

HTTP traffic detected: GET /en HT TP/1.1Acce pt: text/h tml, appli cation/xht ml+xml, im age/jxr, * /*Accept-L anguage: e n-USUser-A gent: Mozi lla/5.0 (W indows NT 10.0 WOW6 4 Trident /7.0 rv:1 1.0) like GeckoAccep t-Encoding : gzip, de flateHost: outdatedb Connection : Keep-Ali ve 0) like Ge ckoAccept- Encoding: gzip, defl ateHost: o utdatedbro Co nnection: Keep-Alive HTTP traffic detected: GET / HTTP /1.1Accept : text/htm l, applica tion/xhtml +xml, imag e/jxr, */* Accept-Lan guage: en- USUser-Age nt: Mozill a/5.0 (Win dows NT 10. HTTP Parser: No
HTTP Parser: Iframe src : accounts.g / o/oauth2/i frame#orig in=https%3 A%2F%2Fjum &rpcToken= 1018589306. HTTP Parser: Iframe src : accounts.g / o/oauth2/i frame#orig in=https%3 A%2F%2Fjum &rpcToken= 90368545.5 7334526 HTTP Parser: Iframe src : accounts.g / o/oauth2/i frame#orig in=https%3 A%2F%2Fjum &rpcToken= 1124225086. HTTP Parser: Iframe src : accounts.g / o/oauth2/i frame#orig in=https%3 A%2F%2Fjum &rpcToken= 1516596716. Phishing site detected (based on logo template match) Standard Non-Application Layer Protocol 4 Report size getting too big, too many NtQueryAttributesFile calls found.Report size getting too big, too many NtOpenFile calls found.Report size getting too big, too many NtDeviceIoControlFile calls found.

Report size getting too big, too many NtCreateFile calls found.Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, ielowutil.exe, WMIADAP.exe, conhost.exe, CompatTelRunner.exe.
