Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
A095176990000.pdf
|
PDF document, version 1.7, 1 pages
|
initial sample
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State (copy)
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\cd87eee3-811b-410b-a8d6-3b7b5f523201.tmp
|
JSON data
|
modified
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\000003.log
|
data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG.old (copy)
|
ASCII text
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-241126000205Z-157.bmp
|
PC bitmap, Windows 3.x format, 117 x -152 x 32, cbSize 71190, bits offset 54
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages
|
SQLite 3.x database, last written using SQLite version 3040000, file counter 2, database pages 14, cookie 0x5, schema 4, UTF-8,
version-valid-for 2
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages-journal
|
SQLite Rollback Journal
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2D85F72862B55C4EADD9E66E06947F3D
|
Certificate, Version=3
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
|
Microsoft Cabinet archive data, Windows 2000/XP setup, 71954 bytes, 1 file, at 0x2c +A "authroot.stl", number 1, 6 datablocks,
0x1 compression
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2D85F72862B55C4EADD9E66E06947F3D
|
data
|
dropped
|
||
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
|
data
|
modified
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeCMapFnt23.lst (copy)
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeFnt23.lst.6152
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeSysFnt23.lst (copy)
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\Cache\AcroFnt23.lst (copy)
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\Cache\AdobeFnt23.lst.6152
|
PostScript document text
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\ACROBAT_READER_MASTER_SURFACEID
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Home_View_Surface
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Right_Sec_Surface
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_READER_LAUNCH_CARD
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Convert_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Retention
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Edit_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Home_LHP_Trial_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_More_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Intent_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Retention
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Sign_LHP_Banner
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Upsell_Cards
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\Edit_InApp_Aug2020
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\TESTING
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\SOPHIA.json
|
JSON data
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents
|
SQLite 3.x database, last written using SQLite version 3040000, file counter 19, database pages 3, cookie 0x2, schema 4, UTF-8,
version-valid-for 19
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SharedDataEvents-journal
|
SQLite Rollback Journal
|
dropped
|
||
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\UserCache64.bin
|
data
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\MSI916d.LOG
|
Unicode text, UTF-16, little-endian text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-11-25 19-02-03-053.log
|
ASCII text, with very long lines (393)
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6.log
|
ASCII text, with very long lines (393), with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrobat_sbx\acroNGLLog.txt
|
ASCII text, with CRLF line terminators
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\1de47f2f-aae6-4c78-9eef-79ce395f5fa5.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 299538
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\3e71351b-e150-4c98-a8de-e83a4ff8ae41.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 33081
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\a5096bf5-0473-4d0b-a20e-cfaf9abcc7ed.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 5111142
|
dropped
|
||
C:\Users\user\AppData\Local\Temp\acrocef_low\d52f25e8-183b-45d9-8167-07e81d141ff1.tmp
|
gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 1311022
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 23:02:36 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 23:02:36 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 23:02:36 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 23:02:36 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Mon Nov 25 23:02:36 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 220
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 221
|
ASCII text, with very long lines (391)
|
downloaded
|
||
Chrome Cache Entry: 222
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 223
|
ASCII text, with very long lines (905), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 224
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 225
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 226
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 227
|
Web Open Font Format (Version 2), TrueType, length 103152, version 3.1245
|
downloaded
|
||
Chrome Cache Entry: 228
|
ASCII text, with very long lines (2586)
|
downloaded
|
||
Chrome Cache Entry: 229
|
ASCII text, with very long lines (1694)
|
dropped
|
||
Chrome Cache Entry: 230
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 231
|
ASCII text, with very long lines (1203)
|
downloaded
|
||
Chrome Cache Entry: 232
|
ASCII text, with very long lines (557)
|
downloaded
|
||
Chrome Cache Entry: 233
|
ASCII text, with very long lines (764)
|
downloaded
|
||
Chrome Cache Entry: 234
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 235
|
ASCII text, with very long lines (65447)
|
dropped
|
||
Chrome Cache Entry: 236
|
ASCII text, with very long lines (917), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 237
|
HTML document, ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 238
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 239
|
ASCII text, with very long lines (764)
|
dropped
|
||
Chrome Cache Entry: 240
|
ASCII text, with very long lines (570)
|
dropped
|
||
Chrome Cache Entry: 241
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 242
|
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
|
downloaded
|
||
Chrome Cache Entry: 243
|
ASCII text, with very long lines (5162), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 244
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 245
|
ASCII text, with very long lines (1302)
|
dropped
|
||
Chrome Cache Entry: 246
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 247
|
Web Open Font Format (Version 2), TrueType, length 15996, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 248
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 249
|
SVG Scalable Vector Graphics image
|
dropped
|
||
Chrome Cache Entry: 250
|
ASCII text, with very long lines (915), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 251
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 252
|
ASCII text, with very long lines (2768)
|
downloaded
|
||
Chrome Cache Entry: 253
|
PNG image data, 120 x 26, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 254
|
ASCII text, with very long lines (522)
|
downloaded
|
||
Chrome Cache Entry: 255
|
Unicode text, UTF-8 text, with very long lines (6048)
|
downloaded
|
||
Chrome Cache Entry: 256
|
PNG image data, 288 x 288, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 257
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 258
|
ASCII text, with very long lines (533)
|
downloaded
|
||
Chrome Cache Entry: 259
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 260
|
Web Open Font Format (Version 2), TrueType, length 52280, version 1.0
|
downloaded
|
||
Chrome Cache Entry: 261
|
PNG image data, 3396 x 1920, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 262
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 263
|
ASCII text, with very long lines (1307), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 264
|
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 265
|
ASCII text, with very long lines (1307), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 266
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 267
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 268
|
very short file (no magic)
|
downloaded
|
||
Chrome Cache Entry: 269
|
MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
|
dropped
|
||
Chrome Cache Entry: 270
|
ASCII text, with very long lines (2768)
|
dropped
|
||
Chrome Cache Entry: 271
|
ASCII text, with very long lines (916), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 272
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 273
|
HTML document, ASCII text, with very long lines (54631)
|
downloaded
|
||
Chrome Cache Entry: 274
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 275
|
ASCII text, with very long lines (1104)
|
dropped
|
||
Chrome Cache Entry: 276
|
ASCII text, with very long lines (557)
|
dropped
|
||
Chrome Cache Entry: 277
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 278
|
ASCII text, with very long lines (570)
|
downloaded
|
||
Chrome Cache Entry: 279
|
ASCII text, with very long lines (907), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 280
|
ASCII text, with very long lines (906), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 281
|
ASCII text, with very long lines (3968)
|
dropped
|
||
Chrome Cache Entry: 282
|
ASCII text, with very long lines (2343)
|
dropped
|
||
Chrome Cache Entry: 283
|
ASCII text, with very long lines (5693)
|
downloaded
|
||
Chrome Cache Entry: 284
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 285
|
ASCII text, with very long lines (683)
|
downloaded
|
||
Chrome Cache Entry: 286
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 287
|
PNG image data, 120 x 26, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 288
|
ASCII text, with very long lines (907), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 289
|
ASCII text, with very long lines (1694)
|
downloaded
|
||
Chrome Cache Entry: 290
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 291
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 292
|
ASCII text, with very long lines (2199)
|
downloaded
|
||
Chrome Cache Entry: 293
|
ASCII text, with very long lines (5693)
|
dropped
|
||
Chrome Cache Entry: 294
|
ASCII text, with very long lines (909), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 295
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 296
|
Unicode text, UTF-8 text, with very long lines (6048)
|
dropped
|
||
Chrome Cache Entry: 297
|
ASCII text, with very long lines (2310)
|
dropped
|
||
Chrome Cache Entry: 298
|
ASCII text, with very long lines (65447)
|
downloaded
|
||
Chrome Cache Entry: 299
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 300
|
PNG image data, 155 x 155, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 301
|
HTML document, ASCII text, with very long lines (5642)
|
downloaded
|
||
Chrome Cache Entry: 302
|
ASCII text, with very long lines (469)
|
downloaded
|
||
Chrome Cache Entry: 303
|
ASCII text, with very long lines (2586)
|
dropped
|
||
Chrome Cache Entry: 304
|
PNG image data, 64 x 64, 8-bit/color RGB, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 305
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 306
|
Web Open Font Format (Version 2), TrueType, length 111740, version 3.1245
|
downloaded
|
||
Chrome Cache Entry: 307
|
ASCII text, with very long lines (4005)
|
downloaded
|
||
Chrome Cache Entry: 308
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 309
|
HTML document, ASCII text, with very long lines (724)
|
downloaded
|
||
Chrome Cache Entry: 310
|
PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 311
|
Web Open Font Format (Version 2), TrueType, length 111192, version 3.1245
|
downloaded
|
||
Chrome Cache Entry: 312
|
ASCII text, with very long lines (522)
|
dropped
|
||
Chrome Cache Entry: 313
|
HTML document, Unicode text, UTF-8 text, with very long lines (1136)
|
dropped
|
||
Chrome Cache Entry: 314
|
ASCII text
|
dropped
|
||
Chrome Cache Entry: 315
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 316
|
ASCII text, with very long lines (4005)
|
dropped
|
||
Chrome Cache Entry: 317
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 318
|
ASCII text, with very long lines (391)
|
dropped
|
||
Chrome Cache Entry: 319
|
ASCII text, with very long lines (908), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 320
|
ASCII text, with very long lines (3968)
|
downloaded
|
||
Chrome Cache Entry: 321
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 322
|
HTML document, ASCII text, with very long lines (31781), with CRLF line terminators
|
downloaded
|
||
Chrome Cache Entry: 323
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 324
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 325
|
ASCII text, with very long lines (65536), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 326
|
ASCII text, with very long lines (2199)
|
dropped
|
||
Chrome Cache Entry: 327
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 328
|
very short file (no magic)
|
dropped
|
||
Chrome Cache Entry: 329
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 330
|
ASCII text, with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 331
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 332
|
ASCII text, with very long lines (5945)
|
downloaded
|
||
Chrome Cache Entry: 333
|
PNG image data, 155 x 155, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 334
|
ASCII text, with no line terminators
|
dropped
|
||
Chrome Cache Entry: 335
|
ASCII text, with very long lines (919), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 336
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 337
|
ASCII text, with very long lines (1104)
|
downloaded
|
||
Chrome Cache Entry: 338
|
ASCII text, with very long lines (917), with no line terminators
|
dropped
|
||
Chrome Cache Entry: 339
|
ASCII text, with very long lines (469)
|
dropped
|
||
Chrome Cache Entry: 340
|
ASCII text, with very long lines (2343)
|
downloaded
|
||
Chrome Cache Entry: 341
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 342
|
SVG Scalable Vector Graphics image
|
downloaded
|
||
Chrome Cache Entry: 343
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 344
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 345
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 346
|
ASCII text, with very long lines (1302)
|
downloaded
|
||
Chrome Cache Entry: 347
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 348
|
ASCII text, with very long lines (404)
|
downloaded
|
||
Chrome Cache Entry: 349
|
PNG image data, 3396 x 1920, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 350
|
ASCII text, with very long lines (5945)
|
dropped
|
||
Chrome Cache Entry: 351
|
PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 352
|
ASCII text, with very long lines (2310)
|
downloaded
|
||
Chrome Cache Entry: 353
|
ASCII text, with very long lines (906), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 354
|
PNG image data, 64 x 64, 8-bit/color RGB, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 355
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 356
|
ASCII text, with very long lines (533)
|
dropped
|
||
Chrome Cache Entry: 357
|
HTML document, ASCII text, with very long lines (724)
|
dropped
|
||
Chrome Cache Entry: 358
|
ASCII text, with very long lines (3168), with no line terminators
|
downloaded
|
||
Chrome Cache Entry: 359
|
PNG image data, 288 x 288, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 360
|
ASCII text, with very long lines (683)
|
dropped
|
There are 188 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe" "C:\Users\user\Desktop\A095176990000.pdf"
|
||
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --backgroundcolor=16777215
|
||
C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe
|
"C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe" --type=utility --utility-sub-type=network.mojom.NetworkService
--lang=en-US --service-sandbox-type=none --log-severity=disable --user-agent-product="ReaderServices/23.6.20320 Chrome/105.0.0.0"
--lang=en-US --log-file="C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\debug.log" --mojo-platform-channel-handle=1632
--field-trial-handle=1604,i,1248562312438072360,7697734308317955672,131072 --disable-features=BackForwardCache,CalculateNativeWinOcclusion,WinUseBrowserSpellChecker
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://form.jotform.com/243286712359059
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2212 --field-trial-handle=1884,i,5779858317564637218,7785217387025978699,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US
--service-sandbox-type=audio --mojo-platform-channel-handle=4296 --field-trial-handle=1884,i,5779858317564637218,7785217387025978699,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=video_capture.mojom.VideoCaptureService
--lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=5708 --field-trial-handle=1884,i,5779858317564637218,7785217387025978699,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-ExtraBold.woff)
|
unknown
|
||
https://www.google.com/complete/search?client=help&hl=en&gs_rn=55&gs_ri=help&requiredfields=productId%3A102095&ds=help&cp=4&gs_id=g&q=youe&callback=google.sbox.p50&gs_gbg=SW6YDciouY
|
142.250.181.100
|
||
https://stats.g.doubleclick.net/g/collect
|
unknown
|
||
https://feedback.googleusercontent.com/resources/annotator.css
|
unknown
|
||
https://screenshots.jotform.com/wishbox-server.php?callback=?
|
unknown
|
||
https://apis.google.com/js/client.js
|
unknown
|
||
http://localhost.proxy.googlers.com/inapp/
|
unknown
|
||
https://stagingqual-feedback-pa-googleapis.sandbox.google.com
|
unknown
|
||
https://www.jotform.com/server.php
|
unknown
|
||
https://play.google.com/work/enroll?identifier=
|
unknown
|
||
https://policies.google.com/terms/service-specific
|
unknown
|
||
https://www.google.com/complete/search?client=help&hl=en&gs_rn=55&gs_ri=help&requiredfields=productId%3A102095&ds=help&cp=1&gs_id=11&q=M&callback=google.sbox.p50&gs_gbg=WdzN2B76gJp7oy1125C2f
|
142.250.181.100
|
||
https://cdn.jotfor.ms/assets/img/uncategorized/hipaa-badge-compliance.png
|
unknown
|
||
https://ampcid.google.com/v1/publisher:getClientId
|
unknown
|
||
https://policies.google.com/technologies/cookies
|
unknown
|
||
https://form.jotform.com/243286712359059)
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Regular.woff2
|
172.67.7.107
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Regular.woff2)
|
unknown
|
||
https://www.youtube.com/t/terms?chromeless=1&hl=
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Regular.woff)
|
unknown
|
||
https://asx-frontend-autopush.corp.google.co.uk/tools/feedback/
|
unknown
|
||
https://stats.g.doubleclick.net/j/collect
|
unknown
|
||
https://support.google.com/youtube/community?hl
|
unknown
|
||
https://upload.jotform.com/upload
|
unknown
|
||
https://www.google.com/tools/feedback
|
unknown
|
||
https://payments.google.com/manage/
|
unknown
|
||
https://supporttagging-autopush.sandbox.google.com/embed/tagging/install
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-SemiBold.woff)
|
unknown
|
||
https://sandbox.google.com/inapp/%
|
unknown
|
||
https://apis.google.com/js/api.js
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-SemiBold.woff2
|
172.67.7.107
|
||
https://www.jotform.com/uploads/amali_teressa/form_files/dicna7me.6743af5433ac69.67148542.png
|
104.19.128.105
|
||
https://www.jotform.com/hipaa
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/payments/stripeACH_plaid.svg);
|
unknown
|
||
https://www.google.com/tools/feedback/
|
unknown
|
||
https://cdn02.jotfor.ms/themes/CSS/5e6b428acc8c4e222d1beb91.css?v=3.3.58827
|
104.22.72.81
|
||
https://form.jotform.com/243286712359059
|
|||
https://schema.org
|
unknown
|
||
https://feedback2-test.corp.google.com/tools/feedback/%
|
unknown
|
||
https://screenshots.jotform.com/queue/
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/payments/collapse_icon.svg
|
unknown
|
||
https://www.google.com/favicon.ico
|
142.250.181.100
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Bold.woff)
|
unknown
|
||
https://plus.google.com
|
unknown
|
||
https://asx-frontend-autopush.corp.google.de/tools/feedback/
|
unknown
|
||
https://asx-frontend-autopush.corp.google.com/inapp/
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/payments/product_drag.png
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Thin.woff2)
|
unknown
|
||
https://feedback.googleusercontent.com/resources/render_frame2.html
|
unknown
|
||
https://sandbox.google.com/tools/feedback/%
|
unknown
|
||
https://www.google.com/accounts/recovery
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Light.woff)
|
unknown
|
||
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgdrhY6zM7txEf61nPO67_Cl7rOyCGsyEb9GaIEqe3M-p-yN2nJeBUGCXkDygK7t8xYVcKwSgu4v0_u6EZF5srUh16p0vNl1K8hBeBV8dg-KcOpt7y8vrkamMOU2HxW0STp0JDEp21FWuCWxDXZX0EtxoLPSBWR6WwhXZglXIvWXbh24ojuyofD6htY8D4/s3396/userinter.png
|
142.250.181.97
|
||
https://policies.google.com/privacy
|
unknown
|
||
https://cdn03.jotfor.ms/css/styles/payment/payment_styles.css?3.3.58827
|
104.22.73.81
|
||
https://cdn.jotfor.ms
|
unknown
|
||
https://support.google.com/embed/tagging/install
|
unknown
|
||
http://tt.epicplay.com
|
unknown
|
||
https://ncoyzfb8lzkxezpabqsramfzyqwsvyiqglnfxtub2puu0yszl0rgrd.diblethe.com/PGLujjPaqRMUNsJWxexszhFlvIvYDIEOYIWBNRNJMNMUGKJCDNBEWSYGISULTGXQYBDNZSRTLHQ
|
172.67.162.191
|
||
https://cdn.jotfor.ms/assets/img/payments/shopping_bag.svg
|
unknown
|
||
https://cdn01.jotfor.ms/stylebuilder/static/form-common.css?v=63b8091
|
104.22.72.81
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-ExtraLight.woff2)
|
unknown
|
||
https://hipaa-api.jotform.com
|
unknown
|
||
https://support.google.com/inapp/%
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Medium.woff2
|
172.67.7.107
|
||
https://cdn.jotfor.ms/assets/img/payments/product_settings.png
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/landing/opengraph.png
|
unknown
|
||
https://support.google.com/youtubemusic/community?hl
|
unknown
|
||
http://loading.retry.widdit.com/
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/payments/close_white.svg
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/payments/product_upload.svg
|
unknown
|
||
https://support.google.com/inapp/
|
unknown
|
||
https://asx-frontend-autopush.corp.google.co.uk/inapp/
|
unknown
|
||
https://apis.google.com
|
unknown
|
||
https://asx-frontend-autopush.corp.youtube.com/tools/feedback/
|
unknown
|
||
https://www.jotform.com/encrypted-forms
|
unknown
|
||
https://domains.google.com/suggest/flow
|
unknown
|
||
https://apis.google.com/js/rpc:shindig_random.js?onload=credentialservice.postMessage
|
unknown
|
||
https://feedback2-test.corp.google.com/inapp/%
|
unknown
|
||
http://x1.i.lencr.org/
|
unknown
|
||
https://a.nel.cloudflare.com/report/v4?s=PBt9vvJsm9sh3pEonp8y6HHpaBej7ai8XjrOhKqbCwmrGzrtLTHkDcMSn0DtNPkzNsjvZ1bv%2Bt3uc1SJrG6kQwWz5feyz8TSKvT4xdOuvGD5%2FE3Ss9sU2IWt5PhNcw%3D%3D
|
35.190.80.1
|
||
https://www.google.com/complete/search?client=help&hl=en&gs_rn=55&gs_ri=help&requiredfields=productId%3A102095&ds=help&cp=2&gs_id=m&q=yo&callback=google.sbox.p50&gs_gbg=xgl4KxlY2
|
142.250.181.100
|
||
https://feedback2-test.corp.googleusercontent.com/inapp/%
|
unknown
|
||
http://www.google.com/appsstatus
|
unknown
|
||
https://www.google.cn/tools/feedback/
|
unknown
|
||
https://policies.google.com/privacy/additional
|
unknown
|
||
https://asx-frontend-autopush.corp.google.de/inapp/
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Black.woff2)
|
unknown
|
||
https://support.google.com/admanager/community?hl
|
unknown
|
||
https://uberproxy-pen-redirect.corp.google.com/uberproxy/pen?url=
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/payments/product_delete.png
|
unknown
|
||
https://sandbox.google.com/inapp/
|
unknown
|
||
https://cdn.jotfor.ms/fonts/inter/fonts/Inter-Thin.woff)
|
unknown
|
||
https://sandbox.google.com/tools/feedback/
|
unknown
|
||
https://eu-api.jotform.com
|
unknown
|
||
https://td.doubleclick.net
|
unknown
|
||
https://cdn.jotfor.ms/fonts/?family=Inter&display=swap
|
172.67.7.107
|
||
https://support.google.com/accounts?hl=
|
unknown
|
||
https://cdn.jotfor.ms/assets/img/payments/sp_back_icon.svg
|
unknown
|
||
https://www.google.com/tools/feedback/%
|
unknown
|
There are 90 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
cdn01.jotfor.ms
|
104.22.72.81
|
||
a.nel.cloudflare.com
|
35.190.80.1
|
||
plus.l.google.com
|
142.250.181.110
|
||
cdn.jotfor.ms
|
172.67.7.107
|
||
support.google.com
|
172.217.17.78
|
||
www.jotform.com
|
104.19.128.105
|
||
ncoyzfb8lzkxezpabqsramfzyqwsvyiqglnfxtub2puu0yszl0rgrd.diblethe.com
|
172.67.162.191
|
||
code.jquery.com
|
151.101.130.137
|
||
play.google.com
|
172.217.19.238
|
||
www3.l.google.com
|
172.217.19.238
|
||
submit.jotform.com
|
104.19.128.105
|
||
cdn03.jotfor.ms
|
104.22.73.81
|
||
www.google.com
|
142.250.181.100
|
||
api.jotform.com
|
104.19.128.105
|
||
cdn02.jotfor.ms
|
104.22.72.81
|
||
events.jotform.com
|
104.19.128.105
|
||
files.jotform.com
|
34.54.32.121
|
||
googlehosted.l.googleusercontent.com
|
142.250.181.97
|
||
cjx.gwckpfsj.ru
|
172.67.149.185
|
||
x1.i.lencr.org
|
unknown
|
||
lh3.googleusercontent.com
|
unknown
|
||
accounts.youtube.com
|
unknown
|
||
blogger.googleusercontent.com
|
unknown
|
||
apis.google.com
|
unknown
|
There are 14 hidden domains, click here to show them.
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
104.19.129.105
|
unknown
|
United States
|
||
192.168.2.16
|
unknown
|
unknown
|
||
172.217.19.225
|
unknown
|
United States
|
||
142.250.181.110
|
plus.l.google.com
|
United States
|
||
151.101.130.137
|
code.jquery.com
|
United States
|
||
104.19.128.105
|
www.jotform.com
|
United States
|
||
35.190.80.1
|
a.nel.cloudflare.com
|
United States
|
||
151.101.194.137
|
unknown
|
United States
|
||
172.217.21.36
|
unknown
|
United States
|
||
104.22.73.81
|
cdn03.jotfor.ms
|
United States
|
||
172.67.162.191
|
ncoyzfb8lzkxezpabqsramfzyqwsvyiqglnfxtub2puu0yszl0rgrd.diblethe.com
|
United States
|
||
35.201.118.58
|
unknown
|
United States
|
||
34.54.32.121
|
files.jotform.com
|
United States
|
||
172.67.7.107
|
cdn.jotfor.ms
|
United States
|
||
142.250.181.100
|
www.google.com
|
United States
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
172.67.149.185
|
cjx.gwckpfsj.ru
|
United States
|
||
142.250.181.97
|
googlehosted.l.googleusercontent.com
|
United States
|
||
104.22.72.81
|
cdn01.jotfor.ms
|
United States
|
There are 9 hidden IPs, click here to show them.
Registry
Path
|
Value
|
Malicious
|
|
---|---|---|---|
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
aFS
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tDIText
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tFileName
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
tFileSource
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sFileAncestors
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sDI
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sDate
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
uFileSize
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
uPageCount
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
sAssetId
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c1
|
bisSharedFile
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
aFS
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
tDIText
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
tFileName
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
sDI
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
sDate
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
uFileSize
|
||
HKEY_CURRENT_USER\SOFTWARE\Adobe\Adobe Acrobat\DC\AVGeneral\cRecentFiles\c2
|
uPageCount
|
There are 8 hidden registries, click here to show them.
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://form.jotform.com/243286712359059
|
||
https://form.jotform.com/243286712359059
|
||
https://cjx.gwckpfsj.ru/MdmjiH0/
|
||
https://cjx.gwckpfsj.ru/MdmjiH0/
|
||
https://cjx.gwckpfsj.ru/MdmjiH0/
|
||
https://support.google.com/
|
||
https://accounts.google.com/v3/signin/identifier?continue=http%3A%2F%2Fsupport.google.com%2F&ec=GAZAdQ&hl=en&ifkv=AcMMx-dnaTRnZH3JS1paDObZYr2_HMbT5tKdkSeQIw8DhTO6QkOOnU6Z_t-SdDGmcmUgFrOo3GtWOg&passive=true&sjid=972810085590062350-EU&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S-1711175648%3A1732579418294812&ddm=1
|
||
https://accounts.google.com/v3/signin/identifier?continue=http%3A%2F%2Fsupport.google.com%2F&ec=GAZAdQ&hl=en&ifkv=AcMMx-dnaTRnZH3JS1paDObZYr2_HMbT5tKdkSeQIw8DhTO6QkOOnU6Z_t-SdDGmcmUgFrOo3GtWOg&passive=true&sjid=972810085590062350-EU&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S-1711175648%3A1732579418294812&ddm=1
|
||
https://accounts.google.com/v3/signin/identifier?continue=http%3A%2F%2Fsupport.google.com%2F&ec=GAZAdQ&hl=en&ifkv=AcMMx-dnaTRnZH3JS1paDObZYr2_HMbT5tKdkSeQIw8DhTO6QkOOnU6Z_t-SdDGmcmUgFrOo3GtWOg&passive=true&sjid=972810085590062350-EU&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S-1711175648%3A1732579418294812&ddm=1
|
||
https://accounts.google.com/v3/signin/identifier?continue=http%3A%2F%2Fsupport.google.com%2F&ec=GAZAdQ&hl=en&ifkv=AcMMx-dnaTRnZH3JS1paDObZYr2_HMbT5tKdkSeQIw8DhTO6QkOOnU6Z_t-SdDGmcmUgFrOo3GtWOg&passive=true&sjid=972810085590062350-EU&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S-1711175648%3A1732579418294812&ddm=1
|
||
https://accounts.google.com/v3/signin/identifier?continue=http%3A%2F%2Fsupport.google.com%2F&ec=GAZAdQ&hl=en&ifkv=AcMMx-dnaTRnZH3JS1paDObZYr2_HMbT5tKdkSeQIw8DhTO6QkOOnU6Z_t-SdDGmcmUgFrOo3GtWOg&passive=true&sjid=972810085590062350-EU&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S-1711175648%3A1732579418294812&ddm=1
|
There are 1 hidden doms, click here to show them.