Youtube)
Source: chromecache_432.12.dr String found in binary or memory: var Q2={};var beb={Gs:[{Fs:/Unable to load player module/,weight:20},{Fs:/Failed to fetch/,weight:500},{Fs:/XHR API fetch failed/,weight:10},{Fs:/JSON parsing failed after XHR fetch/,weight:10},{Fs:/Retrying OnePlatform request/,weight:10},{Fs:/CSN Missing or undefined during playback association/,weight:100},{Fs:/Non-recoverable error. Do not retry./,weight:0},{Fs:/Internal Error. Retry with an exponential backoff./,weight:0},{Fs:/API disabled by application./,weight:0}],Mr:[{callback:U7a,weight:500}]};var g8a=/[&\?]action_proxy=1/,f8a=/[&\?]token=([\w-]*)/,h8a=/[&\?]video_id=([\w-]*)/,i8a=/[&\?]index=([\d-]*)/,j8a=/[&\?]m_pos_ms=([\d-]*)/,l8a=/[&\?]vvt=([\w-]*)/,Y7a="ca_type dt el flash u_tz u_his u_h u_w u_ah u_aw u_cd u_nplug u_nmime frm u_java bc bih biw brdim vis wgl".split(" "),k8a="www.youtube-nocookie.com youtube-nocookie.com www.youtube-nocookie.com:443 youtube.googleapis.com www.youtubeedu.com www.youtubeeducation.com video.google.com redirector.gvt1.com".split(" "),a8a={android:"ANDROID", equals www.youtube.com (Youtube)
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crt0
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://cacerts.digicert.com/DigiCertTrustedRootG4.crt0C
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedG4RSA4096SHA256TimeStampingCA.crl0
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://crl3.digicert.com/DigiCertTrustedRootG4.crl0
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://cv.iptc.org/newscodes/digitalsourcetype/compositeWithTrainedAlgorithmicMedia
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://ocsp.digicert.com0A
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://ocsp.digicert.com0X
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://pki-crl.symauth.com/ca_7a5c3a0c73117406add19312bc1bc23f/LatestCRL.crl07
Source: chromecache_523.12.dr, chromecache_691.12.dr String found in binary or memory: http://pki-ocsp.symauth.com0
Source: chromecache_432.12.dr String found in binary or memory: http://tools.ietf.org/html/rfc1950
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: http://www.maserati.com/
Source: chromecache_432.12.dr String found in binary or memory: http://www.youtube.com/videoplayback
Source: chromecache_432.12.dr String found in binary or memory: http://youtube.com/drm/2012/10/10
Source: chromecache_432.12.dr String found in binary or memory: http://youtube.com/streaming/metadata/segment/102015
Source: chromecache_432.12.dr String found in binary or memory: http://youtube.com/streaming/otf/durations/112015
Source: chromecache_432.12.dr String found in binary or memory: http://youtube.com/yt/2012/10/10
Source: chromecache_432.12.dr String found in binary or memory: https://admin.youtube.com
Source: chromecache_432.12.dr String found in binary or memory: https://angular.dev/license
Source: chromecache_460.12.dr String found in binary or memory: https://assets.adobedtm.com/abfd6fce1729/f06947a6cc7e/launch-a6d76139feaf.js
Source: chromecache_637.12.dr String found in binary or memory: https://b2b.moparstore.be/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://b2b.moparstore.co.uk/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://b2b.moparstore.es/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://b2b.moparstore.fr/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://b2b.moparstore.it/privacy
Source: chromecache_592.12.dr String found in binary or memory: https://cct.google/taggy/agent.js
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://cookielaw.emea.fcagroup.com/CookieLawProduct/resources/generatecss?key=2762
Source: chromecache_624.12.dr String found in binary or memory: https://cookielaw.emea.fcagroup.com/CookieLawProduct/resources/generatecss?key=2764
Source: chromecache_637.12.dr String found in binary or memory: https://cookielaw.emea.fcagroup.com/CookieLawProduct/resources/generatehtml?key=3306
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://cookielaw.emea.fcagroup.com/CookieLawProduct/resources/generatejs?key=2762
Source: chromecache_624.12.dr String found in binary or memory: https://cookielaw.emea.fcagroup.com/CookieLawProduct/resources/generatejs?key=2764
Source: chromecache_432.12.dr String found in binary or memory: https://docs.google.com/get_video_info
Source: chromecache_619.12.dr String found in binary or memory: https://fontawesome.com
Source: chromecache_619.12.dr String found in binary or memory: https://fontawesome.com/license
Source: chromecache_568.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesans/v19/LDIhapOFNxEwR-Bd1O9uYNmnUQomAgE25imKSbHLR8A6WQw.woff2)
Source: chromecache_568.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesans/v19/LDIhapOFNxEwR-Bd1O9uYNmnUQomAgE25imKSbHLRsA6WQw.woff2)
Source: chromecache_568.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesans/v19/LDIhapOFNxEwR-Bd1O9uYNmnUQomAgE25imKSbHLSMA6.woff2)
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT4oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1yW
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT4oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1yY
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT4oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1yZ
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT6oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1T1
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT7oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1Q9
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT7oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1QV
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT7oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1Qt
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT7oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1Qx
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT7oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1RJ
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT7oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1RZ
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemicondensed/v10/3qT7oiKqnDuUtQUEHMoXcmspmy55SFWrXFRp9FTOG1Rl
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke83OhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TO401L
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke83OhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TO4I1L
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke83OhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TO4M1L
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8xOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TM-4FI
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8xOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TM-4FL
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8yOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TM0IUO
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8yOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TM1IRO
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8yOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TM34WO
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8yOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TMw4SO
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8yOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TMyYXO
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8yOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TMyoTO
Source: chromecache_483.12.dr String found in binary or memory: https://fonts.gstatic.com/s/encodesanssemiexpanded/v19/ke8yOhAPMEZs-BDuzwftTNJ85JvwMOzE9d9Cca5TMzYQO
Source: chromecache_572.12.dr String found in binary or memory: https://getbootstrap.com/)
Source: chromecache_592.12.dr String found in binary or memory: https://github.com/krux/postscribe/blob/master/LICENSE.
Source: chromecache_432.12.dr String found in binary or memory: https://github.com/madler/zlib/blob/master/zlib.h
Source: chromecache_572.12.dr String found in binary or memory: https://github.com/twbs/bootstrap/blob/master/LICENSE)
Source: chromecache_432.12.dr String found in binary or memory: https://i.ytimg.com/vi/
Source: chromecache_432.12.dr String found in binary or memory: https://jnn-pa.googleapis.com
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://kit.fontawesome.com/750b28e362.js
Source: chromecache_637.12.dr String found in binary or memory: https://moparstore.be/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://moparstore.co.uk/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://moparstore.de/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://moparstore.es/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://moparstore.fr/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://moparstore.it/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://moparstore.nl/privacy
Source: chromecache_432.12.dr String found in binary or memory: https://music.youtube.com
Source: chromecache_592.12.dr String found in binary or memory: https://pagead2.googlesyndication.com
Source: chromecache_592.12.dr String found in binary or memory: https://pagead2.googlesyndication.com/pagead/gen_204?id=tcfe
Source: chromecache_432.12.dr String found in binary or memory: https://play.google.com/log?format=json&hasfast=true
Source: chromecache_432.12.dr String found in binary or memory: https://redux.js.org/api/store#subscribelistener
Source: chromecache_432.12.dr String found in binary or memory: https://redux.js.org/tutorials/fundamentals/part-4-store#creating-a-store-with-enhancers
Source: chromecache_432.12.dr String found in binary or memory: https://redux.js.org/tutorials/fundamentals/part-4-store#middleware
Source: chromecache_432.12.dr String found in binary or memory: https://redux.js.org/tutorials/fundamentals/part-6-async-logic#using-the-redux-thunk-middleware
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://s.go-mpulse.net/boomerang/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://s2.go-mpulse.net/boomerang/
Source: chromecache_432.12.dr String found in binary or memory: https://support.google.com/youtube/?p=missing_quality
Source: chromecache_432.12.dr String found in binary or memory: https://support.google.com/youtube/?p=noaudio
Source: chromecache_432.12.dr String found in binary or memory: https://support.google.com/youtube/?p=report_playback
Source: chromecache_432.12.dr String found in binary or memory: https://support.google.com/youtube/answer/3037019#check_ad_blockers&zippy=%2Ccheck-your-extensions-i
Source: chromecache_432.12.dr String found in binary or memory: https://support.google.com/youtube/answer/6276924
Source: chromecache_592.12.dr String found in binary or memory: https://td.doubleclick.net
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://twitter.com/stellantis
Source: chromecache_432.12.dr String found in binary or memory: https://viacon.corp.google.com
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.at/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.at/datenschutz-footer
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.abarth.com/
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.de/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.es/politica-de-confidencialidad
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.fr/protection-des-donnees
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.it/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.lu/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.nl/privacy-policy
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.pl/polityka-prywatnosci
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarth.pt/privacidade
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarthbelgium.be/fr/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarthbelgium.be/nl/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.abarthcars.co.uk/privacy-policy
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.at/datenschutzrichtlinie
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.at/privacy-service
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.be/fr/privacy-be
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.be/nl/privacy-be
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.co.uk/privacy-policies
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.alfaromeo.com/
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.de/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.es/privacy-policies
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.fr/privacy-policies
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.it/privacy-policy
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.lu/privacy-be
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.nl/wettelijke-voorwaarden
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.pl/polityka-prywatnosci
Source: chromecache_637.12.dr String found in binary or memory: https://www.alfaromeo.pt/privacidade-servico
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.chrysler.com/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.citroen.com/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.dodge.com/
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.dsautomobiles.co.uk
Source: chromecache_624.12.dr String found in binary or memory: https://www.dsautomobiles.fr
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.at/privacy-links/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.at/privacy-links/datenschutzrichtlinie
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.be/fr/protection-des-donnees
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.be/nl/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.co.uk/privacy
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.fiat.com/
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.de/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.es/privacidad
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.fr/contacts/protection-des-donnees
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.it/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.lu/protection-des-donnees
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.nl/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.pl/nota-prawna
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.pl/polityka-prywatnosci
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiat.pt/privacidade
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/at/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/at/datenschutzrichtlinie
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/be/fr/privacite
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/be/nl/privacybeleid
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/de/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/es/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/fr/vie-privee
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/it/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/lu/privacite
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/nl/privacybeleid
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/pl/prywatnosc
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/pt/privacidade
Source: chromecache_637.12.dr String found in binary or memory: https://www.fiatprofessional.com/uk/privacy
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.free2move.com/
Source: chromecache_682.12.dr String found in binary or memory: https://www.freedomofmobilityforum.org/en/featured-content/2024/brazil--the-way-forward-to-sustainab
Source: chromecache_592.12.dr String found in binary or memory: https://www.google.com
Source: chromecache_592.12.dr String found in binary or memory: https://www.googleadservices.com
Source: chromecache_432.12.dr String found in binary or memory: https://www.googleapis.com/certificateprovisioning/v1/devicecertificates/create?key=AIzaSyB-5OLKTx2i
Source: chromecache_592.12.dr String found in binary or memory: https://www.googletagmanager.com
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.googletagmanager.com/gtm.js?id=
Source: chromecache_432.12.dr String found in binary or memory: https://www.gstatic.com/ytlr/img/sign_in_avatar_default.png?rn=
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep-official.it/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.at/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.at/datenschutzrichtlinie
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.be/fr/confidentialite
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.be/nl/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.co.uk/privacy
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.jeep.com/
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.de/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.es/privacidad-es
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.fr/protection-donnees
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.lu/privacite
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.nl/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.pl/nota-prawna
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.pl/polityka-prywatnosci
Source: chromecache_637.12.dr String found in binary or memory: https://www.jeep.pt/privacidade
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.be/fr/outils/politique-de-confidentialite.html
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.be/fr/vie-privee
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.be/nl/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.be/nl/tools/privacy-beleid.html
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.lancia.com/
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.de/datenschutz
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.de/weitere-informationen/datenschutzerklaerung.html
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.es/herramientas/privacidad.html
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.es/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.fr/outils/politique-de-confidentialite.html
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.fr/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.it/tool/informativa-privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.lu/outils/politique-de-confidentialite.html
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.lu/vie-privee
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.nl/privacy
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.nl/tools/privacybeleid.html
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.pt/links-uteis/politica-privacidade.html
Source: chromecache_637.12.dr String found in binary or memory: https://www.lancia.pt/privacy
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.leasys.com/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.linkedin.com/company/stellantis/
Source: chromecache_613.12.dr String found in binary or memory: https://www.media.stellantis.com/em-en/leapmotor/press/leapmotor-international-s-first-european-medi
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.mobilisights.com/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.opel.com/
Source: chromecache_624.12.dr String found in binary or memory: https://www.peugeot.com
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.peugeot.com/en/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.ramtrucks.com/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantis-fs.com/
Source: chromecache_682.12.dr String found in binary or memory: https://www.stellantis.com
Source: chromecache_613.12.dr String found in binary or memory: https://www.stellantis.com/content/dam/stellantis-corporate/news/press-releases/share-icons/share-ic
Source: chromecache_682.12.dr String found in binary or memory: https://www.stellantis.com/en
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantis.com/en/email-alert/welcome
Source: chromecache_613.12.dr String found in binary or memory: https://www.stellantis.com/en/news/press-releases/2024/september/leapmotor-international-opens-order
Source: chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantis.com/fr
Source: chromecache_613.12.dr String found in binary or memory: https://www.stellantis.com/fr/actualite/communiques-de-presse/2024/septembre/leapmotor-international
Source: chromecache_624.12.dr String found in binary or memory: https://www.stellantis.com/fr/email-alert/welcome
Source: chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantis.com/it
Source: chromecache_613.12.dr String found in binary or memory: https://www.stellantis.com/it/news/comunicati-stampa/2024/settembre/leapmotor-international-apre-gli
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantis.ventures/
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantisandyou.co.uk/
Source: chromecache_624.12.dr String found in binary or memory: https://www.stellantisandyou.com/fr/
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantisdesignstudio.com/
Source: chromecache_624.12.dr String found in binary or memory: https://www.stellantisdesignstudio.com/fr
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.stellantisfinancialservices.com/en
Source: chromecache_624.12.dr String found in binary or memory: https://www.stellantisfinancialservices.com/fr
Source: chromecache_613.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.sustainera.com/en/
Source: chromecache_624.12.dr String found in binary or memory: https://www.sustainera.com/fr/
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.vauxhall.co.uk/
Source: chromecache_432.12.dr String found in binary or memory: https://www.youtube.com/api/drm/fps?ek=
Source: chromecache_613.12.dr, chromecache_624.12.dr, chromecache_682.12.dr String found in binary or memory: https://www.youtube.com/channel/UCKgSLvI1SYKOTpEToycAz7Q
Source: chromecache_432.12.dr String found in binary or memory: https://www.youtube.com/generate_204?cpn=
Source: chromecache_432.12.dr String found in binary or memory: https://youtu.be/
Source: chromecache_432.12.dr String found in binary or memory: https://youtube.com/api/drm/fps?ek=uninitialized
Source: chromecache_432.12.dr String found in binary or memory: https://youtubei.googleapis.com/youtubei/
Source: chromecache_432.12.dr String found in binary or memory: https://yurt.corp.google.com
Source: chromecache_540.12.dr OLE indicator, VBA macros: true
Source: chromecache_590.12.dr OLE indicator, VBA macros: true
Source: chromecache_540.12.dr OLE stream indicators for Word, Excel, PowerPoint, and Visio: all false
Source: chromecache_590.12.dr OLE stream indicators for Word, Excel, PowerPoint, and Visio: all false
Source: classification engine Classification label: sus21.winPDF@61/550@0/57
Source: A-217 Eurorepar Oil Filter E149247.pdf Initial sample: mailto:partsproduct@stellantis.com
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe File created: C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents-journal Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe File created: C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-10-04 10-29-11-875.log Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe Key opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\CA Jump to behavior
Source: unknown Process created: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Desktop\A-217 Eurorepar Oil Filter E149247.pdf"
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe Process created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=2244 --field-trial-handle=1520,i,140421289138828212,5983782869220860212,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "http://mailto:partsproduct@stellantis.com"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2092 --field-trial-handle=2016,i,14396282518149168536,771648694070325024,262144 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=4152 --field-trial-handle=2016,i,14396282518149168536,771648694070325024,262144 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=5552 --field-trial-handle=2016,i,14396282518149168536,771648694070325024,262144 /prefetch:8
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe Process created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215 Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe "C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0" --lang=en-US --user-data-dir="C:\Users\user\AppData\Local\CEF\User Data" --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=2244 --field-trial-handle=1520,i,140421289138828212,5983782869220860212,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker /prefetch:8 Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2092 --field-trial-handle=2016,i,14396282518149168536,771648694070325024,262144 /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=4152 --field-trial-handle=2016,i,14396282518149168536,771648694070325024,262144 /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=5552 --field-trial-handle=2016,i,14396282518149168536,771648694070325024,262144 /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: Window Recorder Window detected: More than 3 window changes detected
Source: A-217 Eurorepar Oil Filter E149247.pdf Initial sample: PDF keyword /JS count = 0
Source: A-217 Eurorepar Oil Filter E149247.pdf Initial sample: PDF keyword /JavaScript count = 0
Source: A9106kdzi_1nnrdyv_2qg.tmp.1.dr Initial sample: PDF keyword /JS count = 0
Source: A9106kdzi_1nnrdyv_2qg.tmp.1.dr Initial sample: PDF keyword /JavaScript count = 0
Source: A-217 Eurorepar Oil Filter E149247.pdf Initial sample: PDF keyword stream count = 25
Source: A-217 Eurorepar Oil Filter E149247.pdf Initial sample: PDF keyword /EmbeddedFile count = 0
Source: A-217 Eurorepar Oil Filter E149247.pdf Initial sample: PDF keyword obj count = 77

Persistence and Installation Behavior

barindex
Source: https://www.stellantis.com/fr LLM: Page contains button: 'TOUT ACCEPTER' Source: '0.9.pages.csv'
Source: https://www.stellantis.com/en#main-content-in-page LLM: Page contains button: 'CONTINUE WITHOUT ACCEPTING' Source: '0.20.pages.csv'
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs