Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
Chrome Cache Entry: 100
|
MS Windows icon resource - 4 icons, 64x64, 32 bits/pixel, 32x32, 32 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 101
|
Unicode text, UTF-8 (with BOM) text, with very long lines (65339), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 102
|
PNG image data, 280 x 60, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 103
|
PNG image data, 338 x 72, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 104
|
GIF image data, version 89a, 352 x 3
|
dropped
|
||
Chrome Cache Entry: 105
|
JPEG image data, progressive, precision 8, 1920x1080, components 3
|
downloaded
|
||
Chrome Cache Entry: 106
|
HTML document, ASCII text, with very long lines (545)
|
downloaded
|
||
Chrome Cache Entry: 107
|
PNG image data, 280 x 60, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 108
|
ASCII text, with very long lines (61177)
|
downloaded
|
||
Chrome Cache Entry: 109
|
ASCII text, with very long lines (39257), with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 110
|
JPEG image data, progressive, precision 8, 1920x1080, components 3
|
dropped
|
||
Chrome Cache Entry: 111
|
ASCII text, with very long lines (64616)
|
downloaded
|
||
Chrome Cache Entry: 112
|
ASCII text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 113
|
ASCII text, with very long lines (65447)
|
dropped
|
||
Chrome Cache Entry: 114
|
GIF image data, version 89a, 352 x 3
|
downloaded
|
||
Chrome Cache Entry: 115
|
PNG image data, 60 x 60, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 116
|
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 117
|
PNG image data, 89 x 18, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 118
|
ASCII text, with very long lines (39257), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 119
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 120
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 121
|
ASCII text, with very long lines (46090)
|
dropped
|
||
Chrome Cache Entry: 122
|
ASCII text, with very long lines (46090)
|
downloaded
|
||
Chrome Cache Entry: 123
|
ASCII text, with very long lines (25695)
|
dropped
|
||
Chrome Cache Entry: 124
|
ASCII text, with very long lines (25695)
|
downloaded
|
||
Chrome Cache Entry: 125
|
ASCII text, with very long lines (65329), with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 126
|
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 127
|
PNG image data, 338 x 72, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 128
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 129
|
ASCII text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 130
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 131
|
GIF image data, version 89a, 22 x 22
|
downloaded
|
||
Chrome Cache Entry: 132
|
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 133
|
GIF image data, version 89a, 352 x 3
|
downloaded
|
||
Chrome Cache Entry: 134
|
HTML document, Unicode text, UTF-8 text, with very long lines (1800), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 135
|
GIF image data, version 89a, 24 x 24
|
dropped
|
||
Chrome Cache Entry: 136
|
HTML document, ASCII text, with very long lines (6645), with CRLF, LF line terminators
|
downloaded
|
||
Chrome Cache Entry: 137
|
PNG image data, 16 x 25, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 138
|
Unicode text, UTF-8 text, with very long lines (32009)
|
dropped
|
||
Chrome Cache Entry: 139
|
ASCII text, with very long lines (45797)
|
dropped
|
||
Chrome Cache Entry: 140
|
PNG image data, 17 x 25, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 141
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 142
|
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 143
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 144
|
ASCII text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 145
|
PNG image data, 17 x 25, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 146
|
GIF image data, version 89a, 22 x 22
|
dropped
|
||
Chrome Cache Entry: 147
|
PNG image data, 89 x 18, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 148
|
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
|
dropped
|
||
Chrome Cache Entry: 149
|
PNG image data, 89 x 18, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 150
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 151
|
Unicode text, UTF-8 (with BOM) text, with very long lines (59783), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 152
|
PNG image data, 600 x 1, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 153
|
ASCII text, with very long lines (65447)
|
downloaded
|
||
Chrome Cache Entry: 154
|
ASCII text, with very long lines (65329), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 155
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 156
|
MS Windows icon resource - 6 icons, -128x-128, 16 colors, 72x72, 16 colors
|
downloaded
|
||
Chrome Cache Entry: 84
|
HTML document, Unicode text, UTF-8 text, with very long lines (941), with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 85
|
ASCII text, with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 86
|
Unicode text, UTF-8 (with BOM) text, with very long lines (65339), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 87
|
Unicode text, UTF-8 (with BOM) text, with very long lines (65339), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 88
|
GIF image data, version 89a, 352 x 3
|
dropped
|
||
Chrome Cache Entry: 89
|
PNG image data, 16 x 25, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 90
|
Unicode text, UTF-8 text, with very long lines (32009)
|
downloaded
|
||
Chrome Cache Entry: 91
|
ASCII text, with CRLF line terminators
|
dropped
|
||
Chrome Cache Entry: 92
|
PNG image data, 60 x 60, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 93
|
ASCII text, with very long lines (45797)
|
downloaded
|
||
Chrome Cache Entry: 94
|
MS Windows icon resource - 4 icons, 64x64, 32 bits/pixel, 32x32, 32 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 95
|
ASCII text, with very long lines (994), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 96
|
GIF image data, version 89a, 24 x 24
|
downloaded
|
||
Chrome Cache Entry: 97
|
HTML document, ASCII text, with very long lines (645), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 98
|
PNG image data, 89 x 18, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 99
|
ASCII text, with very long lines (64616)
|
dropped
|
There are 64 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2168 --field-trial-handle=2112,i,1976848936731450565,5995352911465103930,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.baidu.com/link?url=7AgUGxkCgEsQdPm9T1PXcA0XghaPOWMLvdhGyyVngg844uS4x-KZy4IMqs1ov0OgdFqhAB-_X2oOV9exK4hWC_&wd=ZWxraW58WTI5eVpUUmpaUzVqYjIwPXxNYkdVSlpkdVROdWNyeW1UWU1laElVVW1QbGRGb0F5RmNLcWJadW1CT01YYw=="
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://www.baidu.com/link?url=7AgUGxkCgEsQdPm9T1PXcA0XghaPOWMLvdhGyyVngg844uS4x-KZy4IMqs1ov0OgdFqhAB-_X2oOV9exK4hWC_&wd=ZWxraW58WTI5eVpUUmpaUzVqYjIwPXxNYkdVSlpkdVROdWNyeW1UWU1laElVVW1QbGRGb0F5RmNLcWJadW1CT01YYw==
|
|||
https://vivaloud.top/66fec1da18260697b349b97a/om/ZWxraW58WTI5eVpUUmpaUzVqYjIwPXxNYkdVSlpkdVROdWNyeW1
|
unknown
|
||
https://vivaloud.top/66fec1da18260697b349b97a/om/ZWxraW58WTI5eVpUUmpaUzVqYjIwPXxNYkdVSlpkdVROdWNyeW1UWU1laElVVW1QbGRGb0F5RmNLcWJadW1CT01YYw%3D%3D
|
|||
https://vivaloud.top/66fec1da18260697b349b97a/om/ZWxraW58WTI5eVpUUmpaUzVqYjIwPXxNYkdVSlpkdVROdWNyeW1UWU1laElVVW1QbGRGb0F5RmNLcWJadW1CT01YYw%3D%3D?sso_reload=true
|
172.67.177.212
|
||
http://github.com/jquery/globalize
|
unknown
|
||
https://aadcdn.msftauthimages.us/6ebb54f4-vnbklnuh5ks5smrcmee6risenblah0-slhtg962nt-y/logintenantbranding/0/illustration?ts=638481933549179137
|
20.141.12.34
|
||
https://aadcdn.msftauth.net/shared/1.0/content/js/ConvergedLogin_PCore_ELtAAt2Ya8ISGuc0PJcBKA2.js
|
152.199.21.175
|
||
https://aadcdn.msftauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_pcustomizationloader_117b650bccea354984d8.js
|
152.199.21.175
|
||
https://aadcdn.msftauthimages.us/6ebb54f4-vnbklnuh5ks5smrcmee6risenblah0-slhtg962nt-y/logintenantbranding/0/bannerlogo?ts=638476018421341664
|
20.141.12.34
|
||
http://www.opensource.org/licenses/mit-license.php)
|
unknown
|
||
https://aadcdn.msftauth.net/shared/1.0/content/js/BssoInterrupt_Core_JQnUxWSvwsd9FrpspQmznw2.js
|
152.199.21.175
|
||
https://aadcdn.msftauth.net/shared/1.0/content/images/marching_ants_986f40b5a9dc7d39ef8396797f61b323.gif
|
152.199.21.175
|
||
https://outlook.office365.com/owa/prefetch.aspx
|
52.98.179.146
|
||
https://aadcdn.msftauth.net/shared/1.0/content/images/marching_ants_white_8257b0707cbe1d0bd2661b80068676fe.gif
|
152.199.21.175
|
||
https://www.baidu.com/link?url=7AgUGxkCgEsQdPm9T1PXcA0XghaPOWMLvdhGyyVngg844uS4x-KZy4IMqs1ov0OgdFqhAB-_X2oOV9exK4hWC_&wd=ZWxraW58WTI5eVpUUmpaUzVqYjIwPXxNYkdVSlpkdVROdWNyeW1UWU1laElVVW1QbGRGb0F5RmNLcWJadW1CT01YYw==
|
103.235.46.96
|
||
https://www.themarbleandgranitecompany.co.uk/
|
5.101.173.45
|
||
https://aadcdn.msftauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_ppassword_89db715e3340a2e8ecd8.js
|
152.199.21.175
|
||
https://aadcdn.msftauth.net/shared/1.0/content/images/favicon_a_eupayfgghqiai7k9sol6lg2.ico
|
152.199.21.175
|
||
http://knockoutjs.com/
|
unknown
|
||
https://github.com/douglascrockford/JSON-js
|
unknown
|
||
https://aadcdn.msftauth.net/ests/2.1/content/cdnbundles/ux.converged.login.strings-en.min_1yb3e7oii5t28dgo4xrtow2.js
|
152.199.21.175
|
||
http://feross.org
|
unknown
|
||
https://account.live.com/resetpassword.aspx
|
unknown
|
||
https://a.nel.cloudflare.com/report/v4?s=6oBcOfYnWqCtCT0JwndvK7YR8r1cskKmc5RpqAO1%2F%2B9GjcPEnZuca8Y%2FWqyLe29S2AphRYvKVEtTZPv31q98u9GcJLutYGndQaelclflGAfHNoUa21yQvX9%2FeSDVgGc%3D
|
35.190.80.1
|
There are 13 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
eafd-ffgov-phxr9b1-roxy-default-sni.aksroxy.azureedge.us
|
20.141.12.34
|
||
a.nel.cloudflare.com
|
35.190.80.1
|
||
eafd-ffgov-phxr9b2-roxy-default-sni.aksroxy.azureedge.us
|
20.140.48.70
|
||
s-part-0023.t-0009.t-msedge.net
|
13.107.246.51
|
||
www.wshifen.com
|
103.235.46.96
|
||
sni1gl.wpc.omegacdn.net
|
152.199.21.175
|
||
s-part-0017.t-0009.t-msedge.net
|
13.107.246.45
|
||
www.google.com
|
216.58.212.132
|
||
FRA-efz.ms-acdc.office.com
|
52.98.179.146
|
||
www.themarbleandgranitecompany.co.uk
|
5.101.173.45
|
||
vivaloud.top
|
172.67.177.212
|
||
fp2e7a.wpc.phicdn.net
|
192.229.221.95
|
||
aadcdn.msftauthimages.us
|
unknown
|
||
r4.res.office365.com
|
unknown
|
||
aadcdn.msftauth.net
|
unknown
|
||
www.baidu.com
|
unknown
|
||
passwordreset.activedirectory.windowsazure.us
|
unknown
|
||
ajax.aspnetcdn.com
|
unknown
|
||
login.microsoftonline.us
|
unknown
|
||
outlook.office365.com
|
unknown
|
There are 10 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
5.101.173.45
|
www.themarbleandgranitecompany.co.uk
|
United Kingdom
|
||
52.98.179.146
|
FRA-efz.ms-acdc.office.com
|
United States
|
||
216.58.212.132
|
www.google.com
|
United States
|
||
20.141.12.34
|
eafd-ffgov-phxr9b1-roxy-default-sni.aksroxy.azureedge.us
|
United States
|
||
103.235.46.96
|
www.wshifen.com
|
Hong Kong
|
||
192.168.2.4
|
unknown
|
unknown
|
||
20.140.48.70
|
eafd-ffgov-phxr9b2-roxy-default-sni.aksroxy.azureedge.us
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
152.199.21.175
|
sni1gl.wpc.omegacdn.net
|
United States
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
172.67.177.212
|
vivaloud.top
|
United States
|
There are 1 hidden IPs, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://vivaloud.top/66fec1da18260697b349b97a/om/ZWxraW58WTI5eVpUUmpaUzVqYjIwPXxNYkdVSlpkdVROdWNyeW1UWU1laElVVW1QbGRGb0F5RmNLcWJadW1CT01YYw%3D%3D
|
||
https://vivaloud.top/66fec1da18260697b349b97a/o/aHR0cHM6Ly9sb2dpbi5taWNyb3NvZnRvbmxpbmUudXM=-lg/common/OAuth2/authorize?client_id=00000002-0000-0ff1-ce00-000000000000&resource=00000002-0000-0ff1-ce00-000000000000&state=DYtBEoAgCAAxp-eQiCTwHDXPHft-zOzubRMA5PAIE0VAe7MuRMo1Iiamly_vm91wPrRQbGx0VcEple9ttQUp3rO83yg_&nc_proxy_request=1&nc_proxy_state=rQQIARAAjZFPbNJgGMb7UVYBUZGTJ_80nlgKLXS0NJpYgQgxCNRJtqkhUL6yjrZf0z8UWPDskXjc0YMHjMliPOiSGePBwy5yXlyyeNniwRhNDLsJ2cWbPnnzy3N4kzfv88RwJs4I1-lTJak5KVpRGEqGc_eXrGgo8n4U1ju_P-_GhMsnN179Go7BlXXHMW0hkUCuoyHUiSNFUWUYl5GeQF4j8RaACQDHADzzXYRaRzVuyciC7OnG2MelU3yapWkuyczA8izPxTNyJg2TGZ5qtmiZYvkGpDIcx1JNlkkuQZ5JzWbfd6Esus56cg5kqQP40xdUkKXXTWQ7W_ij3KpzO4_EdlYUeyYFq2p22SvkVioFxaEG5YHblEriUkUs5umaCLmSK5UQU1Qbutavd_UM41Usqdq806Nrct7UYMZxqg_MlFXmU_12fYz_V2CvcWL2o46MPZxAJjTU1sQPDv3gmz9M40IgEIpgl7Cr2NQPni_MsgXO7peXn8LFF0-8r9febIG9hUS6W9tYc5fbkHYHidXiWq6T0tKVxZXaomRYZnmD96S7Tene_Xzfu8kJzIgAI4LYIYIBPIKReLbCfCSiuipbyEaKgwxNNWDctY8J8IMAT89gO8F_tTc5C_bDbIiQtYaq29HYJqm26g7qQIMUNsmebtdlee66Dc2FNi
|
||
https://vivaloud.top/66fec1da18260697b349b97a/o/aHR0cHM6Ly9sb2dpbi5taWNyb3NvZnRvbmxpbmUudXM=-lg/common/OAuth2/authorize?client_id=00000002-0000-0ff1-ce00-000000000000&resource=00000002-0000-0ff1-ce00-000000000000&state=DYtBEoAgCAAxp-eQiCTwHDXPHft-zOzubRMA5PAIE0VAe7MuRMo1Iiamly_vm91wPrRQbGx0VcEple9ttQUp3rO83yg_&nc_proxy_request=1&nc_proxy_state=rQQIARAAjZFPbNJgGMb7UVYBUZGTJ_80nlgKLXS0NJpYgQgxCNRJtqkhUL6yjrZf0z8UWPDskXjc0YMHjMliPOiSGePBwy5yXlyyeNniwRhNDLsJ2cWbPnnzy3N4kzfv88RwJs4I1-lTJak5KVpRGEqGc_eXrGgo8n4U1ju_P-_GhMsnN179Go7BlXXHMW0hkUCuoyHUiSNFUWUYl5GeQF4j8RaACQDHADzzXYRaRzVuyciC7OnG2MelU3yapWkuyczA8izPxTNyJg2TGZ5qtmiZYvkGpDIcx1JNlkkuQZ5JzWbfd6Esus56cg5kqQP40xdUkKXXTWQ7W_ij3KpzO4_EdlYUeyYFq2p22SvkVioFxaEG5YHblEriUkUs5umaCLmSK5UQU1Qbutavd_UM41Usqdq806Nrct7UYMZxqg_MlFXmU_12fYz_V2CvcWL2o46MPZxAJjTU1sQPDv3gmz9M40IgEIpgl7Cr2NQPni_MsgXO7peXn8LFF0-8r9febIG9hUS6W9tYc5fbkHYHidXiWq6T0tKVxZXaomRYZnmD96S7Tene_Xzfu8kJzIgAI4LYIYIBPIKReLbCfCSiuipbyEaKgwxNNWDctY8J8IMAT89gO8F_tTc5C_bDbIiQtYaq29HYJqm26g7qQIMUNsmebtdlee66Dc2FNi
|
||
https://vivaloud.top/66fec1da18260697b349b97a/o/aHR0cHM6Ly9sb2dpbi5taWNyb3NvZnRvbmxpbmUudXM=-lg/common/OAuth2/authorize?client_id=00000002-0000-0ff1-ce00-000000000000&resource=00000002-0000-0ff1-ce00-000000000000&state=DYtBEoAgCAAxp-eQiCTwHDXPHft-zOzubRMA5PAIE0VAe7MuRMo1Iiamly_vm91wPrRQbGx0VcEple9ttQUp3rO83yg_&nc_proxy_request=1&nc_proxy_state=rQQIARAAjZFPbNJgGMb7UVYBUZGTJ_80nlgKLXS0NJpYgQgxCNRJtqkhUL6yjrZf0z8UWPDskXjc0YMHjMliPOiSGePBwy5yXlyyeNniwRhNDLsJ2cWbPnnzy3N4kzfv88RwJs4I1-lTJak5KVpRGEqGc_eXrGgo8n4U1ju_P-_GhMsnN179Go7BlXXHMW0hkUCuoyHUiSNFUWUYl5GeQF4j8RaACQDHADzzXYRaRzVuyciC7OnG2MelU3yapWkuyczA8izPxTNyJg2TGZ5qtmiZYvkGpDIcx1JNlkkuQZ5JzWbfd6Esus56cg5kqQP40xdUkKXXTWQ7W_ij3KpzO4_EdlYUeyYFq2p22SvkVioFxaEG5YHblEriUkUs5umaCLmSK5UQU1Qbutavd_UM41Usqdq806Nrct7UYMZxqg_MlFXmU_12fYz_V2CvcWL2o46MPZxAJjTU1sQPDv3gmz9M40IgEIpgl7Cr2NQPni_MsgXO7peXn8LFF0-8r9febIG9hUS6W9tYc5fbkHYHidXiWq6T0tKVxZXaomRYZnmD96S7Tene_Xzfu8kJzIgAI4LYIYIBPIKReLbCfCSiuipbyEaKgwxNNWDctY8J8IMAT89gO8F_tTc5C_bDbIiQtYaq29HYJqm26g7qQIMUNsmebtdlee66Dc2FNi
|
||
https://vivaloud.top/66fec1da18260697b349b97a/o/aHR0cHM6Ly9sb2dpbi5taWNyb3NvZnRvbmxpbmUudXM=-lg/common/OAuth2/authorize?client_id=00000002-0000-0ff1-ce00-000000000000&resource=00000002-0000-0ff1-ce00-000000000000&state=DYtBEoAgCAAxp-eQiCTwHDXPHft-zOzubRMA5PAIE0VAe7MuRMo1Iiamly_vm91wPrRQbGx0VcEple9ttQUp3rO83yg_&nc_proxy_request=1&nc_proxy_state=rQQIARAAjZFPbNJgGMb7UVYBUZGTJ_80nlgKLXS0NJpYgQgxCNRJtqkhUL6yjrZf0z8UWPDskXjc0YMHjMliPOiSGePBwy5yXlyyeNniwRhNDLsJ2cWbPnnzy3N4kzfv88RwJs4I1-lTJak5KVpRGEqGc_eXrGgo8n4U1ju_P-_GhMsnN179Go7BlXXHMW0hkUCuoyHUiSNFUWUYl5GeQF4j8RaACQDHADzzXYRaRzVuyciC7OnG2MelU3yapWkuyczA8izPxTNyJg2TGZ5qtmiZYvkGpDIcx1JNlkkuQZ5JzWbfd6Esus56cg5kqQP40xdUkKXXTWQ7W_ij3KpzO4_EdlYUeyYFq2p22SvkVioFxaEG5YHblEriUkUs5umaCLmSK5UQU1Qbutavd_UM41Usqdq806Nrct7UYMZxqg_MlFXmU_12fYz_V2CvcWL2o46MPZxAJjTU1sQPDv3gmz9M40IgEIpgl7Cr2NQPni_MsgXO7peXn8LFF0-8r9febIG9hUS6W9tYc5fbkHYHidXiWq6T0tKVxZXaomRYZnmD96S7Tene_Xzfu8kJzIgAI4LYIYIBPIKReLbCfCSiuipbyEaKgwxNNWDctY8J8IMAT89gO8F_tTc5C_bDbIiQtYaq29HYJqm26g7qQIMUNsmebtdlee66Dc2FNi
|
||
https://vivaloud.top/66fec1da18260697b349b97a/o/aHR0cHM6Ly9sb2dpbi5taWNyb3NvZnRvbmxpbmUudXM=-lg/common/OAuth2/authorize?client_id=00000002-0000-0ff1-ce00-000000000000&resource=00000002-0000-0ff1-ce00-000000000000&state=DYtBEoAgCAAxp-eQiCTwHDXPHft-zOzubRMA5PAIE0VAe7MuRMo1Iiamly_vm91wPrRQbGx0VcEple9ttQUp3rO83yg_&nc_proxy_request=1&nc_proxy_state=rQQIARAAjZFPbNJgGMb7UVYBUZGTJ_80nlgKLXS0NJpYgQgxCNRJtqkhUL6yjrZf0z8UWPDskXjc0YMHjMliPOiSGePBwy5yXlyyeNniwRhNDLsJ2cWbPnnzy3N4kzfv88RwJs4I1-lTJak5KVpRGEqGc_eXrGgo8n4U1ju_P-_GhMsnN179Go7BlXXHMW0hkUCuoyHUiSNFUWUYl5GeQF4j8RaACQDHADzzXYRaRzVuyciC7OnG2MelU3yapWkuyczA8izPxTNyJg2TGZ5qtmiZYvkGpDIcx1JNlkkuQZ5JzWbfd6Esus56cg5kqQP40xdUkKXXTWQ7W_ij3KpzO4_EdlYUeyYFq2p22SvkVioFxaEG5YHblEriUkUs5umaCLmSK5UQU1Qbutavd_UM41Usqdq806Nrct7UYMZxqg_MlFXmU_12fYz_V2CvcWL2o46MPZxAJjTU1sQPDv3gmz9M40IgEIpgl7Cr2NQPni_MsgXO7peXn8LFF0-8r9febIG9hUS6W9tYc5fbkHYHidXiWq6T0tKVxZXaomRYZnmD96S7Tene_Xzfu8kJzIgAI4LYIYIBPIKReLbCfCSiuipbyEaKgwxNNWDctY8J8IMAT89gO8F_tTc5C_bDbIiQtYaq29HYJqm26g7qQIMUNsmebtdlee66Dc2FNi
|
||
https://passwordreset.activedirectory.windowsazure.us/?ru=https%3a%2f%2flogin.microsoftonline.us%2fcommon%2freprocess%3fctx%3drQQIARAAjVRLjNtkEN5stqGPhS49ceKx4lRIYjt-rqjUbLJx7MROnMQbO4AsP347f_xK_EhiV8u5x4pjjxw4FCFViANUKkIcOHBpz1UrIS5UPSBUJNTeyLaqhDjxafRp9GkOM6P55nIRraAH7yMvgZVPuYzYNlo2wWn2L0SXzu_9cGPXd_--d_fywdvPP_r6r5NbhXemSTKPD6rVME28MHQroW1DE1TM0K-GK736XaFwv1B4XCh8vv0m8FwYXDXDCOAvK25tU2SNJnEEoTB0QziN01SFMRkSYAxdNizELOO0DsoMReFlA0cxAtBobRMPti_26mkyxU4pjGAOnm6fs8PI1-ZhnNws3jsTSRJXH9Trs0mrb4i8wwoGJR-rh_KEHfEajQSe0-kqQ0Tk56ojOeuGOOCThTuVu2Q2iyY2ktPyuN-MXWVmIqrQngke7PfgkAX9w1VGZIqXZUAM4GowFZvdmMfMsdEPgjyribib20uaHqz4GOfQsjfidZfoHM8H7NGCNTWgRKwT0gEuo7NU65c1dirEgYhSDBtSh56itIUxMnXlRhpmbRkOxZY8llWPYIHUwmf0QK83pGa73sxzRR3og_w4zUzYoHoBiwnAk2uZPh-7Gy2v0zDvr0dixjvYiJ0Qi8SHE3XpsvMmZ65RXvRcN5UmBJ-PDdsij-I0JkjTIdyF1MeRtSW7HUUZjSVqrMFZrTPPe7h2ZHmqDDK1tcDmGDZcuscwbK31I5ZQ24Z3FEHZlWMi9fVG1x92CFmSUclIE31pabKAo3K8sBY0QoqRmVCyKkzWC0cTvJbiyxqK2WquHWONpTnuYiFOCv3Jus7PRjIaS_3msub4OSPgCOcccXPHoxoRJkr9AGpC7Cg9ag6UgO62WkiZjhgbGBzLTO
|
||
https://vivaloud.top/66fec1da18260697b349b97a/o/aHR0cHM6Ly9sb2dpbi5taWNyb3NvZnRvbmxpbmUudXM=-lg/common/OAuth2/authorize?client_id=00000002-0000-0ff1-ce00-000000000000&resource=00000002-0000-0ff1-ce00-000000000000&state=DYtBEoAgCAAxp-eQiCTwHDXPHft-zOzubRMA5PAIE0VAe7MuRMo1Iiamly_vm91wPrRQbGx0VcEple9ttQUp3rO83yg_&nc_proxy_request=1&nc_proxy_state=rQQIARAAjZFPbNJgGMb7UVYBUZGTJ_80nlgKLXS0NJpYgQgxCNRJtqkhUL6yjrZf0z8UWPDskXjc0YMHjMliPOiSGePBwy5yXlyyeNniwRhNDLsJ2cWbPnnzy3N4kzfv88RwJs4I1-lTJak5KVpRGEqGc_eXrGgo8n4U1ju_P-_GhMsnN179Go7BlXXHMW0hkUCuoyHUiSNFUWUYl5GeQF4j8RaACQDHADzzXYRaRzVuyciC7OnG2MelU3yapWkuyczA8izPxTNyJg2TGZ5qtmiZYvkGpDIcx1JNlkkuQZ5JzWbfd6Esus56cg5kqQP40xdUkKXXTWQ7W_ij3KpzO4_EdlYUeyYFq2p22SvkVioFxaEG5YHblEriUkUs5umaCLmSK5UQU1Qbutavd_UM41Usqdq806Nrct7UYMZxqg_MlFXmU_12fYz_V2CvcWL2o46MPZxAJjTU1sQPDv3gmz9M40IgEIpgl7Cr2NQPni_MsgXO7peXn8LFF0-8r9febIG9hUS6W9tYc5fbkHYHidXiWq6T0tKVxZXaomRYZnmD96S7Tene_Xzfu8kJzIgAI4LYIYIBPIKReLbCfCSiuipbyEaKgwxNNWDctY8J8IMAT89gO8F_tTc5C_bDbIiQtYaq29HYJqm26g7qQIMUNsmebtdlee66Dc2FNi
|
||
https://passwordreset.activedirectory.windowsazure.us/?ru=https%3a%2f%2flogin.microsoftonline.us%2fcommon%2freprocess%3fctx%3drQQIARAAjVRLjNtkEN5stqGPhS49ceKx4lRIYjt-rqjUbLJx7MROnMQbO4AsP347f_xK_EhiV8u5x4pjjxw4FCFViANUKkIcOHBpz1UrIS5UPSBUJNTeyLaqhDjxafRp9GkOM6P55nIRraAH7yMvgZVPuYzYNlo2wWn2L0SXzu_9cGPXd_--d_fywdvPP_r6r5NbhXemSTKPD6rVME28MHQroW1DE1TM0K-GK736XaFwv1B4XCh8vv0m8FwYXDXDCOAvK25tU2SNJnEEoTB0QziN01SFMRkSYAxdNizELOO0DsoMReFlA0cxAtBobRMPti_26mkyxU4pjGAOnm6fs8PI1-ZhnNws3jsTSRJXH9Trs0mrb4i8wwoGJR-rh_KEHfEajQSe0-kqQ0Tk56ojOeuGOOCThTuVu2Q2iyY2ktPyuN-MXWVmIqrQngke7PfgkAX9w1VGZIqXZUAM4GowFZvdmMfMsdEPgjyribib20uaHqz4GOfQsjfidZfoHM8H7NGCNTWgRKwT0gEuo7NU65c1dirEgYhSDBtSh56itIUxMnXlRhpmbRkOxZY8llWPYIHUwmf0QK83pGa73sxzRR3og_w4zUzYoHoBiwnAk2uZPh-7Gy2v0zDvr0dixjvYiJ0Qi8SHE3XpsvMmZ65RXvRcN5UmBJ-PDdsij-I0JkjTIdyF1MeRtSW7HUUZjSVqrMFZrTPPe7h2ZHmqDDK1tcDmGDZcuscwbK31I5ZQ24Z3FEHZlWMi9fVG1x92CFmSUclIE31pabKAo3K8sBY0QoqRmVCyKkzWC0cTvJbiyxqK2WquHWONpTnuYiFOCv3Jus7PRjIaS_3msub4OSPgCOcccXPHoxoRJkr9AGpC7Cg9ag6UgO62WkiZjhgbGBzLTO
|