Attention: please enable javascript in order to properly view and use this malware analysis service.

Incident Response

Risk Assessment

Network Behavior
Contacts 1 domain. View all details

MITRE ATT&CK™ Techniques Detection

This report has 2 indicators that were mapped to 2 attack techniques and 1 tactics. View all details

Indicators

Not all malicious and suspicious indicators are displayed. Get your own cloud service or the full version to view all details.

  • Informative 8

  • External Systems
  • General
    • Creates mutants
      details
      "\Sessions\1\BaseNamedObjects\IsoScope_ef8_IESQMMUTEX_0_519"
      "Local\InternetShortcutMutex"
      "IsoScope_ef8_IESQMMUTEX_0_331"
      "{5312EE61-79E3-4A24-BFE1-132B85B23C3A}"
      "Local\URLBLOCK_HASHFILESWITCH_MUTEX"
      "IsoScope_ef8_IESQMMUTEX_0_519"
      "Local\!BrowserEmulation!SharedMemory!Mutex"
      "Local\VERMGMTBlockListFileMutex"
      "{66D0969A-1E86-44CF-B4EC-3806DDDA3B5D}"
      "IsoScope_ef8_IESQMMUTEX_0_303"
      "Local\URLBLOCK_DOWNLOAD_MUTEX"
      "Local\ZonesCacheCounterMutex"
      "IsoScope_ef8_IE_EarlyTabStart_0xc78_Mutex"
      "UpdatingNewTabPageData"
      "Local\URLBLOCK_FILEMAPSWITCH_MUTEX_3832"
      "Local\ZonesLockedCacheCounterMutex"
      "IsoScope_ef8_ConnHashTable<3832>_HashTable_Mutex"
      "\Sessions\1\BaseNamedObjects\IsoScope_ef8_IESQMMUTEX_0_303"
      "\Sessions\1\BaseNamedObjects\IsoScope_ef8_IESQMMUTEX_0_331"
      "\Sessions\1\BaseNamedObjects\{5312EE61-79E3-4A24-BFE1-132B85B23C3A}"
      source
      Created Mutant
      relevance
      3/10
    • Drops files marked as clean
      details
      Antivirus vendors marked dropped file "urlblockindex_1_.bin" as clean (type is "data")
      source
      Binary File
      relevance
      10/10
    • Queries DNS server
      details
      "sjfklsjfkldfjklsdfjdlksjfdsljk.foo"
      source
      Network Traffic
      relevance
      1/10
      ATT&CK ID
      T1071.004 (Show technique in the MITRE ATT&CK™ matrix)
  • Installation/Persistence
    • Dropped files
      details
      "urlblockindex_1_.bin" has type "data"- [targetUID: N/A]
      "~DF7477C14CAB53F2C3.TMP" has type "data"- Location: [%TEMP%\~DF7477C14CAB53F2C3.TMP]- [targetUID: 00000000-00003832]
      "_1B3D8063-8C6E-11ED-832F-080027C7CBBE_.dat" has type "Composite Document File V2 Document Cannot read section info"- [targetUID: N/A]
      "search_2_.json" has type "JSON data"- [targetUID: N/A]
      "~DFA52D575B358FDBC3.TMP" has type "data"- Location: [%TEMP%\~DFA52D575B358FDBC3.TMP]- [targetUID: 00000000-00003832]
      "search__0633EE93-D776-472f-A0FF-E1416B8B2E3A_.ico" has type "MS Windows icon resource - 1 icon 32x32 32 bits/pixel"- [targetUID: N/A]
      "RecoveryStore._88B090C0-D917-11E7-B67B-080027A49DD6_.dat" has type "Composite Document File V2 Document Cannot read section info"- [targetUID: N/A]
      "httpErrorPagesScripts_1_" has type "UTF-8 Unicode (with BOM) text with CRLF line terminators"- [targetUID: N/A]
      "errorPageStrings_1_" has type "UTF-8 Unicode (with BOM) text with CRLF line terminators"- [targetUID: N/A]
      "NewErrorPageTemplate_1_" has type "UTF-8 Unicode (with BOM) text with CRLF line terminators"- [targetUID: N/A]
      "en-US.4" has type "data"- Location: [%LOCALAPPDATA%\Microsoft\Internet Explorer\DomainSuggestions\en-US.4]- [targetUID: 00000000-00003832]
      "favicon_3_.ico" has type "MS Windows icon resource - 1 icon 32x32 32 bits/pixel"- [targetUID: N/A]
      "2U5A99GZ.txt" has type "ASCII text"- Location: [%APPDATA%\Microsoft\Windows\Cookies\2U5A99GZ.txt]- [targetUID: 00000000-00003832]
      "~DF7056A2491F62C3A1.TMP" has type "data"- Location: [%TEMP%\~DF7056A2491F62C3A1.TMP]- [targetUID: 00000000-00003832]
      "RecoveryStore._1B3D8061-8C6E-11ED-832F-080027C7CBBE_.dat" has type "Composite Document File V2 Document Cannot read section info"- [targetUID: N/A]
      "~DFD5E078DEDE91A567.TMP" has type "data"- Location: [%TEMP%\~DFD5E078DEDE91A567.TMP]- [targetUID: 00000000-00003832]
      "2G63B2S3.txt" has type "ASCII text"- Location: [%APPDATA%\Microsoft\Windows\Cookies\2G63B2S3.txt]- [targetUID: 00000000-00003832]
      "favicon_2_.ico" has type "MS Windows icon resource - 1 icon 32x32 32 bits/pixel"- [targetUID: N/A]
      "dnserror_1_" has type "HTML document UTF-8 Unicode (with BOM) text with CRLF line terminators"- [targetUID: N/A]
      "_231037B0-8C6E-11ED-832F-080027C7CBBE_.dat" has type "Composite Document File V2 Document Cannot read section info"- [targetUID: N/A]
      source
      Binary File
      relevance
      3/10
      ATT&CK ID
      T1105 (Show technique in the MITRE ATT&CK™ matrix)
  • Network Related
    • Contacts Random Domain Names
      details
      "sjfklsjfkldfjklsdfjdlksjfdsljk.foo" seems to be random
      source
      Network Traffic
      relevance
      5/10
    • Found potential URL in binary/memory
      details
      Pattern match: "http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo./index.jsp"
      Pattern match: "http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo"
      source
      File/Memory
      relevance
      10/10
  • Unusual Characteristics
    • Drops files inside appdata directory
      details
      Dropped file: "2U5A99GZ.txt" - Location: [%APPDATA%\Microsoft\Windows\Cookies\2U5A99GZ.txt]- [targetUID: 00000000-00003832]
      Dropped file: "2G63B2S3.txt" - Location: [%APPDATA%\Microsoft\Windows\Cookies\2G63B2S3.txt]- [targetUID: 00000000-00003832]
      Dropped file: "HWIHFR72.txt" - Location: [%APPDATA%\Microsoft\Windows\Cookies\HWIHFR72.txt]- [targetUID: 00000000-00003832]
      source
      Binary File
      relevance
      3/10

Session Details

No relevant data available.

Screenshots

Loading content, please wait...

Hybrid Analysis

Tip: Click an analysed process below to view more details.

Analysed 3 processes in total.

  • rundll32.exe "%WINDIR%\System32\ieframe.dll",OpenURL C:\4a466ae2d3679a863e7c8e4e58df871b3452c37ecb7c4c42e2a29b2844efc37a.url (PID: 3072)
    • iexplore.exe http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo./index.jsp (PID: 3832)

Network Analysis

DNS Requests

Domain Address Registrar Country
sjfklsjfkldfjklsdfjdlksjfdsljk.foo - - -

Contacted Hosts

No relevant hosts were contacted.

HTTP Traffic

No relevant HTTP requests were made.

Extracted Strings

All Details:
"%WINDIR%\System32\ieframe.dll",OpenURL C:\4a466ae2d3679a863e7c8e4e58df871b3452c37ecb7c4c42e2a29b2844efc37a.url
Ansi based on Process Commandline (rundll32.exe)
$Function
Ansi based on Runtime Data (iexplore.exe )
%GUID:"Office Document Cache Handler"%
Ansi based on Runtime Data (iexplore.exe )
%LOCALAPPDATA%\Microsoft\Internet Explorer\Recovery\High\Active\{273138BD-826A-11EC-BCA6-0800278239AD}.dat
Ansi based on Runtime Data (iexplore.exe )
%LOCALAPPDATA%\ow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
Unicode based on Runtime Data (iexplore.exe )
'_00_c9_"
Ansi based on Image Processing (screen_0.png)
00060101.00060101
Ansi based on Runtime Data (iexplore.exe )
1e24f1ac-8175-49e1-91a8-a7ed66f12587
Ansi based on Runtime Data (iexplore.exe )
2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81
Ansi based on Runtime Data (iexplore.exe )
57277741-3638-4a4b-bdba-0ac6e45da56c
Ansi based on Runtime Data (iexplore.exe )
7f8e35ca-68e8-41b9-86fe-d6adc5b327e7
Ansi based on Runtime Data (iexplore.exe )
88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977
Ansi based on Runtime Data (iexplore.exe )
9e3b3947-ca5d-4614-91a2-7b624e0e7244
Ansi based on Runtime Data (iexplore.exe )
?_v'""'__"_"
Ansi based on Image Processing (screen_0.png)
?JJJl_'__
Ansi based on Image Processing (screen_2.png)
?�������
Ansi based on Runtime Data (iexplore.exe )
?���������
Ansi based on Runtime Data (iexplore.exe )
_?v__?_Ll_?__
Ansi based on Image Processing (screen_0.png)
___g]___T_hls
Ansi based on Image Processing (screen_2.png)
___sLa_ch
Ansi based on Image Processing (screen_2.png)
__ake_urethe1vebaddre_=hctpJJ=Jfkl_JfkldfJkl_dfJdlk_Jfd_lJkfoo
Ansi based on Image Processing (screen_2.png)
__ANyAB_yRslDl
Ansi based on Image Processing (screen_0.png)
__correct
Ansi based on Image Processing (screen_2.png)
__o_,_e3,__
Ansi based on Image Processing (screen_2.png)
`\??\Volume{dcbfaac3-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac4-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac7-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
AcceptLanguage
Ansi based on Runtime Data (iexplore.exe )
AdminActive
Ansi based on Runtime Data (iexplore.exe )
AdminTabProcs
Ansi based on Runtime Data (iexplore.exe )
Allow Programmatic Cut_Copy_Paste
Ansi based on Runtime Data (iexplore.exe )
Always Use My Colors
Ansi based on Runtime Data (iexplore.exe )
Always Use My Font Face
Ansi based on Runtime Data (iexplore.exe )
Always Use My Font Size
Ansi based on Runtime Data (iexplore.exe )
AlwaysShowMenus
Ansi based on Runtime Data (iexplore.exe )
Anchor Color
Ansi based on Runtime Data (iexplore.exe )
Anchor Color Hover
Ansi based on Runtime Data (iexplore.exe )
Anchor Color Visited
Ansi based on Runtime Data (iexplore.exe )
Anchor Underline
Ansi based on Runtime Data (iexplore.exe )
Attributes
Ansi based on Runtime Data (iexplore.exe )
AutoConfigURL
Ansi based on Runtime Data (iexplore.exe )
AutoDetect
Ansi based on Runtime Data (iexplore.exe )
BackupDefaultSearchScope
Ansi based on Runtime Data (iexplore.exe )
BlobCount
Ansi based on Runtime Data (iexplore.exe )
BlobLength
Ansi based on Runtime Data (iexplore.exe )
BlockType
Ansi based on Runtime Data (iexplore.exe )
BreakOnInitializeProcessFailure
Ansi based on Runtime Data (iexplore.exe )
BreakOnRecursiveDllLoads
Ansi based on Runtime Data (iexplore.exe )
CachePrefix
Ansi based on Runtime Data (iexplore.exe )
Capabilities
Ansi based on Runtime Data (iexplore.exe )
Category
Ansi based on Runtime Data (iexplore.exe )
CEIPEnable
Ansi based on Runtime Data (iexplore.exe )
Certificates
Ansi based on Runtime Data (iexplore.exe )
ChainCacheResyncFiletime
Ansi based on Runtime Data (iexplore.exe )
ChangeNotice
Ansi based on Runtime Data (iexplore.exe )
CheckSignatureDll
Ansi based on Runtime Data (iexplore.exe )
CheckSignatureRoutine
Ansi based on Runtime Data (iexplore.exe )
Cleanup HTCs
Ansi based on Runtime Data (iexplore.exe )
ClientCacheSize
Ansi based on Runtime Data (iexplore.exe )
CommercialDataOptIn
Ansi based on Runtime Data (iexplore.exe )
CompatibilityFlags
Ansi based on Runtime Data (iexplore.exe )
CryptnetPreFetchTriggerPeriodSeconds
Ansi based on Runtime Data (iexplore.exe )
CSS_Compat
Ansi based on Runtime Data (iexplore.exe )
CWDIllegalInDLLSearch
Ansi based on Runtime Data (iexplore.exe )
d775f388-5a4a-474d-8726-7b255544285f
Ansi based on Runtime Data (iexplore.exe )
DataStreamEnabledState
Ansi based on Runtime Data (iexplore.exe )
dcb453db-c652-48be-a0f8-a64459d5162e
Ansi based on Runtime Data (iexplore.exe )
DebugHeapFlags
Ansi based on Runtime Data (iexplore.exe )
DebugProcessHeapOnly
Ansi based on Runtime Data (iexplore.exe )
DecayDateQueue
Ansi based on Runtime Data (iexplore.exe )
Default_CodePage
Ansi based on Runtime Data (iexplore.exe )
Default_IEFontSizePrivate
Ansi based on Runtime Data (iexplore.exe )
DefaultConnectionSettings
Ansi based on Runtime Data (iexplore.exe )
DefaultScope
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.suppression.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.timestamp.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.webjava.enabled
Ansi based on Runtime Data (iexplore.exe )
DevicePath
Ansi based on Runtime Data (iexplore.exe )
DhcpDomain
Ansi based on Runtime Data (iexplore.exe )
DiagLevel
Ansi based on Runtime Data (iexplore.exe )
DiagMatchAnyMask
Ansi based on Runtime Data (iexplore.exe )
Disable Diagnostics Mode
Ansi based on Runtime Data (iexplore.exe )
Disable Script Debugger
Ansi based on Runtime Data (iexplore.exe )
Disable Visited Hyperlinks
Ansi based on Runtime Data (iexplore.exe )
DisableCachingOfSSLPages
Ansi based on Runtime Data (iexplore.exe )
DisableCANameConstraints
Ansi based on Runtime Data (iexplore.exe )
DisableExceptionChainValidation
Ansi based on Runtime Data (iexplore.exe )
DisableHeapLookaside
Ansi based on Runtime Data (iexplore.exe )
DisableMandatoryBasicConstraints
Ansi based on Runtime Data (iexplore.exe )
DisableMetaFiles
Ansi based on Runtime Data (iexplore.exe )
DisableScriptDebuggerIE
Ansi based on Runtime Data (iexplore.exe )
DisableSecuritySettingsCheck
Ansi based on Runtime Data (iexplore.exe )
DisableUnsupportedCriticalExtensions
Ansi based on Runtime Data (iexplore.exe )
DisableUserModeCallbackFilter
Ansi based on Runtime Data (iexplore.exe )
DisallowedCertEncodedCtl
Ansi based on Runtime Data (iexplore.exe )
DisallowedCertLastSyncTime
Ansi based on Runtime Data (iexplore.exe )
DisallowedCertSyncDeltaTime
Ansi based on Runtime Data (iexplore.exe )
Display Inline Images
Ansi based on Runtime Data (iexplore.exe )
Display Inline Videos
Ansi based on Runtime Data (iexplore.exe )
dlsplayed
Ansi based on Image Processing (screen_2.png)
DomainLimit
Ansi based on Runtime Data (iexplore.exe )
DOMStorage
Ansi based on Runtime Data (iexplore.exe )
DragDelay
Ansi based on Runtime Data (iexplore.exe )
DragScrollInset
Ansi based on Runtime Data (iexplore.exe )
eJ9"0J"_[9_CJJ_
Ansi based on Image Processing (screen_0.png)
Enable AutoImageResize
Ansi based on Runtime Data (iexplore.exe )
Enable Browser Extensions
Ansi based on Runtime Data (iexplore.exe )
EnableDhcp
Ansi based on Runtime Data (iexplore.exe )
EnableLUA
Ansi based on Runtime Data (iexplore.exe )
EnablePreBinding
Ansi based on Runtime Data (iexplore.exe )
EnableSSL3Fallback
Ansi based on Runtime Data (iexplore.exe )
EnableWeakSignatureFlags
Ansi based on Runtime Data (iexplore.exe )
ExecuteOptions
Ansi based on Runtime Data (iexplore.exe )
Expand Alt Text
Ansi based on Runtime Data (iexplore.exe )
Extension
Ansi based on Runtime Data (iexplore.exe )
FaviconPath
Ansi based on Runtime Data (iexplore.exe )
FirstRunComplete
Ansi based on Runtime Data (iexplore.exe )
FolderTypeID
Ansi based on Runtime Data (iexplore.exe )
FrameMerging
Ansi based on Runtime Data (iexplore.exe )
FrameTabWindow
Ansi based on Runtime Data (iexplore.exe )
FullScreen
Ansi based on Runtime Data (iexplore.exe )
Generation
Ansi based on Runtime Data (iexplore.exe )
GlobalFlag
Ansi based on Runtime Data (iexplore.exe )
GpSvcDebugLevel
Ansi based on Runtime Data (iexplore.exe )
h____s_k!s_k!_Jk!s_Jd!__ds!Jk!00_!nd_Jc_
Ansi based on Image Processing (screen_2.png)
HashFileVersionHighPart
Ansi based on Runtime Data (iexplore.exe )
HashFileVersionLowPart
Ansi based on Runtime Data (iexplore.exe )
HaveCreatedQuickLaunchItems
Ansi based on Runtime Data (iexplore.exe )
HelperDllName
Ansi based on Runtime Data (iexplore.exe )
http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo.
Ansi based on Submission Context (Input)
http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo./index.jsp
Ansi based on Submission Context (Input)
IEFixedFontName
Ansi based on Runtime Data (iexplore.exe )
IEFontSize
Ansi based on Runtime Data (iexplore.exe )
IEFontSizePrivate
Ansi based on Runtime Data (iexplore.exe )
IEPropFontName
Ansi based on Runtime Data (iexplore.exe )
IESansSerifFontName
Ansi based on Runtime Data (iexplore.exe )
IESerifFontName
Ansi based on Runtime Data (iexplore.exe )
IEUIFontName
Ansi based on Runtime Data (iexplore.exe )
iexplore.exe
Ansi based on Runtime Data (iexplore.exe )
Image Path
Ansi based on Runtime Data (iexplore.exe )
InitFolderHandler
Ansi based on Runtime Data (iexplore.exe )
InprocServer32
Ansi based on Runtime Data (iexplore.exe )
IntranetCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
IntranetName
Ansi based on Runtime Data (iexplore.exe )
ITBar7Layout
Ansi based on Runtime Data (iexplore.exe )
JJlJ_1_,0__"
Ansi based on Image Processing (screen_2.png)
JScriptProfileCacheEventDelay
Ansi based on Runtime Data (iexplore.exe )
KeepActivationContextsAlive
Ansi based on Runtime Data (iexplore.exe )
LanguageList
Ansi based on Runtime Data (iexplore.exe )
LastCheckForUpdateHighDateTime
Ansi based on Runtime Data (iexplore.exe )
LastCheckForUpdateLowDateTime
Ansi based on Runtime Data (iexplore.exe )
LastProcessed
Ansi based on Runtime Data (iexplore.exe )
LastTTLHighDateTime
Ansi based on Runtime Data (iexplore.exe )
LastTTLLowDateTime
Ansi based on Runtime Data (iexplore.exe )
LastUpdateHighDateTime
Ansi based on Runtime Data (iexplore.exe )
LastUpdateLowDateTime
Ansi based on Runtime Data (iexplore.exe )
LinksBandEnabled
Ansi based on Runtime Data (iexplore.exe )
LoadAppInit_DLLs
Ansi based on Runtime Data (iexplore.exe )
LoadTimeArray
Ansi based on Runtime Data (iexplore.exe )
LoadWithoutCOM
Ansi based on Runtime Data (iexplore.exe )
LocalMachineCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
LuaOffLoRIEOn
Ansi based on Runtime Data (iexplore.exe )
MachineGuid
Ansi based on Runtime Data (iexplore.exe )
MachinePreferredUILanguages
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlCountInCert
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlRetrievalByteCount
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlRetrievalCertCount
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlRetrievalCountPerChain
Ansi based on Runtime Data (iexplore.exe )
MaxDeadActivationContexts
Ansi based on Runtime Data (iexplore.exe )
MaxScriptStatements
Ansi based on Runtime Data (iexplore.exe )
MaxSockaddrLength
Ansi based on Runtime Data (iexplore.exe )
MaxSubDomains
Ansi based on Runtime Data (iexplore.exe )
MaxUrlRetrievalByteCount
Ansi based on Runtime Data (iexplore.exe )
MenuUserExpanded
Ansi based on Runtime Data (iexplore.exe )
MinimumStackCommitInBytes
Ansi based on Runtime Data (iexplore.exe )
MinimumSystemTimerResolution
Ansi based on Runtime Data (iexplore.exe )
MinRsaPubKeyBitLength
Ansi based on Runtime Data (iexplore.exe )
MinSockaddrLength
Ansi based on Runtime Data (iexplore.exe )
MiscFlags
Ansi based on Runtime Data (iexplore.exe )
Move System Caret
Ansi based on Runtime Data (iexplore.exe )
MSCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
NavTimeArray
Ansi based on Runtime Data (iexplore.exe )
Network 5
Unicode based on Runtime Data (iexplore.exe )
NextCheckForUpdateHighDateTime
Ansi based on Runtime Data (iexplore.exe )
NextCheckForUpdateLowDateTime
Ansi based on Runtime Data (iexplore.exe )
NextNTPConfigUpdateDate
Ansi based on Runtime Data (iexplore.exe )
NextUpdateDate
Ansi based on Runtime Data (iexplore.exe )
No3DBorder
Ansi based on Runtime Data (iexplore.exe )
NoInternetExplorer
Ansi based on Runtime Data (iexplore.exe )
NTPDaysSinceLastAutoMigration
Ansi based on Runtime Data (iexplore.exe )
NTPFirstRun
Ansi based on Runtime Data (iexplore.exe )
NTPGoldbarCancelText
Ansi based on Runtime Data (iexplore.exe )
NTPGoldbarOKText
Ansi based on Runtime Data (iexplore.exe )
NTPGoldbarText
Ansi based on Runtime Data (iexplore.exe )
NTPLastLaunchHighDateTime
Ansi based on Runtime Data (iexplore.exe )
NTPLastLaunchLowDateTime
Ansi based on Runtime Data (iexplore.exe )
NTPMigrationVer
Ansi based on Runtime Data (iexplore.exe )
NTPMSNintervalInDays
Ansi based on Runtime Data (iexplore.exe )
NTPOnlinePortalVer
Ansi based on Runtime Data (iexplore.exe )
NTPRestoreBarLimit
Ansi based on Runtime Data (iexplore.exe )
OverrideMemoryProtectionSetting
Ansi based on Runtime Data (iexplore.exe )
ParentFolder
Ansi based on Runtime Data (iexplore.exe )
Play_Animations
Ansi based on Runtime Data (iexplore.exe )
Play_Background_Sounds
Ansi based on Runtime Data (iexplore.exe )
PreCreate
Ansi based on Runtime Data (iexplore.exe )
PreferExternalManifest
Ansi based on Runtime Data (iexplore.exe )
PreferredUILanguages
Ansi based on Runtime Data (iexplore.exe )
Print_Background
Ansi based on Runtime Data (iexplore.exe )
PrivacyAdvanced
Ansi based on Runtime Data (iexplore.exe )
ProfileImagePath
Ansi based on Runtime Data (iexplore.exe )
ProtectedModeOffForAllZones
Ansi based on Runtime Data (iexplore.exe )
ProxyBypass
Ansi based on Runtime Data (iexplore.exe )
ProxyEnable
Ansi based on Runtime Data (iexplore.exe )
ProxyOverride
Ansi based on Runtime Data (iexplore.exe )
ProxyServer
Ansi based on Runtime Data (iexplore.exe )
PublishExpandedPath
Ansi based on Runtime Data (iexplore.exe )
RegisterAdapterName
Ansi based on Runtime Data (iexplore.exe )
RegistrationEnabled
Ansi based on Runtime Data (iexplore.exe )
RenderingLoopMaxTime
Ansi based on Runtime Data (iexplore.exe )
ResetTextSizeOnStartup
Ansi based on Runtime Data (iexplore.exe )
ResetTextSizeOnZoom
Ansi based on Runtime Data (iexplore.exe )
ResetZoomOnStartup2
Ansi based on Runtime Data (iexplore.exe )
RootDomainLimit
Ansi based on Runtime Data (iexplore.exe )
RtfConverterFlags
Ansi based on Runtime Data (iexplore.exe )
SafeDllSearchMode
Ansi based on Runtime Data (iexplore.exe )
Safety Warning Level
Ansi based on Runtime Data (iexplore.exe )
SavedLegacySettings
Ansi based on Runtime Data (iexplore.exe )
SCODEF:3832 CREDAT:275457 /prefetch:2
Ansi based on Process Commandline (iexplore.exe)
SearchPathMode
Ansi based on Runtime Data (iexplore.exe )
SecurityIdIUriCacheSize
Ansi based on Runtime Data (iexplore.exe )
SecurityProviders
Ansi based on Runtime Data (iexplore.exe )
SecuritySafe
Ansi based on Runtime Data (iexplore.exe )
SessionMerging
Ansi based on Runtime Data (iexplore.exe )
Show image placeholders
Ansi based on Runtime Data (iexplore.exe )
ShowRecursiveDllLoads
Ansi based on Runtime Data (iexplore.exe )
ShowStatusBar
Ansi based on Runtime Data (iexplore.exe )
ShutdownFlags
Ansi based on Runtime Data (iexplore.exe )
sjfklsjfkldfjklsdfjdlksjfdsljk.foo
Ansi based on PCAP Processing (PCAP)
SmoothScroll
Ansi based on Runtime Data (iexplore.exe )
SourcePath
Ansi based on Runtime Data (iexplore.exe )
SQMServiceList
Ansi based on Runtime Data (iexplore.exe )
StatusBarWeb
Ansi based on Runtime Data (iexplore.exe )
SystemSetupInProgress
Ansi based on Runtime Data (iexplore.exe )
TabProcGrowth
Ansi based on Runtime Data (iexplore.exe )
ThreadingModel
Ansi based on Runtime Data (iexplore.exe )
ThumbnailBehavior
Ansi based on Runtime Data (iexplore.exe )
TokenSize
Ansi based on Runtime Data (iexplore.exe )
TotalLimit
Ansi based on Runtime Data (iexplore.exe )
TracingFlags
Ansi based on Runtime Data (iexplore.exe )
TrackActivationContextReleases
Ansi based on Runtime Data (iexplore.exe )
TransparentEnabled
Ansi based on Runtime Data (iexplore.exe )
Transports
Ansi based on Runtime Data (iexplore.exe )
UDTAlignmentPolicy
Ansi based on Runtime Data (iexplore.exe )
UNCAsIntranet
Ansi based on Runtime Data (iexplore.exe )
UnloadEventTraceDepth
Ansi based on Runtime Data (iexplore.exe )
UrlEncoding
Ansi based on Runtime Data (iexplore.exe )
Use Anchor Hover Color
Ansi based on Runtime Data (iexplore.exe )
Use My Stylesheet
Ansi based on Runtime Data (iexplore.exe )
Use Stylesheets
Ansi based on Runtime Data (iexplore.exe )
Use_DlgBox_Colors
Ansi based on Runtime Data (iexplore.exe )
UseDelayedAcceptance
Ansi based on Runtime Data (iexplore.exe )
UseFilter
Ansi based on Runtime Data (iexplore.exe )
UseImpersonatedDeviceMap
Ansi based on Runtime Data (iexplore.exe )
UseNewJavaPlugin
Ansi based on Runtime Data (iexplore.exe )
User Stylesheet
Ansi based on Runtime Data (iexplore.exe )
UserContextListCount
Ansi based on Runtime Data (iexplore.exe )
UserContextLockCount
Ansi based on Runtime Data (iexplore.exe )
UserenvDebugLevel
Ansi based on Runtime Data (iexplore.exe )
UseSWRender
Ansi based on Runtime Data (iexplore.exe )
UseThemes
Ansi based on Runtime Data (iexplore.exe )
UuidSequenceNumber
Ansi based on Runtime Data (iexplore.exe )
WeakDSAAllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakDSAThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakECDSAAllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakECDSAThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakMD5AllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakMD5AllSha256Allow
Ansi based on Runtime Data (iexplore.exe )
WeakMD5ThirdPartyAfterTime
Ansi based on Runtime Data (iexplore.exe )
WeakMD5ThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakMD5ThirdPartySha256Allow
Ansi based on Runtime Data (iexplore.exe )
WeakRSAAllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakRsaPubKeyTime
Ansi based on Runtime Data (iexplore.exe )
WeakRSAThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1AllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1AllSha256Allow
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1ThirdPartyAfterTime
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1ThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1ThirdPartySha256Allow
Ansi based on Runtime Data (iexplore.exe )
Win8DpiScaling
Ansi based on Runtime Data (iexplore.exe )
Window Title
Ansi based on Runtime Data (iexplore.exe )
Window_Placement
Ansi based on Runtime Data (iexplore.exe )
WinSock 2.0 Provider ID
Ansi based on Runtime Data (iexplore.exe )
WpadDecision
Ansi based on Runtime Data (iexplore.exe )
WpadDecisionReason
Ansi based on Runtime Data (iexplore.exe )
WpadDecisionTime
Ansi based on Runtime Data (iexplore.exe )
WpadDetectedUrl
Ansi based on Runtime Data (iexplore.exe )
WpadNetworkName
Ansi based on Runtime Data (iexplore.exe )
WS not running
Unicode based on Runtime Data (iexplore.exe )
XDomainRequest
Ansi based on Runtime Data (iexplore.exe )
ZoomDisabled
Ansi based on Runtime Data (iexplore.exe )
ZoomFactor
Ansi based on Runtime Data (iexplore.exe )
{00000000-0000-0000-0000-000000000000}
Ansi based on Runtime Data (iexplore.exe )
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Unicode based on Runtime Data (iexplore.exe )
{1B3D8061-8C6E-11ED-832F-080027C7CBBE}
Ansi based on Runtime Data (iexplore.exe )
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
Ansi based on Runtime Data (iexplore.exe )
{A520A1A4-1780-4FF6-BD18-167343C5AF16}
Ansi based on Runtime Data (iexplore.exe )
{AEBA21FA-782A-4A90-978D-B72164C80120}
Ansi based on Runtime Data (iexplore.exe )
{DBC80044-A445-435B-BC74-9C25C1C588A9}
Ansi based on Runtime Data (iexplore.exe )
"%WINDIR%\System32\ieframe.dll",OpenURL C:\4a466ae2d3679a863e7c8e4e58df871b3452c37ecb7c4c42e2a29b2844efc37a.url
Ansi based on Process Commandline (rundll32.exe)
%LOCALAPPDATA%\Microsoft\Internet Explorer\Recovery\High\Active\{273138BD-826A-11EC-BCA6-0800278239AD}.dat
Ansi based on Runtime Data (iexplore.exe )
%LOCALAPPDATA%\ow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
Unicode based on Runtime Data (iexplore.exe )
1e24f1ac-8175-49e1-91a8-a7ed66f12587
Ansi based on Runtime Data (iexplore.exe )
57277741-3638-4a4b-bdba-0ac6e45da56c
Ansi based on Runtime Data (iexplore.exe )
7f8e35ca-68e8-41b9-86fe-d6adc5b327e7
Ansi based on Runtime Data (iexplore.exe )
9e3b3947-ca5d-4614-91a2-7b624e0e7244
Ansi based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac3-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac4-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac7-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
BreakOnInitializeProcessFailure
Ansi based on Runtime Data (iexplore.exe )
CommercialDataOptIn
Ansi based on Runtime Data (iexplore.exe )
CompatibilityFlags
Ansi based on Runtime Data (iexplore.exe )
CSS_Compat
Ansi based on Runtime Data (iexplore.exe )
d775f388-5a4a-474d-8726-7b255544285f
Ansi based on Runtime Data (iexplore.exe )
dcb453db-c652-48be-a0f8-a64459d5162e
Ansi based on Runtime Data (iexplore.exe )
DebugProcessHeapOnly
Ansi based on Runtime Data (iexplore.exe )
DefaultConnectionSettings
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.suppression.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.timestamp.11.151.2
Ansi based on Runtime Data (iexplore.exe )
Disable Script Debugger
Ansi based on Runtime Data (iexplore.exe )
DisableScriptDebuggerIE
Ansi based on Runtime Data (iexplore.exe )
DisableUnsupportedCriticalExtensions
Ansi based on Runtime Data (iexplore.exe )
DOMStorage
Ansi based on Runtime Data (iexplore.exe )
DragScrollInset
Ansi based on Runtime Data (iexplore.exe )
EnablePreBinding
Ansi based on Runtime Data (iexplore.exe )
ExecuteOptions
Ansi based on Runtime Data (iexplore.exe )
FirstRunComplete
Ansi based on Runtime Data (iexplore.exe )
FrameMerging
Ansi based on Runtime Data (iexplore.exe )
FrameTabWindow
Ansi based on Runtime Data (iexplore.exe )
FullScreen
Ansi based on Runtime Data (iexplore.exe )
h____s_k!s_k!_Jk!s_Jd!__ds!Jk!00_!nd_Jc_
Ansi based on Image Processing (screen_2.png)
HashFileVersionHighPart
Ansi based on Runtime Data (iexplore.exe )
HashFileVersionLowPart
Ansi based on Runtime Data (iexplore.exe )
http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo.
Ansi based on Submission Context (Input)
http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo./index.jsp
Ansi based on Submission Context (Input)
iexplore.exe
Ansi based on Runtime Data (iexplore.exe )
IntranetCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
JScriptProfileCacheEventDelay
Ansi based on Runtime Data (iexplore.exe )
LastProcessed
Ansi based on Runtime Data (iexplore.exe )
LoadWithoutCOM
Ansi based on Runtime Data (iexplore.exe )
LocalMachineCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
MaxScriptStatements
Ansi based on Runtime Data (iexplore.exe )
MaxSubDomains
Ansi based on Runtime Data (iexplore.exe )
MinimumStackCommitInBytes
Ansi based on Runtime Data (iexplore.exe )
MinRsaPubKeyBitLength
Ansi based on Runtime Data (iexplore.exe )
MinSockaddrLength
Ansi based on Runtime Data (iexplore.exe )
MSCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
NTPOnlinePortalVer
Ansi based on Runtime Data (iexplore.exe )
RegisterAdapterName
Ansi based on Runtime Data (iexplore.exe )
RegistrationEnabled
Ansi based on Runtime Data (iexplore.exe )
SCODEF:3832 CREDAT:275457 /prefetch:2
Ansi based on Process Commandline (iexplore.exe)
SmoothScroll
Ansi based on Runtime Data (iexplore.exe )
SQMServiceList
Ansi based on Runtime Data (iexplore.exe )
Transports
Ansi based on Runtime Data (iexplore.exe )
WeakRsaPubKeyTime
Ansi based on Runtime Data (iexplore.exe )
WinSock 2.0 Provider ID
Ansi based on Runtime Data (iexplore.exe )
{00000000-0000-0000-0000-000000000000}
Ansi based on Runtime Data (iexplore.exe )
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Unicode based on Runtime Data (iexplore.exe )
{1B3D8061-8C6E-11ED-832F-080027C7CBBE}
Ansi based on Runtime Data (iexplore.exe )
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
Ansi based on Runtime Data (iexplore.exe )
{A520A1A4-1780-4FF6-BD18-167343C5AF16}
Ansi based on Runtime Data (iexplore.exe )
{AEBA21FA-782A-4A90-978D-B72164C80120}
Ansi based on Runtime Data (iexplore.exe )
{DBC80044-A445-435B-BC74-9C25C1C588A9}
Ansi based on Runtime Data (iexplore.exe )
"%WINDIR%\System32\ieframe.dll",OpenURL C:\4a466ae2d3679a863e7c8e4e58df871b3452c37ecb7c4c42e2a29b2844efc37a.url
Ansi based on Process Commandline (rundll32.exe)
$Function
Ansi based on Runtime Data (iexplore.exe )
%GUID:"Office Document Cache Handler"%
Ansi based on Runtime Data (iexplore.exe )
%LOCALAPPDATA%\Microsoft\Internet Explorer\Recovery\High\Active\{273138BD-826A-11EC-BCA6-0800278239AD}.dat
Ansi based on Runtime Data (iexplore.exe )
%LOCALAPPDATA%\ow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
Unicode based on Runtime Data (iexplore.exe )
00060101.00060101
Ansi based on Runtime Data (iexplore.exe )
2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81
Ansi based on Runtime Data (iexplore.exe )
88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977
Ansi based on Runtime Data (iexplore.exe )
?�������
Ansi based on Runtime Data (iexplore.exe )
?���������
Ansi based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac3-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac4-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
`\??\Volume{dcbfaac7-d863-11e7-b9ff-806e6f6e6963}
Unicode based on Runtime Data (iexplore.exe )
AdminActive
Ansi based on Runtime Data (iexplore.exe )
AdminTabProcs
Ansi based on Runtime Data (iexplore.exe )
Attributes
Ansi based on Runtime Data (iexplore.exe )
AutoConfigURL
Ansi based on Runtime Data (iexplore.exe )
AutoDetect
Ansi based on Runtime Data (iexplore.exe )
BackupDefaultSearchScope
Ansi based on Runtime Data (iexplore.exe )
BlobCount
Ansi based on Runtime Data (iexplore.exe )
BlobLength
Ansi based on Runtime Data (iexplore.exe )
BreakOnInitializeProcessFailure
Ansi based on Runtime Data (iexplore.exe )
BreakOnRecursiveDllLoads
Ansi based on Runtime Data (iexplore.exe )
CachePrefix
Ansi based on Runtime Data (iexplore.exe )
Category
Ansi based on Runtime Data (iexplore.exe )
CEIPEnable
Ansi based on Runtime Data (iexplore.exe )
Certificates
Ansi based on Runtime Data (iexplore.exe )
ChainCacheResyncFiletime
Ansi based on Runtime Data (iexplore.exe )
ChangeNotice
Ansi based on Runtime Data (iexplore.exe )
CompatibilityFlags
Ansi based on Runtime Data (iexplore.exe )
CryptnetPreFetchTriggerPeriodSeconds
Ansi based on Runtime Data (iexplore.exe )
CWDIllegalInDLLSearch
Ansi based on Runtime Data (iexplore.exe )
DataStreamEnabledState
Ansi based on Runtime Data (iexplore.exe )
DebugProcessHeapOnly
Ansi based on Runtime Data (iexplore.exe )
DecayDateQueue
Ansi based on Runtime Data (iexplore.exe )
DefaultConnectionSettings
Ansi based on Runtime Data (iexplore.exe )
DefaultScope
Ansi based on Runtime Data (iexplore.exe )
DevicePath
Ansi based on Runtime Data (iexplore.exe )
DhcpDomain
Ansi based on Runtime Data (iexplore.exe )
DiagLevel
Ansi based on Runtime Data (iexplore.exe )
DiagMatchAnyMask
Ansi based on Runtime Data (iexplore.exe )
DisableCANameConstraints
Ansi based on Runtime Data (iexplore.exe )
DisableExceptionChainValidation
Ansi based on Runtime Data (iexplore.exe )
DisableHeapLookaside
Ansi based on Runtime Data (iexplore.exe )
DisableMandatoryBasicConstraints
Ansi based on Runtime Data (iexplore.exe )
DisableMetaFiles
Ansi based on Runtime Data (iexplore.exe )
DisableSecuritySettingsCheck
Ansi based on Runtime Data (iexplore.exe )
DisableUnsupportedCriticalExtensions
Ansi based on Runtime Data (iexplore.exe )
DisableUserModeCallbackFilter
Ansi based on Runtime Data (iexplore.exe )
DisallowedCertEncodedCtl
Ansi based on Runtime Data (iexplore.exe )
DisallowedCertLastSyncTime
Ansi based on Runtime Data (iexplore.exe )
DisallowedCertSyncDeltaTime
Ansi based on Runtime Data (iexplore.exe )
EnableDhcp
Ansi based on Runtime Data (iexplore.exe )
EnableLUA
Ansi based on Runtime Data (iexplore.exe )
EnableSSL3Fallback
Ansi based on Runtime Data (iexplore.exe )
EnableWeakSignatureFlags
Ansi based on Runtime Data (iexplore.exe )
ExecuteOptions
Ansi based on Runtime Data (iexplore.exe )
Extension
Ansi based on Runtime Data (iexplore.exe )
FaviconPath
Ansi based on Runtime Data (iexplore.exe )
FolderTypeID
Ansi based on Runtime Data (iexplore.exe )
FrameMerging
Ansi based on Runtime Data (iexplore.exe )
FrameTabWindow
Ansi based on Runtime Data (iexplore.exe )
FullScreen
Ansi based on Runtime Data (iexplore.exe )
Generation
Ansi based on Runtime Data (iexplore.exe )
GlobalFlag
Ansi based on Runtime Data (iexplore.exe )
GpSvcDebugLevel
Ansi based on Runtime Data (iexplore.exe )
HashFileVersionHighPart
Ansi based on Runtime Data (iexplore.exe )
HashFileVersionLowPart
Ansi based on Runtime Data (iexplore.exe )
HaveCreatedQuickLaunchItems
Ansi based on Runtime Data (iexplore.exe )
HelperDllName
Ansi based on Runtime Data (iexplore.exe )
iexplore.exe
Ansi based on Runtime Data (iexplore.exe )
Image Path
Ansi based on Runtime Data (iexplore.exe )
InitFolderHandler
Ansi based on Runtime Data (iexplore.exe )
InprocServer32
Ansi based on Runtime Data (iexplore.exe )
IntranetName
Ansi based on Runtime Data (iexplore.exe )
KeepActivationContextsAlive
Ansi based on Runtime Data (iexplore.exe )
LanguageList
Ansi based on Runtime Data (iexplore.exe )
LastCheckForUpdateHighDateTime
Ansi based on Runtime Data (iexplore.exe )
LastCheckForUpdateLowDateTime
Ansi based on Runtime Data (iexplore.exe )
LastProcessed
Ansi based on Runtime Data (iexplore.exe )
LastTTLHighDateTime
Ansi based on Runtime Data (iexplore.exe )
LastTTLLowDateTime
Ansi based on Runtime Data (iexplore.exe )
LoadAppInit_DLLs
Ansi based on Runtime Data (iexplore.exe )
LoadTimeArray
Ansi based on Runtime Data (iexplore.exe )
LuaOffLoRIEOn
Ansi based on Runtime Data (iexplore.exe )
MachineGuid
Ansi based on Runtime Data (iexplore.exe )
MachinePreferredUILanguages
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlCountInCert
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlRetrievalByteCount
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlRetrievalCertCount
Ansi based on Runtime Data (iexplore.exe )
MaxAIAUrlRetrievalCountPerChain
Ansi based on Runtime Data (iexplore.exe )
MaxDeadActivationContexts
Ansi based on Runtime Data (iexplore.exe )
MaxSockaddrLength
Ansi based on Runtime Data (iexplore.exe )
MaxUrlRetrievalByteCount
Ansi based on Runtime Data (iexplore.exe )
MinimumStackCommitInBytes
Ansi based on Runtime Data (iexplore.exe )
MinRsaPubKeyBitLength
Ansi based on Runtime Data (iexplore.exe )
MinSockaddrLength
Ansi based on Runtime Data (iexplore.exe )
MSCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
NavTimeArray
Ansi based on Runtime Data (iexplore.exe )
Network 5
Unicode based on Runtime Data (iexplore.exe )
NextCheckForUpdateHighDateTime
Ansi based on Runtime Data (iexplore.exe )
NextCheckForUpdateLowDateTime
Ansi based on Runtime Data (iexplore.exe )
NextNTPConfigUpdateDate
Ansi based on Runtime Data (iexplore.exe )
NextUpdateDate
Ansi based on Runtime Data (iexplore.exe )
NTPDaysSinceLastAutoMigration
Ansi based on Runtime Data (iexplore.exe )
NTPFirstRun
Ansi based on Runtime Data (iexplore.exe )
NTPGoldbarCancelText
Ansi based on Runtime Data (iexplore.exe )
NTPGoldbarOKText
Ansi based on Runtime Data (iexplore.exe )
NTPGoldbarText
Ansi based on Runtime Data (iexplore.exe )
NTPLastLaunchHighDateTime
Ansi based on Runtime Data (iexplore.exe )
NTPLastLaunchLowDateTime
Ansi based on Runtime Data (iexplore.exe )
NTPMigrationVer
Ansi based on Runtime Data (iexplore.exe )
NTPMSNintervalInDays
Ansi based on Runtime Data (iexplore.exe )
NTPOnlinePortalVer
Ansi based on Runtime Data (iexplore.exe )
NTPRestoreBarLimit
Ansi based on Runtime Data (iexplore.exe )
ParentFolder
Ansi based on Runtime Data (iexplore.exe )
PreCreate
Ansi based on Runtime Data (iexplore.exe )
PreferExternalManifest
Ansi based on Runtime Data (iexplore.exe )
PreferredUILanguages
Ansi based on Runtime Data (iexplore.exe )
PrivacyAdvanced
Ansi based on Runtime Data (iexplore.exe )
ProfileImagePath
Ansi based on Runtime Data (iexplore.exe )
ProtectedModeOffForAllZones
Ansi based on Runtime Data (iexplore.exe )
ProxyBypass
Ansi based on Runtime Data (iexplore.exe )
ProxyEnable
Ansi based on Runtime Data (iexplore.exe )
ProxyOverride
Ansi based on Runtime Data (iexplore.exe )
ProxyServer
Ansi based on Runtime Data (iexplore.exe )
PublishExpandedPath
Ansi based on Runtime Data (iexplore.exe )
RegisterAdapterName
Ansi based on Runtime Data (iexplore.exe )
RegistrationEnabled
Ansi based on Runtime Data (iexplore.exe )
SafeDllSearchMode
Ansi based on Runtime Data (iexplore.exe )
Safety Warning Level
Ansi based on Runtime Data (iexplore.exe )
SavedLegacySettings
Ansi based on Runtime Data (iexplore.exe )
SearchPathMode
Ansi based on Runtime Data (iexplore.exe )
SecurityIdIUriCacheSize
Ansi based on Runtime Data (iexplore.exe )
SecuritySafe
Ansi based on Runtime Data (iexplore.exe )
SessionMerging
Ansi based on Runtime Data (iexplore.exe )
ShowRecursiveDllLoads
Ansi based on Runtime Data (iexplore.exe )
ShutdownFlags
Ansi based on Runtime Data (iexplore.exe )
SourcePath
Ansi based on Runtime Data (iexplore.exe )
SystemSetupInProgress
Ansi based on Runtime Data (iexplore.exe )
TabProcGrowth
Ansi based on Runtime Data (iexplore.exe )
ThreadingModel
Ansi based on Runtime Data (iexplore.exe )
TracingFlags
Ansi based on Runtime Data (iexplore.exe )
TrackActivationContextReleases
Ansi based on Runtime Data (iexplore.exe )
TransparentEnabled
Ansi based on Runtime Data (iexplore.exe )
Transports
Ansi based on Runtime Data (iexplore.exe )
UNCAsIntranet
Ansi based on Runtime Data (iexplore.exe )
UnloadEventTraceDepth
Ansi based on Runtime Data (iexplore.exe )
UseDelayedAcceptance
Ansi based on Runtime Data (iexplore.exe )
UseFilter
Ansi based on Runtime Data (iexplore.exe )
UseImpersonatedDeviceMap
Ansi based on Runtime Data (iexplore.exe )
UserenvDebugLevel
Ansi based on Runtime Data (iexplore.exe )
UuidSequenceNumber
Ansi based on Runtime Data (iexplore.exe )
WeakDSAAllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakDSAThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakECDSAAllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakECDSAThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakMD5AllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakMD5AllSha256Allow
Ansi based on Runtime Data (iexplore.exe )
WeakMD5ThirdPartyAfterTime
Ansi based on Runtime Data (iexplore.exe )
WeakMD5ThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakMD5ThirdPartySha256Allow
Ansi based on Runtime Data (iexplore.exe )
WeakRSAAllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakRsaPubKeyTime
Ansi based on Runtime Data (iexplore.exe )
WeakRSAThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1AllFlags
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1AllSha256Allow
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1ThirdPartyAfterTime
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1ThirdPartyFlags
Ansi based on Runtime Data (iexplore.exe )
WeakSHA1ThirdPartySha256Allow
Ansi based on Runtime Data (iexplore.exe )
Window_Placement
Ansi based on Runtime Data (iexplore.exe )
WinSock 2.0 Provider ID
Ansi based on Runtime Data (iexplore.exe )
WpadDecision
Ansi based on Runtime Data (iexplore.exe )
WpadDecisionReason
Ansi based on Runtime Data (iexplore.exe )
WpadDecisionTime
Ansi based on Runtime Data (iexplore.exe )
WpadDetectedUrl
Ansi based on Runtime Data (iexplore.exe )
WpadNetworkName
Ansi based on Runtime Data (iexplore.exe )
WS not running
Unicode based on Runtime Data (iexplore.exe )
{00000000-0000-0000-0000-000000000000}
Ansi based on Runtime Data (iexplore.exe )
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Unicode based on Runtime Data (iexplore.exe )
{1B3D8061-8C6E-11ED-832F-080027C7CBBE}
Ansi based on Runtime Data (iexplore.exe )
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
Ansi based on Runtime Data (iexplore.exe )
{A520A1A4-1780-4FF6-BD18-167343C5AF16}
Ansi based on Runtime Data (iexplore.exe )
{AEBA21FA-782A-4A90-978D-B72164C80120}
Ansi based on Runtime Data (iexplore.exe )
{DBC80044-A445-435B-BC74-9C25C1C588A9}
Ansi based on Runtime Data (iexplore.exe )
'_00_c9_"
Ansi based on Image Processing (screen_0.png)
?_v'""'__"_"
Ansi based on Image Processing (screen_0.png)
_?v__?_Ll_?__
Ansi based on Image Processing (screen_0.png)
__ANyAB_yRslDl
Ansi based on Image Processing (screen_0.png)
eJ9"0J"_[9_CJJ_
Ansi based on Image Processing (screen_0.png)
1e24f1ac-8175-49e1-91a8-a7ed66f12587
Ansi based on Runtime Data (iexplore.exe )
57277741-3638-4a4b-bdba-0ac6e45da56c
Ansi based on Runtime Data (iexplore.exe )
7f8e35ca-68e8-41b9-86fe-d6adc5b327e7
Ansi based on Runtime Data (iexplore.exe )
9e3b3947-ca5d-4614-91a2-7b624e0e7244
Ansi based on Runtime Data (iexplore.exe )
AcceptLanguage
Ansi based on Runtime Data (iexplore.exe )
Allow Programmatic Cut_Copy_Paste
Ansi based on Runtime Data (iexplore.exe )
Always Use My Colors
Ansi based on Runtime Data (iexplore.exe )
Always Use My Font Face
Ansi based on Runtime Data (iexplore.exe )
Always Use My Font Size
Ansi based on Runtime Data (iexplore.exe )
AlwaysShowMenus
Ansi based on Runtime Data (iexplore.exe )
Anchor Color
Ansi based on Runtime Data (iexplore.exe )
Anchor Color Hover
Ansi based on Runtime Data (iexplore.exe )
Anchor Color Visited
Ansi based on Runtime Data (iexplore.exe )
Anchor Underline
Ansi based on Runtime Data (iexplore.exe )
BlockType
Ansi based on Runtime Data (iexplore.exe )
Capabilities
Ansi based on Runtime Data (iexplore.exe )
CheckSignatureDll
Ansi based on Runtime Data (iexplore.exe )
CheckSignatureRoutine
Ansi based on Runtime Data (iexplore.exe )
Cleanup HTCs
Ansi based on Runtime Data (iexplore.exe )
ClientCacheSize
Ansi based on Runtime Data (iexplore.exe )
CommercialDataOptIn
Ansi based on Runtime Data (iexplore.exe )
CSS_Compat
Ansi based on Runtime Data (iexplore.exe )
d775f388-5a4a-474d-8726-7b255544285f
Ansi based on Runtime Data (iexplore.exe )
dcb453db-c652-48be-a0f8-a64459d5162e
Ansi based on Runtime Data (iexplore.exe )
DebugHeapFlags
Ansi based on Runtime Data (iexplore.exe )
Default_CodePage
Ansi based on Runtime Data (iexplore.exe )
Default_IEFontSizePrivate
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.suppression.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.expiration.decision.timestamp.11.151.2
Ansi based on Runtime Data (iexplore.exe )
deployment.webjava.enabled
Ansi based on Runtime Data (iexplore.exe )
Disable Diagnostics Mode
Ansi based on Runtime Data (iexplore.exe )
Disable Script Debugger
Ansi based on Runtime Data (iexplore.exe )
Disable Visited Hyperlinks
Ansi based on Runtime Data (iexplore.exe )
DisableCachingOfSSLPages
Ansi based on Runtime Data (iexplore.exe )
DisableScriptDebuggerIE
Ansi based on Runtime Data (iexplore.exe )
Display Inline Images
Ansi based on Runtime Data (iexplore.exe )
Display Inline Videos
Ansi based on Runtime Data (iexplore.exe )
DomainLimit
Ansi based on Runtime Data (iexplore.exe )
DOMStorage
Ansi based on Runtime Data (iexplore.exe )
DragDelay
Ansi based on Runtime Data (iexplore.exe )
DragScrollInset
Ansi based on Runtime Data (iexplore.exe )
Enable AutoImageResize
Ansi based on Runtime Data (iexplore.exe )
Enable Browser Extensions
Ansi based on Runtime Data (iexplore.exe )
EnablePreBinding
Ansi based on Runtime Data (iexplore.exe )
Expand Alt Text
Ansi based on Runtime Data (iexplore.exe )
FirstRunComplete
Ansi based on Runtime Data (iexplore.exe )
IEFixedFontName
Ansi based on Runtime Data (iexplore.exe )
IEFontSize
Ansi based on Runtime Data (iexplore.exe )
IEFontSizePrivate
Ansi based on Runtime Data (iexplore.exe )
IEPropFontName
Ansi based on Runtime Data (iexplore.exe )
IESansSerifFontName
Ansi based on Runtime Data (iexplore.exe )
IESerifFontName
Ansi based on Runtime Data (iexplore.exe )
IEUIFontName
Ansi based on Runtime Data (iexplore.exe )
IntranetCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
ITBar7Layout
Ansi based on Runtime Data (iexplore.exe )
JScriptProfileCacheEventDelay
Ansi based on Runtime Data (iexplore.exe )
LastUpdateHighDateTime
Ansi based on Runtime Data (iexplore.exe )
LastUpdateLowDateTime
Ansi based on Runtime Data (iexplore.exe )
LinksBandEnabled
Ansi based on Runtime Data (iexplore.exe )
LoadWithoutCOM
Ansi based on Runtime Data (iexplore.exe )
LocalMachineCompatibilityMode
Ansi based on Runtime Data (iexplore.exe )
MaxScriptStatements
Ansi based on Runtime Data (iexplore.exe )
MaxSubDomains
Ansi based on Runtime Data (iexplore.exe )
MenuUserExpanded
Ansi based on Runtime Data (iexplore.exe )
MinimumSystemTimerResolution
Ansi based on Runtime Data (iexplore.exe )
MiscFlags
Ansi based on Runtime Data (iexplore.exe )
Move System Caret
Ansi based on Runtime Data (iexplore.exe )
No3DBorder
Ansi based on Runtime Data (iexplore.exe )
NoInternetExplorer
Ansi based on Runtime Data (iexplore.exe )
OverrideMemoryProtectionSetting
Ansi based on Runtime Data (iexplore.exe )
Play_Animations
Ansi based on Runtime Data (iexplore.exe )
Play_Background_Sounds
Ansi based on Runtime Data (iexplore.exe )
Print_Background
Ansi based on Runtime Data (iexplore.exe )
RenderingLoopMaxTime
Ansi based on Runtime Data (iexplore.exe )
ResetTextSizeOnStartup
Ansi based on Runtime Data (iexplore.exe )
ResetTextSizeOnZoom
Ansi based on Runtime Data (iexplore.exe )
ResetZoomOnStartup2
Ansi based on Runtime Data (iexplore.exe )
RootDomainLimit
Ansi based on Runtime Data (iexplore.exe )
RtfConverterFlags
Ansi based on Runtime Data (iexplore.exe )
SecurityProviders
Ansi based on Runtime Data (iexplore.exe )
Show image placeholders
Ansi based on Runtime Data (iexplore.exe )
ShowStatusBar
Ansi based on Runtime Data (iexplore.exe )
SmoothScroll
Ansi based on Runtime Data (iexplore.exe )
SQMServiceList
Ansi based on Runtime Data (iexplore.exe )
StatusBarWeb
Ansi based on Runtime Data (iexplore.exe )
ThumbnailBehavior
Ansi based on Runtime Data (iexplore.exe )
TokenSize
Ansi based on Runtime Data (iexplore.exe )
TotalLimit
Ansi based on Runtime Data (iexplore.exe )
UDTAlignmentPolicy
Ansi based on Runtime Data (iexplore.exe )
UrlEncoding
Ansi based on Runtime Data (iexplore.exe )
Use Anchor Hover Color
Ansi based on Runtime Data (iexplore.exe )
Use My Stylesheet
Ansi based on Runtime Data (iexplore.exe )
Use Stylesheets
Ansi based on Runtime Data (iexplore.exe )
Use_DlgBox_Colors
Ansi based on Runtime Data (iexplore.exe )
UseNewJavaPlugin
Ansi based on Runtime Data (iexplore.exe )
User Stylesheet
Ansi based on Runtime Data (iexplore.exe )
UserContextListCount
Ansi based on Runtime Data (iexplore.exe )
UserContextLockCount
Ansi based on Runtime Data (iexplore.exe )
UseSWRender
Ansi based on Runtime Data (iexplore.exe )
UseThemes
Ansi based on Runtime Data (iexplore.exe )
Win8DpiScaling
Ansi based on Runtime Data (iexplore.exe )
Window Title
Ansi based on Runtime Data (iexplore.exe )
XDomainRequest
Ansi based on Runtime Data (iexplore.exe )
ZoomDisabled
Ansi based on Runtime Data (iexplore.exe )
ZoomFactor
Ansi based on Runtime Data (iexplore.exe )
?JJJl_'__
Ansi based on Image Processing (screen_2.png)
___g]___T_hls
Ansi based on Image Processing (screen_2.png)
___sLa_ch
Ansi based on Image Processing (screen_2.png)
__ake_urethe1vebaddre_=hctpJJ=Jfkl_JfkldfJkl_dfJdlk_Jfd_lJkfoo
Ansi based on Image Processing (screen_2.png)
__correct
Ansi based on Image Processing (screen_2.png)
__o_,_e3,__
Ansi based on Image Processing (screen_2.png)
dlsplayed
Ansi based on Image Processing (screen_2.png)
h____s_k!s_k!_Jk!s_Jd!__ds!Jk!00_!nd_Jc_
Ansi based on Image Processing (screen_2.png)
JJlJ_1_,0__"
Ansi based on Image Processing (screen_2.png)
http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo.
Ansi based on Submission Context (Input)
http://sjfklsjfkldfjklsdfjdlksjfdsljk.foo./index.jsp
Ansi based on Submission Context (Input)
SCODEF:3832 CREDAT:275457 /prefetch:2
Ansi based on Process Commandline (iexplore.exe)
sjfklsjfkldfjklsdfjdlksjfdsljk.foo
Ansi based on PCAP Processing (PCAP)

Extracted Files

  • Informative Selection 2

    • favicon_3_.ico
      Size
      4.2KiB (4286 bytes)
      Type
      unknown
      Description
      MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
      MD5
      da597791be3b6e732f0bc8b20e38ee62 Copy MD5 to clipboard
      SHA1
      1125c45d285c360542027d7554a5c442288974de Copy SHA1 to clipboard
      SHA256
      5b2c34b3c4e8dd898b664dba6c3786e2ff9869eff55d673aa48361f11325ed07 Copy SHA256 to clipboard
    • favicon_2_.ico
      Size
      4.2KiB (4286 bytes)
      Type
      unknown
      Description
      MS Windows icon resource - 1 icon, 32x32, 32 bits/pixel
      MD5
      da597791be3b6e732f0bc8b20e38ee62 Copy MD5 to clipboard
      SHA1
      1125c45d285c360542027d7554a5c442288974de Copy SHA1 to clipboard
      SHA256
      5b2c34b3c4e8dd898b664dba6c3786e2ff9869eff55d673aa48361f11325ed07 Copy SHA256 to clipboard

Notifications

  • Runtime

  • Not all Falcon MalQuery lookups completed in time
  • Not all sources for indicator ID "binary-0" are available in the report
  • Not all sources for indicator ID "mutant-0" are available in the report
  • Some low-level data is hidden, as this is only a slim report
  • This URL analysis has missing honeyclient data

Community