Windows Analysis Report
https://link.nfpa.org/

Overview

General Information

Sample URL: https://link.nfpa.org/
Analysis ID: 1527550
Infos:

Detection

Score: 2
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

HTML page contains hidden javascript code
Program does not show much activity (idle)
Stores files to the Windows start menu directory
Uses Javascript AES encryption / decryption (likely to hide suspicious Javascript code)

Classification

Source: https://link.nfpa.org/ HTTP Parser: Base64 decoded: <svg xmlns="http://www.w3.org/2000/svg" width="24" height="24" viewBox="0 0 24 24"><path d="M17.856 24c2.665-4.83 3.115-12.195-7.356-11.95V18l-9-9 9-9v5.82C23.038 5.495 24.435 16.89 17.856 24z"/></svg>
Source: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/main.deed8398.chunk.js HTTP Parser: (this.webpackjsonpfrontend=this.webpackjsonpfrontend||[]).push([[0],{1221:function(e,t){},1287:function(e,t,n){"use strict";n.r(t);var a={};n.r(a),n.d(a,"default",(function(){return ms}));n(630),n(832),n(833),n(834),n(844);var r,i,s=n(6),c=n(1),o=n.n(c),l=n(52),u=n.n(l),d=n(604),b=n.n(d),p={hasupdate:!1,isreadytoreload:!1,serviceworker:void 0,serviceworkerstate:void 0,sendserviceworkermessage:function(){}},h=object(c.createcontext)(p),f=n(5),v=n(2),j="link-session-expires",m=n(29),o=n.n(m),g=object(c.createcontext)({isonline:!0});(i=r||(r={})).enabled="enabled",i.waiting="waiting",i.disabled="disabled",i.unsupported="unsupported";var x,y=function(){var e=object(c.usecontext)(h),t=e.hasupdate,n=e.isreadytoreload,a=e.sendserviceworkermessage,i=e.serviceworker,s=e.serviceworkerstate,o="serviceworker"in navigator,l=null!=i,u=l&&(null==navigator.serviceworker.controller||t),d=object(c.usememo)((function(){return o?l&&null!=s?u?r.waiting:r.enabled:r.disabled:r.unsupported}),[l,o,u,s]),b=object(c.usecallback)((funct...
Source: chrome.exe Memory has grown: Private usage: 1MB later: 38MB
Source: chromecache_528.2.dr String found in binary or memory: L.getElementsByTagName("iframe"),ka=P.length,na=0;na<ka;na++)if(!v&&c(P[na],H.He)){oJ("https://www.youtube.com/iframe_api");v=!0;break}})}}else F(u.vtp_gtmOnSuccess)}var q=["www.youtube.com","www.youtube-nocookie.com"],r={UNSTARTED:-1,ENDED:0,PLAYING:1,PAUSED:2,BUFFERING:3,CUED:5},t,v=!1;Z.__ytl=n;Z.__ytl.o="ytl";Z.__ytl.isVendorTemplate=!0;Z.__ytl.priorityOverride=0;Z.__ytl.isInfrastructure=!1; equals www.youtube.com (Youtube)
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: Math.round(q);u["gtm.videoElapsedTime"]=Math.round(f);u["gtm.videoPercent"]=r;u["gtm.videoVisible"]=t;return u},bk:function(){e=zb()},nd:function(){d()}}};var gc=la(["data-gtm-yt-inspected-"]),LC=["www.youtube.com","www.youtube-nocookie.com"],MC,NC=!1; equals www.youtube.com (Youtube)
Source: chromecache_293.2.dr, chromecache_456.2.dr String found in binary or memory: function X(a,b){this.v={};this.playerInfo={};this.videoTitle="";this.j=this.g=null;this.h=0;this.m=!1;this.l=[];this.i=null;this.A={};this.options=null;if(!a)throw Error("YouTube player element ID required.");this.id=ra(this);b=Object.assign({title:"video player",videoId:"",width:640,height:360},b||{});var c=document;if(a=typeof a==="string"?c.getElementById(a):a){W.yt_embedsEnableRsaforFromIframeApi&&tb();c=a.tagName.toLowerCase()==="iframe";b.host||(b.host=c?mb(a.src):"https://www.youtube.com");this.options= equals www.youtube.com (Youtube)
Source: chromecache_293.2.dr, chromecache_456.2.dr String found in binary or memory: function tb(){var a=new rb,b=["https://www.youtube.com"];b=b===void 0?qb:b;pa(function(c){switch(c.g){case 1:return C(c,sb(),2);case 2:if(!c.m){c.g=3;break}return C(c,Promise.all(b.map(function(d){var g;return pa(function(k){if(k.g==1)return k.l=2,C(k,navigator.permissions.query({name:"top-level-storage-access",requestedOrigin:d}),4);k.g!=2?(g=k.m,g.state==="prompt"&&a.g.push(d),k.g=0,k.l=0):(k.l=0,k.i=null,k.g=0)})})),4); equals www.youtube.com (Youtube)
Source: chromecache_410.2.dr, chromecache_425.2.dr, chromecache_397.2.dr, chromecache_565.2.dr String found in binary or memory: return b}JC.F="internal.enableAutoEventOnTimer";var gc=la(["data-gtm-yt-inspected-"]),LC=["www.youtube.com","www.youtube-nocookie.com"],MC,NC=!1; equals www.youtube.com (Youtube)
Source: chromecache_584.2.dr String found in binary or memory: return function(a,b,c,d){var e={exports:{}};e.exports;(function(){"use strict";var b=f.getFbeventsModules("signalsFBEventsGetTier"),c=d();function d(){try{if(a.trustedTypes&&a.trustedTypes.createPolicy){var b=a.trustedTypes;return b.createPolicy("facebook.com/signals/iwl",{createScriptURL:function(a){var b=new URL(a);b=b.hostname.endsWith(".facebook.com")&&b.pathname=="/signals/iwl.js";if(!b)throw new Error("Disallowed script URL");return a}})}}catch(a){}return null}e.exports=function(a,d){d=b(d);d=d==null?"www.facebook.com":"www."+d+".facebook.com";d="https://"+d+"/signals/iwl.js?pixel_id="+a;if(c!=null)return c.createScriptURL(d);else return d}})();return e.exports}(a,b,c,d)}); equals www.facebook.com (Facebook)
Source: chromecache_584.2.dr String found in binary or memory: return function(f,b,c,d){var e={exports:{}};e.exports;(function(){"use strict";var a=/^https:\/\/www\.([A-Za-z0-9\.]+)\.facebook\.com\/tr\/?$/,b=["https://www.facebook.com/tr","https://www.facebook.com/tr/"];e.exports=function(c){if(b.indexOf(c)!==-1)return null;var d=a.exec(c);if(d==null)throw new Error("Malformed tier: "+c);return d[1]}})();return e.exports}(a,b,c,d)}); equals www.facebook.com (Facebook)
Source: chromecache_584.2.dr String found in binary or memory: return function(f,g,h,i){var j={exports:{}};j.exports;(function(){"use strict";var a={ENDPOINT:"https://www.facebook.com/tr/",INSTAGRAM_TRIGGER_ATTRIBUTION:"https://www.instagram.com/tr/",AEM_ENDPOINT:"https://www.facebook.com/.well-known/aggregated-event-measurement/",GPS_ENDPOINT:"https://www.facebook.com/privacy_sandbox/pixel/register/trigger/",TOPICS_API_ENDPOINT:"https://www.facebook.com/privacy_sandbox/topics/registration/"};j.exports=a})();return j.exports}(a,b,c,d)}); equals www.facebook.com (Facebook)
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: var YB=function(a,b,c,d,e){var f=Pz("fsl",c?"nv.mwt":"mwt",0),g;g=c?Pz("fsl","nv.ids",[]):Pz("fsl","ids",[]);if(!g.length)return!0;var k=Uz(a,"gtm.formSubmit",g),m=a.action;m&&m.tagName&&(m=a.cloneNode(!1).action);Q(121);if(m==="https://www.facebook.com/tr/")return Q(122),!0;k["gtm.elementUrl"]=m;k["gtm.formCanceled"]=c;a.getAttribute("name")!=null&&(k["gtm.interactedFormName"]=a.getAttribute("name"));e&&(k["gtm.formSubmitElement"]=e,k["gtm.formSubmitElementText"]=e.value);if(d&&f){if(!Cy(k,Ey(b, equals www.facebook.com (Facebook)
Source: chromecache_438.2.dr String found in binary or memory: var scriptUrl = 'https:\/\/www.youtube.com\/s\/player\/96d06116\/www-widgetapi.vflset\/www-widgetapi.js';try{var ttPolicy=window.trustedTypes.createPolicy("youtube-widget-api",{createScriptURL:function(x){return x}});scriptUrl=ttPolicy.createScriptURL(scriptUrl)}catch(e){}var YT;if(!window["YT"])YT={loading:0,loaded:0};var YTConfig;if(!window["YTConfig"])YTConfig={"host":"https://www.youtube.com"}; equals www.youtube.com (Youtube)
Source: chromecache_411.2.dr String found in binary or memory: http://feross.org
Source: chromecache_411.2.dr String found in binary or memory: http://jedwatson.github.io/classnames
Source: chromecache_605.2.dr, chromecache_411.2.dr String found in binary or memory: http://underscorejs.org/LICENSE
Source: chromecache_583.2.dr String found in binary or memory: http://www.google.com/schemas/sitemap-news/0.9
Source: chromecache_583.2.dr String found in binary or memory: http://www.sitemaps.org/schemas/sitemap/0.9
Source: chromecache_528.2.dr String found in binary or memory: https://ad.doubleclick.net
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: https://ade.googlesyndication.com
Source: chromecache_565.2.dr String found in binary or memory: https://adservice.google.com/pagead/regclk?
Source: chromecache_353.2.dr, chromecache_313.2.dr, chromecache_418.2.dr String found in binary or memory: https://agent.pendo.io/licenses
Source: chromecache_410.2.dr, chromecache_416.2.dr, chromecache_425.2.dr, chromecache_397.2.dr, chromecache_528.2.dr, chromecache_565.2.dr String found in binary or memory: https://cct.google/taggy/agent.js
Source: chromecache_488.2.dr, chromecache_277.2.dr String found in binary or memory: https://cdn.cookielaw.org/vendorlist/googleData.json
Source: chromecache_488.2.dr, chromecache_277.2.dr String found in binary or memory: https://cdn.cookielaw.org/vendorlist/iab2Data.json
Source: chromecache_488.2.dr, chromecache_277.2.dr String found in binary or memory: https://cdn.cookielaw.org/vendorlist/iab2V2Data.json
Source: chromecache_488.2.dr, chromecache_277.2.dr String found in binary or memory: https://cdn.cookielaw.org/vendorlist/iabData.json
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://cdn.pendo.io/agent/static/4c751883-d458-4a13-6009-1a7fdac624ba/pendo.js
Source: chromecache_538.2.dr, chromecache_584.2.dr String found in binary or memory: https://connect.facebook.net/
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: https://connect.facebook.net/en_US/fbevents.js
Source: chromecache_538.2.dr, chromecache_584.2.dr String found in binary or memory: https://connect.facebook.net/log/fbevents_telemetry/
Source: chromecache_533.2.dr, chromecache_351.2.dr String found in binary or memory: https://cookiepedia.co.uk/giving-consent-to-cookies
Source: chromecache_488.2.dr, chromecache_277.2.dr String found in binary or memory: https://cookies-data.onetrust.io/bannersdk/v1/domaingroupcheck
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://d2yyd1h5u9mauk.cloudfront.net/integrations/web/v1/library/dGgY9HL6wcgEsPQU/
Source: chromecache_293.2.dr, chromecache_456.2.dr String found in binary or memory: https://developers.google.com/youtube/iframe_api_reference#Events
Source: chromecache_411.2.dr String found in binary or memory: https://feross.org
Source: chromecache_411.2.dr String found in binary or memory: https://feross.org/opensource
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TjASc-CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TjASc0CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TjASc1CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TjASc2CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TjASc3CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TjASc5CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TjASc6CsQ.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TzBic-CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TzBic0CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TzBic1CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TzBic2CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TzBic3CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TzBic5CsTKlA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOjCnqEu92Fr1Mu51TzBic6CsQ.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOkCnqEu92Fr1Mu51xEIzIFKw.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOkCnqEu92Fr1Mu51xFIzIFKw.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOkCnqEu92Fr1Mu51xGIzIFKw.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOkCnqEu92Fr1Mu51xHIzIFKw.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOkCnqEu92Fr1Mu51xIIzI.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOkCnqEu92Fr1Mu51xLIzIFKw.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOkCnqEu92Fr1Mu51xMIzIFKw.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fABc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fBBc4.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fBxc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fCBc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fCRc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fChc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmSU5fCxc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfABc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfBBc4.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfBxc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfCBc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfCRc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfChc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOlCnqEu92Fr1MmWUlfCxc4EsA.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu4WxKOzY.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu4mxK.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu5mxKOzY.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu72xKOzY.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu7GxKOzY.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu7WxKOzY.woff2)
Source: chromecache_516.2.dr String found in binary or memory: https://fonts.gstatic.com/s/roboto/v32/KFOmCnqEu92Fr1Mu7mxKOzY.woff2)
Source: chromecache_488.2.dr, chromecache_277.2.dr String found in binary or memory: https://geolocation.onetrust.com/cookieconsentpub/v1/geo/location
Source: chromecache_422.2.dr, chromecache_406.2.dr String found in binary or memory: https://github.com/jquery/sizzle
Source: chromecache_528.2.dr String found in binary or memory: https://google.com
Source: chromecache_528.2.dr String found in binary or memory: https://googleads.g.doubleclick.net
Source: chromecache_443.2.dr, chromecache_579.2.dr String found in binary or memory: https://link.nfpa.org/sign-up
Source: chromecache_605.2.dr String found in binary or memory: https://localforage.github.io/localForage
Source: chromecache_605.2.dr, chromecache_411.2.dr String found in binary or memory: https://lodash.com/
Source: chromecache_605.2.dr, chromecache_411.2.dr String found in binary or memory: https://lodash.com/license
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_447.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/apple-touch-icon.png
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/favicon-16x16.png
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/favicon-32x32.png
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/favicon.ico
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/index.html
Source: chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/logo-open-graph-image.png
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/safari-pinned-tab.svg
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_461.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/css/2.ea9b2469.chunk.css
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/css/2.ea9b2469.chunk.css.map
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_461.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/css/main.b0073b0f.chunk.css
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/css/main.b0073b0f.chunk.css.map
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_461.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/2.94e1bfb9.chunk.js
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/2.94e1bfb9.chunk.js.LICENSE.tx
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/2.94e1bfb9.chunk.js.map
Source: chromecache_498.2.dr, chromecache_465.2.dr, chromecache_461.2.dr, chromecache_453.2.dr, chromecache_304.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/main.deed8398.chunk.js
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/main.deed8398.chunk.js.map
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/runtime-main.bb21146b.js
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/js/runtime-main.bb21146b.js.map
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Book.33e8959b.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Book.76ce2d0a.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Bookmark.ae33cafc.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/BookmarkOutlined.b5b18f90.s
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Campaign.1c01153e.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Checkmark-Oval-Filled.3c692
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Checkmark-Oval-Outline.e03f
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Checkmark.0b7497b3.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Down.0066f203.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Down.01e676ad.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-First.e988a28e.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Last.84411c0e.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Left.8ac7129f.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Left.93195b99.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Right.71be4b2f.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Right.f408b6ae.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Up.2edac7ed.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Chevron-Up.3e839e90.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Close.497bee88.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Close.8618151a.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Collapse.89d18275.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Default-Avatar.b761fb8a.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Delta.0a05dd18.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Document.ce9f5862.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Dot.e859e7d3.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Download-Complete.8c3542a2.
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Download-Remove.332ddeb7.sv
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Download-Sync.972683e7.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Download.e083d3ba.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/DragAndDrop.f20e75d8.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Edit.c177212e.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Enlarge.46374b51.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Enterprise.900caa17.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Expand.809f89d0.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Eye.b4d8ff92.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Folder.4cfb98de.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Home.ac2ea2b3.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Home.d69c8653.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Individual.c2405dca.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Information.c35135ec.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Lightbulb.bf4137d4.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/List.2918add7.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Logo.09f50d5b.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/MediaPlay.5fd7e483.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/MediaPlay.b6e9b234.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/MediaPlayCircle.44a7c5ec.sv
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Menu.3695da1b.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Meta-Panel.29ebeee2.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Meta-Panel.ef68aada.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/More-Horizontal.3a8bfd98.sv
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/More-Horizontal.7ee89ef3.sv
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/More-Vertical.1a113389.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/More-Vertical.389ea702.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/New-Material.b4c1fc73.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Note.878234b2.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/NoteColorable.61da5afd.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Pin.075fab5f.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Placeholder.0f507874.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Placeholder.c64b45b3.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Plus.bc306662.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Plus.ddcbd314.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Preferences.0caa034a.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Question.3a4b80e9.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/ReferenceLink.fffb2c6d.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/ReferencePanel.003eb7d7.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/ReferencePanel.bec8b5a6.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Scroll.4e69358b.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Scroll.95b00aa7.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Search.18bf3542.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Settings.57855656.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Share.5abc87fb.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Sitnav.680d0055.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/StarFilled.76f0db00.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/StarOutline.349f9d27.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Stopwatch.7ae3f241.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Team.31348433.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/TiaAdd.ae05d04e.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/TiaChange.e21b7b68.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/TiaDelete.ece1b5c9.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Toggle-Card.a012fe13.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Toggle-Card.f3aee99b.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Toggle-Table.2a5f8448.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Toggle-Table.b1b6f00e.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Trashcan.7d7da772.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Trashcan.a9599467.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/Warning.ce14d0d8.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/WifiOffline.ceddfec1.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/ZoomIn.19046fa8.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/ZoomOut.520063c6.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/free-access-logo.0c4549b8.s
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/link-loader-glyph-small.293
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/link-publications-group.1fa
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/link-video-screenshot.495c8
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/logo-color.76a28487.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/logo-subdued.6d30e714.svg
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/nfpa-link-color.94a28100.pn
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/publication-page.b3552d8b.j
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/sitnav_equipment.27ccc298.p
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/sitnav_occupancy.4c040963.p
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/sitnav_space.f06df57f.png
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/sitnav_system.ef7c88ba.png
Source: chromecache_461.2.dr String found in binary or memory: https://nfpa-cod-production-frontend.s3.amazonaws.com/11996/static/media/sizzleloadingimg.b2bf0f7d.p
Source: chromecache_605.2.dr, chromecache_411.2.dr String found in binary or memory: https://openjsf.org/
Source: chromecache_565.2.dr String found in binary or memory: https://pagead2.googlesyndication.com
Source: chromecache_410.2.dr, chromecache_416.2.dr, chromecache_425.2.dr, chromecache_397.2.dr, chromecache_528.2.dr, chromecache_565.2.dr String found in binary or memory: https://pagead2.googlesyndication.com/pagead/gen_204?id=tcfe
Source: chromecache_353.2.dr, chromecache_313.2.dr String found in binary or memory: https://pendo-io-static.storage.googleapis.com/agent/static/4c751883-d458-4a13-6009-1a7fdac624ba/pen
Source: chromecache_353.2.dr, chromecache_313.2.dr String found in binary or memory: https://pendo-static-4806490805108736.storage.googleapis.com
Source: chromecache_356.2.dr, chromecache_411.2.dr String found in binary or memory: https://quilljs.com/
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: https://snap.licdn.com/li.lms-analytics/insight.min.js
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: https://static.ads-twitter.com/uwt.js
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: https://static.hotjar.com/c/hotjar-
Source: chromecache_425.2.dr, chromecache_565.2.dr String found in binary or memory: https://stats.g.doubleclick.net/g/collect
Source: chromecache_410.2.dr, chromecache_416.2.dr, chromecache_425.2.dr, chromecache_397.2.dr, chromecache_528.2.dr, chromecache_565.2.dr String found in binary or memory: https://td.doubleclick.net
Source: chromecache_406.2.dr String found in binary or memory: https://track.securedvisit.com
Source: chromecache_441.2.dr, chromecache_379.2.dr String found in binary or memory: https://web.delighted.com/integrations/web/v1/telemetry/dGgY9HL6wcgEsPQU
Source: chromecache_441.2.dr, chromecache_379.2.dr String found in binary or memory: https://web.delighted.com/t/4lzwvwwB
Source: chromecache_565.2.dr String found in binary or memory: https://www.google.com
Source: chromecache_299.2.dr, chromecache_508.2.dr, chromecache_328.2.dr, chromecache_278.2.dr, chromecache_430.2.dr, chromecache_305.2.dr, chromecache_489.2.dr, chromecache_543.2.dr String found in binary or memory: https://www.google.com/pagead/1p-user-list/1038202397/?random
Source: chromecache_528.2.dr, chromecache_565.2.dr String found in binary or memory: https://www.googleadservices.com
Source: chromecache_565.2.dr String found in binary or memory: https://www.googletagmanager.com
Source: chromecache_410.2.dr, chromecache_416.2.dr, chromecache_397.2.dr, chromecache_528.2.dr String found in binary or memory: https://www.googletagmanager.com/a?
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: https://www.googletagmanager.com/dclk/ns/v1.js
Source: chromecache_410.2.dr, chromecache_416.2.dr, chromecache_397.2.dr, chromecache_528.2.dr String found in binary or memory: https://www.googletagmanager.com/static/service_worker/
Source: chromecache_425.2.dr, chromecache_565.2.dr String found in binary or memory: https://www.merchant-center-analytics.goog
Source: chromecache_424.2.dr String found in binary or memory: https://www.robotstxt.org/robotstxt.html
Source: chromecache_422.2.dr, chromecache_406.2.dr String found in binary or memory: https://www.webtoolkit.info/
Source: chromecache_456.2.dr, chromecache_438.2.dr String found in binary or memory: https://www.youtube.com
Source: chromecache_416.2.dr, chromecache_528.2.dr String found in binary or memory: https://www.youtube.com/iframe_api
Source: classification engine Classification label: clean2.win@23/545@0/64
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps Jump to behavior
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2640 --field-trial-handle=2196,i,13891927909458899705,13478912334107177282,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://link.nfpa.org/"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5900 --field-trial-handle=2196,i,13891927909458899705,13478912334107177282,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2640 --field-trial-handle=2196,i,13891927909458899705,13478912334107177282,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5900 --field-trial-handle=2196,i,13891927909458899705,13478912334107177282,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: Google Drive.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: YouTube.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Sheets.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Gmail.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Slides.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Docs.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Window Recorder Window detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk Jump to behavior
Source: all processes Thread injection, dropped files, key value created, disk infection and DNS query: no activity detected
Source: all processes Thread injection, dropped files, key value created, disk infection and DNS query: no activity detected
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs