Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
Acrobat_Set-Up.exe

Overview

General Information

Sample name:Acrobat_Set-Up.exe
Analysis ID:1408868
MD5:8d7d40664e5e9fc996304fda10ae7711
SHA1:0b2c3803d9343b9728111281c16bcb6cc9770b51
SHA256:3525e47b1e0f59a161a95093ab177f641b075073790ad908dc0b540ac71dc260
Infos:

Detection

Score:56
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Icon mismatch, binary includes an icon from a different legit application in order to fool users
Downloads suspicious files via Chrome
Query firmware table information (likely to detect VMs)
Creates a process in suspended mode (likely to inject code)
Found a high number of Window / User specific system calls (may be a loop to detect user behavior)
May sleep (evasive loops) to hinder dynamic analysis
Monitors certain registry keys / values for changes (often done to protect autostart functionality)
PE file contains an invalid checksum
PE file contains executable resources (Code or Archives)
Queries disk information (often used to detect virtual machines)
Queries information about the installed CPU (vendor, model number etc)
Queries keyboard layouts
Queries sensitive Operating System Information (via WMI, Win32_ComputerSystem, often done to detect virtual machines)
Queries sensitive processor information (via WMI, Win32_Processor, often done to detect virtual machines)
Queries the volume information (name, serial number etc) of a device
Sigma detected: Suspicious Execution From GUID Like Folder Names
Tries to load missing DLLs
Uses 32bit PE files
Very long cmdline option found, this is very uncommon (may be encrypted or packed)

Classification

  • System is w10x64_ra
  • Acrobat_Set-Up.exe (PID: 2012 cmdline: C:\Users\user\Desktop\Acrobat_Set-Up.exe MD5: 8D7D40664E5E9FC996304FDA10AE7711)
    • msedgewebview2.exe (PID: 408 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=MojoIpcz --mojo-named-platform-channel-pipe=2012.6436.7181158753740944932 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 5388 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x15c,0x160,0x164,0x138,0x16c,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 6924 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:2 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 6876 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:3 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 5612 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2352 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:8 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 7284 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052292660 --launch-time-ticks=5373013704 --mojo-platform-channel-handle=3436 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:1 MD5: 9909D978B39FB7369F511D8506C17CA0)
    • msedgewebview2.exe (PID: 6492 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=MojoIpcz --mojo-named-platform-channel-pipe=2012.6436.11210826955497310688 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 3860 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x174,0x178,0x17c,0x134,0x180,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 6916 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1768 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:2 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 7036 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:3 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 4872 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:8 MD5: 9909D978B39FB7369F511D8506C17CA0)
      • msedgewebview2.exe (PID: 7296 cmdline: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052289267 --launch-time-ticks=5373023488 --mojo-platform-channel-handle=3388 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:1 MD5: 9909D978B39FB7369F511D8506C17CA0)
    • cmd.exe (PID: 876 cmdline: C:\Windows\System32\cmd.exe" /C start microsoft-edge:"https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee MD5: D0FCE3AFA6AA1D58CE9FA336CC2B675B)
      • conhost.exe (PID: 5076 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • msedge.exe (PID: 8092 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --single-argument microsoft-edge:https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee MD5: 69222B8101B0601CC6663F8381E7E00F)
        • msedge.exe (PID: 756 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=1992,i,16464347968842645331,5301158859442629810,262144 /prefetch:3 MD5: 69222B8101B0601CC6663F8381E7E00F)
  • msedge.exe (PID: 3912 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --flag-switches-begin --flag-switches-end --disable-nacl --do-not-de-elevate --single-argument microsoft-edge:https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee MD5: 69222B8101B0601CC6663F8381E7E00F)
    • msedge.exe (PID: 3492 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:3 MD5: 69222B8101B0601CC6663F8381E7E00F)
    • msedge.exe (PID: 4808 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=6608 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:8 MD5: 69222B8101B0601CC6663F8381E7E00F)
    • msedge.exe (PID: 8152 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6924 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:8 MD5: 69222B8101B0601CC6663F8381E7E00F)
  • cleanup
No yara matches

System Summary

barindex
Source: Process startedAuthor: Nasreddine Bencherchali (Nextron Systems): Data: Command: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=MojoIpcz --mojo-named-platform-channel-pipe=2012.6436.11210826955497310688, CommandLine: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=MojoIpcz --mojo-named-platform-channel-pipe=2012.6436.11210826955497310688, CommandLine|base64offset|contains: )^, Image: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe, NewProcessName: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe, OriginalFileName: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe, ParentCommandLine: C:\Users\user\Desktop\Acrobat_Set-Up.exe, ParentImage: C:\Users\user\Desktop\Acrobat_Set-Up.exe, ParentProcessId: 2012, ParentProcessName: Acrobat_Set-Up.exe, ProcessCommandLine: "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=MojoIpcz --mojo-named-platform-channel-pipe=2012.6436.11210826955497310688, ProcessId: 6492, ProcessName: msedgewebview2.exe
No Snort rule has matched

Click to jump to signature section

Show All Signature Results
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeRegistry value created: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION Acrobat_Set-Up.exe
Source: Acrobat_Set-Up.exeStatic PE information: EXECUTABLE_IMAGE, 32BIT_MACHINE
Source: Acrobat_Set-Up.exeStatic PE information: certificate valid
Source: unknownHTTPS traffic detected: 108.139.29.98:443 -> 192.168.2.16:49720 version: TLS 1.2
Source: unknownHTTPS traffic detected: 108.139.29.98:443 -> 192.168.2.16:49720 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49731 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49732 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49733 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49734 version: TLS 1.2
Source: unknownHTTPS traffic detected: 3.211.174.17:443 -> 192.168.2.16:49735 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.24.84:443 -> 192.168.2.16:49747 version: TLS 1.2
Source: Acrobat_Set-Up.exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, TERMINAL_SERVER_AWARE
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Local State
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\Adobe\
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\68238525-71ed-4ccf-a81e-351aea99d4f5.tmp
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownTCP traffic detected without corresponding DNS query: 13.225.63.17
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownDNS traffic detected: queries for: chrome.cloudflare-dns.com
Source: unknownNetwork traffic detected: HTTP traffic on port 49708 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49865
Source: unknownNetwork traffic detected: HTTP traffic on port 49817 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49864
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49863
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49862
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49861
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49860
Source: unknownNetwork traffic detected: HTTP traffic on port 49926 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49800 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49932 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49898 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49875 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49795 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49859
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49858
Source: unknownNetwork traffic detected: HTTP traffic on port 49881 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49857
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49856
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49733
Source: unknownNetwork traffic detected: HTTP traffic on port 49841 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49854
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49853
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49731
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 49732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49850
Source: unknownNetwork traffic detected: HTTP traffic on port 49858 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49893 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49784 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49915 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49909 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49823 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49849
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49848
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 49886 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 49869 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49841
Source: unknownNetwork traffic detected: HTTP traffic on port 49731 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49840
Source: unknownNetwork traffic detected: HTTP traffic on port 49748 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49892 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49828 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49719
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 49904 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49715 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49715
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49835
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 49887 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 49864 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49927 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49822 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49870 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49910 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49853 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 49938 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49828
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49827
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49826
Source: unknownNetwork traffic detected: HTTP traffic on port 49754 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49825
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49824
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49823
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49822
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49786
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49785
Source: unknownNetwork traffic detected: HTTP traffic on port 49922 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49781
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49780
Source: unknownNetwork traffic detected: HTTP traffic on port 49916 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49785 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49868 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49885 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49899
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49898
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49897
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49896
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49895
Source: unknownNetwork traffic detected: HTTP traffic on port 49862 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49894
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49893
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49892
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49891
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49890
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49897 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49780 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49879 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49911 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49851 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49905 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49888
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49887
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49886
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49885
Source: unknownNetwork traffic detected: HTTP traffic on port 49863 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49884
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49883
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49882
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49881
Source: unknownNetwork traffic detected: HTTP traffic on port 49928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49840 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49741 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49857 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49896 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49719 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49797 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49801 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49824 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49879
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49878
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49877
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49876
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49754
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49875
Source: unknownNetwork traffic detected: HTTP traffic on port 49891 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49874
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49873
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49872
Source: unknownNetwork traffic detected: HTTP traffic on port 49818 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49871
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49870
Source: unknownNetwork traffic detected: HTTP traffic on port 49835 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49917 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49786 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49874 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49934 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49869
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 49792 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49868
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49867
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49866
Source: unknownNetwork traffic detected: HTTP traffic on port 49890 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49781 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49878 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49912 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49803 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49935 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49826 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49906 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49849 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49900 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49866 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49820 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49929 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49872 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49861 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49901 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49924 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49819 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49918 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49873 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49930 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49850 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49734 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49797
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49795
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49856 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49895 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49913 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49825 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49884 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49907 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49867 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49821
Source: unknownNetwork traffic detected: HTTP traffic on port 49865 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49820
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49859 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49871 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49894 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49819
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49818
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49817
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49938
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49816
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49937
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49815
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49936
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49935
Source: unknownNetwork traffic detected: HTTP traffic on port 49902 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49934
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49932
Source: unknownNetwork traffic detected: HTTP traffic on port 49816 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49931
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49930
Source: unknownNetwork traffic detected: HTTP traffic on port 49919 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49936 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49827 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49876 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49809
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49929
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49928
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49927
Source: unknownNetwork traffic detected: HTTP traffic on port 49848 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49882 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49926
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49803
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49924
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49801
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49922
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49800
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49920
Source: unknownNetwork traffic detected: HTTP traffic on port 49821 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49815 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49877 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49854 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49914 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49908 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49919
Source: unknownNetwork traffic detected: HTTP traffic on port 49937 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49918
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49917
Source: unknownNetwork traffic detected: HTTP traffic on port 49809 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49860 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49883 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49916
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49915
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49914
Source: unknownNetwork traffic detected: HTTP traffic on port 49778 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49913
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49912
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49911
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49910
Source: unknownNetwork traffic detected: HTTP traffic on port 49931 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49899 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49909
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49908
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49907
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49906
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49905
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49904
Source: unknownNetwork traffic detected: HTTP traffic on port 49920 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49903
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49902
Source: unknownNetwork traffic detected: HTTP traffic on port 49903 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49901
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49900
Source: unknownNetwork traffic detected: HTTP traffic on port 49888 -> 443
Source: unknownHTTPS traffic detected: 108.139.29.98:443 -> 192.168.2.16:49720 version: TLS 1.2
Source: unknownHTTPS traffic detected: 108.139.29.98:443 -> 192.168.2.16:49720 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49731 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49732 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49733 version: TLS 1.2
Source: unknownHTTPS traffic detected: 18.164.124.172:443 -> 192.168.2.16:49734 version: TLS 1.2
Source: unknownHTTPS traffic detected: 3.211.174.17:443 -> 192.168.2.16:49735 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.24.84:443 -> 192.168.2.16:49747 version: TLS 1.2

System Summary

barindex
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeFile dump: C:\Users\user\AppData\Local\Temp\scoped_dir3912_427663208\CRX_INSTALL\eventpage_bin_prod.jsJump to dropped file
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeFile dump: C:\Users\user\AppData\Local\Temp\scoped_dir3912_427663208\CRX_INSTALL\page_embed_script.jsJump to dropped file
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeFile dump: C:\Users\user\AppData\Local\Temp\scoped_dir3912_386857987\CRX_INSTALL\content.jsJump to dropped file
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeFile dump: C:\Users\user\AppData\Local\Temp\scoped_dir3912_386857987\CRX_INSTALL\content_new.jsJump to dropped file
Source: Acrobat_Set-Up.exeStatic PE information: Resource name: DICTIONARY type: DOS executable (COM, 0x8C-variant)
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: kernel.appcore.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: uxtheme.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: windows.storage.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: wldp.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: iphlpapi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: dhcpcsvc.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: wbemcomn.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: msxml3.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: amsi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: userenv.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: profapi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: version.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: sensapi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: sensapi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: explorerframe.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: textinputframework.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: coreuicomponents.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: coremessaging.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ntmarta.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: wintypes.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: wintypes.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: wintypes.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: propsys.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: edputil.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: sspicli.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: version.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ntmarta.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.profile.platformdiagnosticsandusagedatasettings.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: policymanager.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kbdus.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.profile.platformdiagnosticsandusagedatasettings.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: policymanager.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: userenv.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: gpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wkscli.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netutils.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mdmregistration.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mdmregistration.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: omadmapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: powrprof.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptsp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dmcmnutils.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iri.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: umpdc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dsreg.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptsp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: profapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: powrprof.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: umpdc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwrite.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: nlaapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iphlpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc6.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dnsapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: textinputframework.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: coreuicomponents.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: coremessaging.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wintypes.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wintypes.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wintypes.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.storage.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wldp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.ui.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windowmanagementapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: inputhost.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: twinapi.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: twinapi.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: propsys.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: profapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wtsapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winsta.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mscms.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: coloradapterclient.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winhttp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.security.authentication.web.core.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iertutil.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: onecorecommonproxystub.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dxgi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: resourcepolicyclient.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mf.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mfplat.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: rtworkq.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: hevcdecoder.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dolbydecmft.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mfperfhelper.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: devobj.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwmapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptsp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: rsaenh.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dataexchange.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: d3d11.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dcomp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dxgi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uiautomationcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: atlthunk.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: oleacc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: directmanipulation.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: d3d11.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: d3d10warp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dxcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dcomp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dbghelp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwrite.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: policymanager.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wldp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: version.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ntmarta.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.profile.platformdiagnosticsandusagedatasettings.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: policymanager.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kbdus.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.profile.platformdiagnosticsandusagedatasettings.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: policymanager.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: userenv.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: gpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wkscli.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netutils.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mdmregistration.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mdmregistration.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: omadmapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: powrprof.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptsp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dmcmnutils.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iri.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: umpdc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dsreg.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptsp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: profapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: powrprof.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: umpdc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwrite.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: nlaapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iphlpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc6.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dnsapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: textinputframework.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: coreuicomponents.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: coremessaging.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wintypes.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wintypes.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wintypes.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.storage.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wldp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.ui.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windowmanagementapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: inputhost.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: twinapi.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: twinapi.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: propsys.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: profapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wtsapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winsta.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mscms.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: coloradapterclient.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winhttp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.security.authentication.web.core.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iertutil.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: onecorecommonproxystub.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dxgi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: resourcepolicyclient.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mf.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mfplat.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: rtworkq.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: hevcdecoder.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dolbydecmft.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mfperfhelper.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwmapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: devobj.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptsp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: rsaenh.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dataexchange.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: d3d11.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dcomp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dxgi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netapi32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uiautomationcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: atlthunk.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: oleacc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: directmanipulation.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: d3d11.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: d3d10warp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dxcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dcomp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dbghelp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwrite.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: policymanager.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: msvcp110_win.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wldp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: cryptbase.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: dbghelp.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: secur32.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: winhttp.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: mswsock.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: winnsi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: dhcpcsvc6.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: msasn1.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: webio.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: cryptsp.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: rsaenh.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: cryptbase.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: dnsapi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: rasadhlp.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: fwpuclnt.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: wtsapi32.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: winsta.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: schannel.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: mskeyprotect.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ntasn1.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ncrypt.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ncryptsslp.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: gpapi.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: dpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwritecore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: hevcdecoder.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: tenantrestrictionsplugin.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: vaultcli.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: aadwamextension.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: sspicli.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.web.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netprofm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: npmproxy.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wevtapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.userprofile.diagnosticssettings.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: secur32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iphlpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc6.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dnsapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: nlaapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mswsock.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: rasadhlp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ntmarta.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ncrypt.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ntasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ncryptprov.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: profapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: kernel.appcore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: uxtheme.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: iphlpapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc6.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dhcpcsvc.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dnsapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: nlaapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: mswsock.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: rasadhlp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ntmarta.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ncrypt.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ntasn1.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: ncryptprov.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: profapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: winmm.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dbghelp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.diagnostics.telemetry.platformtelemetryclient.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: bitsproxy.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dbghelp.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.userprofile.diagnosticssettings.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: secur32.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: vaultcli.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: sspicli.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: hevcdecoder.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: tenantrestrictionsplugin.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.system.diagnostics.telemetry.platformtelemetryclient.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: windows.web.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: netprofm.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: npmproxy.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: bitsproxy.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: edputil.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: urlmon.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: iertutil.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: srvcli.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: netutils.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: windows.staterepositoryps.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: appresolver.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: bcp47langs.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: slc.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: sppc.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: onecorecommonproxystub.dll
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSection loaded: onecoreuapcommonproxystub.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwritecore.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: dwmapi.dll
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeSection loaded: wevtapi.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: uxtheme.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: windows.storage.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: wldp.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: propsys.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: urlmon.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: iertutil.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: srvcli.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: netutils.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: ieframe.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: netapi32.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: version.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: userenv.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: winhttp.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: wkscli.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: windows.staterepositoryps.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: edputil.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: secur32.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: sspicli.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: mlang.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: wininet.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: profapi.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: policymanager.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: msvcp110_win.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: msasn1.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: cryptsp.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: rsaenh.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: cryptbase.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: gpapi.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: wintypes.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: onecorecommonproxystub.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: onecoreuapcommonproxystub.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: pcacli.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: mpr.dll
Source: C:\Windows\SysWOW64\cmd.exeSection loaded: sfc_os.dll
Source: Acrobat_Set-Up.exeStatic PE information: EXECUTABLE_IMAGE, 32BIT_MACHINE
Source: classification engineClassification label: mal56.evad.winEXE@87/319@29/80
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeFile created: C:\Users\user\AppData\Roaming\com.adobe.dunamis\f65a88c9-12b3-4201-a633-87cf11b91fa8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeMutant created: NULL
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:5076:120:WilError_03
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeFile created: C:\Users\user\AppData\Local\Temp\CreativeCloud
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeFile read: C:\Users\user\Desktop\desktop.ini
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeKey opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile read: C:\Windows\System32\drivers\etc\hosts
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile read: C:\Windows\System32\drivers\etc\hosts
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile read: C:\Windows\System32\drivers\etc\hosts
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile read: C:\Windows\System32\drivers\etc\hosts
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeFile read: C:\Users\user\Desktop\Acrobat_Set-Up.exe
Source: unknownProcess created: C:\Users\user\Desktop\Acrobat_Set-Up.exe C:\Users\user\Desktop\Acrobat_Set-Up.exe
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=MojoIpcz --mojo-named-platform-channel-pipe=2012.6436.7181158753740944932
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=MojoIpcz --mojo-named-platform-channel-pipe=2012.6436.11210826955497310688
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x15c,0x160,0x164,0x138,0x16c,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x174,0x178,0x17c,0x134,0x180,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1768 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2352 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052292660 --launch-time-ticks=5373013704 --mojo-platform-channel-handle=3436 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:1
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052289267 --launch-time-ticks=5373023488 --mojo-platform-channel-handle=3388 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:1
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x15c,0x160,0x164,0x138,0x16c,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2352 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052292660 --launch-time-ticks=5373013704 --mojo-platform-channel-handle=3436 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:1
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x174,0x178,0x17c,0x134,0x180,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1768 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052289267 --launch-time-ticks=5373023488 --mojo-platform-channel-handle=3388 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:1
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Windows\SysWOW64\cmd.exe C:\Windows\System32\cmd.exe" /C start microsoft-edge:"https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --single-argument microsoft-edge:https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=1992,i,16464347968842645331,5301158859442629810,262144 /prefetch:3
Source: unknownProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --flag-switches-begin --flag-switches-end --disable-nacl --do-not-de-elevate --single-argument microsoft-edge:https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:3
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=6608 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6924 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:8
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Windows\SysWOW64\cmd.exe C:\Windows\System32\cmd.exe" /C start microsoft-edge:"https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --single-argument microsoft-edge:https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=1992,i,16464347968842645331,5301158859442629810,262144 /prefetch:3
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2272 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:3
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=6608 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6924 --field-trial-handle=2008,i,14748627208075227203,11121797941367171544,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeKey opened: HKEY_CURRENT_USER\Software\Microsoft\Office\16.0\Common\Links
Source: Acrobat_Set-Up.exeStatic PE information: certificate valid
Source: Acrobat_Set-Up.exeStatic file information: File size 3160024 > 1048576
Source: Acrobat_Set-Up.exeStatic PE information: Raw size of UPX1 is bigger than: 0x100000 < 0x2f5600
Source: Acrobat_Set-Up.exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, TERMINAL_SERVER_AWARE
Source: Acrobat_Set-Up.exeStatic PE information: real checksum: 0x311b10 should be: 0x30d262
Source: initial sampleStatic PE information: section name: UPX0
Source: initial sampleStatic PE information: section name: UPX1

Hooking and other Techniques for Hiding and Protection

barindex
Source: initial sampleIcon embedded in binary file: icon matches a legit application icon: download (133).png
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeRegistry key monitored for changes: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeRegistry key monitored for changes: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\ROOT
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeRegistry key monitored for changes: HKEY_CURRENT_USER_Classes
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeRegistry key monitored for changes: HKEY_CURRENT_USER_Classes
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeRegistry key monitored for changes: HKEY_CURRENT_USER_Classes
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeRegistry key monitored for changes: HKEY_CURRENT_USER_Classes
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess information set: NOOPENFILEERRORBOX

Malware Analysis System Evasion

barindex
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeSystem information queried: FirmwareTableInformation
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWindow / User API: threadDelayed 872
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWindow / User API: threadDelayed 1653
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWindow / User API: threadDelayed 6093
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7964Thread sleep time: -30000s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7888Thread sleep time: -43600s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7952Thread sleep time: -60000s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7924Thread sleep time: -113000s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7952Thread sleep time: -90000s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7924Thread sleep time: -37500s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7888Thread sleep time: -82650s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exe TID: 7888Thread sleep time: -304650s >= -30000s
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeFile opened: PhysicalDrive0
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeKey opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeKey opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystem
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_ComputerSystemProduct
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT * FROM Win32_Processor
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Code Cache\wasm FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Code Cache\js FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Code Cache\js FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Code Cache\wasm FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\blob_storage\ad23257b-0811-42db-9dd7-636bf19651be FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Cache\Cache_Data FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Cache\Cache_Data FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile Volume queried: C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\blob_storage\ed7bb900-183a-40a9-8949-2d1e27389cb4 FullSizeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Local State
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\Adobe\
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\68238525-71ed-4ccf-a81e-351aea99d4f5.tmp
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeFile opened: C:\Users\user\
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess information queried: ProcessInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x15c,0x160,0x164,0x138,0x16c,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2352 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052292660 --launch-time-ticks=5373013704 --mojo-platform-channel-handle=3436 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=MojoIpcz /prefetch:1
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=Win64 "--annotation=prod=Edge WebView2" --annotation=ver=117.0.2045.47 --initial-client-data=0x174,0x178,0x17c,0x134,0x180,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1768 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-GB --service-sandbox-type=service --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView" --webview-exe-name=Acrobat_Set-Up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-GB --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_CH" --time-ticks-at-unix-epoch=-1710407052289267 --launch-time-ticks=5373023488 --mojo-platform-channel-handle=3388 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=MojoIpcz /prefetch:1
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Windows\SysWOW64\cmd.exe C:\Windows\System32\cmd.exe" /C start microsoft-edge:"https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --single-argument microsoft-edge:https://ims-na1.adobelogin.com/ims/authorize?client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cread_organizations%2Csao.cce_private%2Cadditional_info.account_type&locale=en_US&redirect_uri=https%3A%2F%2Fauth.services.adobe.com%2Fen_US%2Fdeeplink.html%3Fdelegated_request_id%3Db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3DCreativeCloudInstallerWeb_v1_0%26deeplink%3Ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=mojoipcz --mojo-named-platform-channel-pipe=2012.6436.7181158753740944932
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --embedded-browser-webview=1 --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --noerrdialogs --embedded-browser-webview-dpi-awareness=1 --enable-features=mojoipcz --mojo-named-platform-channel-pipe=2012.6436.11210826955497310688
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview\crashpad --annotation=isofficialbuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=win64 "--annotation=prod=edge webview2" --annotation=ver=117.0.2045.47 --initial-client-data=0x15c,0x160,0x164,0x138,0x16c,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview\crashpad --annotation=isofficialbuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=win64 "--annotation=prod=edge webview2" --annotation=ver=117.0.2045.47 --initial-client-data=0x174,0x178,0x17c,0x134,0x180,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=waaaaaaaaadgaaamaaaaaaaaaaaaaaaaaabgaaaaaaa4aaaaaaaaaaaaaaaeaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaagaaaaaaaaaayaaaaaaaaaagaaaaaaaaacaaaaaaaaaaiaaaaaaaaaa== --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=waaaaaaaaadgaaamaaaaaaaaaaaaaaaaaabgaaaaaaa4aaaaaaaaaaaaaaaeaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaagaaaaaaaaaayaaaaaaaaaagaaaaaaaaacaaaaaaaaaaiaaaaaaaaaa== --mojo-platform-channel-handle=1768 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.storageservice --lang=en-gb --service-sandbox-type=service --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2352 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.storageservice --lang=en-gb --service-sandbox-type=service --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_ch" --time-ticks-at-unix-epoch=-1710407052292660 --launch-time-ticks=5373013704 --mojo-platform-channel-handle=3436 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:1
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_ch" --time-ticks-at-unix-epoch=-1710407052289267 --launch-time-ticks=5373023488 --mojo-platform-channel-handle=3388 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:1
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview\crashpad --annotation=isofficialbuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=win64 "--annotation=prod=edge webview2" --annotation=ver=117.0.2045.47 --initial-client-data=0x15c,0x160,0x164,0x138,0x16c,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=waaaaaaaaadgaaamaaaaaaaaaaaaaaaaaabgaaaaaaa4aaaaaaaaaaaaaaaeaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaagaaaaaaaaaayaaaaaaaaaagaaaaaaaaacaaaaaaaaaaiaaaaaaaaaa== --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1728 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.storageservice --lang=en-gb --service-sandbox-type=service --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=2352 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="c:\users\user\appdata\local\adobe\webview2\acrobat_set-up.exe\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_ch" --time-ticks-at-unix-epoch=-1710407052292660 --launch-time-ticks=5373013704 --mojo-platform-channel-handle=3436 --field-trial-handle=1772,i,11516986330360833211,8951212453920135853,262144 --enable-features=mojoipcz /prefetch:1
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=crashpad-handler --user-data-dir=c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler --database=c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview\crashpad --annotation=isofficialbuild=1 --annotation=channel= --annotation=chromium-version=117.0.5938.132 "--annotation=exe=c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --annotation=plat=win64 "--annotation=prod=edge webview2" --annotation=ver=117.0.2045.47 --initial-client-data=0x174,0x178,0x17c,0x134,0x180,0x7fff284b8e88,0x7fff284b8e98,0x7fff284b8ea8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=gpu-process --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --gpu-preferences=waaaaaaaaadgaaamaaaaaaaaaaaaaaaaaabgaaaaaaa4aaaaaaaaaaaaaaaeaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaagaaaaaaaaaayaaaaaaaaaagaaaaaaaaacaaaaaaaaaaiaaaaaaaaaa== --mojo-platform-channel-handle=1768 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:2
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:3
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=utility --utility-sub-type=storage.mojom.storageservice --lang=en-gb --service-sandbox-type=service --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --mojo-platform-channel-handle=1668 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:8
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeProcess created: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe "c:\program files (x86)\microsoft\edgewebview\application\117.0.2045.47\msedgewebview2.exe" --type=renderer --noerrdialogs --user-data-dir="c:\users\user\appdata\local\temp\{d203a074-44cf-40a3-ab92-7019f99d2ae5}\ebwebview" --webview-exe-name=acrobat_set-up.exe --webview-exe-version=2.12.0.23 --embedded-browser-webview=1 --embedded-browser-webview-dpi-awareness=1 --disable-nacl --first-renderer-process --lang=en-gb --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=en_ch" --time-ticks-at-unix-epoch=-1710407052289267 --launch-time-ticks=5373023488 --mojo-platform-channel-handle=3388 --field-trial-handle=1784,i,16217667153113628476,13801749321451562027,262144 --enable-features=mojoipcz /prefetch:1
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Windows\SysWOW64\cmd.exe c:\windows\system32\cmd.exe" /c start microsoft-edge:"https://ims-na1.adobelogin.com/ims/authorize?client_id=creativecloudinstallerweb_v1_0&scope=allow_ac_dt_exchange%2copenid%2cadobeid%2ccreative_cloud%2ccreative_sdk%2cread_organizations%2csao.cce_private%2cadditional_info.account_type&locale=en_us&redirect_uri=https%3a%2f%2fauth.services.adobe.com%2fen_us%2fdeeplink.html%3fdelegated_request_id%3db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3dcreativecloudinstallerweb_v1_0%26deeplink%3ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeProcess created: C:\Windows\SysWOW64\cmd.exe c:\windows\system32\cmd.exe" /c start microsoft-edge:"https://ims-na1.adobelogin.com/ims/authorize?client_id=creativecloudinstallerweb_v1_0&scope=allow_ac_dt_exchange%2copenid%2cadobeid%2ccreative_cloud%2ccreative_sdk%2cread_organizations%2csao.cce_private%2cadditional_info.account_type&locale=en_us&redirect_uri=https%3a%2f%2fauth.services.adobe.com%2fen_us%2fdeeplink.html%3fdelegated_request_id%3db03c1725-36bb-4637-a794-afe3afd3d30b%26client_id%3dcreativecloudinstallerweb_v1_0%26deeplink%3ddelegation&dctx_id=v:2,s,bg:kaizen,0f006db0-9d68-11ee-ac84-4fb64a02ffee
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeRegistry key value queried: HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeRegistry key value queried: HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeRegistry key value queried: HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeRegistry key value queried: HKEY_LOCAL_MACHINE\HARDWARE\DESCRIPTION\System\CentralProcessor\0
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeQueries volume information: C:\Users\user\AppData\Local\Temp\CreativeCloud\ACC\WAM.log VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\Trust Protection Lists\manifest.json VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\WidevineCdm\manifest.json VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\segoeuib.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\Trust Protection Lists\manifest.json VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\WidevineCdm\manifest.json VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\segoeuib.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbd.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbd.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbd.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbd.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\ARIALNI.TTF VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\arialbi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\MEIPreload\preloaded_data.pb VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\timesbi.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\arial.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\ARIALN.TTF VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\ariali.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\ARIALNBI.TTF VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\Fonts\ariblk.ttf VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Network\SCT Auditing Pending Reports VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Network\SCT Auditing Pending Reports VolumeInformation
Source: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exeQueries volume information: C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\MEIPreload\preloaded_data.pb VolumeInformation
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuid
Source: C:\Users\user\Desktop\Acrobat_Set-Up.exeRegistry value created: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity Information1
Scripting
Valid Accounts21
Windows Management Instrumentation
1
Scripting
11
Process Injection
11
Masquerading
OS Credential Dumping13
Security Software Discovery
Remote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault Accounts1
Command and Scripting Interpreter
1
DLL Side-Loading
1
DLL Side-Loading
14
Virtualization/Sandbox Evasion
LSASS Memory1
Query Registry
Remote Desktop ProtocolData from Removable Media1
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)1
Modify Registry
Security Account Manager14
Virtualization/Sandbox Evasion
SMB/Windows Admin SharesData from Network Shared Drive2
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin Hook11
Process Injection
NTDS1
Process Discovery
Distributed Component Object ModelInput CaptureProtocol ImpersonationTraffic DuplicationData Destruction
Gather Victim Network InformationServerCloud AccountsLaunchdNetwork Logon ScriptNetwork Logon Script1
Obfuscated Files or Information
LSA Secrets1
Application Window Discovery
SSHKeyloggingFallback ChannelsScheduled TransferData Encrypted for Impact
Domain PropertiesBotnetReplication Through Removable MediaScheduled TaskRC ScriptsRC Scripts1
Software Packing
Cached Domain Credentials1
Remote System Discovery
VNCGUI Input CaptureMultiband CommunicationData Transfer Size LimitsService Stop
DNSWeb ServicesExternal Remote ServicesSystemd TimersStartup ItemsStartup Items1
DLL Side-Loading
DCSync2
File and Directory Discovery
Windows Remote ManagementWeb Portal CaptureCommonly Used PortExfiltration Over C2 ChannelInhibit System Recovery
Network Trust DependenciesServerlessDrive-by CompromiseContainer Orchestration JobScheduled Task/JobScheduled Task/JobIndicator Removal from ToolsProc Filesystem55
System Information Discovery
Cloud ServicesCredential API HookingApplication Layer ProtocolExfiltration Over Alternative ProtocolDefacement

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
Acrobat_Set-Up.exe1%VirustotalBrowse
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
chrome.cloudflare-dns.com0%VirustotalBrowse
part-0012.t-0009.t-msedge.net0%VirustotalBrowse
sni1gl.wpc.nucdn.net0%VirustotalBrowse
bzib.nelreports.net0%VirustotalBrowse
adobe.com.ssl.d1.sc.omtrdc.net0%VirustotalBrowse
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
dcs-public-edge-va6-158015560.us-east-1.elb.amazonaws.com
18.213.136.10
truefalse
    high
    chrome.cloudflare-dns.com
    162.159.61.3
    truefalseunknown
    adobe.com.ssl.d1.sc.omtrdc.net
    63.140.38.217
    truefalseunknown
    part-0012.t-0009.t-msedge.net
    13.107.213.40
    truefalseunknown
    d1n897799gitxr.cloudfront.net
    108.139.29.98
    truefalse
      high
      resources-prod.licensingstack.com
      18.164.124.172
      truefalse
        high
        googlehosted.l.googleusercontent.com
        142.250.65.161
        truefalse
          high
          ethos502-prod-va6-k8s-p2-0-7ccfc4a2a823108f.elb.us-east-1.amazonaws.com
          3.211.174.17
          truefalse
            high
            sni1gl.wpc.nucdn.net
            152.195.19.97
            truefalseunknown
            clients2.googleusercontent.com
            unknown
            unknownfalse
              high
              delegated.adobelogin.com
              unknown
              unknownfalse
                high
                bzib.nelreports.net
                unknown
                unknownfalseunknown
                use.typekit.net
                unknown
                unknownfalse
                  high
                  p.typekit.net
                  unknown
                  unknownfalse
                    high
                    ims-na1.adobelogin.com
                    unknown
                    unknownfalse
                      high
                      dpm.demdex.net
                      unknown
                      unknownfalse
                        high
                        • No. of IPs < 25%
                        • 25% < No. of IPs < 50%
                        • 50% < No. of IPs < 75%
                        • 75% < No. of IPs
                        IPDomainCountryFlagASNASN NameMalicious
                        13.107.6.158
                        unknownUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        18.213.136.10
                        dcs-public-edge-va6-158015560.us-east-1.elb.amazonaws.comUnited States
                        14618AMAZON-AESUSfalse
                        13.107.246.40
                        unknownUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        204.79.197.200
                        unknownUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        142.250.80.110
                        unknownUnited States
                        15169GOOGLEUSfalse
                        142.250.65.161
                        googlehosted.l.googleusercontent.comUnited States
                        15169GOOGLEUSfalse
                        151.101.193.108
                        unknownUnited States
                        54113FASTLYUSfalse
                        152.195.19.97
                        sni1gl.wpc.nucdn.netUnited States
                        15133EDGECASTUSfalse
                        3.231.61.153
                        unknownUnited States
                        14618AMAZON-AESUSfalse
                        23.51.57.215
                        unknownUnited States
                        4788TMNET-AS-APTMNetInternetServiceProviderMYfalse
                        23.200.3.19
                        unknownUnited States
                        20940AKAMAI-ASN1EUfalse
                        23.204.152.149
                        unknownUnited States
                        20940AKAMAI-ASN1EUfalse
                        52.22.41.97
                        unknownUnited States
                        14618AMAZON-AESUSfalse
                        162.159.61.3
                        chrome.cloudflare-dns.comUnited States
                        13335CLOUDFLARENETUSfalse
                        23.40.179.37
                        unknownUnited States
                        16625AKAMAI-ASUSfalse
                        23.204.152.140
                        unknownUnited States
                        20940AKAMAI-ASN1EUfalse
                        104.18.32.77
                        unknownUnited States
                        13335CLOUDFLARENETUSfalse
                        23.204.152.142
                        unknownUnited States
                        20940AKAMAI-ASN1EUfalse
                        13.107.213.40
                        part-0012.t-0009.t-msedge.netUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        20.189.173.18
                        unknownUnited States
                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        34.237.241.83
                        unknownUnited States
                        14618AMAZON-AESUSfalse
                        204.79.197.239
                        unknownUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        157.240.241.1
                        unknownUnited States
                        32934FACEBOOKUSfalse
                        63.140.38.217
                        adobe.com.ssl.d1.sc.omtrdc.netUnited States
                        4134CHINANET-BACKBONENo31Jin-rongStreetCNfalse
                        172.64.41.3
                        unknownUnited States
                        13335CLOUDFLARENETUSfalse
                        3.211.174.17
                        ethos502-prod-va6-k8s-p2-0-7ccfc4a2a823108f.elb.us-east-1.amazonaws.comUnited States
                        14618AMAZON-AESUSfalse
                        13.107.5.80
                        unknownUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        23.47.169.232
                        unknownUnited States
                        16625AKAMAI-ASUSfalse
                        1.1.1.1
                        unknownAustralia
                        13335CLOUDFLARENETUSfalse
                        20.94.153.70
                        unknownUnited States
                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        13.107.21.239
                        unknownUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        13.225.63.17
                        unknownUnited States
                        16509AMAZON-02USfalse
                        63.140.38.210
                        unknownUnited States
                        4134CHINANET-BACKBONENo31Jin-rongStreetCNfalse
                        172.64.155.179
                        unknownUnited States
                        13335CLOUDFLARENETUSfalse
                        20.125.219.220
                        unknownUnited States
                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        13.107.42.16
                        unknownUnited States
                        8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        18.164.124.172
                        resources-prod.licensingstack.comUnited States
                        3MIT-GATEWAYSUSfalse
                        239.255.255.250
                        unknownReserved
                        unknownunknownfalse
                        108.139.29.98
                        d1n897799gitxr.cloudfront.netUnited States
                        16509AMAZON-02USfalse
                        20.96.153.111
                        unknownUnited States
                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        52.183.229.37
                        unknownUnited States
                        8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                        44.209.177.127
                        unknownUnited States
                        14618AMAZON-AESUSfalse
                        23.204.152.170
                        unknownUnited States
                        20940AKAMAI-ASN1EUfalse
                        18.213.11.84
                        unknownUnited States
                        14618AMAZON-AESUSfalse
                        18.211.200.223
                        unknownUnited States
                        14618AMAZON-AESUSfalse
                        IP
                        192.168.2.16
                        Joe Sandbox version:40.0.0 Tourmaline
                        Analysis ID:1408868
                        Start date and time:2024-03-14 11:33:04 +01:00
                        Joe Sandbox product:CloudBasic
                        Overall analysis duration:
                        Hypervisor based Inspection enabled:false
                        Report type:full
                        Cookbook file name:defaultwindowsinteractivecookbook.jbs
                        Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                        Number of analysed new started processes analysed:36
                        Number of new started drivers analysed:0
                        Number of existing processes analysed:0
                        Number of existing drivers analysed:0
                        Number of injected processes analysed:0
                        Technologies:
                        • EGA enabled
                        Analysis Mode:stream
                        Analysis stop reason:Timeout
                        Sample name:Acrobat_Set-Up.exe
                        Detection:MAL
                        Classification:mal56.evad.winEXE@87/319@29/80
                        Cookbook Comments:
                        • Found application associated with file extension: .exe
                        • Exclude process from analysis (whitelisted): dllhost.exe, svchost.exe
                        • Excluded IPs from analysis (whitelisted): 13.107.42.16
                        • Excluded domains from analysis (whitelisted): fs.microsoft.com, config.edge.skype.com.trafficmanager.net, l-0007.config.skype.com, config-edge-skype.l-0007.l-msedge.net, l-0007.l-msedge.net, config.edge.skype.com, mira.config.skype.com
                        • Not all processes where analyzed, report is missing behavior information
                        • Report size getting too big, too many NtAllocateVirtualMemory calls found.
                        • Report size getting too big, too many NtOpenFile calls found.
                        • Report size getting too big, too many NtOpenKeyEx calls found.
                        • Report size getting too big, too many NtProtectVirtualMemory calls found.
                        • Report size getting too big, too many NtQueryValueKey calls found.
                        • Report size getting too big, too many NtWriteVirtualMemory calls found.
                        • Timeout during stream target processing, analysis might miss dynamic analysis data
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):38
                        Entropy (8bit):3.674916000001024
                        Encrypted:false
                        SSDEEP:
                        MD5:9C30A3CE71A5AAAE4FE5954419236642
                        SHA1:AA92387B47BFB584CF0BB127286B400F2A9AED43
                        SHA-256:36A91D758EDEE27D9F79EDACAA681D7B41C9230BC1F74C946F2AE7EC7551500D
                        SHA-512:4E4D2D1748B18B5213A8A4E49F001A2C23581AD52033D345579023F985A04CB70CC41E213C8B5A71D213D2637F929BA8258DA12869794B2F5A2FB6D0939831B5
                        Malicious:false
                        Reputation:unknown
                        Preview:{E43DB969-5496-4169-A1D9-C50E9AAA00D4}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):18035
                        Entropy (8bit):6.066782834506118
                        Encrypted:false
                        SSDEEP:
                        MD5:B0A234F9D341813431C3FD7CDD031FDC
                        SHA1:877B13A3A1F968C5237F91E58BECAB29BEBB3ED4
                        SHA-256:C733AE5B4AA683AF883730F83B872AF4BA303C01A643D0621A1EB1F5110D9702
                        SHA-512:C07217AD3934BC45BF04720E14D828FCBEB4A801F45D3FC2C77989F728D84C9BF159A08594C5F26C12B06B618B5B25C23E791D3903F2AFDE17D8B9EBC273DEE6
                        Malicious:false
                        Reputation:unknown
                        Preview:{"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):16710
                        Entropy (8bit):6.071168342561365
                        Encrypted:false
                        SSDEEP:
                        MD5:14624D2298C5F4E6B401A81BC143C71A
                        SHA1:9405828D2C245FEBD7A807073E4A473D984EA530
                        SHA-256:227708497161FF9C2CC1A87F70A06D77F5F569463AF9D5C296CB942FF610DF1F
                        SHA-512:83098BE7D38A979462CE845168D2149C411BD9E5AE0AF1587132E5417D12E4C8FC424A64FFE74598218CC221899BDEA05897C5EEA6F907C45603F6F08FBEFEA5
                        Malicious:false
                        Reputation:unknown
                        Preview:{"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2899
                        Entropy (8bit):5.294321520226423
                        Encrypted:false
                        SSDEEP:
                        MD5:0CD66790C353FCD5B94544524954CE5F
                        SHA1:1DA6EFE4E38C260D7731C1FEF7E7F3E8A7E07A07
                        SHA-256:19457D78820451B195D40F82D9541D95A845DA272574D875DF79FF87F7DC7DDD
                        SHA-512:39B9A25B337C4B3B09A60F1D4A890EC02DA563FCA72404F921CAAA106ADFDF6EAF3B12E8A661EACBECAD8A68DFA3A368251CF2257ED5927542A1EE383B68CC9D
                        Malicious:false
                        Reputation:unknown
                        Preview:{"dual_engine":{"ie_to_edge":{"redirection_mode":0}},"edge":{"tab_stabs":{"closed_without_unfreeze_never_unfrozen":0,"closed_without_unfreeze_previously_unfrozen":0,"discard_without_unfreeze_never_unfrozen":0,"discard_without_unfreeze_previously_unfrozen":0},"tab_stats":{"frozen_daily":0,"unfrozen_daily":0}},"fre":{"oem_bookmarks_set":true},"hardware_acceleration_mode_previous":true,"legacy":{"profile":{"name":{"migrated":true}}},"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"policy":{"last_statistics_update":"13354886024321961"},"profile":{"info_cache":{"Default":{"avatar_icon":"chrome://t
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2052
                        Entropy (8bit):5.458898686062791
                        Encrypted:false
                        SSDEEP:
                        MD5:ECBDE6BD02828975BB37FB44AF8F7CC1
                        SHA1:5E79AA163870336B1F9EB39F09518B1858BCBEAB
                        SHA-256:A7557FEB072D8BC00D181B0D0F6794BB535258CC98A87D84E6DC715929F44A3E
                        SHA-512:5814092693B4F2B1FCBF9AB219AD6CD2FA5FF9E929325987F4ADCE4C1A2F6748D9671C735BCF9DFA08B15A31E51E302FC6186281629F2803DABE1AE5B731C287
                        Malicious:false
                        Reputation:unknown
                        Preview:{"dual_engine":{"ie_to_edge":{"redirection_mode":0}},"edge":{"tab_stabs":{"closed_without_unfreeze_never_unfrozen":0,"closed_without_unfreeze_previously_unfrozen":0,"discard_without_unfreeze_never_unfrozen":0,"discard_without_unfreeze_previously_unfrozen":0},"tab_stats":{"frozen_daily":0,"unfrozen_daily":0}},"hardware_acceleration_mode_previous":true,"legacy":{"profile":{"name":{"migrated":true}}},"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"policy":{"last_statistics_update":"13354886024321961"},"profile":{"info_cache":{},"profile_counts_reported":"13354886024341858","profiles_order":[]},
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):18114
                        Entropy (8bit):6.065258149824107
                        Encrypted:false
                        SSDEEP:
                        MD5:EF68DFC5B1CE26A8A58F0FABF4A5124F
                        SHA1:6E09E1FB07739B67FF48216D67A5096FB1CA18FC
                        SHA-256:7A4626A39C7F28C46315A4ABF8F1D40F1C3790D9E1540CFA80196BB80F26353A
                        SHA-512:C5B01C92690A5651A6B3CA4CE49A6C7DD3D7C4F9238F37D1F08DAEA4584ED7CACA4395A3BCB3304906809726162A5350D7EB0EA4AB20B60F27B083871922188A
                        Malicious:false
                        Reputation:unknown
                        Preview:{"desktop_session_duration_tracker":{"last_session_end_timestamp":"1710412498"},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):18165
                        Entropy (8bit):6.06445565276299
                        Encrypted:false
                        SSDEEP:
                        MD5:0EEEC4966094C44433351538AF51531A
                        SHA1:9611E39B54AED979EFEAA0DE456920C8F522C5AD
                        SHA-256:F2EA1C6B2BEEA782BCD6B4FBFF454FDD0C9DF413D31CC337B96C916CE081A56C
                        SHA-512:2C10AC3DD9F032835B412C7BAD6FAB692AB816263CBC059E401C64900C787CCE5F3DAAF77FACFAFE47F319F6E28FCD4DDC67503BD925B0B10BB9E1784775952E
                        Malicious:false
                        Reputation:unknown
                        Preview:{"desktop_session_duration_tracker":{"last_session_end_timestamp":"1710412498"},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:1045BFD216AE1AE480DD0EF626F5FF39
                        SHA1:377E869BC123602E9B568816B76BE600ED03DBD0
                        SHA-256:439292E489A0A35E4A3A0FE304EA1A680337243FA53B135AA9310881E1D7E078
                        SHA-512:F9F8FCC23FC084AF69D7C9ABB0EF72C4684AC8DDF7FA6B2028E2F19FD67435F28534C0CF5B17453DFE352437C777D6F71CFE1D6AD3542AD9D636263400908FD2
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):1310720
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:1045BFD216AE1AE480DD0EF626F5FF39
                        SHA1:377E869BC123602E9B568816B76BE600ED03DBD0
                        SHA-256:439292E489A0A35E4A3A0FE304EA1A680337243FA53B135AA9310881E1D7E078
                        SHA-512:F9F8FCC23FC084AF69D7C9ABB0EF72C4684AC8DDF7FA6B2028E2F19FD67435F28534C0CF5B17453DFE352437C777D6F71CFE1D6AD3542AD9D636263400908FD2
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):1310720
                        Entropy (8bit):0.46749082605207737
                        Encrypted:false
                        SSDEEP:
                        MD5:EF700628F8C791E0738DCF37E511FD6F
                        SHA1:5CE9A3CD39A2B1D561839D516F66281B568CE008
                        SHA-256:BD5371FB14B57861051B33B93AFF580A60FF25759C7613BF7DF0D23FB3617C25
                        SHA-512:9216D7D489C99CAF195627EB4FB5F5A4C90E6AB4708D4A6C52D54D562878AB8F6F7D60B9581A4FFA4A45F6B540C222F81D3FB14BF82C946319903B4EE913C343
                        Malicious:false
                        Reputation:unknown
                        Preview:...@............C.].....@...............p..................`... ...i.y.........BrowserMetrics......i.y..Yd. .......A...................v.0.....UV&K.k<................UV&K.k<................UMA.PersistentHistograms.InitResult.....8...i.y.[".................................................i.y.Pq.30....G.........117.0.2045.47-64".en-GB*...Windows NT..10.0.190452(..x86_64..?........".xgvqee20,1...x86_64J....?.^o..P....................).>..*......nW:00000000000000000000000000000000000000000000!00000000000000000000000000000000000000000000!Acrobat_Set-Up.exe.&1900/01/01:00:00:00!Acrobat_Set-Up.exe".2.12.0.232...".*.:..............,..(.......EarlyProcessSingleton.......Default3.(..$.......msEdgeEDropUI.......triggered....8..4... ...msDelayLoadAuthenticationManager....triggered....<..8...#...msSleepingTabsShorterTimeoutDefault.....triggered....8..4... ...msEdgeMouseGestureDefaultEnabled....triggered....8..4.......msEdgeShowHomeButtonByDefault.......triggered....<..8...$...msConsumerIEMode
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):280
                        Entropy (8bit):1.8802514265597519
                        Encrypted:false
                        SSDEEP:
                        MD5:D88854C25265585335F74129E4F52553
                        SHA1:CDBEEE9094967C3AFE6F418EB65D75669CCAA8CE
                        SHA-256:D70B3D2C8BC0B0BEEA2DD7337C49F1D42E6E84A158F43E1E682644D8A41ACFDD
                        SHA-512:57C552726360B86E3BDFB5F1384E5117D548804E36710B66FD528DBF54FC83FC6269D157C1042F9EA1133D2B778A05C5433DE0CCD0153E832021B00965D12A0D
                        Malicious:false
                        Reputation:unknown
                        Preview:sdPC....................3W.T.3hO...... .................................................................................................................................................................................................{F3017226-FE2A-4295-8BDF-00C3A9A7E4C.}C:........
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):20
                        Entropy (8bit):3.6219280948873624
                        Encrypted:false
                        SSDEEP:
                        MD5:9E4E94633B73F4A7680240A0FFD6CD2C
                        SHA1:E68E02453CE22736169A56FDB59043D33668368F
                        SHA-256:41C91A9C93D76295746A149DCE7EBB3B9EE2CB551D84365FFF108E59A61CC304
                        SHA-512:193011A756B2368956C71A9A3AE8BC9537D99F52218F124B2E64545EEB5227861D372639052B74D0DD956CB33CA72A9107E069F1EF332B9645044849D14AF337
                        Malicious:false
                        Reputation:unknown
                        Preview:level=none expiry=0.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):5998
                        Entropy (8bit):4.802038996453687
                        Encrypted:false
                        SSDEEP:
                        MD5:685FC3BBD27AC4AD453A2C03F83E3C62
                        SHA1:BA55B595EF15755A08743A1A1CF13488E09CE01F
                        SHA-256:858FE702C6D8CFA22BD2832A4B040FEE6B8DBE2A8E7B5F8B1C2290076C8FA672
                        SHA-512:FF4ED7830248E9D9B1213143ECFD26A7F92AB4D142B564E664ABE0780F014DF6312F717AE50FA8808321DCB4E8B5E7928CB72AE2566B47F1C5E2B018641A46EA
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):5835
                        Entropy (8bit):4.791573395975423
                        Encrypted:false
                        SSDEEP:
                        MD5:BB02882682FC26A925C4E02D7982D805
                        SHA1:869BA469FCA5E61EE14F4C5818C9DD82EF04C604
                        SHA-256:719BA1F811D5939F37D6E920C2419840A4C9EE6109CD6FDCDAA86100A5F1AE27
                        SHA-512:58BC7BBBF141FB6E3B4E0A3D495B2D4BB9D2D265B06609A46BF9EED9FFB84E9E69EA94BD6E900637E4972AA676CEBD51D3A3590A7F0462C9D77136750A2F8E55
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):6102
                        Entropy (8bit):4.807379022216247
                        Encrypted:false
                        SSDEEP:
                        MD5:8CA8B2FA96A8289A16405D81245C9C10
                        SHA1:186D319598C76BBBB49045F2481BB416EAB157AE
                        SHA-256:FF0685EE5FF9999FBD2534355599F99DA888DAEEB24D3F7EA65D0F564E868739
                        SHA-512:A2D3D03A120AE689B0036635B738520F0E4B9FB4C93F57ACCB59E451AE216697B457D50D6584D64999ABB24BE169AC544A3661266F4919D4EC0A6D751ECA4E57
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):5896
                        Entropy (8bit):4.796965565114424
                        Encrypted:false
                        SSDEEP:
                        MD5:261F99AC97EB66433BDF689E35ACD3D6
                        SHA1:BEB06A3672671036385F1A1828CE0705FD10F165
                        SHA-256:1745BAABE7F0801242381A86CE890844522F9A79054D279A597ABCE4E559C0EF
                        SHA-512:976E77890C6BE2C44C3DF26059EBF988A37B7BBC87294085BE594D3FCE67FA2D04E1BFAD3BD22C370EB172EA1646BF3E3F04A2C1940B33B92EE879A33186DA88
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 3, cookie 0x1, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):12288
                        Entropy (8bit):0.3202460253800455
                        Encrypted:false
                        SSDEEP:
                        MD5:40B18EC43DB334E7B3F6295C7626F28D
                        SHA1:0E46584B0E0A9703C6B2EC1D246F41E63AF2296F
                        SHA-256:85E961767239E90A361FB6AA0A3FD9DAA57CAAF9E30599BB70124F1954B751C8
                        SHA-512:8BDACDC4A9559E4273AD01407D5D411035EECD927385A51172F401558444AD29B5AD2DC5562D1101244665EBE86BBDDE072E75ECA050B051482005EB6A52CDBD
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):45056
                        Entropy (8bit):0.020481294160802556
                        Encrypted:false
                        SSDEEP:
                        MD5:E92743F5C2DB5E9C010425EB4D24DA21
                        SHA1:1AC6FB24FCB7E2C26436251F2953F264267CCDFD
                        SHA-256:2D1B7817DD3178A9F24A74862737BDB333409F1BCF5965C321AA3D9E53BEEE69
                        SHA-512:EB8C962EBF4E50418DB096A1C47EEE0D72AEA8F7C9F8C781720222711CB3517106B0A6833D83137B665C57DEEBDABCA6A4C4AF7856880EEF26616A6BDBDFFFF1
                        Malicious:false
                        Reputation:unknown
                        Preview:............$...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:dBase III DBT, next free block index 3238316739, block length 1024
                        Category:dropped
                        Size (bytes):270336
                        Entropy (8bit):0.015233720195534315
                        Encrypted:false
                        SSDEEP:
                        MD5:1BEC9411F6C9C41E96D96B2CDA02F6D8
                        SHA1:9AF610155A448673085AE1AF907F2E96AF794892
                        SHA-256:2AD28ACF4C391F033487A2B14123A88DA5DCA89B24492FD292C0AC3F52E08D18
                        SHA-512:2042ED4EE07D3A89D0DD5026C680F6B2355A2E4D2D620E3482E1F575F3BC9170A97B7931A5AB3CB3392B0BB70F704AE456C94D87A74D1344C38CBF43889A6419
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):1056768
                        Entropy (8bit):0.11174124564840035
                        Encrypted:false
                        SSDEEP:
                        MD5:0F6D585A6B4194D33C1759713AB03928
                        SHA1:9FA60DC9B26EDFAFF1B6754B639095BA6F7A007B
                        SHA-256:E035BD82F1DE14B6B11C81B38FDD989CC23ED06FF01E59FB924858ABC2CE1565
                        SHA-512:39375873030E9195E3AB86F2A97952555513FA90C8F76F8118FA83AE8A4F2F6084AACFA0094462F092920A7CF5D2BB2E56A1BDFA33F8317D1A57D40E5676A873
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with very long lines (56835), with no line terminators
                        Category:dropped
                        Size (bytes):56835
                        Entropy (8bit):5.120835518091429
                        Encrypted:false
                        SSDEEP:
                        MD5:03D3F50C4B719E033056B74A7762F913
                        SHA1:414E968BBEEF8795E6BD0B149CC39C61E1889A33
                        SHA-256:09011A5C08853DEEB6F95F5A3E2A7F6F542AE0E751611BECFCCA75B72E4C0BF3
                        SHA-512:E2915146FD39C88AB1E8F10FC9E912EE98FB85FD5CC467F9329B6AA7D004F53BDE6E4C236E25523F7E43C933A2108B6D54F675CCE91BC75A658A15DD2FE28915
                        Malicious:false
                        Reputation:unknown
                        Preview:.adbMsgClientWrapper #adbmsgContainer *, .adbMsgClientWrapper #adbmsgContainer :after, .adbMsgClientWrapper #adbmsgContainer :before{box-sizing:border-box}.adbMsgClientWrapper #adbmsgContainer .outwardAnimate{transition:opacity .3s;animation-name:a;animation-duration:.3s;animation-timing-function:cubic-bezier(0,0,.4,1);-webkit-transition:opacity .3s;-webkit-animation-name:a;-webkit-animation-duration:.3s;-webkit-animation-timing-function:cubic-bezier(0,0,.4,1);-moz-transition:opacity .3s;-moz-animation-name:a;-moz-animation-duration:.3s;-moz-animation-timing-function:cubic-bezier(0,0,.4,1)}@keyframes a{0%{transform:scale(.83);opacity:0}to{transform:scale(1);opacity:1}}.adbMsgClientWrapper #adbmsgContainer .adbmsgCtaDarkest{background-color:#1d1d1d!important;border:2px solid #a2a2a2!important;background-image:url(assets/cta_darkest.svg)!important}.adbMsgClientWrapper #adbmsgContainer .adbmsgCtaDarkest:hover{border-color:#efefef!important}.adbMsgClientWrapper #adbmsgContainer .botauthorC
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with very long lines (65536), with no line terminators
                        Category:dropped
                        Size (bytes):150426
                        Entropy (8bit):5.3233236555745265
                        Encrypted:false
                        SSDEEP:
                        MD5:CA910B632162E1981FDC090131C1E4B0
                        SHA1:A41E0EA9001E0A594713008D3316A42B473A2DB5
                        SHA-256:0751EEC89F075D39C842C1CA6B6182216EEFA0EC2C5196373E9614441F3F735C
                        SHA-512:B77FC920DDDD1722097E89F881C7B0C760090F6658BE148FB604A794CE5C8CEEB58082D3B10F96A1CE5ED4705E58CA8942E065F98CAF48E54AA65C54958983B5
                        Malicious:false
                        Reputation:unknown
                        Preview:!function(e,t){"object"==typeof exports&&"object"==typeof module?module.exports=t():"function"==typeof define&&define.amd?define([],t):"object"==typeof exports?exports.AdobeMessagingClient=t():e.AdobeMessagingClient=t()}("undefined"!=typeof self?self:this,function(){return function(e){var t={};function n(a){if(t[a])return t[a].exports;var o=t[a]={i:a,l:!1,exports:{}};return e[a].call(o.exports,o,o.exports,n),o.l=!0,o.exports}return n.m=e,n.c=t,n.d=function(e,t,a){n.o(e,t)||Object.defineProperty(e,t,{configurable:!1,enumerable:!0,get:a})},n.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return n.d(t,"a",t),t},n.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},n.p="",n(n.s=24)}([function(e,t,n){"use strict";Object.defineProperty(t,"__esModule",{value:!0});var a=Object.assign||function(e){for(var t=1;t<arguments.length;t++){var n=arguments[t];for(var a in n)Object.prototype.hasOwnProperty.call(n,a)&&(e[a]=n[a])}return e},o=function()
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):524656
                        Entropy (8bit):4.989325630401085E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:758A8251555B3C03DB9EAA2FE40D53E5
                        SHA1:C3F0E25E1FDA90ACA49189E2EE6D4E297EF9C3BF
                        SHA-256:913EA146B171A7B75952AA052905D1E142EAA1861A2F9B2D08C04E73A7E67B3B
                        SHA-512:FF86E8F1B224E4D122149AF11614113650CE04C7269A340F42016F24E79EB04A9B381EAC47F2C8576288D55D6E6550C3787DFAE38D4067322ADC71DE3D0E3695
                        Malicious:false
                        Reputation:unknown
                        Preview:......................................../..2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):48
                        Entropy (8bit):2.9555576533947305
                        Encrypted:false
                        SSDEEP:
                        MD5:480943267B9ECF99F563A2DC02A2700E
                        SHA1:8BF52417278C1BDD8600F3A97CB2B692DB7DAE3C
                        SHA-256:9B572130291A20FB17D5E089A8390CD7138BD5A8BE5CE37208A92409BC4388A1
                        SHA-512:42F9C39AC191FABE045E881604D105CF28AE8CD33066259B9A913ED76C82E03BC1AD0593F6B6B4E0950224A1DFB52CBBCE6732E83B305460E8C20DC2EBE959AB
                        Malicious:false
                        Reputation:unknown
                        Preview:(.....1.oy retne........................<X..2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:480943267B9ECF99F563A2DC02A2700E
                        SHA1:8BF52417278C1BDD8600F3A97CB2B692DB7DAE3C
                        SHA-256:9B572130291A20FB17D5E089A8390CD7138BD5A8BE5CE37208A92409BC4388A1
                        SHA-512:42F9C39AC191FABE045E881604D105CF28AE8CD33066259B9A913ED76C82E03BC1AD0593F6B6B4E0950224A1DFB52CBBCE6732E83B305460E8C20DC2EBE959AB
                        Malicious:false
                        Reputation:unknown
                        Preview:(.....1.oy retne........................<X..2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):48
                        Entropy (8bit):2.9555576533947305
                        Encrypted:false
                        SSDEEP:
                        MD5:6D32E57667F10ACEAA6D7161851D6B6C
                        SHA1:35D6E72ECD8C096731A8BFDA80779EA7B98A9817
                        SHA-256:2CEE5782046125F3BBDE38061CB0EB7C84BE4A3B2E77A9ED947040AFF3BD0F27
                        SHA-512:74FEA2BFC12CBDFDCCCA9D0FB4F4F91319BD8302D124A30E9743D93806E453DA07EA578FDEBD8FC449FFF4092ED3BAE80B85119E57565E18118F7E12444B51B2
                        Malicious:false
                        Reputation:unknown
                        Preview:(...%.\.oy retne............................2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:6D32E57667F10ACEAA6D7161851D6B6C
                        SHA1:35D6E72ECD8C096731A8BFDA80779EA7B98A9817
                        SHA-256:2CEE5782046125F3BBDE38061CB0EB7C84BE4A3B2E77A9ED947040AFF3BD0F27
                        SHA-512:74FEA2BFC12CBDFDCCCA9D0FB4F4F91319BD8302D124A30E9743D93806E453DA07EA578FDEBD8FC449FFF4092ED3BAE80B85119E57565E18118F7E12444B51B2
                        Malicious:false
                        Reputation:unknown
                        Preview:(...%.\.oy retne............................2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x3, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):28672
                        Entropy (8bit):0.43508159006069336
                        Encrypted:false
                        SSDEEP:
                        MD5:F5237AED0F897E7619A94843845A3EC3
                        SHA1:A0C752C9C28A753CFB051AACE2ADA78A6D1288C3
                        SHA-256:D4463972AD7B1582F05C8E17074CE863D45CA625C2C672DB0D37F3AF4C7ACE42
                        SHA-512:D3C9718794E455D415D8EDF23B576E0A70356B8D71B8DD374D25B8065FEF608E114E13395B4B54462739882A141F4DBE00E3A370D6E4160504428A849CC893A3
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g.....8...n................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):8192
                        Entropy (8bit):0.012340643231932763
                        Encrypted:false
                        SSDEEP:
                        MD5:41876349CB12D6DB992F1309F22DF3F0
                        SHA1:5CF26B3420FC0302CD0A71E8D029739B8765BE27
                        SHA-256:E09F42C398D688DCE168570291F1F92D079987DEDA3099A34ADB9E8C0522B30C
                        SHA-512:E9A4FC1F7CB6AE2901F8E02354A92C4AAA7A53C640DCF692DB42A27A5ACC2A3BFB25A0DE0EB08AB53983132016E7D43132EA4292E439BB636AAFD53FB6EF907E
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:DAC61F4808BE3B5EC995149D6FE9A0CF
                        SHA1:66EB339BD39879F23F9EE24515DEDEED25655460
                        SHA-256:E2BC9586309F4FC08C3FD39150279B28387042BEE29FF93B3C31F0857A0F6513
                        SHA-512:93BB885158D390622D98BE8EF6D237606084E8BAE5EB18BD9E33ABEFFD8A2AD9A4794FB11A9CD09DDA67C855C41A6879446F837BB844FA3AC2DC03E4DCF3A4EF
                        Malicious:false
                        Reputation:unknown
                        Preview:.........................................N..2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):38
                        Entropy (8bit):1.8784775129881184
                        Encrypted:false
                        SSDEEP:
                        MD5:51A2CBB807F5085530DEC18E45CB8569
                        SHA1:7AD88CD3DE5844C7FC269C4500228A630016AB5B
                        SHA-256:1C43A1BDA1E458863C46DFAE7FB43BFB3E27802169F37320399B1DD799A819AC
                        SHA-512:B643A8FA75EDA90C89AB98F79D4D022BB81F1F62F50ED4E5440F487F22D1163671EC3AE73C4742C11830214173FF2935C785018318F4A4CAD413AE4EEEF985DF
                        Malicious:false
                        Reputation:unknown
                        Preview:.f.5................f.5...............
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):317
                        Entropy (8bit):5.301999117529316
                        Encrypted:false
                        SSDEEP:
                        MD5:E45A1C6B7DBAE095D4F59E16C9DD43E1
                        SHA1:6F7818B884BD5EC30806B0E11700644967022910
                        SHA-256:D7694D08A2DB0796A588D1165753ECF78751BF1145F1CFAC6CEF831449A9C73B
                        SHA-512:CB8D5135C02047E87370C1117AEE4BB00AEC9A71582D3065C8833388C47EA5B45C1D326E4BD3B988167ACD4B69E19E7D5F79E80F786D7D430497430076D21C82
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.591 1a28 Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Extension Rules since it was missing..2024/03/14-11:33:44.607 1a28 Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Extension Rules/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):321
                        Entropy (8bit):5.284491267907796
                        Encrypted:false
                        SSDEEP:
                        MD5:9DD87BD6581F443B9072DC490149644E
                        SHA1:7813A6561A7E566511DE3EF71BEF2108024933D7
                        SHA-256:AE4CA253CE11B434268FBEF5560DDBFC14B9808A6009A1733297A1DE589B07ED
                        SHA-512:8BACF646C27B2D43588176EA509D2DB4729B706EAB1690B967329C065E53BE25A325B54041C96DC35B3ECEE34BE07381625E03B35D0C861BCEFF97F653CEB874
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.678 1a9c Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Extension Scripts since it was missing..2024/03/14-11:33:44.732 1a9c Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Extension Scripts/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):317
                        Entropy (8bit):5.254382286082822
                        Encrypted:false
                        SSDEEP:
                        MD5:08536C56654E85E59E8234C0E0A157FA
                        SHA1:7AAAEB676AB3B1615A976C59CAC76A791B2C1B9D
                        SHA-256:55F2BDBC9946A506F0CCFAC3F81C1BCF94E78521F40CCA6795CA715798344B37
                        SHA-512:146CB31822F0DF9DBC28CE576B8B474C08EF10FDEF933B47E010527A819163613CDDD04C70FAFBC45EB321EB0A3EA604542DCC5BDC60AEB3B7FD84406AFCC34F
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:45.482 1a48 Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Extension State since it was missing..2024/03/14-11:33:45.538 1a48 Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Extension State/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 1, cookie 0x1, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):4096
                        Entropy (8bit):0.3169096321222068
                        Encrypted:false
                        SSDEEP:
                        MD5:2554AD7847B0D04963FDAE908DB81074
                        SHA1:F84ABD8D05D7B0DFB693485614ECF5204989B74A
                        SHA-256:F6EF01E679B9096A7D8A0BD8151422543B51E65142119A9F3271F25F966E6C42
                        SHA-512:13009172518387D77A67BBF86719527077BE9534D90CB06E7F34E1CCE7C40B49A185D892EE859A8BAFB69D5EBB6D667831A0FAFBA28AC1F44570C8B68F8C90A4
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 2, database pages 8, cookie 0x8, schema 4, UTF-8, version-valid-for 2
                        Category:dropped
                        Size (bytes):32768
                        Entropy (8bit):0.40981274649195937
                        Encrypted:false
                        SSDEEP:
                        MD5:1A7F642FD4F71A656BE75B26B2D9ED79
                        SHA1:51BBF587FB0CCC2D726DDB95C96757CC2854CFAD
                        SHA-256:B96B6DDC10C29496069E16089DB0AB6911D7C13B82791868D583897C6D317977
                        SHA-512:FD14EADCF5F7AB271BE6D8EF682977D1A0B5199A142E4AB353614F2F96AE9B49A6F35A19CC237489F297141994A4A16B580F88FAC44486FCB22C05B2F1C3F7D1
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j............M.....8...b..............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 10, cookie 0x8, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):20480
                        Entropy (8bit):0.6975083372685086
                        Encrypted:false
                        SSDEEP:
                        MD5:F5BBD8449A9C3AB28AC2DE45E9059B01
                        SHA1:C569D730853C33234AF2402E69C19E0C057EC165
                        SHA-256:825FF36C4431084C76F3D22CE0C75FA321EA680D1F8548706B43E60FCF5B566E
                        SHA-512:96ACDED5A51236630A64FAE91B8FA9FAB43E22E0C1BCB80C2DD8D4829E03FBFA75AA6438053599A42EC4BBCF805BF0B1E6DFF9069B2BA182AD0BB30F2542FD3F
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g....._.c...~.2.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................s...;+...indexfavicon_bitmaps_icon_idfavico
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):270336
                        Entropy (8bit):8.280239615765425E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:D0D388F3865D0523E451D6BA0BE34CC4
                        SHA1:8571C6A52AACC2747C048E3419E5657B74612995
                        SHA-256:902F30C1FB0597D0734BC34B979EC5D131F8F39A4B71B338083821216EC8D61B
                        SHA-512:376011D00DE659EB6082A74E862CFAC97A9BB508E0B740761505142E2D24EC1C30AA61EFBC1C0DD08FF0F34734444DE7F77DD90A6CA42B48A4C7FAD5F0BDDD17
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:EAE23D8257E30905E08583DC7D8C2110
                        SHA1:98A90B589D223AC8F07BDE3454D39EFB597F6812
                        SHA-256:4C6EFFD93CA4DFC5BD39CF2FC3D8B7AADAD7AD1397306060F99CBDE4F77C5AF0
                        SHA-512:F8A9AAF2F5501E06CBE5BB38635D5D18DDC7ABBE216232C3C9859E43A6F9C6085763374181FEF2C3A8BE79CEAF17FAD1D49EA0B28DCFB90D7BB07A4BAD41214C
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................U.2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 2, database pages 38, cookie 0x1f, schema 4, UTF-8, version-valid-for 2
                        Category:modified
                        Size (bytes):155648
                        Entropy (8bit):0.5916990915134576
                        Encrypted:false
                        SSDEEP:
                        MD5:EFEBF46942539CCFE5A876DF7BD8F89B
                        SHA1:4F732B8593384C4C7FFCD316A36307588C73A197
                        SHA-256:1B1DE2442F754171A3C61DC5878DA45B27C46DA5D9608580A1E9FFE0D6F39D23
                        SHA-512:1EB644482D36A5D385975404A4103EF310942767C2FED139C7DC70292533D6BDC24CF0BDBDDE936D4A26FC3360CF363FDD66A72C2B45838F6BA2F69C1E831E4D
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ .......&..................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:modified
                        Size (bytes):8720
                        Entropy (8bit):0.2191763562065486
                        Encrypted:false
                        SSDEEP:
                        MD5:A37E10BF7B9587EB59087983E2F47DF2
                        SHA1:D828F36819E4F1B6F22A480E7C2E3FA860EA67D5
                        SHA-256:FE50D8FE0C391A9AC0118365029DAF7715B1BF346E38447FCFCC6FD08A188143
                        SHA-512:E12F521D95189B40F3887B238912EBF09EA1D104FA250CC2C11EEFF00BBFA662E8163F97C9405985FFA6CD5E6E4847A413ACD457CD463ED9DCD292593DC3088F
                        Malicious:false
                        Reputation:unknown
                        Preview:...................&....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:OpenPGP Secret Key
                        Category:modified
                        Size (bytes):60
                        Entropy (8bit):4.333184189149015
                        Encrypted:false
                        SSDEEP:
                        MD5:179EE17ABE9BB1F8B110E4B42478D9AB
                        SHA1:000F4D7630A527611CE196140C1DDC5BEE4C80FE
                        SHA-256:F76144D36477D446C9BB2D98D0EA3DF615F9542ABE0C65FCB319AF779E051BBC
                        SHA-512:B33E10B370FAF593B9E18FDF0028ABEFC8106DCBF74D06A32E6F0BF3BE8251B8B4C9D69276F24FB75A59CC48BB427226E5968D36008E84E2E20F6426622F7F02
                        Malicious:false
                        Reputation:unknown
                        Preview:...a5................VERSION.1..META:file://.._file://..test
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):329
                        Entropy (8bit):5.228755535238471
                        Encrypted:false
                        SSDEEP:
                        MD5:CFE58A883729DE18A5AEAE63B3C79EF8
                        SHA1:1F6C7121807B7494E895A72407F39C80E8732D16
                        SHA-256:0B9C8E5C57CD8F20DDCA47362AECAE3CF3FB562BFFBB1A688C0CC629D6FB84A7
                        SHA-512:662B4491D4C6E7AF9F0568B51865C98E484AEEBEB1BB85C2AAF7A0CCBD13F8FD10F9D425951C8471DDB1DA2FD365FCEB053FD7BFE2D82B8A7472345DED06E18D
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:45.020 1c44 Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Local Storage\leveldb since it was missing..2024/03/14-11:33:45.145 1c44 Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Local Storage\leveldb/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 21, cookie 0xc, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):43008
                        Entropy (8bit):0.9009435143901008
                        Encrypted:false
                        SSDEEP:
                        MD5:FB3D677576C25FF04A308A1F627410B7
                        SHA1:97D530911F9CB0C37717ABB145D748982ADA0440
                        SHA-256:A79300470D18AF26E3C5B4F23F81915B92D490105CE84A8122BF8100EC0C7517
                        SHA-512:ED6666B064958B107E55BD76E52D2E5BF7A4791379902D208EF909A6B68803240D372CE03641249EB917C241B36A5684656A48D099A8A084AD34BA009857B098
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 7, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 7
                        Category:dropped
                        Size (bytes):20480
                        Entropy (8bit):0.6732424250451717
                        Encrypted:false
                        SSDEEP:
                        MD5:CFFF4E2B77FC5A18AB6323AF9BF95339
                        SHA1:3AA2C2115A8EB4516049600E8832E9BFFE0C2412
                        SHA-256:EC8B67EF7331A87086A6CC085B085A6B7FFFD325E1B3C90BD3B9B1B119F696AE
                        SHA-512:0BFDC8D28D09558AA97F4235728AD656FE9F6F2C61DDA2D09B416F89AB60038537B7513B070B907E57032A68B9717F03575DB6778B68386254C8157559A3F1BC
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j...$......g..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:78BFCECB05ED1904EDCE3B60CB5C7E62
                        SHA1:BF77A7461DE9D41D12AA88FBA056BA758793D9CE
                        SHA-256:C257F929CFF0E4380BF08D9F36F310753F7B1CCB5CB2AB811B52760DD8CB9572
                        SHA-512:2420DFF6EB853F5E1856CDAB99561A896EA0743FCFF3E04B37CB87EDDF063770608A30C6FFB0319E5D353B0132C5F8135B7082488E425666B2C22B753A6A4D73
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"3G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:78BFCECB05ED1904EDCE3B60CB5C7E62
                        SHA1:BF77A7461DE9D41D12AA88FBA056BA758793D9CE
                        SHA-256:C257F929CFF0E4380BF08D9F36F310753F7B1CCB5CB2AB811B52760DD8CB9572
                        SHA-512:2420DFF6EB853F5E1856CDAB99561A896EA0743FCFF3E04B37CB87EDDF063770608A30C6FFB0319E5D353B0132C5F8135B7082488E425666B2C22B753A6A4D73
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"3G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 4, database pages 9, cookie 0x4, schema 4, UTF-8, version-valid-for 4
                        Category:dropped
                        Size (bytes):36864
                        Entropy (8bit):0.5559635235158827
                        Encrypted:false
                        SSDEEP:
                        MD5:9AAAE8C040B616D1378F3E0E17689A29
                        SHA1:F91E7DE07F1DA14D15D067E1F50C3B84A328DBB7
                        SHA-256:5B94D63C31AE795661F69B9D10E8BFD115584CD6FEF5FBB7AA483FDC6A66945B
                        SHA-512:436202AB8B6BB0318A30946108E6722DFF781F462EE05980C14F57F347EDDCF8119E236C3290B580CEF6902E1B59FB4F546D6BD69F62479805B39AB0F3308EC1
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g...D.........7............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):171
                        Entropy (8bit):4.897506439223241
                        Encrypted:false
                        SSDEEP:
                        MD5:B60C1142F58366C7B349277B7DB4AF59
                        SHA1:F11C29A11EE28F45CC36F1558C73F3121BD0F24E
                        SHA-256:748DF18A115CEC20C289C87D02F0D6654528D133AD91EEC3B2F13AC1595C431F
                        SHA-512:120A2E79E7A77CF601B697BC29D1AE3A5735A65064BC13EAC6C87CCF520FA13D0E8314664B7918B882A115D2FC0B44ECE3C69C12C0DE7B2568262AAF51C04F4B
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"http_server_properties":{"servers":[],"supports_quic":{"address":"192.168.2.16","used_quic":true},"version":5},"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):59
                        Entropy (8bit):4.619434150836742
                        Encrypted:false
                        SSDEEP:
                        MD5:78BFCECB05ED1904EDCE3B60CB5C7E62
                        SHA1:BF77A7461DE9D41D12AA88FBA056BA758793D9CE
                        SHA-256:C257F929CFF0E4380BF08D9F36F310753F7B1CCB5CB2AB811B52760DD8CB9572
                        SHA-512:2420DFF6EB853F5E1856CDAB99561A896EA0743FCFF3E04B37CB87EDDF063770608A30C6FFB0319E5D353B0132C5F8135B7082488E425666B2C22B753A6A4D73
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"3G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:BB02882682FC26A925C4E02D7982D805
                        SHA1:869BA469FCA5E61EE14F4C5818C9DD82EF04C604
                        SHA-256:719BA1F811D5939F37D6E920C2419840A4C9EE6109CD6FDCDAA86100A5F1AE27
                        SHA-512:58BC7BBBF141FB6E3B4E0A3D495B2D4BB9D2D265B06609A46BF9EED9FFB84E9E69EA94BD6E900637E4972AA676CEBD51D3A3590A7F0462C9D77136750A2F8E55
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:BB02882682FC26A925C4E02D7982D805
                        SHA1:869BA469FCA5E61EE14F4C5818C9DD82EF04C604
                        SHA-256:719BA1F811D5939F37D6E920C2419840A4C9EE6109CD6FDCDAA86100A5F1AE27
                        SHA-512:58BC7BBBF141FB6E3B4E0A3D495B2D4BB9D2D265B06609A46BF9EED9FFB84E9E69EA94BD6E900637E4972AA676CEBD51D3A3590A7F0462C9D77136750A2F8E55
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:BB02882682FC26A925C4E02D7982D805
                        SHA1:869BA469FCA5E61EE14F4C5818C9DD82EF04C604
                        SHA-256:719BA1F811D5939F37D6E920C2419840A4C9EE6109CD6FDCDAA86100A5F1AE27
                        SHA-512:58BC7BBBF141FB6E3B4E0A3D495B2D4BB9D2D265B06609A46BF9EED9FFB84E9E69EA94BD6E900637E4972AA676CEBD51D3A3590A7F0462C9D77136750A2F8E55
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:BB02882682FC26A925C4E02D7982D805
                        SHA1:869BA469FCA5E61EE14F4C5818C9DD82EF04C604
                        SHA-256:719BA1F811D5939F37D6E920C2419840A4C9EE6109CD6FDCDAA86100A5F1AE27
                        SHA-512:58BC7BBBF141FB6E3B4E0A3D495B2D4BB9D2D265B06609A46BF9EED9FFB84E9E69EA94BD6E900637E4972AA676CEBD51D3A3590A7F0462C9D77136750A2F8E55
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025381472","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025268981","domain_diversity":{"last_reporting_timestamp":"13354886024791907"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):33
                        Entropy (8bit):4.051821770808046
                        Encrypted:false
                        SSDEEP:
                        MD5:2B432FEF211C69C745ACA86DE4F8E4AB
                        SHA1:4B92DA8D4C0188CF2409500ADCD2200444A82FCC
                        SHA-256:42B55D126D1E640B1ED7A6BDCB9A46C81DF461FA7E131F4F8C7108C2C61C14DE
                        SHA-512:948502DE4DC89A7E9D2E1660451FCD0F44FD3816072924A44F145D821D0363233CC92A377DBA3A0A9F849E3C17B1893070025C369C8120083A622D025FE1EACF
                        Malicious:false
                        Reputation:unknown
                        Preview:{"preferred_apps":[],"version":1}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:0498998241F5D2375E3500259E91802F
                        SHA1:0B4D248A596ED1F8F57D75BA191D1CD09874D11A
                        SHA-256:46C138ABCABD7EA9E4428035254B11E7CDD457270516880D3BE08A1732E5F375
                        SHA-512:896E98A8CE339131F6D563841C07E9EE731108F6D5C2B0235F0FAE1CAB6943E116E37B2F7BE06AD5A81EE1FC36F500F54D4B82DA42F4309E5FBA3970DA68AAA7
                        Malicious:false
                        Reputation:unknown
                        Preview:{"extensions":{"settings":{"dgiklkfkllikcanfonkcabmbdfmgleag":{"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886024578208","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886024578208","location":5,"manifest":{"content_capabilities":{"include_globs":["https://*excel.officeapps.live.com/*","https://*onenote.officeapps.live.com/*","https://*powerpoint.officeapps.live.com/*","https://*word-edit.officeapps.live.com/*","https://*excel.officeapps.live.com.mcas.ms/*","https://*onenote.officeapps.live.com.mcas.ms/*","https://*word-edit.officeapps.live.com.mcas.ms/*","https://*excel.partner.officewebapps.cn/*","https://*onenote.partner.officewebapps.cn/*","https://*powerpoint.partner.officewebapps.cn/*","https://*word-edit.partner.officewebapps.cn/*","https://*excel.gov.online.office365.us/*","
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):40
                        Entropy (8bit):3.473726825238924
                        Encrypted:false
                        SSDEEP:
                        MD5:148079685E25097536785F4536AF014B
                        SHA1:C5FF5B1B69487A9DD4D244D11BBAFA91708C1A41
                        SHA-256:F096BC366A931FBA656BDCD77B24AF15A5F29FC53281A727C79F82C608ECFAB8
                        SHA-512:C2556034EA51ABFBC172EB62FF11F5AC45C317F84F39D4B9E3DDBD0190DA6EF7FA03FE63631B97AB806430442974A07F8E81B5F7DC52D9F2FCDC669ADCA8D91F
                        Malicious:false
                        Reputation:unknown
                        Preview:.On.!................database_metadata.1
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):345
                        Entropy (8bit):5.2122814847260255
                        Encrypted:false
                        SSDEEP:
                        MD5:4368B808B1A23CAEBB388EE753BB375E
                        SHA1:744AB4315C83990481887F9B13C4C6CEB84BB83D
                        SHA-256:97A04F1954DB5D236404C2726D8A428B0C90DEE6F54496D4C284E1E76C33B6BC
                        SHA-512:411B63838784EA167D62BFF1BDF4A524957865102A2EC34B5405ED03A2A10F18FFB4D6FCEE98AAC72D8D0CCE30DD780F22B0438B4D0D5DAB572C1301B1584CAF
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.547 1a9c Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Site Characteristics Database since it was missing..2024/03/14-11:33:44.567 1a9c Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Site Characteristics Database/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):321
                        Entropy (8bit):5.260087426081062
                        Encrypted:false
                        SSDEEP:
                        MD5:94365FE51632A234DB231870457A8B90
                        SHA1:F83EFE1D1FCD1FA5C23ACF172D7111CE04FDFB66
                        SHA-256:80FB617BE7FB84122BF215D07161F9A24CDC7CD5A830A404EC9CFBE381EDF2BF
                        SHA-512:67477DB04BCAC68E1B3A59ABAC4E5E3A720F97110729715957F19DDA9428219B0B4F476E94DE453D2AB7A808F0269C4CB54D8B47B311816AA5A460E54141B06D
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:45.304 1a5c Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Sync Data\LevelDB since it was missing..2024/03/14-11:33:45.322 1a5c Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\Sync Data\LevelDB/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):131072
                        Entropy (8bit):0.0033769341339387224
                        Encrypted:false
                        SSDEEP:
                        MD5:4E26A245A64E78B946CA35F93BF3EEAC
                        SHA1:23D251A1AFB410189B4003DCAD5032F5FAF8D9C9
                        SHA-256:811171BAF3EAEEADD7A749FAEE460877D02FEE8E9A960FF9F910F1B3D726FAB0
                        SHA-512:F647E07245C4EE29ADCE2D9F8BE22622557AC4139B4BC50B4639E22DB53E3D81C0A0D60AF0626F54B16C5AE972E474BA45A972B0702E69E66B20616024315F5C
                        Malicious:false
                        Reputation:unknown
                        Preview:VLnk.....?........!..r..................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):2568
                        Entropy (8bit):0.06569804787746028
                        Encrypted:false
                        SSDEEP:
                        MD5:9CDBDD558AFEC5B7E0409BED9626406B
                        SHA1:59D442179A2B101CBB203E5A6A7443AF83D6E11A
                        SHA-256:204CC59E9516146614AA963EA399CC0E65B4D20DB2D97978A0AE10E531BD151E
                        SHA-512:5DC62C57D6205BAC0C9E15B23BCD416724D49F1B87C0898E9EEA704A3EBE14D5B5CED58F6A1C77DEC6A9FE940963F09D8BC69B4A28480B6B52CAF1F8B4AC6E2F
                        Malicious:false
                        Reputation:unknown
                        Preview:..................W....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):6780
                        Entropy (8bit):5.580120370873236
                        Encrypted:false
                        SSDEEP:
                        MD5:0498998241F5D2375E3500259E91802F
                        SHA1:0B4D248A596ED1F8F57D75BA191D1CD09874D11A
                        SHA-256:46C138ABCABD7EA9E4428035254B11E7CDD457270516880D3BE08A1732E5F375
                        SHA-512:896E98A8CE339131F6D563841C07E9EE731108F6D5C2B0235F0FAE1CAB6943E116E37B2F7BE06AD5A81EE1FC36F500F54D4B82DA42F4309E5FBA3970DA68AAA7
                        Malicious:false
                        Reputation:unknown
                        Preview:{"extensions":{"settings":{"dgiklkfkllikcanfonkcabmbdfmgleag":{"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886024578208","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886024578208","location":5,"manifest":{"content_capabilities":{"include_globs":["https://*excel.officeapps.live.com/*","https://*onenote.officeapps.live.com/*","https://*powerpoint.officeapps.live.com/*","https://*word-edit.officeapps.live.com/*","https://*excel.officeapps.live.com.mcas.ms/*","https://*onenote.officeapps.live.com.mcas.ms/*","https://*word-edit.officeapps.live.com.mcas.ms/*","https://*excel.partner.officewebapps.cn/*","https://*onenote.partner.officewebapps.cn/*","https://*powerpoint.partner.officewebapps.cn/*","https://*word-edit.partner.officewebapps.cn/*","https://*excel.gov.online.office365.us/*","
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):317
                        Entropy (8bit):5.315818335626115
                        Encrypted:false
                        SSDEEP:
                        MD5:5BA7D603BA93E8F30D0B330DDEA1306F
                        SHA1:1F8BF9DF678E335A6A410DADB0A4B2A57F6BC559
                        SHA-256:13FF024736848A2E7CB26FC2273DAF766C13FF74E8E5A5F76C1067F82B17E7A6
                        SHA-512:C95C89A2EECA039359EB1759562AD4C0C533E9767964225A144426FB8DFDFFBC5CE8595311563719A41064029CA51B2C562EB3B078377FEA6AC84A690F81B434
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.863 1a28 Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\shared_proto_db since it was missing..2024/03/14-11:33:44.906 1a28 Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\shared_proto_db/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):472
                        Entropy (8bit):3.8726464475544704
                        Encrypted:false
                        SSDEEP:
                        MD5:42A5C35DE40D67E50DC07F473F0E3F1A
                        SHA1:C76F9EC216402FCDEF3C7F6236DACA2B6A3B3D30
                        SHA-256:F9B0FBE16F1A454D1A342384DC9060B83CF2CF6BF6664FBD77380B418F59B69A
                        SHA-512:38D0B084FB0A758E5CFEBA613064155EFA39642951296ADDFED6E0EF7BB6570AF07A22150923EA732625D65E063A18225345FAB05BAEAEADA2D6700F39128A90
                        Malicious:false
                        Reputation:unknown
                        Preview:.h.6.................__global... .t...................__global... .9..b.................33_..........................33_........v.................21_.....vuNX.................21_.....<...................20_.....X...................20_.....W.J+.................19_......qY.................18_.......w<.................20_.........................20_..........................19_.....}....................18_.....1..W.................9_..........................9_.....
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):335
                        Entropy (8bit):5.269010910221677
                        Encrypted:false
                        SSDEEP:
                        MD5:D5EF1203D057A845454854D606186C6E
                        SHA1:8E004ED0903EF84BE8AF39C8236284B35721C2D7
                        SHA-256:2645FD631A937A61DF1B38A31A207E362CBEACAE8C98ED14B6148A60468A2007
                        SHA-512:91E462A38D1FDDF89736D8DE26BF146069FF0693C8C72C157A60EADA3564DD9F9BDC548B6CBABAF41CB85B3E908E7393FC1E3E920737509C50F4518F77152741
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.791 1a28 Creating DB C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\shared_proto_db\metadata since it was missing..2024/03/14-11:33:44.820 1a28 Reusing MANIFEST C:\Users\user\AppData\Local\Adobe\webview2\Acrobat_Set-Up.exe\EBWebView\Default\shared_proto_db\metadata/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:AA89438726AB2F3C2E4CC6861920DCAD
                        SHA1:F818503A1DDFE1FC066DD58D582FC76489E4ECB8
                        SHA-256:ECBCA1ED3F25A67BA5E154F42DA64BE9591F3472C6391CD72978538E06326FE8
                        SHA-512:C19CCF7CAB41E84C3C2640008F8808BC013C71365E4E81CC8DC4E632103ADF714EE2832029FE2AF4E3AB1CB549DB17E55489081EADADCF0AC7A66E74683C3EC0
                        Malicious:false
                        Reputation:unknown
                        Preview:............................................2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:496CB2F941912D1DFEA049D509F7BEEB
                        SHA1:E976C7B33A059DB3E0B2A210B05473CD971E18DB
                        SHA-256:7362570297D4F4ED5474DACCEC1B113BE398B0447AB023E52702E01B6D0690F8
                        SHA-512:CEE0BA83DDC86FB8DA7F2C433B0B29E5B0ADDD82F9574EB219C580C804FA8CF84012C6A3A366F3CE53CEA250FBD0695E73DFB16B4A721FD5C26F42C58E27D6E1
                        Malicious:false
                        Reputation:unknown
                        Preview:...........................................2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):8192
                        Entropy (8bit):0.011852361981932763
                        Encrypted:false
                        SSDEEP:
                        MD5:0962291D6D367570BEE5454721C17E11
                        SHA1:59D10A893EF321A706A9255176761366115BEDCB
                        SHA-256:EC1702806F4CC7C42A82FC2B38E89835FDE7C64BB32060E0823C9077CA92EFB7
                        SHA-512:F555E961B69E09628EAF9C61F465871E6984CD4D31014F954BB747351DAD9CEA6D17C1DB4BCA2C1EB7F187CB5F3C0518748C339C8B43BBD1DBD94AEAA16F58ED
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:3E02CA9B14E0AA72FA387298C555F2FA
                        SHA1:4AB4A36ED172E8FCF509AB58A7229E2067ACCD33
                        SHA-256:C4C3761CA40B70F30C7EE1DC62BDC1F72254F819B145E3197A68E8B9C3D3A3C3
                        SHA-512:1A688543F9CE53B1CE2284A3B5C72B2E545B08704A148D6876AE476FEA6AB6E50D3239EBFBEAF51D8D3DB2BD5EB34AEBCEF525CC4B075BBEF6170B405B1134CD
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................Z.}.2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):29
                        Entropy (8bit):3.922828737239167
                        Encrypted:false
                        SSDEEP:
                        MD5:7BAAFE811F480ACFCCCEE0D744355C79
                        SHA1:24B89AE82313084BB8BBEB9AD98A550F41DF7B27
                        SHA-256:D5743766AF0312C7B7728219FC24A03A4FB1C2A54A506F337953FBC2C1B847C7
                        SHA-512:70FE1C197AF507CC0D65E99807D245C896A40A4271BA1121F9B621980877B43019E584C48780951FC1AD2A5D7D146FC6EA4678139A5B38F9B6F7A5F1E2E86BA3
                        Malicious:false
                        Reputation:unknown
                        Preview:customSynchronousLookupUris_0
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):18
                        Entropy (8bit):3.5724312513221195
                        Encrypted:false
                        SSDEEP:
                        MD5:5692162977B015E31D5F35F50EFAB9CF
                        SHA1:705DC80E8B32AC8B68F7E13CF8A75DCCB251ED7D
                        SHA-256:42CCB5159B168DBE5D5DDF026E5F7ED3DBF50873CFE47C7C3EF0677BB07B90D4
                        SHA-512:32905A4CC5BCE0FE8502DDD32096F40106625218BEDC4E218A344225D6DF2595A7B70EEB3695DCEFDD894ECB2B66BED479654E8E07F02526648E07ACFE47838C
                        Malicious:false
                        Reputation:unknown
                        Preview:edgeSettings_2.0-0
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):3581
                        Entropy (8bit):4.459693941095613
                        Encrypted:false
                        SSDEEP:
                        MD5:BDE38FAE28EC415384B8CFE052306D6C
                        SHA1:3019740AF622B58D573C00BF5C98DD77F3FBB5CD
                        SHA-256:1F4542614473AE103A5EE3DEEEC61D033A40271CFF891AAA6797534E4DBB4D20
                        SHA-512:9C369D69298EBF087412EDA782EE72AFE5448FD0D69EA5141C2744EA5F6C36CDF70A51845CDC174838BAC0ADABDFA70DF6AEDBF6E7867578AE7C4B7805A8B55E
                        Malicious:false
                        Reputation:unknown
                        Preview:{"models":[],"geoidMaps":{"gw_my":"https://malaysia.smartscreen.microsoft.com/","gw_tw":"https://taiwan.smartscreen.microsoft.com/","gw_at":"https://austria.smartscreen.microsoft.com/","gw_es":"https://spain.smartscreen.microsoft.com/","gw_pl":"https://poland.smartscreen.microsoft.com/","gw_se":"https://sweden.smartscreen.microsoft.com/","gw_kr":"https://southkorea.smartscreen.microsoft.com/","gw_br":"https://brazil.smartscreen.microsoft.com/","au":"https://australia.smartscreen.microsoft.com/","dk":"https://denmark.smartscreen.microsoft.com/","gw_sg":"https://singapore.smartscreen.microsoft.com/","gw_fr":"https://france.smartscreen.microsoft.com/","gw_ca":"https://canada.smartscreen.microsoft.com/","test":"https://eu-9.smartscreen.microsoft.com/","gw_il":"https://israel.smartscreen.microsoft.com/","gw_au":"https://australia.smartscreen.microsoft.com/","gw_ffl4mod":"https://unitedstates4.ss.wd.microsoft.us/","gw_ffl4":"https://unitedstates1.ss.wd.microsoft.us/","gw_eu":"https://europe.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):47
                        Entropy (8bit):4.493433469104717
                        Encrypted:false
                        SSDEEP:
                        MD5:3F90757B200B52DCF5FDAC696EFD3D60
                        SHA1:569A2E1BED9ECCDF7CD03E270AEF2BD7FF9B0E77
                        SHA-256:1EE63F0A3502CFB7DF195FABBA41A7805008AB2CCCDAEB9AF990409D163D60C8
                        SHA-512:39252BBAA33130DF50F36178A8EAB1D09165666D8A229FBB3495DD01CBE964F87CD2E6FCD479DFCA36BE06309EF18FEDA7F14722C57545203BBA24972D4835C8
                        Malicious:false
                        Reputation:unknown
                        Preview:synchronousLookupUris_636976985063396749.rel.v2
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):35302
                        Entropy (8bit):7.99333285466604
                        Encrypted:true
                        SSDEEP:
                        MD5:0E06E28C3536360DE3486B1A9E5195E8
                        SHA1:EB768267F34EC16A6CCD1966DCA4C3C2870268AB
                        SHA-256:F2658B1C913A96E75B45E6ADB464C8D796B34AC43BAF1635AA32E16D1752971C
                        SHA-512:45F1E909599E2F63372867BC359CF72FD846619DFEB5359E52D5700E0B1BCFFE5FF07606511A3BFFDDD933A0507195439457E4E29A49EB6451F26186B7240041
                        Malicious:false
                        Reputation:unknown
                        Preview:.......murmur3.....IN...9.......0..X..#l....C....]......pv..E..........,..?.N?....V..B-.*.F.1....g|..._.>'.-(V... .=.7P.m....#}.r.....>.LE...G.A.h5........J..=..L^-.Zl++,..h..o.y..~j.]u...W...&s.........M..........h3b..[.5.]..V^w.........a.*...6g3..%.gy../{|Z.B..X.}5.]..t.1.H&B.[.).$Y......2....L.t...{...[WE.yy.]..e.v0..\.J3..T.`1Lnh.../..-=w...W.&N7.nz.P...z......'i..R6....../....t.[..&-.....T&l..e....$.8.."....Iq....J.v..|.6.M...zE...a9uw..'.$6.L..m$......NB).JL.G.7}8(`....J.)b.E.m...c.0I.V...|$....;.k.......*8v..l.:..@.F.........K..2...%(...kA......LJd~._A.N.....$3...5....Z"...X=.....%.........6.k.....F..1..l,ia..i.i....y.M..Cl.....*...}.I..r..-+=b.6....%...#...W..K.....=.F....~.....[.......-...../;....~.09..d.....GR..H.lR...m.Huh9.:..A H./)..D.F..Y.n7.....7D.O.a;>Z.K....w...sq..qo3N...8@.zpD.Ku......+.Z=.zNFgP._@.z.ic.......3.....+..j...an%...X..7.q..A.l.7.S2..+....1.s.b..z...@v..!.y...N.C.XQ.p.\..x8(.<.....cq.(
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):949
                        Entropy (8bit):5.698741310700011
                        Encrypted:false
                        SSDEEP:
                        MD5:A028E237B174795C7048ECC8E55675BD
                        SHA1:4E737485B3BAED66F827DB9FA2D43DF31D7D339A
                        SHA-256:6B46162056426E092E566F2307F1BBBA1AC34EC8D3AB66F415A7877A2D759B5D
                        SHA-512:5541AD86D53FAF4A86B7002F1AC05A47496F92932B56C1D730426D79F258873C4965FB0C2939D8CA45DCF1B91D43C3537ACDE4840DA32ECC0613EBB61A102FDD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAAA0JzmAyI+wU2rrXElgCcFPi14Txc/NmirShlCLPF0VbQAAAAAOgAAAAAIAACAAAACEnpRe+1DmBzraNI1TYDI4ZK6HqbTOitZ70lusQ9O+4jAAAAAYZBabpZc7xu4LJ1C0H3dDLyjYlhbar4ommemHFMYSr7pGCAk11Um+LPJ15gzGPvdAAAAA8ug1zspJm3PHV8NOCckK1nA5juzcGgTApezNGQ76IHoJzlcwiSfw3OXCSsu7QkmzBZn6F3NVOZzY6D0VIrklVw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":3650,"pseudo_low_entropy_source":5297,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024042289","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):53476
                        Entropy (8bit):6.102515950606322
                        Encrypted:false
                        SSDEEP:
                        MD5:3FEAC080D2D82DA48CAF18C68716C6BC
                        SHA1:30204F8789F18EBF0967A834EFAF25EE6601CCFD
                        SHA-256:24741ECEB9CFA5B048A4A20FA4D928CDE7C59FD77657732BF5B7A07BD8F101D6
                        SHA-512:11FFE4643EB384EF84AD70629DFF67792FF4716B7F0C62E6AE4B19301F8E853965802CC453CFD507056F86F012B66511E293EB92FB3C99ACF0A47A218479000F
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"483AA87BBED748390129C70ED7CAF3443459F6FEE63C9F3C73F4DD9E6BF5D63A\"","browser":{"browser_build_version":"117.0.2045.47","browser_version_of_last_seen_whats_new":"117.0.2045.47","last_seen_whats_new_page_version":"117.0.2045.47"},"desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"desktop_session_duration_tracker":{"last_session_end_timestamp":"1710412499"},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):58901
                        Entropy (8bit):6.106733013249843
                        Encrypted:false
                        SSDEEP:
                        MD5:5E5AE34799227665859D350F84D73177
                        SHA1:AC95A3D6058F6AE02B39BF17F3A8AAA015FCC47C
                        SHA-256:EFE405754A187AC641225D5BF9E6013BCADACE6B86AE10F38DD0D3A27C0EB7C8
                        SHA-512:2C16587DD646D464388DC76346CE478282F0E63B339DEDAAD8D7034DA4882CC5CB7715136D8344823CF1B90A5DE8EBA1F79482F1ED32D274D8665A0A1C029632
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):58957
                        Entropy (8bit):6.106474805663193
                        Encrypted:false
                        SSDEEP:
                        MD5:A6B679D561DA45B3DB2F699ED2970AD9
                        SHA1:34E7601FE154BE4CF6E90A355C1408E6B9AFD8F8
                        SHA-256:E6F7C26230C76F23BC37AFD32088F8DCF6C635BFD0BC4D85418255BD14CD3157
                        SHA-512:061FF4CDD85C992D1E69FE4D367E9184D63DB043CB28C7C3701D961A4681FCF09E7D4299583FBE2BEFC05C11E991EAA5B5EFBE6E8741CAC36A4F40AC3F4E2F38
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):61604
                        Entropy (8bit):6.085892287722621
                        Encrypted:false
                        SSDEEP:
                        MD5:0A0EFE1C181DCFA1E29748217FD2E1EF
                        SHA1:93E1673CB260F1BD0F2E2CA17830B6A323C0C38B
                        SHA-256:8DC025F28FADDE2A7CE74BA3648AAA72EEF368958382044914D5CDE08EFE472E
                        SHA-512:2806E7ACC1D558EAD0B26E8A700B08C80D7D083B1F6457EEAF910571C829E6AEB08015DB7BCAE6D1209A0C1A7A00BDAEB445D8EA57DF1846BD13B89821549262
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"483AA87BBED748390129C70ED7CAF3443459F6FEE63C9F3C73F4DD9E6BF5D63A\"","browser":{"browser_build_version":"117.0.2045.47","browser_version_of_last_seen_whats_new":"117.0.2045.47","last_seen_whats_new_page_version":"117.0.2045.47"},"continuous_migration":{"scoobe_registry_state":1},"desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"desktop_session_duration_tracker":{"last_session_end_timestamp":"0"},"domain_actions_config":"H4sIAAAAAAAAAL19a3PktrH2X1HpU5LyQNLe5M355HeziV3Jxi5nU656T6VUIIghIYIAF5eZ4bj83083ONJKOwRmmutzPngtUXxwY6Nv6G78evmdqa1z/N/f/biRzqlaXv7510s+DFoJHpQ1/vLP//2fby4HCw+UxN9+vTS8h9cu39eN/Pd3l99chnHA3wfuguL6ZzloLmQvTYC/bbiO+MfvoEn5i6z+rsLV65e37OWbiz/8/fuPH/7xzYVWnbz4mxSd/ePFu9bZXl7dXrNr9vL1y2/ZzfWLi3/xNXfqAYbdXt3AX25v37y8/O2bx/FM2KcjkvDqR9tJMz+mp+C/2H/a8LgGjy3Uzx4/eR9H8fbt/8rk376Fyb/69tUrdvvqeO7Tn29uXl+z16+Pp/9/Pqa5LwBE9U4r6O97ZYIvf4+jdw8D/PXSS7ES7SryFa/rRHiV4wZ+uv
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):101961
                        Entropy (8bit):4.63320736067242
                        Encrypted:false
                        SSDEEP:
                        MD5:A659D36C4A2DC0FEE7AD0CF43E9E160F
                        SHA1:B570812DB240889853495997EBD61894138B9CFC
                        SHA-256:5BEAD87CEB5C506B195647B7285BBCEEC0AEFC04AC8F23E14CC7FD3D1B9F6E52
                        SHA-512:6CEF5BCC3A1FEFA054BE09CB918BC2983B374AB921D7FB6F2BD7E3BC5905D3D3548AC95C06622FBD5735A451DDD06EDCC458D7E9B1400D739924AAE8EE55FB6F
                        Malicious:false
                        Reputation:unknown
                        Preview:{"sites":[{"url":"24video.be"},{"url":"7dnifutbol.bg"},{"url":"6tv.dk"},{"url":"9kefa.com"},{"url":"aculpaedoslb.blogspot.pt"},{"url":"aek-live.gr"},{"url":"arcadepunk.co.uk"},{"url":"acidimg.cc"},{"url":"aazah.com"},{"url":"allehensbeverwijk.nl"},{"url":"amateurgonewild.org"},{"url":"aindasoudotempo.blogspot.com"},{"url":"anorthosis365.com"},{"url":"autoreview.bg"},{"url":"alivefoot.us"},{"url":"arbitro10.com"},{"url":"allhard.org"},{"url":"babesnude.info"},{"url":"aysel.today"},{"url":"animepornx.com"},{"url":"bahisideal20.com"},{"url":"analyseindustrie.nl"},{"url":"bahis10line.org"},{"url":"apoel365.net"},{"url":"bahissitelerisikayetleri.com"},{"url":"bambusratte.com"},{"url":"banzaj.pl"},{"url":"barlevegas.com"},{"url":"baston.info"},{"url":"atomcurve.com"},{"url":"atascadocherba.com"},{"url":"astrologer.gr"},{"url":"adultpicz.com"},{"url":"alleporno.com"},{"url":"beaver-tube.com"},{"url":"beachbabes.info"},{"url":"bearworldmagazine.com"},{"url":"bebegimdensonra.com"},{"url":"autoy
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:A659D36C4A2DC0FEE7AD0CF43E9E160F
                        SHA1:B570812DB240889853495997EBD61894138B9CFC
                        SHA-256:5BEAD87CEB5C506B195647B7285BBCEEC0AEFC04AC8F23E14CC7FD3D1B9F6E52
                        SHA-512:6CEF5BCC3A1FEFA054BE09CB918BC2983B374AB921D7FB6F2BD7E3BC5905D3D3548AC95C06622FBD5735A451DDD06EDCC458D7E9B1400D739924AAE8EE55FB6F
                        Malicious:false
                        Reputation:unknown
                        Preview:{"sites":[{"url":"24video.be"},{"url":"7dnifutbol.bg"},{"url":"6tv.dk"},{"url":"9kefa.com"},{"url":"aculpaedoslb.blogspot.pt"},{"url":"aek-live.gr"},{"url":"arcadepunk.co.uk"},{"url":"acidimg.cc"},{"url":"aazah.com"},{"url":"allehensbeverwijk.nl"},{"url":"amateurgonewild.org"},{"url":"aindasoudotempo.blogspot.com"},{"url":"anorthosis365.com"},{"url":"autoreview.bg"},{"url":"alivefoot.us"},{"url":"arbitro10.com"},{"url":"allhard.org"},{"url":"babesnude.info"},{"url":"aysel.today"},{"url":"animepornx.com"},{"url":"bahisideal20.com"},{"url":"analyseindustrie.nl"},{"url":"bahis10line.org"},{"url":"apoel365.net"},{"url":"bahissitelerisikayetleri.com"},{"url":"bambusratte.com"},{"url":"banzaj.pl"},{"url":"barlevegas.com"},{"url":"baston.info"},{"url":"atomcurve.com"},{"url":"atascadocherba.com"},{"url":"astrologer.gr"},{"url":"adultpicz.com"},{"url":"alleporno.com"},{"url":"beaver-tube.com"},{"url":"beachbabes.info"},{"url":"bearworldmagazine.com"},{"url":"bebegimdensonra.com"},{"url":"autoy
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):4194304
                        Entropy (8bit):0.040470920875452364
                        Encrypted:false
                        SSDEEP:
                        MD5:B5289C4241DF0221E5F22C43F7708D9A
                        SHA1:0A9AD8CBCB6E66B243743606C081CDCDA5477473
                        SHA-256:5AF15F14521FA5809F0744E8B4797B85CDE617D0A6DE81CC9EB926732622F19F
                        SHA-512:3060D486C66E64A9B520E7D36DAD0379965E7420E538B482FB70916B3A96D0C1014E1CCAA4E23BFA58104787A3460BA2D14E8160EC4032836C768E327EA4AFE7
                        Malicious:false
                        Reputation:unknown
                        Preview:...@..@...@.....C.].....@................a...Q..............`... ...i.y.........BrowserMetrics......i.y..Yd. .......A...................v.0.....UV&K.k<................UV&K.k<................UMA.PersistentHistograms.InitResult.....8...i.y.[".................................................i.y.Pq.30....q.........117.0.2045.47-64..".en-GB*...Windows NT..10.0.190452l..x86_64..?........".xgvqee20,1(.0..8..B.......2.:.M..BU..Be...?j...GenuineIntel... .. ..........x86_64...J....k..^o..J..l.zL.^o..J...I.r.^o..J....\.^o..J.....f.^o..J....?.^o..P.Z...b.INBXj....... .8.@..............2......................w..U.>.........."....."...2...".*.:............B)..1.3.177.11.. .*.RegKeyNotFound2.windowsR...Z....+....W@..$...SF@.......Y@.......Y@.......Y@........?........?.................?.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@................Y@.......Y@.......Y@........?........?z...........................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):4194304
                        Entropy (8bit):0.4758442594463247
                        Encrypted:false
                        SSDEEP:
                        MD5:B850A0FDAF85CD600DCFADF462B7856B
                        SHA1:0D52E61412C146A96D0FCE7C315CF44E94F32CEE
                        SHA-256:461824AB0C1D27EE19F7AEC0556411ECDDFFF992BD20588ED377BD668904CF2F
                        SHA-512:F319680D84F258329191709A428902D0A599D1B5028F2B50B42F26A65E22DD7177D6AEA74086568E52C69837028EAEB951747125E056EF9C20502479A1885724
                        Malicious:false
                        Reputation:unknown
                        Preview:...@..@...@.....C.].....@...............(Z...Z..............`... ...i.y.........BrowserMetrics......i.y..Yd. .......A...................v.0.....UV&K.k<................UV&K.k<................UMA.PersistentHistograms.InitResult.....8...i.y.[".................................................i.y.Pq.30..............117.0.2045.47-64..".en-GB*...Windows NT..10.0.190452....x86_64..?........".xgvqee20,1(.0..8..B....(.....10.0.19041.5462.Google Inc. (Google):bANGLE (Google, Vulkan 1.3.0 (SwiftShader Device (Subzero) (0x0000C0DE)), SwiftShader driver-5.0.0)M..BU..Be...?j...GenuineIntel... .. ..........x86_64...J....s..^o..J...W..^o..J.....1.^o..J..,jp..^o..J.......^o..J../T...^o..J...X.p.^o..J.....p.^o..J...c...^o..J...t...^o..J.......^o..J...Y...^o..J.......^o..J..w....^o..J...G.Y.^o..J..h....^o..J..A....^o..J..&.t..^o..J...c=..^o..J....J..^o..J...h8..^o..J..3.(..^o..J.......^o..J..!n...^o..J...S@".^o..J.......^o..J.......^o..J...j.8.^o..J.....-.^o..J.....z.^o..J.......^o..J...b.J.^o..J..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):280
                        Entropy (8bit):4.198584244792286
                        Encrypted:false
                        SSDEEP:
                        MD5:3ACA63386A8405C12EBC39BC286297D4
                        SHA1:67B7B29EB19CD83988784A50E96BB335BC5C616A
                        SHA-256:0349CA9B235A335792EDAB197FD1E7AED6F8D9EA1F219FA2EA03ACF0FC647449
                        SHA-512:8D4CAB1F8411139991E9C3E2FE4079875C5B4EF3D712E199B176538B11EA1516D8B77FF7DC29F42FE33986EEAAAFAD42448A8DCC3D820CF1E588CFA7F8757BD3
                        Malicious:false
                        Reputation:unknown
                        Preview:sdPC......................z....K..s...x."lrIM8VvlZ11+DWjoQRN3UoTALFnNCWySfE1mL4NqR5k="..................................................................................47DEQpj8HBSa+/TImW+5JCeuQeRkm5NMpJWZG3hSuFU=....................7dc5f755-0f90-4102-bc8e-37d02917bdc7............
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):39546
                        Entropy (8bit):5.563296126561991
                        Encrypted:false
                        SSDEEP:
                        MD5:C982C4D6C12F16C0F8B3B94A1D66A4F5
                        SHA1:A69F855B05E2477ED727F0987086B243592FB659
                        SHA-256:3D0E7B418AE7F4E44FFB8DF07B913D1B4C92C127AC178E936F5BA7FE5386A4B8
                        SHA-512:3A4F432A9E43EFF1B9B2F96755BBE49A815ED19145512088D1AD2613BCBECA64346EBE585423CCB90FE32FA661BE43A0E67814332433253284D843B553B2D5E2
                        Malicious:false
                        Reputation:unknown
                        Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886094883076","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886094883076","location":5,"ma
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):13731
                        Entropy (8bit):5.270222409423678
                        Encrypted:false
                        SSDEEP:
                        MD5:B4969BDC806DEB87539FB97B6AEC84BF
                        SHA1:E23E6373216BD300739A6E1360277AC9557ABC68
                        SHA-256:9855DA62816282F207C9E37E51A123BDBCF2A36F4354C5FC9FAD2DD4C97F5F48
                        SHA-512:11F50CAE3B7284AF6D2CC74C0454EB593CFD1C0C3AF435B7729C4FD0F08FED3F9605548F25E70E3BCA3987EF24486064AA7F65414C2118AF4094703C2E788B45
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886095543760","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"history_in_shoreline_activated":true,"hub_app_non_synced_preferences":{"apps":{"06be1ebe-f23a-4bea-ae45-3120ad86cfea":{"last_path":""},"0c835d2d-9592-4c7a-8d0a-0e283c9ad3cd":{"last_path":""},"168a2510-04d5-473e-b6a0-828815a7ca5f":{"last_path":""},"1ec8a5a9-971c-4c82-a104-5e1a259456b8":{"last_path":""},"2354565a-f412-4654-b89c-f92eaa9dbd20":{"last_path":""},"25fe2d1d-e934-482a-a62f-ea1705db905d":{"last_path":""},"35a43603-bb38-4b53-ba20-932cb9117794":{"last_path":""},"380c71d3-10bf-4a5d-9a06-c932e4b7d1d8":{"last_path":""},"3a2f4dee-d482-4ef8-baef-cb22b6496
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:very short file (no magic)
                        Category:dropped
                        Size (bytes):1
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:5058F1AF8388633F609CADB75A75DC9D
                        SHA1:3A52CE780950D4D969792A2559CD519D7EE8C727
                        SHA-256:CDB4EE2AEA69CC6A83331BBE96DC2CAA9A299D21329EFB0336FC02A82E1839A8
                        SHA-512:0B61241D7C17BCBB1BAEE7094D14B7C451EFECC7FFCBD92598A0F13D313CC9EBC2A07E61F007BAF58FBF94FF9A8695BDD5CAE7CE03BBF1E94E93613A00F25F21
                        Malicious:false
                        Reputation:unknown
                        Preview:.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:modified
                        Size (bytes):2164091
                        Entropy (8bit):5.223244821673662
                        Encrypted:false
                        SSDEEP:
                        MD5:BCB09712FC6466AEC03137ACB35C08EF
                        SHA1:F6B7B34149FDB87C906C095006D166226D9339F6
                        SHA-256:1FEA1A9F4AA029E897D7029F9E75650EA6C7028DF337096A749F61F9616A0B39
                        SHA-512:60C90011425006A8C2AAEFB1F1A9B20CCAAB20D8DD286B32658EE671B87A4C1585537047AB140C35EDDC8EC5AA06DE98A4E704062E34183F18C4322F57F30F4E
                        Malicious:false
                        Reputation:unknown
                        Preview:...m.................DB_VERSION.1...8.................QUERY_TIMESTAMP:arbitration_priority_list4.*.*.13341056840624329.$QUERY:arbitration_priority_list4.*.*..[{"name":"arbitration_priority_list","url":"https://edgeassetservice.azureedge.net/assets/arbitration_priority_list/4.0.5/asset?sv=2017-07-29&sr=c&sig=NtPyTqjbjPElpw2mWa%2FwOk1no4JFJEK8%2BwO4xQdDJO4%3D&st=2021-01-01T00%3A00%3A00Z&se=2023-12-30T00%3A00%3A00Z&sp=r&assetgroup=ArbitrationService","version":{"major":4,"minor":0,"patch":5},"hash":"N0MkrPHaUyfTgQSPaiVpHemLMcVgqoPh/xUYLZyXayg=","size":11749}]...................'ASSET_VERSION:arbitration_priority_list.4.0.5..ASSET:arbitration_priority_list.[{. "configVersion": 32,. "PrivilegedExperiences": [. "ShorelinePrivilegedExperienceID",. "SHOPPING_AUTO_SHOW_COUPONS_CHECKOUT",. "SHOPPING_AUTO_SHOW_LOWER_PRICE_FOUND",. "SHOPPING_AUTO_SHOW_BING_SEARCH",. "SHOPPING_AUTO_SHOW_REBATES",. "SHOPPING_AUTO_SHOW_REBATES_CONFIRMATION",. "SHOPPING_AUTO_SHOW_REBATES_DEACTI
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):332
                        Entropy (8bit):5.1652877538564885
                        Encrypted:false
                        SSDEEP:
                        MD5:810E92B038E450472A5D1F1AFC061937
                        SHA1:E4C59973C71768E8D4DDD98886E4E4CFAB8538DA
                        SHA-256:F73649B7E4EE3F1908EFC9A376949EABB2608C596027245A0747284A11191D77
                        SHA-512:563BB13CA91E07D91AD6F3C73F33B5F766555A48D4B4354488992C978B6D87C914E4E63AE40945A923CBD0F5ADA3E151A0D2F59C1D4D74D5480F6EE9F35E361C
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:58.725 1d84 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/MANIFEST-000001.2024/03/14-11:34:58.734 1d84 Recovering log #3.2024/03/14-11:34:58.909 1d84 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x3, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):28672
                        Entropy (8bit):0.48572648025994547
                        Encrypted:false
                        SSDEEP:
                        MD5:B677944F69211251AD8107EFA305E152
                        SHA1:F63081439BE1C534F52DCB7C1FB03795D190A801
                        SHA-256:814135EA27AC80DB4457E4081C694BB9EB6A48E1263B1EE0DF83AE632D4560D8
                        SHA-512:D07F93BB9DCDDC61FE00666B2BBAA256675ED10A22826C2CC29D90BEA2C2F71C2CCF99FF92F1667B8EA4138CC243BF970BBADF558EED63438174811C4E370466
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g.....8...n................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 5, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 5
                        Category:dropped
                        Size (bytes):10240
                        Entropy (8bit):0.8708334089814068
                        Encrypted:false
                        SSDEEP:
                        MD5:92F9F7F28AB4823C874D79EDF2F582DE
                        SHA1:2D4F1B04C314C79D76B7FF3F50056ECA517C338B
                        SHA-256:6318FCD9A092D1F5B30EBD9FB6AEC30B1AEBD241DC15FE1EEED3B501571DA3C7
                        SHA-512:86FEF0E05F871A166C3FAB123B0A4B95870DCCECBE20B767AF4BDFD99653184BBBFE4CE1EDF17208B7700C969B65B8166EE264287B613641E7FDD55A6C09E6D4
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j...v... .. .....M....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):115
                        Entropy (8bit):5.018917594317467
                        Encrypted:false
                        SSDEEP:
                        MD5:7C0DDB5C8A5A1BBE7F2D0345454F2C0C
                        SHA1:7C4BC3298EAE96307C29042B8ADACCF1BF1C5619
                        SHA-256:C244EDEFA3608F436F2F1EC562E45D78C2B3ED2FFB0330828098937AC270FA61
                        SHA-512:8E512AAB65AAFDFEC2665B20DB26CCE9FA2D5FF8E7F2416E972761F20255291D93F70BA935EA1CAA15DA8D00CAB38803C245A14FE2F321A1B13F8631E6E832FC
                        Malicious:false
                        Reputation:unknown
                        Preview:...m.................DB_VERSION.1b..K................FLYOUT_STORAGE:-{"personalization_data_consent_enabled":true}
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):341
                        Entropy (8bit):5.206893204882407
                        Encrypted:false
                        SSDEEP:
                        MD5:A42EB9B4FA3F5CCF104B9282100910D3
                        SHA1:20867EBC83F14214EEF0AE5EE2597F33ED07125B
                        SHA-256:BCC547970BF0361C1A8C944EE96F6D07D3FC7EA4F4BEAADFA9795394B9B4E496
                        SHA-512:BD5B67213DB831A855A29520AE75DB79871C4EE3E5767B2A7E538987AD21CB90FF36543AD58D96D3C33B330347AD59D6B2390E5330E5073D84F6F6A0589F379C
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:54.894 e44 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/MANIFEST-000001.2024/03/14-11:34:54.896 e44 Recovering log #3.2024/03/14-11:34:54.898 e44 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 6, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 6
                        Category:dropped
                        Size (bytes):20480
                        Entropy (8bit):0.6138293915783295
                        Encrypted:false
                        SSDEEP:
                        MD5:FDE6B15013251C6308E170636D091CBA
                        SHA1:4D605F9E0816B1C4D33F908C4D0A8C6015342460
                        SHA-256:4AF6189A90E4A2953982B6F57B14F072FF9224C318152DEDE6566C9823402848
                        SHA-512:8DA368786AD96337ADF510EEFE05369220BDC97102CA61539F35041D142358AC0B6BE2C1594558C70E32D59428B8CAB5F4D2E33816DEB2040E3D1FED3894515B
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j...%.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):392647
                        Entropy (8bit):5.409445671910659
                        Encrypted:false
                        SSDEEP:
                        MD5:389C2E704270B3F5448B5CB23C3691EC
                        SHA1:26D939AA1B6D26D35F728D3C072DF6EDD6FA6878
                        SHA-256:D8627DE0245C022FEE41637D282ACFF4F5A8715D597D3092DE297E742C0568DF
                        SHA-512:2BB00473B632CC36AEC7C9C129554D3D7AF6AE365211681FE80F7A7F3DDF008B3814B3B1C6A39BFCFED42E654451BED70765BA93F2A813118603561AD5ABDBED
                        Malicious:false
                        Reputation:unknown
                        Preview:...m.................DB_VERSION.1.Z..................&QUERY_TIMESTAMP:domains_config_gz2.*.*.13354886099342396..QUERY:domains_config_gz2.*.*..[{"name":"domains_config_gz","url":"https://edgeassetservice.azureedge.net/assets/domains_config_gz/2.8.75/asset?sv=2017-07-29&sr=c&sig=imsWdc2PGC%2BuAreb04yW9xpieA0z5NEov%2BfbkBLqCb8%3D&st=2021-01-01T00%3A00%3A00Z&se=2024-05-30T00%3A00%3A00Z&sp=r&assetgroup=EntityExtractionDomainsConfig","version":{"major":2,"minor":8,"patch":75},"hash":"EwG2gkfquexLj6u3yjHyiL4YQwdU318k1Hub+1rSDMI=","size":391864}].....}...............ASSET_VERSION:domains_config_gz.2.8.75..ASSET:domains_config_gz...{"config": {"token_limit": 1600, "page_cutoff": 4320, "default_locale_map": {"bg": "bg-bg", "bs": "bs-ba", "el": "el-gr", "en": "en-us", "es": "es-mx", "et": "et-ee", "cs": "cs-cz", "da": "da-dk", "de": "de-de", "fa": "fa-ir", "fi": "fi-fi", "fr": "fr-fr", "he": "he-il", "hr": "hr-hr", "hu": "hu-hu", "id": "id-id", "is": "is-is", "it": "it-it", "ja": "ja-jp", "ko": "
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):307
                        Entropy (8bit):5.20013604911642
                        Encrypted:false
                        SSDEEP:
                        MD5:829351F7C6ACDC474EEFD58C0DDAFD22
                        SHA1:2BFEBDE4A931106F8AFC4A37E08C18867FB56FA3
                        SHA-256:80619A4AA0024895D96BAB624E7C6A45A1218A5017B1ECF64325A6B83F27BF1D
                        SHA-512:8E103C034FA211D88699C8114919F113AD9847EB5A6E12B316FC015A0E32741B39F1DE43FA815996CAEF98A46C793FDE52F20EC32A87E2B208E5B9E5FC27491F
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:58.776 1160 Creating DB C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EntityExtractionAssetStore.db since it was missing..2024/03/14-11:34:58.874 1160 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EntityExtractionAssetStore.db/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:modified
                        Size (bytes):374811
                        Entropy (8bit):5.396156064864037
                        Encrypted:false
                        SSDEEP:
                        MD5:B10708206202320F2A24A2C454C0AB1E
                        SHA1:9CABB1E01A772C531F651F7204AEEC0FCE5F9292
                        SHA-256:DA20C9F3B50210D0ACA6A8F4E0DD3E19E74C0FA869852EB1AD928183644104C0
                        SHA-512:FEA9C3D2EA8AC06019D94F6E64D542D820847C01819557588B22D18D2DA2C6BD635F4D131CDC912FB1F74D214333CBF3F5EEB34ABC2436047A3B9794AAC5ACFA
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aee_config":{"ar":{"price_regex":{"ae":"(((ae|aed|\\x{062F}\\x{0660}\\x{0625}\\x{0660}|\\x{062F}\\.\\x{0625}|dhs|dh)\\s*\\d{1,3})|(\\d{1,3}\\s*(ae|aed|\\x{062F}\\x{0660}\\x{0625}\\x{0660}|\\x{062F}\\.\\x{0625}|dhs|dh)))","dz":"(((dzd|da|\\x{062F}\\x{062C})\\s*\\d{1,3})|(\\d{1,3}\\s*(dzd|da|\\x{062F}\\x{062C})))","eg":"(((e\\x{00a3}|egp)\\s*\\d{1,3})|(\\d{1,3}\\s*(e\\x{00a3}|egp)))","ma":"(((mad|dhs|dh)\\s*\\d{1,3})|(\\d{1,3}\\s*(mad|dhs|dh)))","sa":"((\\d{1,3}\\s*(sar\\s*\\x{fdfc}|sar|sr|\\x{fdfc}|\\.\\x{0631}\\.\\x{0633}))|((sar\\s*\\x{fdfc}|sar|sr|\\x{fdfc}|\\.\\x{0631}\\.\\x{0633})\\s*\\d{1,3}))"},"product_terms":"((\\x{0623}\\x{0636}\\x{0641}\\s*\\x{0625}\\x{0644}\\x{0649}\\s*\\x{0627}\\x{0644}\\x{0639}\\x{0631}\\x{0628}\\x{0629})|(\\x{0623}\\x{0636}\\x{0641}\\s*\\x{0625}\\x{0644}\\x{0649}\\s*\\x{0627}\\x{0644}\\x{062D}\\x{0642}\\x{064A}\\x{0628}\\x{0629})|(\\x{0627}\\x{0634}\\x{062A}\\x{0631}\\x{064A}\\s*\\x{0627}\\x{0644}\\x{0622}\\x{0646})|(\\x{062E}\\x{064A}\\x{0627}\\x{0631}
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):418
                        Entropy (8bit):1.8784775129881184
                        Encrypted:false
                        SSDEEP:
                        MD5:BF097D724FDF1FCA9CF3532E86B54696
                        SHA1:4039A5DD607F9FB14018185F707944FE7BA25EF7
                        SHA-256:1B8B50A996172C16E93AC48BCB94A3592BEED51D3EF03F87585A1A5E6EC37F6B
                        SHA-512:31857C157E5B02BCA225B189843CE912A792A7098CEA580B387977B29E90A33C476DF99AD9F45AD5EB8DA1EFFD8AC3A78870988F60A32D05FA2DA8F47794FACE
                        Malicious:false
                        Reputation:unknown
                        Preview:.f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5...............
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):317
                        Entropy (8bit):5.1788340024055115
                        Encrypted:false
                        SSDEEP:
                        MD5:B1E7DA692C83725FBFFCE0DF3AA9F6C1
                        SHA1:F0BAFEA1F98151AEDA4C0C39D7E6EE8D9C34EA86
                        SHA-256:2F1F5934975BC19D909360FB25CCBF692B92FCD8EE32B020C93FC2CE7E4CA912
                        SHA-512:1F80878E461A40893A4D2D91E13100D95AEB56B7695946BCF3EFBA384005CA55A0A14887E2F43397650AECF9A3E847E515A6185A6FCA9DFEE8FEB45338C7868D
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:54.897 be4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/MANIFEST-000001.2024/03/14-11:34:54.900 be4 Recovering log #3.2024/03/14-11:34:54.901 be4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):321
                        Entropy (8bit):5.173141726713212
                        Encrypted:false
                        SSDEEP:
                        MD5:79CA3C28D2D77A5A1F7AF7D9D09AECEB
                        SHA1:578DFBAAE91E9B615376E51BF9316233BA5C398E
                        SHA-256:E911C4D4DEB377614243FCA1B61C38B2522EAC747E166EFB11736F74DA198168
                        SHA-512:DC53FBFE219010A401927F04B05C38B234EE73A3E925CC451E474938875C69C07087FF297A43FFC75833BDF15A3B5FE9ABA89C8E00A0417F0A2F260C910F0759
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:54.915 be4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/MANIFEST-000001.2024/03/14-11:34:54.923 be4 Recovering log #3.2024/03/14-11:34:54.924 be4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):1254
                        Entropy (8bit):1.8784775129881184
                        Encrypted:false
                        SSDEEP:
                        MD5:826B4C0003ABB7604485322423C5212A
                        SHA1:6B8EF07391CD0301C58BB06E8DEDCA502D59BCB4
                        SHA-256:C56783C3A6F28D9F7043D2FB31B8A956369F25E6CE6441EB7C03480334341A63
                        SHA-512:0474165157921EA84062102743EE5A6AFE500F1F87DE2E87DBFE36C32CFE2636A0AE43D8946342740A843D5C2502EA4932623C609B930FE8511FE7356D4BAA9C
                        Malicious:false
                        Reputation:unknown
                        Preview:.f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5........
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):317
                        Entropy (8bit):5.148244711160695
                        Encrypted:false
                        SSDEEP:
                        MD5:A3DB629A214749A06CF2E61242E39AB4
                        SHA1:3819F0E426D6FD1A623A2027369A4CD0F2E7C241
                        SHA-256:EAB0251C95C45890DDA988593859436D58D993912991A97FAADB2037CEB74924
                        SHA-512:E7D6F62BCB99C4AC69258F553B6D3D3D338A568776C5B6EB63F3187412926B6375F39FB60C30733F6EF8CE43B3511A3B9D3E5B667BEC3B9266E3700942A3D173
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:56.001 91c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/MANIFEST-000001.2024/03/14-11:34:56.004 91c Recovering log #3.2024/03/14-11:34:56.005 91c Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):429
                        Entropy (8bit):5.809210454117189
                        Encrypted:false
                        SSDEEP:
                        MD5:5D1D9020CCEFD76CA661902E0C229087
                        SHA1:DCF2AA4A1C626EC7FFD9ABD284D29B269D78FCB6
                        SHA-256:B829B0DF7E3F2391BFBA70090EB4CE2BA6A978CCD665EEBF1073849BDD4B8FB9
                        SHA-512:5F6E72720E64A7AC19F191F0179992745D5136D41DCDC13C5C3C2E35A71EB227570BD47C7B376658EF670B75929ABEEBD8EF470D1E24B595A11D320EC1479E3C
                        Malicious:false
                        Reputation:unknown
                        Preview:{"file_hashes":[{"block_hashes":["OdZL4YFLwCTKbdslekC6/+U9KTtDUk+T+nnpVOeRzUc=","6RbL+qKART8FehO4s7U0u67iEI8/jaN+8Kg3kII+uy4=","CuN6+RcZAysZCfrzCZ8KdWDkQqyaIstSrcmsZ/c2MVs="],"block_size":4096,"path":"content.js"},{"block_hashes":["OdZL4YFLwCTKbdslekC6/+U9KTtDUk+T+nnpVOeRzUc=","UL53sQ5hOhAmII/Yx6muXikzahxM+k5gEmVOh7xJ3Rw=","u6MdmVNzBUfDzMwv2LEJ6pXR8k0nnvpYRwOL8aApwP8="],"block_size":4096,"path":"content_new.js"}],"version":2}
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 3, database pages 24, cookie 0x8, schema 4, UTF-8, version-valid-for 3
                        Category:dropped
                        Size (bytes):49152
                        Entropy (8bit):4.707804178454111
                        Encrypted:false
                        SSDEEP:
                        MD5:9052014FC5BAB760AAF0D607D2A053C3
                        SHA1:C2585ADD7C88C90365E21C46EC4B6B59325CAECF
                        SHA-256:0209D3C8BE836F56A1DA5BF6FB7FA68702772DAA32411B76A951AAFE3280B8E3
                        SHA-512:F930F046CF74D74132FC0A11F02642C597CD1BAF0CE5ADE280C9072DF2D5637C9EC52D10CBC44DCB31040E2E30C3AC4774ED82058639DEEE6012B08222AC02D6
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g....._.c...~.2.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................s...;+...indexfavicon_bitmaps_icon_idfavico
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 3, database pages 43, cookie 0x1f, schema 4, UTF-8, version-valid-for 3
                        Category:dropped
                        Size (bytes):196608
                        Entropy (8bit):0.9418147873969499
                        Encrypted:false
                        SSDEEP:
                        MD5:9A3133AB90FAA85E22567445E7A1E690
                        SHA1:F80BE9CA840DED4612FD5AA2D13E3BD96E256A5D
                        SHA-256:24FB6B91CDC13E0FB3EE6123C364FA7922488C05503429887FBF63CB11BA5EF8
                        SHA-512:6C81355761A29E24A414F15A1A32C69E56424111D94C23F94CCC38E8FE8A5C56C5F20EAE060794D85B00B75C5C5A839F95C89499738A54A1A2D233A682A989AB
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ .......+..................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):29240
                        Entropy (8bit):0.5459702169280355
                        Encrypted:false
                        SSDEEP:
                        MD5:0C757A021A036CEF3EA31120AB1127A6
                        SHA1:617D352A1EB61A28829C70CC234F18E0AE605B11
                        SHA-256:6DE784F617EC71E8A362566B9CB31C9FA14795EA73EBD938E0AE6B9827848277
                        SHA-512:D316917C34FF68DF512841A26BC053C1E676C82140957E12192D2E9FCE834F48340F22A37B47B3E31283446117C1D1C421F4AAEDED117CBBA1B5CC134A2CEEC8
                        Malicious:false
                        Reputation:unknown
                        Preview:...................+......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................r......................r......................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with very long lines (1597), with CRLF line terminators
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:3D8183370B5E2A9D11D43EBEF474B305
                        SHA1:155AB0A46E019E834FA556F3D818399BFF02162B
                        SHA-256:6A30BADAD93601FC8987B8239D8907BCBE65E8F1993E4D045D91A77338A2A5B4
                        SHA-512:B7AD04F10CD5DE147BDBBE2D642B18E9ECB2D39851BE1286FDC65FF83985EA30278C95263C98999B6D94683AE1DB86436877C30A40992ACA1743097A2526FE81
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "current_locale": "en-GB",.. "hub_apps": [ {.. "auto_show": {.. "enabled": true,.. "fre_notification": {.. "enabled": true,.. "header": "Was opening this pane helpful to you?",.. "show_count": 2,.. "text": "Was opening this pane helpful to you?".. },.. "settings_description": "We'll automatically open Bing Chat in the sidebar to show you relevant web experiences alongside your web content",.. "settings_title": "Automatically open Bing Chat in the sidebar",.. "triggering_configs|flight:msHubAppsMsnArticleAutoShowTriggering": [ {.. "show_count_basis": "signal",.. "signal_name": "IsMsnArticleAutoOpenFromP1P2",.. "signal_threshold": 0.5.. } ],.. "triggering_configs|flight:msUndersidePersistentChat": [ {.. "signal_name": "IsUndersidePersistentChatLink",.. "signal_threshold": 0.5.. } ],.. "triggering_co
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 6, database pages 11, cookie 0x3, schema 4, UTF-8, version-valid-for 6
                        Category:dropped
                        Size (bytes):45056
                        Entropy (8bit):3.5489853859787512
                        Encrypted:false
                        SSDEEP:
                        MD5:053B9B17C34FD2B1512DE09784101793
                        SHA1:56888086B0DE35447E90CDABBC745E60FBF026EB
                        SHA-256:305BC1C9AED2F4552EAA21E7BDF0D30AD6C1A748B66FB15738FE8C927C6E67AD
                        SHA-512:9C79D0C6BA313E8256239A7B3BC4EB4943848616660C99BBD46C39097BBA9CE43F38913DF7E70574F9947F2A97E9DE1BD66405F54705C063266182E53F4FB960
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g...:.8....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):401
                        Entropy (8bit):5.291445107987032
                        Encrypted:false
                        SSDEEP:
                        MD5:5AD558B2B25DECE27997B862FE9232B1
                        SHA1:FDB87C92D866E6B4E8AE3D47BCC3CC3650F015E7
                        SHA-256:4088F7D8FCCED6FE2B2B9F998C9763CF15E749E81B6B126E886061AF11FADC25
                        SHA-512:E8FDDA71DD24737F5334B784D9092FF255A538E81102B738A6A40BAC30265BF744DCEB6C3D2AFB2D456F7EDC85798575A3AC952D05E0A1C108E2DB50BF0BDAE3
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:56.183 91c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/MANIFEST-000001.2024/03/14-11:34:56.185 91c Recovering log #3.2024/03/14-11:34:56.185 91c Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):814
                        Entropy (8bit):5.599179552291502
                        Encrypted:false
                        SSDEEP:
                        MD5:DB53DF2EB098D8D0A56C336B91114598
                        SHA1:880310DEFE1C42D3DFB823FE98C98B8B66C57E92
                        SHA-256:092BC9A5343932721DA04154D2ECEFEE50F60EB266EBF109107677515CDCD960
                        SHA-512:E8BA05B6C8B2199CB0928031EEF03BAB65198BDB9D31148EF8EACD86A81F40EF472C0F7C84901F63029F0E7A585EDF2CB3318EF3E0A4924BD9CA9A20CD2E4139
                        Malicious:false
                        Reputation:unknown
                        Preview:....................VERSION.1.$META:https://auth.services.adobe.com..........2.N_https://auth.services.adobe.com..com.adobe.reactor.dataElementCookiesMigrated..true.^...................META:https://www.microsoft.com............#_https://www.microsoft.com.._uetsid!.94d2fce0e1ee11eea3f409dc2762e3c3.'_https://www.microsoft.com.._uetsid_exp..Fri, 15 Mar 2024 10:35:31 GMT.#_https://www.microsoft.com.._uetvid!.94d30910e1ee11ee8eb3f1c1d7e17ce6.'_https://www.microsoft.com.._uetvid_exp..Tue, 08 Apr 2025 10:35:31 GMT.0_https://www.microsoft.com..lastExternalReferrer..empty.4_https://www.microsoft.com..lastExternalReferrerTime..1710412533527.$_https://www.microsoft.com..li_adsId%.b1357b40-99ba-41b0-b6ae-8b38aad7da37.^_https://www.microsoft.com..Thu Mar 14 2024 11:35:29 GMT+0100 (Central European Standard Time)
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):329
                        Entropy (8bit):5.188529987079948
                        Encrypted:false
                        SSDEEP:
                        MD5:AC9A8F5EBAAF991613DAEAF972D854B6
                        SHA1:43D60F015EE5E1D68C34747F382399BBE73E7E1D
                        SHA-256:A777AB614BE45F97A33B9B4A3824C5FDC7B8D40AD20738FA3836C632D19F4409
                        SHA-512:98C248E54EF53AB549DC37F73AF95D140E9F2C84376B916938711C172B2721CBC9CDD9E138E9127908B113F0E3F20F22560FACFB99A151B31998640C25455B6A
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:54.970 dd8 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/MANIFEST-000001.2024/03/14-11:34:54.973 dd8 Recovering log #3.2024/03/14-11:34:54.988 dd8 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 8, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 8
                        Category:dropped
                        Size (bytes):20480
                        Entropy (8bit):1.704077945553966
                        Encrypted:false
                        SSDEEP:
                        MD5:9CDA3C98F6D5654951B352579838A1DA
                        SHA1:61C0AD5E296020DD377698ED8B7E3D182DD4E4C3
                        SHA-256:867DAE0E631FA566A218C2941175BE54759E4FC43C6A333DE5EBCF3A50E80DDB
                        SHA-512:7BD1C90D9908D8B266A0C3ED6B7BC5BC58710538ACA0B6B234077FF0C863A19181BAD6C1C8D88CA84272353679C7DF129006B1DE117A2C5B16EC24CC033F7FDA
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j...$......g..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 6, database pages 9, cookie 0x4, schema 4, UTF-8, version-valid-for 6
                        Category:dropped
                        Size (bytes):36864
                        Entropy (8bit):1.1142468756687907
                        Encrypted:false
                        SSDEEP:
                        MD5:CDC0D3069878C510563831E0346D1736
                        SHA1:87C4430F3AE97EBC14DAE1D5A17FE94083CD7FB0
                        SHA-256:0857C6CBD32B94C9F3AE40532CAA66F8D296B0EC3DE807DB3A25E6C215376B21
                        SHA-512:63057CC80642E58E727B38C4FB45D146217A3B40114BF475109A2F05D4240A2A94D9E37D9A50FCF795E6D792E8C8C4E355955E7D41255B8404114CDFFED8CA48
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g...D.........7............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:8FFC99CD4F05563BE0C1336EE0AE633F
                        SHA1:65E949109832DF7713F4547C34DD929B1339157C
                        SHA-256:0832DD80A2675DB77E845D29FD105AABF9EFB3F07EA2115731EEDBCF4B98A8C8
                        SHA-512:B297CAF3CDB2851FC834136D61DA231CBB0D9B5EE44977CA726E32F070BB309B8F5065832382E05CD7BAFEE96EA910D08480875A0CBCBED283D704C7259A7FAC
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886095543760","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"history_in_shoreline_activated":true,"hub_app_non_synced_preferences":{"apps":{"06be1ebe-f23a-4bea-ae45-3120ad86cfea":{"last_path":""},"0c835d2d-9592-4c7a-8d0a-0e283c9ad3cd":{"last_path":""},"168a2510-04d5-473e-b6a0-828815a7ca5f":{"last_path":""},"1ec8a5a9-971c-4c82-a104-5e1a259456b8":{"last_path":""},"2354565a-f412-4654-b89c-f92eaa9dbd20":{"last_path":""},"25fe2d1d-e934-482a-a62f-ea1705db905d":{"last_path":""},"35a43603-bb38-4b53-ba20-932cb9117794":{"last_path":""},"380c71d3-10bf-4a5d-9a06-c932e4b7d1d8":{"last_path":""},"3a2f4dee-d482-4ef8-baef-cb22b6496
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:8FFC99CD4F05563BE0C1336EE0AE633F
                        SHA1:65E949109832DF7713F4547C34DD929B1339157C
                        SHA-256:0832DD80A2675DB77E845D29FD105AABF9EFB3F07EA2115731EEDBCF4B98A8C8
                        SHA-512:B297CAF3CDB2851FC834136D61DA231CBB0D9B5EE44977CA726E32F070BB309B8F5065832382E05CD7BAFEE96EA910D08480875A0CBCBED283D704C7259A7FAC
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886095543760","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"history_in_shoreline_activated":true,"hub_app_non_synced_preferences":{"apps":{"06be1ebe-f23a-4bea-ae45-3120ad86cfea":{"last_path":""},"0c835d2d-9592-4c7a-8d0a-0e283c9ad3cd":{"last_path":""},"168a2510-04d5-473e-b6a0-828815a7ca5f":{"last_path":""},"1ec8a5a9-971c-4c82-a104-5e1a259456b8":{"last_path":""},"2354565a-f412-4654-b89c-f92eaa9dbd20":{"last_path":""},"25fe2d1d-e934-482a-a62f-ea1705db905d":{"last_path":""},"35a43603-bb38-4b53-ba20-932cb9117794":{"last_path":""},"380c71d3-10bf-4a5d-9a06-c932e4b7d1d8":{"last_path":""},"3a2f4dee-d482-4ef8-baef-cb22b6496
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:B55ECE3F78DB0DA9D3EF8B22E88A49D6
                        SHA1:5E7B51FA55FEC687AE3DC8A660B24BC7F3F36730
                        SHA-256:C25BA7D1579964EE3E128543CB283D23CE1D6BB693EFEBE8CFE7B3499508E9E7
                        SHA-512:43874961BAEEAB5D5B5562F3BDB15F45AFB9D19379B81DE12FC7C9C00876A6AE72D05415C1846CBB5C20F1BA6B34B582E626F21CD28CCD0F43740709629C2A9E
                        Malicious:false
                        Reputation:unknown
                        Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886094883076","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886094883076","location":5,"ma
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:B55ECE3F78DB0DA9D3EF8B22E88A49D6
                        SHA1:5E7B51FA55FEC687AE3DC8A660B24BC7F3F36730
                        SHA-256:C25BA7D1579964EE3E128543CB283D23CE1D6BB693EFEBE8CFE7B3499508E9E7
                        SHA-512:43874961BAEEAB5D5B5562F3BDB15F45AFB9D19379B81DE12FC7C9C00876A6AE72D05415C1846CBB5C20F1BA6B34B582E626F21CD28CCD0F43740709629C2A9E
                        Malicious:false
                        Reputation:unknown
                        Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886094883076","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886094883076","location":5,"ma
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):581
                        Entropy (8bit):4.902548444977926
                        Encrypted:false
                        SSDEEP:
                        MD5:1EB0C47B2F71409D7CBA535CF4965442
                        SHA1:DEDE1A0F5E34B8B584B3E448F9419566A7CC6372
                        SHA-256:99FF583544E0D8DDDE51CF73068C4CB1D9E217D66DFB183EDBE963C66F40ED16
                        SHA-512:609CDC43BA4A474E44A59C6B2CE01C5AC8D7F9BD99CBAD2F72CDCF11E2E10CCCA890077A98BEA3EC666C6FED30386FFF038EF8437B742DA06436477A0ADE148D
                        Malicious:false
                        Reputation:unknown
                        Preview:*...#................version.1..namespace-..&f.................&f.................&f.................&f.................&f...............GW.,n................next-map-id.1.Onamespace-7958be3b_c866_4c1d_a589_0fb7e7745715-https://auth.services.adobe.com/.0V.e................V.e................V.e................V.e................V.e................S...h................next-map-id.2.Inamespace-81a05957_1c03_4bb2_a3b9_3d40934b61a8-https://www.microsoft.com/.1..51r................map-1-_cltk.1.j.k.k.w.h.u..Hmap-1-Thu Mar 14 2024 11:35:29 GMT+0100 (Central European Standard Time)
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):317
                        Entropy (8bit):5.1655203434939025
                        Encrypted:false
                        SSDEEP:
                        MD5:8C7F2C1B119D00E8DDFAB6965EDB486D
                        SHA1:594AE8CE1B2353EC3A2B1C8DC06AB11E67E47EB1
                        SHA-256:D3EFD01949336E8F2C67B0537C823475E3CEEDFFEDE2AEAD38737CAFDD41B7D0
                        SHA-512:9E45995752032E955EC4A1CA54110E901A87C5BE54E11979AF7B6B215581468ECEEA3F6AF2CF1E86F725DE604881E9324F65FB7A9965509883C7AE46D6C921E6
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:55.457 dd8 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/MANIFEST-000001.2024/03/14-11:34:55.470 dd8 Recovering log #3.2024/03/14-11:34:55.490 dd8 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:DIY-Thermocam raw data (Lepton 2.x), scale 13409-12338, spot sensor temperature 67706927646703687303168.000000, unit celsius, color scheme 0, userbration: offset -0.000000, slope 3540040355832541821063590313984.000000
                        Category:dropped
                        Size (bytes):21247
                        Entropy (8bit):4.46929716952693
                        Encrypted:false
                        SSDEEP:
                        MD5:67979D9805662D4C171080A23F9537A8
                        SHA1:A787698FCCE328586F3E74971D2C7F82AA808650
                        SHA-256:2A37AF05C2055673B86747DA053C3FB74ABB19CB72E06A0FDD006E5E99A3B5BB
                        SHA-512:1DE4F1BFF0D64AEE9F0FF760C06C6C8DD0C50B8E1DE536C55E58FDABA54B5470ACD0076EA6A51CE435F90D5A170F56CB82949B23736E7D418E4196989E696676
                        Malicious:false
                        Reputation:unknown
                        Preview:SNSS................................"........................................................!.............................................1..,.......$...7958be3b_c866_4c1d_a589_0fb7e7745715...........................................................................................5..0.......&...{544A81F3-86CF-4601-B565-C8CB2CA3983A}..................................................................i...https://auth.services.adobe.com/en_US/deeplink.html?deeplink=ssofirst&callback=https%3A%2F%2Fims-na1.adobelogin.com%2Fims%2Fadobeid%2FCreativeCloudInstallerWeb_v1_0%2FAdobeID%2Fcode%3Fredirect_uri%3Dhttps%253A%252F%252Fauth.services.adobe.com%252Fen_US%252Fdeeplink.html%253Fdelegated_request_id%253Db03c1725-36bb-4637-a794-afe3afd3d30b%2526client_id%253DCreativeCloudInstallerWeb_v1_0%2526deeplink%253Ddelegation%26code_challenge_method%3Dplain%26use_ms_for_expiry%3Dtrue&client_id=CreativeCloudInstallerWeb_v1_0&scope=allow_ac_dt_exchange%2Copenid%2CAdobeID%2Ccreative_cloud%2Ccreative_sdk%2Cre
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):20480
                        Entropy (8bit):0.44194574462308833
                        Encrypted:false
                        SSDEEP:
                        MD5:B35F740AA7FFEA282E525838EABFE0A6
                        SHA1:A67822C17670CCE0BA72D3E9C8DA0CE755A3421A
                        SHA-256:5D599596D116802BAD422497CF68BE59EEB7A9135E3ED1C6BEACC48F73827161
                        SHA-512:05C0D33516B2C1AB6928FB34957AD3E03CB0A8B7EEC0FD627DD263589655A16DEA79100B6CC29095C3660C95FD2AFB2E4DD023F0597BD586DD664769CABB67F8
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g....."....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):345
                        Entropy (8bit):5.129480409028265
                        Encrypted:false
                        SSDEEP:
                        MD5:4211548920C522B68C00621F501646A2
                        SHA1:EDE2DA9A7C88C4BCF8EDC69AF77F01DDA53F4DB4
                        SHA-256:3027B15295BC16F26245BC59EFA5FFAA4660F6FD8AFF5153C80BD7E8E6DC9D34
                        SHA-512:0D0445BCB8540A8CA55F41205E6EFC67E7FD223B3F8F0AC259753267BB811A1E8D41A66F002947D63BE3CFA765555B12C71D7BB67D451098BE4B5158D8772AE1
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:54.839 be4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/MANIFEST-000001.2024/03/14-11:34:54.843 be4 Recovering log #3.2024/03/14-11:34:54.846 be4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:modified
                        Size (bytes):270336
                        Entropy (8bit):0.0012471779557650352
                        Encrypted:false
                        SSDEEP:
                        MD5:F50F89A0A91564D0B8A211F8921AA7DE
                        SHA1:112403A17DD69D5B9018B8CEDE023CB3B54EAB7D
                        SHA-256:B1E963D702392FB7224786E7D56D43973E9B9EFD1B89C17814D7C558FFC0CDEC
                        SHA-512:BF8CDA48CF1EC4E73F0DD1D4FA5562AF1836120214EDB74957430CD3E4A2783E801FA3F4ED2AFB375257CAEED4ABE958265237D6E0AACF35A9EDE7A2E8898D58
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):427
                        Entropy (8bit):5.255251112389224
                        Encrypted:false
                        SSDEEP:
                        MD5:6DDED088275626BA2EC09EB981A979F4
                        SHA1:0545783F81BE69862611DCA2218506685CD1A6FF
                        SHA-256:A23337101A2FECAD92C9B09E0431826EC645263333DE9CD0640895FAE292D728
                        SHA-512:57B0F001F6F3DA0ED67DD9423C2F6879EB5E9F14208FFAEF5AB0E68931A59ED836F5F22052864157973475E75CDD9BABEFA108896356C8E028870C578E0BF269
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:55.829 dd8 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/MANIFEST-000001.2024/03/14-11:34:55.862 dd8 Recovering log #3.2024/03/14-11:34:55.874 dd8 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 4, database pages 9, cookie 0x7, schema 4, UTF-8, version-valid-for 4
                        Category:dropped
                        Size (bytes):36864
                        Entropy (8bit):0.3886039372934488
                        Encrypted:false
                        SSDEEP:
                        MD5:DEA619BA33775B1BAEEC7B32110CB3BD
                        SHA1:949B8246021D004B2E772742D34B2FC8863E1AAA
                        SHA-256:3669D76771207A121594B439280A67E3A6B1CBAE8CE67A42C8312D33BA18854B
                        SHA-512:7B9741E0339B30D73FACD4670A9898147BE62B8F063A59736AFDDC83D3F03B61349828F2AE88F682D42C177AE37E18349FD41654AEBA50DDF10CD6DC70FA5879
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g...}.....$.X..............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):80
                        Entropy (8bit):3.4921535629071894
                        Encrypted:false
                        SSDEEP:
                        MD5:69449520FD9C139C534E2970342C6BD8
                        SHA1:230FE369A09DEF748F8CC23AD70FD19ED8D1B885
                        SHA-256:3F2E9648DFDB2DDB8E9D607E8802FEF05AFA447E17733DD3FD6D933E7CA49277
                        SHA-512:EA34C39AEA13B281A6067DE20AD0CDA84135E70C97DB3CDD59E25E6536B19F7781E5FC0CA4A11C3618D43FC3BD3FBC120DD5C1C47821A248B8AD351F9F4E6367
                        Malicious:false
                        Reputation:unknown
                        Preview:*...#................version.1..namespace-..&f.................&f...............
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):415
                        Entropy (8bit):5.231727491308065
                        Encrypted:false
                        SSDEEP:
                        MD5:F8687696DB95A344758E33B84A6BFB4D
                        SHA1:AC8C26285ABDFF902E59895191C8F1E23D1A657F
                        SHA-256:AE61364830B65838C538BE07FFFAC3BF411E1389C6C90912736AF9D955A4AF55
                        SHA-512:E854BAA0C9A45CB751F94A48EB310A1E33E83881CD575D6851C015DDBA59DBFEA2DA5EFFC47AD8D2E9F09755374B265024AF214A1D13D4E0206556DEFA12B7E2
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:35:11.159 dd8 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Session Storage/MANIFEST-000001.2024/03/14-11:35:11.160 dd8 Recovering log #3.2024/03/14-11:35:11.165 dd8 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Session Storage/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):321
                        Entropy (8bit):5.148836188330881
                        Encrypted:false
                        SSDEEP:
                        MD5:A84241F51F08C74FCE4B51DE2BC98466
                        SHA1:11B3025C47B287F759D7560A9CE5B2FC39C19224
                        SHA-256:163B527502E333BE22EF7B5E0B029D9C83CF71CDB21E2F252936593AE7FAE2A1
                        SHA-512:8BB3D2A846B1F79E24260EF978E8E0B7A1FC1CC9B9B436D1E2D7D526E37310F32534B1C9FEA9E172C4AFEF0E35CB87AD37012656EF27219AA1DAD098C7BE706E
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:54.843 e44 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/MANIFEST-000001.2024/03/14-11:34:54.850 e44 Recovering log #3.2024/03/14-11:34:54.854 e44 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):131072
                        Entropy (8bit):0.009966550696230193
                        Encrypted:false
                        SSDEEP:
                        MD5:ACE243891F9544CC5E254B083D5B1F38
                        SHA1:C89C56698F0EE529F999F81A824439F39BB14A99
                        SHA-256:D73C57819CE9FEE500F2993969B53C2880393C34A2B074857DD86F8AB791BD23
                        SHA-512:5B3E111F9516264EDFC5F41D78855983162FD7B70C640F2A661DB69FA26B53B9F736BD02B4C3EAF12E5E3E3E8DAE632D0D07DFA424A188186D054D61D04E2746
                        Malicious:false
                        Reputation:unknown
                        Preview:VLnk.....?.......v|..lON................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 10, database pages 91, cookie 0x36, schema 4, UTF-8, version-valid-for 10
                        Category:dropped
                        Size (bytes):196608
                        Entropy (8bit):1.265473646799129
                        Encrypted:false
                        SSDEEP:
                        MD5:04E028756F56FBC58E4F9EF86D57017C
                        SHA1:86B3E5A07690C053C0719D030C6823EEC7025B0B
                        SHA-256:B20571ED8520FCE9558D9ED5FDED233B6C023DE8409127A2B1EBB4B3E94191D3
                        SHA-512:E711998E6DF2E7A1813E4B8734694A810FC8DF36B3402388229AF3DA7321767E521408FEF3F63D56FE2EE12E3719F1C470B84690ED1DA0D9935101D081EC9EA0
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ .......[...........6......................................................j............W........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 12, database pages 12, cookie 0xb, schema 4, UTF-8, version-valid-for 12
                        Category:dropped
                        Size (bytes):24576
                        Entropy (8bit):2.5161209151353074
                        Encrypted:false
                        SSDEEP:
                        MD5:7469E91B8FE38F2FD077E8F895AE669A
                        SHA1:F1B1064D2676D072C45DEDD36F656860E43E2645
                        SHA-256:636982A0E1B0BD49928ECA93BA775D4B36E95874341611B016603DBA9F858116
                        SHA-512:DD832817E998ABA1FF231076C55F6902A24B0076366CE88E15BB8A7DBEAF0D095A53E2EC87F3FDBFE24A7DF9EDDD61A76CD3526B1EE92AD96E669361AF60D8BF
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..................n..................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 10, cookie 0x7, schema 4, UTF-8, version-valid-for 1
                        Category:modified
                        Size (bytes):40960
                        Entropy (8bit):0.41235120905181716
                        Encrypted:false
                        SSDEEP:
                        MD5:981F351994975A68A0DD3ECE5E889FD0
                        SHA1:080D3386290A14A68FCE07709A572AF98097C52D
                        SHA-256:3F0C0B2460E0AA2A94E0BF79C8944F2F4835D2701249B34A13FD200F7E5316D7
                        SHA-512:C5930797C46EEC25D356BAEB6CFE37E9F462DEE2AE8866343B2C382DBAD45C1544EF720D520C4407F56874596B31EFD6822B58A9D3DAE6F85E47FF802DBAA20B
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.......w..g...........M...w..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with very long lines (3951), with CRLF line terminators
                        Category:dropped
                        Size (bytes):11755
                        Entropy (8bit):5.190465908239046
                        Encrypted:false
                        SSDEEP:
                        MD5:07301A857C41B5854E6F84CA00B81EA0
                        SHA1:7441FC1018508FF4F3DBAA139A21634C08ED979C
                        SHA-256:2343C541E095E1D5F202E8D2A0807113E69E1969AF8E15E3644C51DB0BF33FBF
                        SHA-512:00ADE38E9D2F07C64648202F1D5F18A2DFB2781C0517EAEBCD567D8A77DBB7CB40A58B7C7D4EC03336A63A20D2E11DD64448F020C6FF72F06CA870AA2B4765E0
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "DefaultCohort": {.. "21f3388b-c2a5-4791-8f6e-a4cad6d17f4f.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.BingHomePage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Covid.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Finance.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Jobs.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.KnowledgeCard.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Local.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.NTP3PCLICK.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.NotifySearchPage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Recipe.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.SearchPage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Sports.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Travel.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Weather.Bubble": 1,.. "2cb2db96-3bd0-403e-abe2-9269b3761041.Bubble": 1,.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):12172
                        Entropy (8bit):5.193717064550005
                        Encrypted:false
                        SSDEEP:
                        MD5:8FFC99CD4F05563BE0C1336EE0AE633F
                        SHA1:65E949109832DF7713F4547C34DD929B1339157C
                        SHA-256:0832DD80A2675DB77E845D29FD105AABF9EFB3F07EA2115731EEDBCF4B98A8C8
                        SHA-512:B297CAF3CDB2851FC834136D61DA231CBB0D9B5EE44977CA726E32F070BB309B8F5065832382E05CD7BAFEE96EA910D08480875A0CBCBED283D704C7259A7FAC
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886095543760","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"history_in_shoreline_activated":true,"hub_app_non_synced_preferences":{"apps":{"06be1ebe-f23a-4bea-ae45-3120ad86cfea":{"last_path":""},"0c835d2d-9592-4c7a-8d0a-0e283c9ad3cd":{"last_path":""},"168a2510-04d5-473e-b6a0-828815a7ca5f":{"last_path":""},"1ec8a5a9-971c-4c82-a104-5e1a259456b8":{"last_path":""},"2354565a-f412-4654-b89c-f92eaa9dbd20":{"last_path":""},"25fe2d1d-e934-482a-a62f-ea1705db905d":{"last_path":""},"35a43603-bb38-4b53-ba20-932cb9117794":{"last_path":""},"380c71d3-10bf-4a5d-9a06-c932e4b7d1d8":{"last_path":""},"3a2f4dee-d482-4ef8-baef-cb22b6496
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x4, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):28672
                        Entropy (8bit):0.3410017321959524
                        Encrypted:false
                        SSDEEP:
                        MD5:98643AF1CA5C0FE03CE8C687189CE56B
                        SHA1:ECADBA79A364D72354C658FD6EA3D5CF938F686B
                        SHA-256:4DC3BF7A36AB5DA80C0995FAF61ED0F96C4DE572F2D6FF9F120F9BC44B69E444
                        SHA-512:68B69FCE8EF5AB1DDA2994BA4DB111136BD441BC3EFC0251F57DC20A3095B8420669E646E2347EAB7BAF30CACA4BCF74BD88E049378D8DE57DE72E4B8A5FF74B
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g.....P....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):37702
                        Entropy (8bit):5.556873433308999
                        Encrypted:false
                        SSDEEP:
                        MD5:B55ECE3F78DB0DA9D3EF8B22E88A49D6
                        SHA1:5E7B51FA55FEC687AE3DC8A660B24BC7F3F36730
                        SHA-256:C25BA7D1579964EE3E128543CB283D23CE1D6BB693EFEBE8CFE7B3499508E9E7
                        SHA-512:43874961BAEEAB5D5B5562F3BDB15F45AFB9D19379B81DE12FC7C9C00876A6AE72D05415C1846CBB5C20F1BA6B34B582E626F21CD28CCD0F43740709629C2A9E
                        Malicious:false
                        Reputation:unknown
                        Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886094883076","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886094883076","location":5,"ma
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with very long lines (1597), with CRLF line terminators
                        Category:dropped
                        Size (bytes):115717
                        Entropy (8bit):5.183660917461099
                        Encrypted:false
                        SSDEEP:
                        MD5:3D8183370B5E2A9D11D43EBEF474B305
                        SHA1:155AB0A46E019E834FA556F3D818399BFF02162B
                        SHA-256:6A30BADAD93601FC8987B8239D8907BCBE65E8F1993E4D045D91A77338A2A5B4
                        SHA-512:B7AD04F10CD5DE147BDBBE2D642B18E9ECB2D39851BE1286FDC65FF83985EA30278C95263C98999B6D94683AE1DB86436877C30A40992ACA1743097A2526FE81
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "current_locale": "en-GB",.. "hub_apps": [ {.. "auto_show": {.. "enabled": true,.. "fre_notification": {.. "enabled": true,.. "header": "Was opening this pane helpful to you?",.. "show_count": 2,.. "text": "Was opening this pane helpful to you?".. },.. "settings_description": "We'll automatically open Bing Chat in the sidebar to show you relevant web experiences alongside your web content",.. "settings_title": "Automatically open Bing Chat in the sidebar",.. "triggering_configs|flight:msHubAppsMsnArticleAutoShowTriggering": [ {.. "show_count_basis": "signal",.. "signal_name": "IsMsnArticleAutoOpenFromP1P2",.. "signal_threshold": 0.5.. } ],.. "triggering_configs|flight:msUndersidePersistentChat": [ {.. "signal_name": "IsUndersidePersistentChatLink",.. "signal_threshold": 0.5.. } ],.. "triggering_co
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):32768
                        Entropy (8bit):0.2592531777071337
                        Encrypted:false
                        SSDEEP:
                        MD5:71F1839FDF1A385CAC97EAF892BA2E3A
                        SHA1:55F0FE52A4F599BB6774800BB5D83EA526A50B2C
                        SHA-256:654BB002EF552E6853A7156AF769B00E027DF6D565220B00D96E04C1C84C6755
                        SHA-512:F35735F5D9B7395AB10FEBDAA5A6F89C72FC234332B06850A674CA480186F0C13CE253212A97A41DCCCA18D6C150262EED8E7CE48ACAE1D70897830B4E9CD5F3
                        Malicious:false
                        Reputation:unknown
                        Preview:..-.....>................g .4...^..>l_..i.2.?..?..-.....>................g .4...^..>l_..i.2.?..?........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite Write-Ahead Log, version 3007000
                        Category:dropped
                        Size (bytes):1120672
                        Entropy (8bit):2.7901502609435984
                        Encrypted:false
                        SSDEEP:
                        MD5:EF1C294E6BBBEC75687CB6DDE32DF078
                        SHA1:4E373D36BB8FE0F6EDA2BF54435595FD4B3FF20D
                        SHA-256:B199915381B180015483D6F24468A72388C01C1A8E9B3E182295013D50AE13C0
                        SHA-512:EAF04368EA55FC884E0293907379CA1C868EA4D620E326D0FBF2547E90775CE9C800C15AEC75D59CF9FDBB1F40BB74E7D952BE6E5934417C25C19EC8B46CFDA8
                        Malicious:false
                        Reputation:unknown
                        Preview:7....-..........^..>l_.....q..$.........^..>l_..X....9I4SQLite format 3......@ ..........................................................................j.............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):580
                        Entropy (8bit):3.766900968357774
                        Encrypted:false
                        SSDEEP:
                        MD5:B82284FCED3A8EFE220E9178F60EDC2C
                        SHA1:9261059626F381C3C372DC03A64547942006EB57
                        SHA-256:DABB924464E0BF3B982B3E92AACA0A79FB4B90771629AF220EA18130C730450E
                        SHA-512:3C5E77A625D36597B2CC7663AAD9567B587E073CA2505DDCB9D72A88C1DDEDF504E5737A1AF7B6A0C8AC9A6A8C7094D15DFF759BABBB54B3274552A68E6E4E5E
                        Malicious:false
                        Reputation:unknown
                        Preview:A..r.................20_1_1...1.,U.................20_1_1...1?.Q;0................39_config..........6.....n ...1u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=................:.u;...............#38_h.......6.Z..W.F......c.......c..........V.e................V.e................C.yr0................39_config..........6.....n ...1
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):317
                        Entropy (8bit):5.193356279507178
                        Encrypted:false
                        SSDEEP:
                        MD5:60EBD6B9F2F35DC9411EDFCF606B3039
                        SHA1:C27E4D632577E9D8B66DA6C163C2680E2424B94E
                        SHA-256:B7A687203F95A75E706B0C1715DE76D5004C7EDE224958B27B810A0336DFEF69
                        SHA-512:E0AC972E7C343C64A99FAEA751B45E8AEAD0AE7CDC546A511CF962513EF316FECC5DE335E25C4640D77F02552918455225D2BF46F475FD83E1374E900CE61401
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:55.514 be4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/MANIFEST-000001.2024/03/14-11:34:55.515 be4 Recovering log #3.2024/03/14-11:34:55.516 be4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):816
                        Entropy (8bit):4.0647916882227655
                        Encrypted:false
                        SSDEEP:
                        MD5:3BE72D8D40752B3A97028FDB2931FABA
                        SHA1:A27EA4726857A948F0A4B074062B674469A9A371
                        SHA-256:3C18553C8C3F7E801855F3579AC57F3C156D783BBA27FB35C6D2FB6CB89BD902
                        SHA-512:8EBD4D6980BB7796615217E72BC65953C920B68B9259341CD52858C1E889EC90339E2A304FE0C971D6C6EF9AFC4A00CFB3E5CC89C7B2DF8737A0C7EC241BDADC
                        Malicious:false
                        Reputation:unknown
                        Preview:.h.6.................__global... .t...................__global... .9..b.................33_..........................33_........v.................21_.....vuNX.................21_.....<...................20_.....X...................20_.....W.J+.................19_......qY.................18_.....'}2..................37_.......c..................38_......i...................39_.....Owa..................20_.....4.9..................20_.....B.I..................19_..........................18_.....2.1..................37_..........................38_......=.%.................39_.....p.j..................9_.....JJ...................9_.....|.&R.................__global... ./....................__global... ..T...................__global... ...G..................__global... ......................__global... .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):335
                        Entropy (8bit):5.195518872571522
                        Encrypted:false
                        SSDEEP:
                        MD5:442BFE715F5B8284441341E0878F8D6A
                        SHA1:340B162DE54CFEEA0E40B0E1936DAAC211B43184
                        SHA-256:6967D59C28A3101DF31903F8DE311C07D675E557131BFCCB055CDFD94B432546
                        SHA-512:5729996E059A3C31FDEE654C44D5D87841F30263D8BA29312BBD08319F9F377443484D1845D4FC1E4945BCFB6894B3E4A7F98EE76FDA60B326BB54637AC6034D
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:55.494 be4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/MANIFEST-000001.2024/03/14-11:34:55.498 be4 Recovering log #3.2024/03/14-11:34:55.501 be4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/000003.log .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):120
                        Entropy (8bit):3.32524464792714
                        Encrypted:false
                        SSDEEP:
                        MD5:A397E5983D4A1619E36143B4D804B870
                        SHA1:AA135A8CC2469CFD1EF2D7955F027D95BE5DFBD4
                        SHA-256:9C70F766D3B84FC2BB298EFA37CC9191F28BEC336329CC11468CFADBC3B137F4
                        SHA-512:4159EA654152D2810C95648694DD71957C84EA825FCCA87B36F7E3282A72B30EF741805C610C5FA847CA186E34BDE9C289AAA7B6931C5B257F1D11255CD2A816
                        Malicious:false
                        Reputation:unknown
                        Preview:C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s. .(.x.8.6.).\.M.i.c.r.o.s.o.f.t.\.E.d.g.e.\.A.p.p.l.i.c.a.t.i.o.n.\.m.s.e.d.g.e...e.x.e.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:229BF6CE3E4C9F036623869D24BE0C02
                        SHA1:ED248A71FC3178E80C6C00A9BFCFE4AEA4084564
                        SHA-256:7A41B25FD1FAED768BFB62DF8C41F08793C6A4FFD1F362E6487314741623A25E
                        SHA-512:000F3E942199398A041BCF5D2A866E190B947B708886B98BEFCFC34CB934BFF2A40BDC5833E8F6C3E7EC4DCFDB3C7737FABF1FC4A928E62FE3613B6FF51173D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:229BF6CE3E4C9F036623869D24BE0C02
                        SHA1:ED248A71FC3178E80C6C00A9BFCFE4AEA4084564
                        SHA-256:7A41B25FD1FAED768BFB62DF8C41F08793C6A4FFD1F362E6487314741623A25E
                        SHA-512:000F3E942199398A041BCF5D2A866E190B947B708886B98BEFCFC34CB934BFF2A40BDC5833E8F6C3E7EC4DCFDB3C7737FABF1FC4A928E62FE3613B6FF51173D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:229BF6CE3E4C9F036623869D24BE0C02
                        SHA1:ED248A71FC3178E80C6C00A9BFCFE4AEA4084564
                        SHA-256:7A41B25FD1FAED768BFB62DF8C41F08793C6A4FFD1F362E6487314741623A25E
                        SHA-512:000F3E942199398A041BCF5D2A866E190B947B708886B98BEFCFC34CB934BFF2A40BDC5833E8F6C3E7EC4DCFDB3C7737FABF1FC4A928E62FE3613B6FF51173D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:229BF6CE3E4C9F036623869D24BE0C02
                        SHA1:ED248A71FC3178E80C6C00A9BFCFE4AEA4084564
                        SHA-256:7A41B25FD1FAED768BFB62DF8C41F08793C6A4FFD1F362E6487314741623A25E
                        SHA-512:000F3E942199398A041BCF5D2A866E190B947B708886B98BEFCFC34CB934BFF2A40BDC5833E8F6C3E7EC4DCFDB3C7737FABF1FC4A928E62FE3613B6FF51173D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:229BF6CE3E4C9F036623869D24BE0C02
                        SHA1:ED248A71FC3178E80C6C00A9BFCFE4AEA4084564
                        SHA-256:7A41B25FD1FAED768BFB62DF8C41F08793C6A4FFD1F362E6487314741623A25E
                        SHA-512:000F3E942199398A041BCF5D2A866E190B947B708886B98BEFCFC34CB934BFF2A40BDC5833E8F6C3E7EC4DCFDB3C7737FABF1FC4A928E62FE3613B6FF51173D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:229BF6CE3E4C9F036623869D24BE0C02
                        SHA1:ED248A71FC3178E80C6C00A9BFCFE4AEA4084564
                        SHA-256:7A41B25FD1FAED768BFB62DF8C41F08793C6A4FFD1F362E6487314741623A25E
                        SHA-512:000F3E942199398A041BCF5D2A866E190B947B708886B98BEFCFC34CB934BFF2A40BDC5833E8F6C3E7EC4DCFDB3C7737FABF1FC4A928E62FE3613B6FF51173D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 6, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 6
                        Category:dropped
                        Size (bytes):20480
                        Entropy (8bit):0.6766118997662843
                        Encrypted:false
                        SSDEEP:
                        MD5:992B3E56737D53E31E46E84E04858F7B
                        SHA1:309C918159FCC6A0C263A6DC49F9B487F0940B77
                        SHA-256:2548A470CD71CFFA97362CD044F4056DA6342456FC915A6133F297366E074CAF
                        SHA-512:559657A2D2E2C53E41E6E4B4F0A22949D6D09F820E2DE4F57A671E44D08CF33A39CD1DA043B9182743194AD7E5424F3273FF1AA1B0F618869AC118F4467D120F
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):81
                        Entropy (8bit):4.3439888556902035
                        Encrypted:false
                        SSDEEP:
                        MD5:177F4D75F4FEE84EF08C507C3476C0D2
                        SHA1:08E17AEB4D4066AC034207420F1F73DD8BE3FAA0
                        SHA-256:21EE7A30C2409E0041CDA6C04EEE72688EB92FE995DC94487FF93AD32BD8F849
                        SHA-512:94FC142B3CC4844BF2C0A72BCE57363C554356C799F6E581AA3012E48375F02ABD820076A8C2902A3C6BE6AC4D8FA8D4F010D4FF261327E878AF5E5EE31038FB
                        Malicious:false
                        Reputation:unknown
                        Preview:edgeSettings_2.0-48b11410dc937a1723bf4c5ad33ecdb286d8ec69544241bc373f753e64b396c1
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):130439
                        Entropy (8bit):3.80180718117079
                        Encrypted:false
                        SSDEEP:
                        MD5:EB75CEFFE37E6DF9C171EE8380439EDA
                        SHA1:F00119BA869133D64E4F7F0181161BD47968FA23
                        SHA-256:48B11410DC937A1723BF4C5AD33ECDB286D8EC69544241BC373F753E64B396C1
                        SHA-512:044C5113D877CE2E3B42CF07670620937ED7BE2D8B3BF2BAB085C43EF4F64598A7AC56328DDBBE7F0F3CFB9EA49D38CA332BB4ECBFEDBE24AE53B14334A30C8E
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "geoidMaps": {.. "au": "https://australia.smartscreen.microsoft.com/",.. "ch": "https://switzerland.smartscreen.microsoft.com/",.. "eu": "https://europe.smartscreen.microsoft.com/",.. "ffl4": "https://unitedstates1.ss.wd.microsoft.us/",.. "ffl4mod": "https://unitedstates4.ss.wd.microsoft.us/",.. "ffl5": "https://unitedstates2.ss.wd.microsoft.us/",.. "in": "https://india.smartscreen.microsoft.com/",.. "test": "https://eu-9.smartscreen.microsoft.com/",.. "uk": "https://unitedkingdom.smartscreen.microsoft.com/",.. "us": "https://unitedstates.smartscreen.microsoft.com/",.. "gw_au": "https://australia.smartscreen.microsoft.com/",.. "gw_ch": "https://switzerland.smartscreen.microsoft.com/",.. "gw_eu": "https://europe.smartscreen.microsoft.com/",.. "gw_ffl4": "https://unitedstates1.ss.wd.microsoft.us/",.. "gw_ffl4mod": "https://unitedstates4.ss.wd.microsoft.us/",.. "gw_ffl5": "https://unitedstates2.ss.wd.microsoft.us/",.. "gw_in": "https
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):40
                        Entropy (8bit):4.346439344671015
                        Encrypted:false
                        SSDEEP:
                        MD5:6A3A60A3F78299444AACAA89710A64B6
                        SHA1:2A052BF5CF54F980475085EEF459D94C3CE5EF55
                        SHA-256:61597278D681774EFD8EB92F5836EB6362975A74CEF807CE548E50A7EC38E11F
                        SHA-512:C5D0419869A43D712B29A5A11DC590690B5876D1D95C1F1380C2F773CA0CB07B173474EE16FE66A6AF633B04CC84E58924A62F00DCC171B2656D554864BF57A4
                        Malicious:false
                        Reputation:unknown
                        Preview:synchronousLookupUris_638343870221005468
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):57
                        Entropy (8bit):4.556488479039065
                        Encrypted:false
                        SSDEEP:
                        MD5:3A05EAEA94307F8C57BAC69C3DF64E59
                        SHA1:9B852B902B72B9D5F7B9158E306E1A2C5F6112C8
                        SHA-256:A8EF112DF7DAD4B09AAA48C3E53272A2EEC139E86590FD80E2B7CBD23D14C09E
                        SHA-512:6080AEF2339031FAFDCFB00D3179285E09B707A846FD2EA03921467DF5930B3F9C629D37400D625A8571B900BC46021047770BAC238F6BAC544B48FB3D522FB0
                        Malicious:false
                        Reputation:unknown
                        Preview:9.......murmur3.............,M.h...Z...8.\..<&Li.H..[.?m
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):29
                        Entropy (8bit):4.030394788231021
                        Encrypted:false
                        SSDEEP:
                        MD5:52E2839549E67CE774547C9F07740500
                        SHA1:B172E16D7756483DF0CA0A8D4F7640DD5D557201
                        SHA-256:F81B7B9CE24F5A2B94182E817037B5F1089DC764BC7E55A9B0A6227A7E121F32
                        SHA-512:D80E7351E4D83463255C002D3FDCE7E5274177C24C4C728D7B7932D0BE3EBCFEB68E1E65697ED5E162E1B423BB8CDFA0864981C4B466D6AD8B5E724D84B4203B
                        Malicious:false
                        Reputation:unknown
                        Preview:topTraffic_638004170464094982
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:raw G3 (Group 3) FAX, byte-padded
                        Category:dropped
                        Size (bytes):460992
                        Entropy (8bit):7.999625908035124
                        Encrypted:true
                        SSDEEP:
                        MD5:E9C502DB957CDB977E7F5745B34C32E6
                        SHA1:DBD72B0D3F46FA35A9FE2527C25271AEC08E3933
                        SHA-256:5A6B49358772DB0B5C682575F02E8630083568542B984D6D00727740506569D4
                        SHA-512:B846E682427CF144A440619258F5AA5C94CAEE7612127A60E4BD3C712F8FF614DA232D9A488E27FC2B0D53FD6ACF05409958AEA3B21EA2C1127821BD8E87A5CA
                        Malicious:false
                        Reputation:unknown
                        Preview:...2lI.5.<C.;.{....._+jE.`..}....-...#.A...KR...l.M0,s...).9..........x.......F.b......jU....y.h'....L<...*..Z..*%.*..._...g.4yu...........'c=..I0..........qW..<:N....<..U.,Mi..._......'(..U.9.!........u....7...4. ..Ea...4.+.79k.!T.-5W..!..@+..$..t|1.E..7F...+..xf....z&_Q...-.B...)8R.c....0.......B.M.Z...0....&v..<..H...3.....N7K.T..D>.8......P.D.J.I4.B.H.VHy...@.Wc.Cl..6aD..j.....E..*4..mI..X]2.GH.G.L...E.F.=.J...@}j~.#...'Y.L[z..1.W/.Ck....L..X........J.NYd........>...N.F..z*.{nZ~d.N..../..6.\L...Q...+.w..p...>.S.iG...0]..8....S..)`B#.v..^.*.T.?...Z.rz.D'.!.T.w....S..8....V.4.u.K.V.......W.6s...Y.).[.c.X.S..........5.X7F...tQ....z.L.X..(3#j...8...i.[..j$.Q....0...]"W.c.H..n..2Te.ak...c..-F(..W2.b....3.]......c.d|.../....._...f.....d....Im..g.b..R.q.<x*x...i2..r.I()Iat..b.j.r@K.+5..C.....nJ.>*P,.V@.....s.4.3..O.r.....smd7...L.....].u&1../t.*.......uXb...=@.....wv......]....#.{$.w......i.....|.....?....E7...}$+..t).E.U..Q..~.`.)..Y@.6.h.......%(
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):9
                        Entropy (8bit):3.169925001442312
                        Encrypted:false
                        SSDEEP:
                        MD5:B6F7A6B03164D4BF8E3531A5CF721D30
                        SHA1:A2134120D4712C7C629CDCEEF9DE6D6E48CA13FA
                        SHA-256:3D6F3F8F1456D7CE78DD9DFA8187318B38E731A658E513F561EE178766E74D39
                        SHA-512:4B473F45A5D45D420483EA1D9E93047794884F26781BBFE5370A554D260E80AD462E7EEB74D16025774935C3A80CBB2FD1293941EE3D7B64045B791B365F2B63
                        Malicious:false
                        Reputation:unknown
                        Preview:uriCache_
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):483
                        Entropy (8bit):4.9867149822819234
                        Encrypted:false
                        SSDEEP:
                        MD5:33B40BEE1BE212AF39D581D216D1EB59
                        SHA1:9FCFA770745FA66AEC56C9117CF7AC9C987786CC
                        SHA-256:972F41ED47A3D6312948085B7583962B8676020283C532CFE37A746747206B39
                        SHA-512:2E949B2152B90CFBE09FD9B02B65FA6FB539FAF326827F1789CFC91177985557781305BAE329653E0A6B3871B5C25CC367E24EA80E879DB3EB6E2C4175A3BF53
                        Malicious:false
                        Reputation:unknown
                        Preview:{"version":1,"cache_data":[{"file_hash":"a2f7a245c81bd28b","server_context":"1;f94c025f-7523-6972-b613-ce2c246c55ce;unkn:100;0.01","result":1,"expiration_time":1710513319287256},{"file_hash":"dba5990f9aa95ab2","server_context":"1;c5faad59-a2e3-31f2-b86e-aaf958e12824;phsh:005;7e-05","result":0,"expiration_time":1710513317584504},{"file_hash":"8bb02c2e63c7c7d2","server_context":"1;c5faad59-a2e3-31f2-b86e-aaf958e12824;phsh:005;7e-05","result":0,"expiration_time":1710513317400058}]}
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):86
                        Entropy (8bit):4.3751917412896075
                        Encrypted:false
                        SSDEEP:
                        MD5:CDDDC745A8C954DC438C931889999BDB
                        SHA1:7908F975B6815460CAA2BC3438EFBD8FC8D36211
                        SHA-256:3DC9043838386F5363AC96A01477CF3163B5118B80191576A11B32CE9894314C
                        SHA-512:3D2D4852AA2AC6CB0B9B6CBCA9F04366AFD48D362D869BE877EF324C16D72FF119B5842891BAA2B6B99DF2DE2DB8D3BE5C23F0F97F8943BD74195996BCB66A0A
                        Malicious:false
                        Reputation:unknown
                        Preview:{"user_experience_metrics.stability.exited_cleanly":false,"variations_crash_streak":4}
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):58057
                        Entropy (8bit):6.106069199237342
                        Encrypted:false
                        SSDEEP:
                        MD5:229BF6CE3E4C9F036623869D24BE0C02
                        SHA1:ED248A71FC3178E80C6C00A9BFCFE4AEA4084564
                        SHA-256:7A41B25FD1FAED768BFB62DF8C41F08793C6A4FFD1F362E6487314741623A25E
                        SHA-512:000F3E942199398A041BCF5D2A866E190B947B708886B98BEFCFC34CB934BFF2A40BDC5833E8F6C3E7EC4DCFDB3C7737FABF1FC4A928E62FE3613B6FF51173D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):2278
                        Entropy (8bit):3.8317926609340702
                        Encrypted:false
                        SSDEEP:
                        MD5:63D8400259BF5DFC91B45D8314BF0E59
                        SHA1:F03E7A841AFEBEA163587219C0A477F213C8E422
                        SHA-256:602EDA3B4A7A4026DF104D026C0CF63462749F0B4F1020EB0682453082306A42
                        SHA-512:BB241CB29E9A681A7F9592456D08ECB5A1405A70FFB8254C3D40E1ADDB576C063982EB367C1A183769CA4411EECF4036EFBE1462ADE3E39E8DA02FC9934C9735
                        Malicious:false
                        Reputation:unknown
                        Preview:{.".T.B.D.a.t.a.S.t.o.r.e.O.b.j.e.c.t.".:.{.".H.e.a.d.e.r.".:.{.".O.b.j.e.c.t.T.y.p.e.".:.".T.o.k.e.n.R.e.s.p.o.n.s.e.".,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.a.j.o.r.".:.2.,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.i.n.o.r.".:.1.}.,.".O.b.j.e.c.t.D.a.t.a.".:.{.".S.y.s.t.e.m.D.e.f.i.n.e.d.P.r.o.p.e.r.t.i.e.s.".:.{.".R.e.q.u.e.s.t.I.n.d.e.x.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".W.i.p.w.W.M.+.N.H.l.b.C.D.m.s.Z.p.8.S.O.s.j.h.t.F.B.s.=.".}.,.".E.x.p.i.r.a.t.i.o.n.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".g.C.b.l.f.Q.N.2.2.g.E.=.".}.,.".S.t.a.t.u.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.A.A.A.A.A.=.=.".}.,.".R.e.s.p.o.n.s.e.B.y.t.e.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.t.r.u.e.,.".V.a.l.u.e.".:.".A.Q.A.A.A.N.C.M.n.d.8.B.F.d.E.R.j.H.o.A.w.E./.C.l.+.s.B.A.A.A.A.y.e.p.7.I.T.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):4622
                        Entropy (8bit):3.999398479411435
                        Encrypted:false
                        SSDEEP:
                        MD5:033CA5645698B25B985A62ACBA380D86
                        SHA1:F7738CAC8988D1930D5270682F38D35246CE4394
                        SHA-256:97CCAFC40094C50D26EB89D105C0D5B3AB931A9ECC79951247278D37896E8AF9
                        SHA-512:AF410C5FA7E2E4AEB06F3A948715B80B0A87FF826ECF73D34FEA40ABB7DA70A636EB6D5FD8AD5195FCAFC7B104A370FAF5FEDC333B4E4B93DE9BA63F310B9B07
                        Malicious:false
                        Reputation:unknown
                        Preview:{.".T.B.D.a.t.a.S.t.o.r.e.O.b.j.e.c.t.".:.{.".H.e.a.d.e.r.".:.{.".O.b.j.e.c.t.T.y.p.e.".:.".T.o.k.e.n.R.e.s.p.o.n.s.e.".,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.a.j.o.r.".:.2.,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.i.n.o.r.".:.1.}.,.".O.b.j.e.c.t.D.a.t.a.".:.{.".S.y.s.t.e.m.D.e.f.i.n.e.d.P.r.o.p.e.r.t.i.e.s.".:.{.".R.e.q.u.e.s.t.I.n.d.e.x.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".z.3.U.T.q.T.b.3.7./.u.z.h.i.f.l.b.4.0.f.z.h.D.r.E.s.w.=.".}.,.".E.x.p.i.r.a.t.i.o.n.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".V./.q.n.i.f.t.1.2.g.E.=.".}.,.".S.t.a.t.u.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.w.A.A.A.A.=.=.".}.,.".R.e.s.p.o.n.s.e.B.y.t.e.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.t.r.u.e.,.".V.a.l.u.e.".:.".A.Q.A.A.A.N.C.M.n.d.8.B.F.d.E.R.j.H.o.A.w.E./.C.l.+.s.B.A.A.A.A.y.e.p.7.I.T.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1920x1021, components 3
                        Category:dropped
                        Size (bytes):176296
                        Entropy (8bit):7.958404874811867
                        Encrypted:false
                        SSDEEP:
                        MD5:500294FBEC1DF7FCDBFF41D934BF90EB
                        SHA1:F28B03AA2803BF2485B1CBE25F11D711CB6B67A7
                        SHA-256:099A299C63238CA5D82C24E876CB7840F7568598B10BBA8FB63AAE4CF37263AD
                        SHA-512:3AC231826A4615310566B99300E5B593B01171173865347B6A7BA1E81B761E77CF8B018E1774494F816B86B028B7E548FE77687FDE4201E1802A90C1D7F42284
                        Malicious:false
                        Reputation:unknown
                        Preview:......JFIF...........................................+......+&.%#%.&D5//5DNB>BN_UU_wqw................................+......+&.%#%.&D5//5DNB>BN_UU_wqw.............."..........5.........................................................................................................................#......q....#.............v.FR{..w{....Kr..e.t.......)...[.i.:.gc........k....e.........sL.[..........}.].g.....H....gp....';e....i....;U?....3.....................................................!...~.k.1.v......;......4..$Y......3.k}[M...g.....}.........AQ.DY..[,x6bb.......2..l../...C...v.r7U...U:...5....q.=yG..=:....fyVOK...s.../@.......w.|.,.35}..x.J.Og.5.?..b.........^^.\......C.......<?.5..N_h..#.^.................................................2:..[.NGC6Q.b{..........Z.':.u.E.v.=_.)...>..R+...2.=47..n...<...T.6p......}...y.;.x..8(]....B..wU.:.*.....K.X.......u<.]}!m....7...~yS)gv...q...u...(.c....yG..U...~k..m.D..i%.>.em..|.M..;....<.....|
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:Google Chrome extension, version 3
                        Category:dropped
                        Size (bytes):11185
                        Entropy (8bit):7.951995436832936
                        Encrypted:false
                        SSDEEP:
                        MD5:78E47DDA17341BED7BE45DCCFD89AC87
                        SHA1:1AFDE30E46997452D11E4A2ADBBF35CCE7A1404F
                        SHA-256:67D161098BE68CD24FEBC0C7B48F515F199DDA72F20AE3BBB97FCF2542BB0550
                        SHA-512:9574A66D3756540479DC955C4057144283E09CAE11CE11EBCE801053BB48E536E67DC823B91895A9E3EE8D3CB27C065D5E9030C39A26CBF3F201348385B418A5
                        Malicious:false
                        Reputation:unknown
                        Preview:Cr24..............0.."0...*.H.............0.........N.......E#......9e.u.q...VYY..@.+.C..k.O..bK.`..6.G..%.....3Z...e _.6....F..1p..K.Z......./ .3...OT..`..0...Y...FT..43.th.y...}....p.L...2S.&i.`..o...f.oH.....N..:..ijT.3.F{.0.,.f?'f.CQt;b_"Pc.. ..~S.I.c.8Z.;.....{G.a......k...>.`.o..%.$>;.....g.............jg?.R..@.:..........&..{...x@.Py..;kT....%F".S..w...N....9...A..@X.t!i.@..1;......1E..X.....[.~$....J......;=T.;)k..Y...$......S......M.P..P..>..=..u.....2p...w.9..1qw.a\A..Vj .C.....A..Cf1.r6.A...L. _m...[..l.Wr_../.. .B..9!.!+..ZG.K.......0.."0...*.H.............0.........^SUd%Q.L].......Cl2o...\[.....'*...;R=....N.C5....d. .....J.C>u.kr..Y..syJC.XS.q..E.n?....(G.5..)2.G..!.M.SS.{..U....!.EE..M[.#qs.A.1...g)nQ.c..G....Bd..7... .O.BI..KXQ..4.d.K.0......g.....-p....Z.E{...M&.~n.TE7..{0....5.#.C+3.y)pd9.e.........@..3.9..B.....I....2nX........2.?.~..S....]G.N.....Lr.O.Ve....9..D1.G..W)...P.?=.#..7.R.lz..a.wX.e..h.h.~....v..RP.@X....d.G
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:ASCII text, with very long lines (1710), with CRLF line terminators
                        Category:modified
                        Size (bytes):100013
                        Entropy (8bit):5.561636280764546
                        Encrypted:false
                        SSDEEP:
                        MD5:3454FB1AF318B8E2DD13C596E39CD436
                        SHA1:F3CC9FBE856DEA761E2E9B696A1955FD4BAB9285
                        SHA-256:869C1F7D4C9628A515F979E8A9FC3D90C923BBCA8F70A854090490FAB0BC3ABB
                        SHA-512:B1817449706D3CAFF0ED80B95E5B8A6C7684978C2E3140CE57C9EC748BD443EF007458ABB0288AFD9EB85CD3C5DB1EC6FBEA1E6B4E86CC445FF9AF34E940FDAC
                        Malicious:false
                        Reputation:unknown
                        Preview:2024-03-14T12:01:10.681422Z: t=728: info: log: start logger (dunamis::setLogger.logger.cpp.43)..2024-03-14T12:01:10.681926Z: t=728: info: session: initialize session: sdk-version=1.41.0+20240103 session-guid=b915d65e-255b-42f4-abc2-2247caac6325 (dunamis::Session::Session.session.cpp.472)..2024-03-14T12:01:10.682132Z: t=728: warn: types: unknown source category: UNKNOWN defaulting to UNKNOWN (dunamis::sourceCategoryFromString.core_types.cpp.153)..2024-03-14T12:01:10.682386Z: t=728: info: api: End setIngestConfig: configGuid=f65a88c9-12b3-4201-a633-87cf11b91fa8 project=ccinstaller-service apiKey=ccinstaller-service (dunamis_setIngestConfig::<lambda_6bbafa2da9b0581b517d032d246132cf>::operator ().dunamis.cpp.270)..2024-03-14T12:01:10.683057Z: t=728: info: api: Begin ingest start for config=f65a88c9-12b3-4201-a633-87cf11b91fa8 (dunamis_ingest_start::<lambda_f2456510a70c7871b7ae57a43229fba6>::operator ().ingest.cpp.62)..2024-03-14T12:01:10.686615Z: t=728: error: fs: FindFirstFile failed: err
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:Unicode text, UTF-16, little-endian text, with very long lines (780), with CRLF, LF line terminators
                        Category:modified
                        Size (bytes):31566
                        Entropy (8bit):3.713546613398222
                        Encrypted:false
                        SSDEEP:
                        MD5:A8EFB53BA5F78FA4A162BD6766A15FFB
                        SHA1:A0FFCEF21C144C0B4EDF49D1A59F9AC1DA069B83
                        SHA-256:ADF6BCA92FA6568D6195C15B4E0373099C27A2E5366D9CDBA1035190922668EB
                        SHA-512:CC36131928727EB9FAB1ECB0FBC2C593383C7EA243AB5FE53B73503808E31BA61A9C06E0A3C53C7BE3B75609786D896F7C39F5377672C981B5C96412D8A5E576
                        Malicious:false
                        Reputation:unknown
                        Preview:..0.3./.1.4./.2.4. .1.3.:.0.1.:.1.0.:.6.7.5. .|. .[.I.N.F.O.]. .|. . .|. .A.d.m.i.n. .|. .S.e.t.u.p. .|. .A.p.p.l.i.c.a.t.i.o.n.C.o.n.t.e.x.t. .|. . .|. . .|. .1.8.3.2. .|. .*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*. .W.o.r.k.f.l.o.w. .s.t.a.r.t... .V.e.r.s.i.o.n.:. .2...1.2...0...2.3. .*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.*.....0.3./.1.4./.2.4. .1.3.:.0.1.:.1.0.:.6.7.6. .|. .[.I.N.F.O.]. .|. . .|. .A.d.m.i.n. .|. .O.O.B.E.U.t.i.l.s. .|. .C.o.m.m.a.n.d.L.i.n.e.P.a.r.s.e.r. .|. . .|. .O.O.B.E.U.t.i.l.s. .|. .1.8.3.2. .|. .P.a.r.s.i.n.g. .t.h.e. .c.o.m.m.a.n.d. .l.i.n.e. .p.r.o.v.i.d.e.d... .N.u.m.b.e.r. .o.f. .c.o.m.m.a.n.d. .l.i.n.e. .a.r.g.u.m.e.n.t.s. .i.s. .1.....0.3./.1.4./.2.4. .1.3.:.0.1.:.1.0.:.6.7.6. .|. .[.I.N.F.O.]. .|. . .|. .A.d.m.i.n. .|. .W.A.M.B. .|. .C.o.n.f.i.g.X.m.l. .|. . .|. .W.A.M.B. .|. .1.8.3.2. .|. .I.n.s.i.d.e. .r.e.a.d.V.a.l.u.e.s.F.r.o.m.F.G.F.e.a.t.u.r.e.s.L.i.s.t... .A.d.d.i.n.g. .p.a.r.a.m.:.:. .e.n.a.b.l.e.W.e.b.v.i.e.w.2. .:. .t.r.u.e...
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 2542712
                        Category:modified
                        Size (bytes):387594
                        Entropy (8bit):7.9786515430023615
                        Encrypted:false
                        SSDEEP:
                        MD5:C29904392D5B136E654F38AA17642A31
                        SHA1:F13955DEFE6D9566E805505A2DB9E1518E6C2749
                        SHA-256:BFB8649A0905FAED0C4A65A1BCA50EAEACDF5211C5D1CE99EAD05C928802D037
                        SHA-512:87960E789863D8F791671791BFB0E0356B6570E6AA851B93476B154F6B805B3406EFBAABD872458A094C5E58B4321AECD75F1E297D09DE1164D514DF369B4685
                        Malicious:false
                        Reputation:unknown
                        Preview:...........{_.H.0...)..W...6$..Q.. ..I.p..=..?a7F.Y.J2..~>.[.7uK-..23{v~..._....UkW.h..qd.7s...d.Y....H|. _fq...f)g...!..?m^..l.o.6..cr.D..d...t<d...9...w......%.@....d'.H...He.....el...S.^..~v.....s..l.D.|A...?id..b ....;w..........b..X%.0...........-..^.`....v,...G.....N...U...#n..y..;..-taxQ;..y..@W....0.g$.ni..Q.]..y._...1.O...q'$...g..G^yE`'I......W.`..<..}C.\......o.p....=."yA>.Y.g1.d..O.>GbNl%...1.,..z.M..3m."..yJ.i...r.."....Z.L<...,.....i.L..{u....f...d[~2.....C.M..A.j...<.w...D5....8+M9..o6m.&/B.\.5v...1..&l]Eg...D[..[$....G..............*.!.Zt.,....... .y.[..~.....,..3....-....VV...O.....v..........=..}...~v.'?.c.3.l..&.;..}.X...........q<....=<8<8=.[.x..3k.*V^..D=.5........>..h..*s..:.?7".q...K..5k..8k.....B.......f..S.F`U.o....l.#IR......x6.!..OI&..OA4.?.g~F4D...."d!{.oB..............U....q...)..s.l.....3.I.GAvD.Y.......)..,.../$....*e}....|&.......<...V3....q...`..h.0.\...PLk.t..L..".....n.F0......+..6..h.......<.Y....i:.....#..RIt.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:Google Chrome extension, version 3
                        Category:dropped
                        Size (bytes):98996
                        Entropy (8bit):7.702003651641397
                        Encrypted:false
                        SSDEEP:
                        MD5:34F93FE5B54D7C652360BA28D94F8E66
                        SHA1:31901469EADAD58B8BF99BBD9698E60ACDD7ABED
                        SHA-256:10DC1ED2D8D9D4DB369DDF7FD6F53EFFC9BFD87F46AFDFC6C86CB637D2067A38
                        SHA-512:9B86ACC2F5B92A75BD3028352F03DA10C6424C3514A3372A32EA8F60E79770D8B5AC5DBE0B45DD54B804C6EC79E1A1DBD887D0DF333DD253238DC30E6C5A1000
                        Malicious:false
                        Reputation:unknown
                        Preview:Cr24....f"........0.."0...*.H.............0.........^...1"...w.g..t..2J.G1.)X4..=&.?[j,Lz..j.u.e[I.q*Ba/X...P.h..L.....2%3_o.......H.)'.=.e...?.......j..3UH.|.X.M..u..s[.*..?$....F%....I....)..,-./.e5).f..O.q.^........9..(.._.ph2..^.YBPXf_8....h[.v...S.*1`.#..5.SF.:f-.#.65.i..b.]9...y2.'....k[........;:[........o$..#Cb.G+.T.hI.9...M.J..u.:....13S..*...%...)Rd.rROmI#z_..sO6@...'/'..... \....5}k..R..2..22..?E.......r;E..Z...C.^.J...=.E.m..hb%{DiYnrD....T.....B.`Z..OCQf...."..P..7.W...D....}.E7P...uf........A.....s.L.!.......!.9..J..c\Ac\5.....[0Y0...*.H.=....*.H.=....B..............r...2..+Y.I...k..bR.j5Sl..8.......H"i.-l..`.Q.{...F0D. Z.......o...$k.Sz.i...9D..K.$.. -=C.}.b...P....;.._"...u..s2#..c".>...........|[..:.._...9...O2o.A`.D......D....4..t...euGOL..~...:.:....^...?..C6...8.....?~..M............?..c#.R.........SyU.R..7..L...6r.mk.U.u....X..Wa.o...".o..l...(.5.....t..o......Y..1Q...me....K.....{.~N=8_.:."G.....qq5...^.~....s'.4...re.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1420
                        Entropy (8bit):5.413789161779812
                        Encrypted:false
                        SSDEEP:
                        MD5:485E51E7449F683716B01925D1661082
                        SHA1:49FAFBC0CBA716972B4E46C94FDECAA57398E78C
                        SHA-256:4EA1D4198E1F5E47262A4013AE3D671ECCD69AD14B2F5BC7FD9550FBD8292F10
                        SHA-512:65AF9427A040098ADD59B7B6176335B91353D2AA0904CA9B6A48EC30249D49CBE666AB91C4FE22636DBA2F1D4BCEEA5E8A104EB5F05EF53E71B2F65B8962B377
                        Malicious:false
                        Reputation:unknown
                        Preview:{"logTime": "1006/090722", "correlationVector":"rmkayOhJfEabcRCB2/Bp31","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/090722", "correlationVector":"jqHPV/yTVN5KYgOfDN/5Rr","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/090722", "correlationVector":"25C1A0EE3BD244A1BB83CF2641B12F1A","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1006/093120", "correlationVector":"a/GaihlkzouX6tpAQ3civy","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/093121", "correlationVector":"2831F27CA5B645488E2DF2452C16A59E","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1006/093243", "correlationVector":"7DhT8FK3VbHYWFgub0ZtsN","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/093243", "correlationVector":"83EFC8979E1A419495133BAFAFA5A23F","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1006/093745", "correlationVector":"Bxyvid0fodNJ7Wehc/BC7P","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/093746", "correlationVector":"B1516CBB
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JPEG image data, Exif standard: [TIFF image data, little-endian, direntries=0], baseline, precision 8, 1366x720, components 3
                        Category:dropped
                        Size (bytes):103469
                        Entropy (8bit):7.5851113512003785
                        Encrypted:false
                        SSDEEP:
                        MD5:37CF67E6E5D3AE47CF40406A1E8BE94F
                        SHA1:2A6F868ADC761DB9C03869E238BEA0D67D1FE6CE
                        SHA-256:B4B4DBE335296D0CCF9C659D671A54C2FA06F8B4E41228CF03E1D21F7C8F9D03
                        SHA-512:51F2C8B56592237378BE92C3EFCD814FC3E144120D109B15A7341AB03F9674251EE8B21BB172E6E021100F4EF792A5114D5B94F86EE0B157FD3386975BEC94CD
                        Malicious:false
                        Reputation:unknown
                        Preview:......Exif..II*.................Ducky.......2......Adobe.d...........................................................#"""#''''''''''..................................................!! !!''''''''''........V.."....................................................................................!1..AQ..aq."2....R..T....Br.#S.U..b..3Cs...t6.c.$D.5uV...4d.E&....%F......................!1..AQaq....."2......BRbr3CS....#..4.............?......1f.n..T......TP....E...........P.....@.........E..@......E.P........@........E.....P.P..A@@.E..@.P.P..AP.P..AP..@....T..AP.E..P.Z .. ....."... .....7.H...w.....t.....T....M.."... P..n.n..t5..*B.P..*(.................*.....................( ..................*.. .".... .".......(.. .".....*.. ....o......E.6... ..*..."........."J......Ah......@.@@....:@{6..wCp..3...((.(......................*...@..(...."....................*......*.. ........T.......@.@@........AP.P..@.E@....E@.d.E@.@@..@.P.T..@..@..P.D...@M........EO..."...=.wCp.....R......P.@......
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1753
                        Entropy (8bit):5.8889033066924155
                        Encrypted:false
                        SSDEEP:
                        MD5:738E757B92939B24CDBBD0EFC2601315
                        SHA1:77058CBAFA625AAFBEA867052136C11AD3332143
                        SHA-256:D23B2BA94BA22BBB681E6362AE5870ACD8A3280FA9E7241B86A9E12982968947
                        SHA-512:DCA3E12DD5A9F1802DB6D11B009FCE2B787E79B9F730094367C9F26D1D87AF1EA072FF5B10888648FB1231DD83475CF45594BB0C9915B655EE363A3127A5FFC2
                        Malicious:false
                        Reputation:unknown
                        Preview:[.. {.. "description": "treehash per file",.. "signed_content": {.. "payload": "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",.. "signatures": [.. {.. "header": {.. "kid": "publisher".. },.. "protected": "eyJhbGciOiJSUzI1NiJ9",.. "signature": "UglEEilkOml5P1W0X6wc-_dB87PQB73uMir11923av57zPKujb4IUe_lbGpn7cRZsy6x-8i9eEKxAW7L2TSmYqrcp4XtiON6ppcf27FWACXOUJDax9wlMr-EOtyZhykCnB9vR
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:Unicode text, UTF-8 text, with very long lines (8031), with no line terminators
                        Category:dropped
                        Size (bytes):9815
                        Entropy (8bit):6.1716321262973315
                        Encrypted:false
                        SSDEEP:
                        MD5:3D20584F7F6C8EAC79E17CCA4207FB79
                        SHA1:3C16DCC27AE52431C8CDD92FBAAB0341524D3092
                        SHA-256:0D40A5153CB66B5BDE64906CA3AE750494098F68AD0B4D091256939EEA243643
                        SHA-512:315D1B4CC2E70C72D7EB7D51E0F304F6E64AC13AE301FD2E46D585243A6C936B2AD35A0964745D291AE9B317C316A29760B9B9782C88CC6A68599DB531F87D59
                        Malicious:false
                        Reputation:unknown
                        Preview:(()=>{"use strict";var e={1:(e,o)=>{Object.defineProperty(o,"__esModule",{value:!0}),o.newCwsPromotionalButtonCta=o.chromeToEdgeCwsButtonCtaMapping=void 0,o.chromeToEdgeCwsButtonCtaMapping={"...... ... Chrome":"...... ....","........ .. Chrome":".....",........:"..........",".......... .. Chrome":"..........","Chrome . .....":"...","Chrome .... ....":"....","Afegeix a Chrome":"Obt.n","Suprimeix de Chrome":"Suprimeix","P.idat do Chromu":"Z.skat","Odstranit z Chromu":"Odebrat","F.j til Chrome":"F.","Fjern fra Chrome":"Fjerne",Hinzuf.gen:"Abrufen","Aus Chrome entfernen":"Entfernen","Add to Chrome":"Get","Remove from Chrome":"Remove","A.adir a Chrome":"Obtener",Desinstalar:"Quitar","Agregar a Chrome":"Obtener","Eliminar de Chrome":"Quitar","Lisa Chrome'i":"Hangi","Chrome'ist eemaldamine":"Eemalda",.......H:"........","......... ... .. Chr
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:Unicode text, UTF-8 text, with very long lines (8604), with no line terminators
                        Category:dropped
                        Size (bytes):10388
                        Entropy (8bit):6.174387413738973
                        Encrypted:false
                        SSDEEP:
                        MD5:3DE1E7D989C232FC1B58F4E32DE15D64
                        SHA1:42B152EA7E7F31A964914F344543B8BF14B5F558
                        SHA-256:D4AA4602A1590A4B8A1BCE8B8D670264C9FB532ADC97A72BC10C43343650385A
                        SHA-512:177E5BDF3A1149B0229B6297BAF7B122602F7BD753F96AA41CCF2D15B2BCF6AF368A39BB20336CCCE121645EC097F6BEDB94666C74ACB6174EB728FBFC43BC2A
                        Malicious:false
                        Reputation:unknown
                        Preview:(()=>{"use strict";var e={1:(e,o)=>{Object.defineProperty(o,"__esModule",{value:!0}),o.newCwsPromotionalButtonCta=o.chromeToEdgeCwsButtonCtaMapping=void 0,o.chromeToEdgeCwsButtonCtaMapping={"...... ... Chrome":"...... ....","........ .. Chrome":".....",........:"..........",".......... .. Chrome":"..........","Chrome . .....":"...","Chrome .... ....":"....","Afegeix a Chrome":"Obt.n","Suprimeix de Chrome":"Suprimeix","P.idat do Chromu":"Z.skat","Odstranit z Chromu":"Odebrat","F.j til Chrome":"F.","Fjern fra Chrome":"Fjerne",Hinzuf.gen:"Abrufen","Aus Chrome entfernen":"Entfernen","Add to Chrome":"Get","Remove from Chrome":"Remove","A.adir a Chrome":"Obtener",Desinstalar:"Quitar","Agregar a Chrome":"Obtener","Eliminar de Chrome":"Quitar","Lisa Chrome'i":"Hangi","Chrome'ist eemaldamine":"Eemalda",.......H:"........","......... ... .. Chr
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):962
                        Entropy (8bit):5.698567446030411
                        Encrypted:false
                        SSDEEP:
                        MD5:E805E9E69FD6ECDCA65136957B1FB3BE
                        SHA1:2356F60884130C86A45D4B232A26062C7830E622
                        SHA-256:5694C91F7D165C6F25DAF0825C18B373B0A81EA122C89DA60438CD487455FD6A
                        SHA-512:049662EF470D2B9E030A06006894041AE6F787449E4AB1FBF4959ADCB88C6BB87A957490212697815BB3627763C01B7B243CF4E3C4620173A95795884D998A75
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "content_scripts": [ {.. "js": [ "content.js" ],.. "matches": [ "https://chrome.google.com/webstore/*" ].. }, {.. "js": [ "content_new.js" ],.. "matches": [ "https://chromewebstore.google.com/*" ].. } ],.. "description": "Edge relevant text changes on select websites to improve user experience and precisely surfaces the action they want to take.",.. "key": "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu06p2Mjoy6yJDUUjCe8Hnqvtmjll73XqcbylxFZZWe+MCEAEK+1D0Nxrp0+IuWJL02CU3jbuR5KrJYoezA36M1oSGY5lIF/9NhXWEx5GrosxcBjxqEsdWv/eDoOOEbIvIO0ziMv7T1SUnmAA07wwq8DXWYuwlkZU/PA0Mxx0aNZ5+QyMfYqRmMpwxkwPG8gyU7kmacxgCY1v7PmmZo1vSIEOBYrxl064w5Q6s/dpalSJM9qeRnvRMLsszGY/J2bjQ1F0O2JfIlBjCOUg/89+U8ZJ1mObOFrKO4um8QnenXtH0WGmsvb5qBNrvbWNPuFgr2+w5JYlpSQ+O8zUCb8QZwIDAQAB",.. "manifest_version": 3,.. "name": "Edge relevant text changes",.. "update_url": "https://edge.microsoft.com/extensionwebstorebase/v1/crx",.. "version": "1.2.1"..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
                        Category:dropped
                        Size (bytes):4982
                        Entropy (8bit):7.929761711048726
                        Encrypted:false
                        SSDEEP:
                        MD5:913064ADAAA4C4FA2A9D011B66B33183
                        SHA1:99EA751AC2597A080706C690612AEEEE43161FC1
                        SHA-256:AFB4CE8882EF7AE80976EBA7D87F6E07FCDDC8E9E84747E8D747D1E996DEA8EB
                        SHA-512:162BF69B1AD5122C6154C111816E4B87A8222E6994A72743ED5382D571D293E1467A2ED2FC6CC27789B644943CF617A56DA530B6A6142680C5B2497579A632B5
                        Malicious:false
                        Reputation:unknown
                        Preview:.PNG........IHDR..............>a....=IDATx..]}...U..;...O.Q..QH.I(....v..E....GUb*..R[.4@%..hK..B..(.B..". ....&)U#.%...jZ...JC.8.....{.cfvgf.3;.....}ow.....{...P.B...*T.P.B...*Tx...=.Q..wv.w.....|.e.1.$.P.?..l_\.n.}...~.g.....Q...A.f....m.....{,...C2 %..X.......FE.1.N..f...Q..D.K87.....:g..Q.{............3@$.8.....{.....q....G.. .....5..y......)XK..F...D.......... ."8...J#.eM.i....H.E.....a.RIP.`......)..T.....! .[p`X.`..L.a....e. .T..2.....H..p$..02...j....\..........s{...Ymm~.a........f.$./.[.{..C.2:.0..6..]....`....NW.....0..o.T..$;k.2......_...k..{,.+........{..6...L..... .dw...l$..}...K...EV....0......P...e....k....+Go....qw.9.1...X2\..qfw0v.....N...{...l.."....f.A..I..+#.v....'..~E.N-k.........{...l.$..ga..1...$......x$X=}.N..S..B$p..`..`.ZG:c..RA.(.0......Gg.A.I..>...3u.u........_..KO.m.........C...,..c.......0...@_..m...-..7.......4LZ......j@.......\..'....u. QJ.:G..I`.w'B0..w.H..'b.0- ......|..}./.....e..,.K.1........W.u.v. ...\.o
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):908
                        Entropy (8bit):4.512512697156616
                        Encrypted:false
                        SSDEEP:
                        MD5:12403EBCCE3AE8287A9E823C0256D205
                        SHA1:C82D43C501FAE24BFE05DB8B8F95ED1C9AC54037
                        SHA-256:B40BDE5B612CFFF936370B32FB0C58CC205FC89937729504C6C0B527B60E2CBA
                        SHA-512:153401ECDB13086D2F65F9B9F20ACB3CEFE5E2AEFF1C31BA021BE35BF08AB0634812C33D1D34DA270E5693A8048FC5E2085E30974F6A703F75EA1622A0CA0FFD
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "SKEP NUWE".. },.. "explanationofflinedisabled": {.. "message": "Jy is vanlyn. As jy Google Dokumente sonder 'n internetverbinding wil gebruik, moet jy die volgende keer as jy aan die internet gekoppel is na instellings op die Google Dokumente-tuisblad gaan en vanlynsinkronisering aanskakel.".. },.. "explanationofflineenabled": {.. "message": "Jy is vanlyn, maar jy kan nog steeds beskikbare l.ers redigeer of nuwes skep.".. },.. "extdesc": {.. "message": "Skep, wysig en bekyk jou dokumente, sigblaaie en aanbiedings . alles sonder toegang tot die internet.".. },.. "extname": {.. "message": "Google Vanlyn Dokumente".. },.. "learnmore": {.. "message": "Kom meer te wete".. },.. "popuphelptext": {.. "message": "Skryf, redigeer en werk saam, waar jy ook al is, met of sonder 'n internetverbinding.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1285
                        Entropy (8bit):4.702209356847184
                        Encrypted:false
                        SSDEEP:
                        MD5:9721EBCE89EC51EB2BAEB4159E2E4D8C
                        SHA1:58979859B28513608626B563138097DC19236F1F
                        SHA-256:3D0361A85ADFCD35D0DE74135723A75B646965E775188F7DCDD35E3E42DB788E
                        SHA-512:FA3689E8663565D3C1C923C81A620B006EA69C99FB1EB15D07F8F45192ED9175A6A92315FA424159C1163382A3707B25B5FC23E590300C62CBE2DACE79D84871
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "... ...".. },.. "explanationofflinedisabled": {.. "message": "..... .. .... Google ..... ........ ..... ..... .Google .... ... .. .. .. ..... .... ....... .. ....... ... .. .. ..... .. ..... ....".. },.. "explanationofflineenabled": {.. "message": "..... .. .... ... .. .... .... ..... .... ... ..... .... .....".. },.. "extdesc": {.. "message": "...... ..... .... ... .. ..... ...... ..... .... .. ..... . .... .. ...... .....".. },.. "extname": {.. "message": "..... .. Goog
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1244
                        Entropy (8bit):4.5533961615623735
                        Encrypted:false
                        SSDEEP:
                        MD5:3EC93EA8F8422FDA079F8E5B3F386A73
                        SHA1:24640131CCFB21D9BC3373C0661DA02D50350C15
                        SHA-256:ABD0919121956AB535E6A235DE67764F46CFC944071FCF2302148F5FB0E8C65A
                        SHA-512:F40E879F85BC9B8120A9B7357ED44C22C075BF065F45BEA42BD5316AF929CBD035D5D6C35734E454AEF5B79D378E51A77A71FA23F9EBD0B3754159718FCEB95C
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "..... ....".. },.. "explanationofflinedisabled": {.. "message": "... ... ...... ........ ....... Google ... ..... .......... ..... ... ......... .. ...... ........ ........ Google ..... ........ ... ..... .. ..... ....... .... .... .... ..........".. },.. "explanationofflineenabled": {.. "message": "... ... ...... .... .. .... ....... ..... ....... ....... .. ..... ..... ......".. },.. "extdesc": {.. "message": "..... ......... ...... ........ ....... ......... ........ ....... .. ... ... ..... .........".. },.. "extname": {.. "message": "....... Google ... ......".. },.. "learnmore": {.. "messa
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):977
                        Entropy (8bit):4.867640976960053
                        Encrypted:false
                        SSDEEP:
                        MD5:9A798FD298008074E59ECC253E2F2933
                        SHA1:1E93DA985E880F3D3350FC94F5CCC498EFC8C813
                        SHA-256:628145F4281FA825D75F1E332998904466ABD050E8B0DC8BB9B6A20488D78A66
                        SHA-512:9094480379F5AB711B3C32C55FD162290CB0031644EA09A145E2EF315DA12F2E55369D824AF218C3A7C37DD9A276AEEC127D8B3627D3AB45A14B0191ED2BBE70
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "YEN.S.N. YARADIN".. },.. "explanationofflinedisabled": {.. "message": "Oflayns.n.z. Google S.n.di internet ba.lant.s. olmadan istifad. etm.k ist.yirsinizs., Google S.n.din .sas s.hif.sind. ayarlara gedin v. n.vb.ti d.f. internet. qo.ulanda oflayn sinxronizasiyan. aktiv edin.".. },.. "explanationofflineenabled": {.. "message": "Oflayns.n.z, amma m.vcud fayllar. redakt. ed. v. yenil.rini yarada bil.rsiniz.".. },.. "extdesc": {.. "message": "S.n.d, c.dv.l v. t.qdimatlar.n ham.s.n. internet olmadan redakt. edin, yarad.n v. bax.n.".. },.. "extname": {.. "message": "Google S.n.d Oflayn".. },.. "learnmore": {.. "message": ".trafl. M.lumat".. },.. "popuphelptext": {.. "message": "Harda olma..n.zdan v. internet. qo.ulu olub-olmad...n.zdan as.l. olmayaraq, yaz.n, redakt. edin v. .m.kda.l.q edin.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):3107
                        Entropy (8bit):3.535189746470889
                        Encrypted:false
                        SSDEEP:
                        MD5:68884DFDA320B85F9FC5244C2DD00568
                        SHA1:FD9C01E03320560CBBB91DC3D1917C96D792A549
                        SHA-256:DDF16859A15F3EB3334D6241975CA3988AC3EAFC3D96452AC3A4AFD3644C8550
                        SHA-512:7FF0FBD555B1F9A9A4E36B745CBFCAD47B33024664F0D99E8C080BE541420D1955D35D04B5E973C07725573E592CD0DD84FDBB867C63482BAFF6929ADA27CCDE
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u0421\u0422\u0412\u0410\u0420\u042b\u0426\u042c \u041d\u041e\u0412\u042b"},"explanationofflinedisabled":{"message":"\u0412\u044b \u045e \u043f\u0430\u0437\u0430\u0441\u0435\u0442\u043a\u0430\u0432\u044b\u043c \u0440\u044d\u0436\u044b\u043c\u0435. \u041a\u0430\u0431 \u043a\u0430\u0440\u044b\u0441\u0442\u0430\u0446\u0446\u0430 \u0414\u0430\u043a\u0443\u043c\u0435\u043d\u0442\u0430\u043c\u0456 Google \u0431\u0435\u0437 \u043f\u0430\u0434\u043a\u043b\u044e\u0447\u044d\u043d\u043d\u044f \u0434\u0430 \u0456\u043d\u0442\u044d\u0440\u043d\u044d\u0442\u0443, \u043f\u0435\u0440\u0430\u0439\u0434\u0437\u0456\u0446\u0435 \u0434\u0430 \u043d\u0430\u043b\u0430\u0434 \u043d\u0430 \u0433\u0430\u043b\u043e\u045e\u043d\u0430\u0439 \u0441\u0442\u0430\u0440\u043e\u043d\u0446\u044b \u0414\u0430\u043a\u0443\u043c\u0435\u043d\u0442\u0430\u045e Google \u0456 \u045e\u043a\u043b\u044e\u0447\u044b\u0446\u0435 \u0441\u0456\u043d\u0445\u0440\u0430\u043d\u0456\u0437\u0430\u0446\u044b\u044e
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1389
                        Entropy (8bit):4.561317517930672
                        Encrypted:false
                        SSDEEP:
                        MD5:2E6423F38E148AC5A5A041B1D5989CC0
                        SHA1:88966FFE39510C06CD9F710DFAC8545672FFDCEB
                        SHA-256:AC4A8B5B7C0B0DD1C07910F30DCFBDF1BCB701CFCFD182B6153FD3911D566C0E
                        SHA-512:891FCDC6F07337970518322C69C6026896DD3588F41F1E6C8A1D91204412CAE01808F87F9F2DEA1754458D70F51C3CEF5F12A9E3FC011165A42B0844C75EC683
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".........".. },.. "explanationofflinedisabled": {.. "message": "...... .... .. .. .......... Google ......... ... ........ ......, ........ ........... . ......... ........ .. Google ......... . ........ ...... .............. ......... ..., ...... ..... ...... . .........".. },.. "explanationofflineenabled": {.. "message": "...... ..., .. ... ...... .. ........... ......... ....... ... .. ......... .....".. },.. "extdesc": {.. "message": "............, .......... . ............ ...... ........., .......... ....... . ........... . ...... .... ... ...... .. .........".. },..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1763
                        Entropy (8bit):4.25392954144533
                        Encrypted:false
                        SSDEEP:
                        MD5:651375C6AF22E2BCD228347A45E3C2C9
                        SHA1:109AC3A912326171D77869854D7300385F6E628C
                        SHA-256:1DBF38E425C5C7FC39E8077A837DF0443692463BA1FBE94E288AB5A93242C46E
                        SHA-512:958AA7CF645FAB991F2ECA0937BA734861B373FB1C8BCC001599BE57C65E0917F7833A971D93A7A6423C5F54A4839D3A4D5F100C26EFA0D2A068516953989F9D
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".... .... ....".. },.. "explanationofflinedisabled": {.. "message": ".... ....... ....... .... ......... ..... ..... Google ........ ....... ...., Google .......... ........ ....... ... ... .... ... .... ... ........... .... ....... .... ... ...... ..... .... .....".. },.. "explanationofflineenabled": {.. "message": ".... ....... ......, ...... .... .... ...... .......... ........ .... .. .... .... .... .... .......".. },.. "extdesc":
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):930
                        Entropy (8bit):4.569672473374877
                        Encrypted:false
                        SSDEEP:
                        MD5:D177261FFE5F8AB4B3796D26835F8331
                        SHA1:4BE708E2FFE0F018AC183003B74353AD646C1657
                        SHA-256:D6E65238187A430FF29D4C10CF1C46B3F0FA4B91A5900A17C5DFD16E67FFC9BD
                        SHA-512:E7D730304AED78C0F4A78DADBF835A22B3D8114FB41D67B2B26F4FE938B572763D3E127B7C1C81EBE7D538DA976A7A1E7ADC40F918F88AFADEA2201AE8AB47D0
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREA'N UN DE NOU".. },.. "explanationofflinedisabled": {.. "message": "No tens connexi.. Per utilitzar Documents de Google sense connexi. a Internet, ves a la configuraci. de la p.gina d'inici d'aquest servei i activa l'opci. per sincronitzar-se sense connexi. la propera vegada que estiguis connectat a la xarxa.".. },.. "explanationofflineenabled": {.. "message": "Tot i que no tens connexi., pots editar o crear fitxers.".. },.. "extdesc": {.. "message": "Edita, crea i consulta documents, fulls de c.lcul i presentacions, tot sense acc.s a Internet.".. },.. "extname": {.. "message": "Documents de Google sense connexi.".. },.. "learnmore": {.. "message": "M.s informaci.".. },.. "popuphelptext": {.. "message": "Escriu text, edita fitxers i col.labora-hi siguis on siguis, amb o sense connexi. a Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):913
                        Entropy (8bit):4.947221919047
                        Encrypted:false
                        SSDEEP:
                        MD5:CCB00C63E4814F7C46B06E4A142F2DE9
                        SHA1:860936B2A500CE09498B07A457E0CCA6B69C5C23
                        SHA-256:21AE66CE537095408D21670585AD12599B0F575FF2CB3EE34E3A48F8CC71CFAB
                        SHA-512:35839DAC6C985A6CA11C1BFF5B8B5E59DB501FCB91298E2C41CB0816B6101BF322445B249EAEA0CEF38F76D73A4E198F2B6E25EEA8D8A94EA6007D386D4F1055
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "VYTVO.IT".. },.. "explanationofflinedisabled": {.. "message": "Jste offline. Pokud chcete Dokumenty Google pou..vat bez p.ipojen. k.internetu, a. budete p...t. online, p.ejd.te do nastaven. na domovsk. str.nce Dokument. Google a.zapn.te offline synchronizaci.".. },.. "explanationofflineenabled": {.. "message": "Jste offline, ale st.le m..ete upravovat dostupn. soubory nebo vytv..et nov..".. },.. "extdesc": {.. "message": "Upravujte, vytv..ejte a.zobrazujte sv. dokumenty, tabulky a.prezentace . v.e bez p..stupu k.internetu.".. },.. "extname": {.. "message": "Dokumenty Google offline".. },.. "learnmore": {.. "message": "Dal.. informace".. },.. "popuphelptext": {.. "message": "Pi.te, upravujte a.spolupracujte kdekoli, s.p.ipojen.m k.internetu i.bez n.j.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):806
                        Entropy (8bit):4.815663786215102
                        Encrypted:false
                        SSDEEP:
                        MD5:A86407C6F20818972B80B9384ACFBBED
                        SHA1:D1531CD0701371E95D2A6BB5EDCB79B949D65E7C
                        SHA-256:A482663292A913B02A9CDE4635C7C92270BF3C8726FD274475DC2C490019A7C9
                        SHA-512:D9FBF675514A890E9656F83572208830C6D977E34D5744C298A012515BC7EB5A17726ADD0D9078501393BABD65387C4F4D3AC0CC0F7C60C72E09F336DCA88DE7
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"CREU NEWYDD"},"explanationofflinedisabled":{"message":"Rydych chi all-lein. I ddefnyddio Dogfennau Google heb gysylltiad \u00e2'r rhyngrwyd, ewch i'r gosodiadau ar dudalen hafan Dogfennau Google a throi 'offine sync' ymlaen y tro nesaf y byddwch wedi'ch cysylltu \u00e2'r rhyngrwyd."},"explanationofflineenabled":{"message":"Rydych chi all-lein, ond gallwch barhau i olygu'r ffeiliau sydd ar gael neu greu rhai newydd."},"extdesc":{"message":"Gallwch olygu, creu a gweld eich dogfennau, taenlenni a chyflwyniadau \u2013 i gyd heb fynediad i'r rhyngrwyd."},"extname":{"message":"Dogfennau Google All-lein"},"learnmore":{"message":"DYSGU MWY"},"popuphelptext":{"message":"Ysgrifennwch, golygwch a chydweithiwch lle bynnag yr ydych, gyda chysylltiad \u00e2'r rhyngrwyd neu hebddo."}}.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):883
                        Entropy (8bit):4.5096240460083905
                        Encrypted:false
                        SSDEEP:
                        MD5:B922F7FD0E8CCAC31B411FC26542C5BA
                        SHA1:2D25E153983E311E44A3A348B7D97AF9AAD21A30
                        SHA-256:48847D57C75AF51A44CBF8F7EF1A4496C2007E58ED56D340724FDA1604FF9195
                        SHA-512:AD0954DEEB17AF04858DD5EC3D3B3DA12DFF7A666AF4061DEB6FD492992D95DB3BAF751AB6A59BEC7AB22117103A93496E07632C2FC724623BB3ACF2CA6093F3
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "OPRET NYT".. },.. "explanationofflinedisabled": {.. "message": "Du er offline. Hvis du vil bruge Google Docs uden en internetforbindelse, kan du g. til indstillinger p. startsiden for Google Docs og aktivere offlinesynkronisering, n.ste gang du har internetforbindelse.".. },.. "explanationofflineenabled": {.. "message": "Du er offline, men du kan stadig redigere tilg.ngelige filer eller oprette nye.".. },.. "extdesc": {.. "message": "Rediger, opret og se dine dokumenter, regneark og pr.sentationer helt uden internetadgang.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "F. flere oplysninger".. },.. "popuphelptext": {.. "message": "Skriv, rediger og samarbejd, uanset hvor du er, og uanset om du har internetforbindelse.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1031
                        Entropy (8bit):4.621865814402898
                        Encrypted:false
                        SSDEEP:
                        MD5:D116453277CC860D196887CEC6432FFE
                        SHA1:0AE00288FDE696795CC62FD36EABC507AB6F4EA4
                        SHA-256:36AC525FA6E28F18572D71D75293970E0E1EAD68F358C20DA4FDC643EEA2C1C5
                        SHA-512:C788C3202A27EC220E3232AE25E3C855F3FDB8F124848F46A3D89510C564641A2DFEA86D5014CEA20D3D2D3C1405C96DBEB7CCAD910D65C55A32FDCA8A33FDD4
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "NEU ERSTELLEN".. },.. "explanationofflinedisabled": {.. "message": "Sie sind offline. Um Google Docs ohne Internetverbindung zu verwenden, gehen Sie auf der Google Docs-Startseite auf \"Einstellungen\" und schalten die Offlinesynchronisierung ein, wenn Sie das n.chste Mal mit dem Internet verbunden sind.".. },.. "explanationofflineenabled": {.. "message": "Sie sind offline, aber k.nnen weiterhin verf.gbare Dateien bearbeiten oder neue Dateien erstellen.".. },.. "extdesc": {.. "message": "Mit der Erweiterung k.nnen Sie Dokumente, Tabellen und Pr.sentationen bearbeiten, erstellen und aufrufen.. ganz ohne Internetverbindung.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Weitere Informationen".. },.. "popuphelptext": {.. "message": "Mit oder ohne Internetverbindung: Sie k.nnen von .berall Dokumente erstellen, .ndern und zusammen mit anderen
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1613
                        Entropy (8bit):4.618182455684241
                        Encrypted:false
                        SSDEEP:
                        MD5:9ABA4337C670C6349BA38FDDC27C2106
                        SHA1:1FC33BE9AB4AD99216629BC89FBB30E7AA42B812
                        SHA-256:37CA6AB271D6E7C9B00B846FDB969811C9CE7864A85B5714027050795EA24F00
                        SHA-512:8564F93AD8485C06034A89421CE74A4E719BBAC865E33A7ED0B87BAA80B7F7E54B240266F2EDB595DF4E6816144428DB8BE18A4252CBDCC1E37B9ECC9F9D7897
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".......... ....".. },.. "explanationofflinedisabled": {.. "message": "..... ..... ......... ... .. ............... .. ....... Google ..... ....... ... ........., ......... .... ......... .... ...... ...... ... ........ Google ... ............. ... ........... ..... ........ ... ....... .... ... .. ..... ............ ... ..........".. },.. "explanationofflineenabled": {.. "message": "..... ..... ........ .... ........ .. .............. .. ......... ...... . .. ............. ... .......".. },.. "extdesc": {.. "message": ".............., ............ ... ..... .. ......., .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):851
                        Entropy (8bit):4.4858053753176526
                        Encrypted:false
                        SSDEEP:
                        MD5:07FFBE5F24CA348723FF8C6C488ABFB8
                        SHA1:6DC2851E39B2EE38F88CF5C35A90171DBEA5B690
                        SHA-256:6895648577286002F1DC9C3366F558484EB7020D52BBF64A296406E61D09599C
                        SHA-512:7ED2C8DB851A84F614D5DAF1D5FE633BD70301FD7FF8A6723430F05F642CEB3B1AD0A40DE65B224661C782FFCEC69D996EBE3E5BB6B2F478181E9A07D8CD41F6
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREATE NEW".. },.. "explanationofflinedisabled": {.. "message": "You're offline. To use Google Docs without an internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the internet.".. },.. "explanationofflineenabled": {.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extdesc": {.. "message": "Edit, create, and view your documents, spreadsheets, and presentations . all without internet access.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Learn More".. },.. "popuphelptext": {.. "message": "Write, edit, and collaborate wherever you are, with or without an internet connection.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):848
                        Entropy (8bit):4.494568170878587
                        Encrypted:false
                        SSDEEP:
                        MD5:3734D498FB377CF5E4E2508B8131C0FA
                        SHA1:AA23E39BFE526B5E3379DE04E00EACBA89C55ADE
                        SHA-256:AB5CDA04013DCE0195E80AF714FBF3A67675283768FFD062CF3CF16EDB49F5D4
                        SHA-512:56D9C792954214B0DE56558983F7EB7805AC330AF00E944E734340BE41C68E5DD03EDDB17A63BC2AB99BDD9BE1F2E2DA5BE8BA7C43D938A67151082A9041C7BA
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREATE NEW".. },.. "explanationofflinedisabled": {.. "message": "You're offline. To use Google Docs without an Internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the Internet.".. },.. "explanationofflineenabled": {.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extdesc": {.. "message": "Edit, create and view your documents, spreadsheets and presentations . all without Internet access.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Learn more".. },.. "popuphelptext": {.. "message": "Write, edit and collaborate wherever you are, with or without an Internet connection.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1425
                        Entropy (8bit):4.461560329690825
                        Encrypted:false
                        SSDEEP:
                        MD5:578215FBB8C12CB7E6CD73FBD16EC994
                        SHA1:9471D71FA6D82CE1863B74E24237AD4FD9477187
                        SHA-256:102B586B197EA7D6EDFEB874B97F95B05D229EA6A92780EA8544C4FF1E6BC5B1
                        SHA-512:E698B1A6A6ED6963182F7D25AC12C6DE06C45D14499DDC91E81BDB35474E7EC9071CFEBD869B7D129CB2CD127BC1442C75E408E21EB8E5E6906A607A3982B212
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createNew": {.. "description": "Text shown in the extension pop up for creating a new document",.. "message": "CREATE NEW".. },.. "explanationOfflineDisabled": {.. "description": "Text shown in the extension popup when the user is offline and offline is disabled.",.. "message": "You're offline. To use Google Docs without an internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the internet.".. },.. "explanationOfflineEnabled": {.. "description": "Text shown in the extension popup when the user is offline and offline is enabled.",.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extDesc": {.. "description": "Extension description",.. "message": "Edit, create, and view your documents, spreadsheets, and presentations . all without internet access.".. },.. "extName": {.. "description": "Extension name",..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):961
                        Entropy (8bit):4.537633413451255
                        Encrypted:false
                        SSDEEP:
                        MD5:F61916A206AC0E971CDCB63B29E580E3
                        SHA1:994B8C985DC1E161655D6E553146FB84D0030619
                        SHA-256:2008F4FAAB71AB8C76A5D8811AD40102C380B6B929CE0BCE9C378A7CADFC05EB
                        SHA-512:D9C63B2F99015355ACA04D74A27FD6B81170750C4B4BE7293390DC81EF4CD920EE9184B05C61DC8979B6C2783528949A4AE7180DBF460A2620DBB0D3FD7A05CF
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREAR".. },.. "explanationofflinedisabled": {.. "message": "No tienes conexi.n. Para usar Documentos de Google sin conexi.n a Internet, ve a Configuraci.n en la p.gina principal de Documentos de Google y activa la sincronizaci.n sin conexi.n la pr.xima vez que te conectes a Internet.".. },.. "explanationofflineenabled": {.. "message": "No tienes conexi.n. Aun as., puedes crear archivos o editar los que est.n disponibles.".. },.. "extdesc": {.. "message": "Edita, crea y consulta tus documentos, hojas de c.lculo y presentaciones; todo ello, sin acceso a Internet.".. },.. "extname": {.. "message": "Documentos de Google sin conexi.n".. },.. "learnmore": {.. "message": "M.s informaci.n".. },.. "popuphelptext": {.. "message": "Escribe o edita contenido y colabora con otras personas desde cualquier lugar, con o sin conexi.n a Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):959
                        Entropy (8bit):4.570019855018913
                        Encrypted:false
                        SSDEEP:
                        MD5:535331F8FB98894877811B14994FEA9D
                        SHA1:42475E6AFB6A8AE41E2FC2B9949189EF9BBE09FB
                        SHA-256:90A560FF82605DB7EDA26C90331650FF9E42C0B596CEDB79B23598DEC1B4988F
                        SHA-512:2CE9C69E901AB5F766E6CFC1E592E1AF5A07AA78D154CCBB7898519A12E6B42A21C5052A86783ABE3E7A05043D4BD41B28960FEDDB30169FF7F7FE7208C8CFE9
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREAR NUEVO".. },.. "explanationofflinedisabled": {.. "message": "No tienes conexi.n. Para usar Documentos de Google sin conexi.n a Internet, ve a la configuraci.n de la p.gina principal de Documentos de Google y activa la sincronizaci.n sin conexi.n la pr.xima vez que est.s conectado a Internet.".. },.. "explanationofflineenabled": {.. "message": "No tienes conexi.n, pero a.n puedes modificar los archivos disponibles o crear otros nuevos.".. },.. "extdesc": {.. "message": "Edita, crea y consulta tus documentos, hojas de c.lculo y presentaciones aunque no tengas acceso a Internet".. },.. "extname": {.. "message": "Documentos de Google sin conexi.n".. },.. "learnmore": {.. "message": "M.s informaci.n".. },.. "popuphelptext": {.. "message": "Escribe, modifica y colabora dondequiera que est.s, con conexi.n a Internet o sin ella.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):968
                        Entropy (8bit):4.633956349931516
                        Encrypted:false
                        SSDEEP:
                        MD5:64204786E7A7C1ED9C241F1C59B81007
                        SHA1:586528E87CD670249A44FB9C54B1796E40CDB794
                        SHA-256:CC31B877238DA6C1D51D9A6155FDE565727A1956572F466C387B7E41C4923A29
                        SHA-512:44FCF93F3FB10A3DB68D74F9453995995AB2D16863EC89779DB451A4D90F19743B8F51095EEC3ECEF5BD0C5C60D1BF3DFB0D64DF288DCCFBE70C129AE350B2C6
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "LOO UUS".. },.. "explanationofflinedisabled": {.. "message": "Teil ei ole v.rgu.hendust. Teenuse Google.i dokumendid kasutamiseks ilma Interneti-.henduseta avage j.rgmine kord, kui olete Internetiga .hendatud, teenuse Google.i dokumendid avalehel seaded ja l.litage sisse v.rgu.henduseta s.nkroonimine.".. },.. "explanationofflineenabled": {.. "message": "Teil ei ole v.rgu.hendust, kuid saate endiselt saadaolevaid faile muuta v.i uusi luua.".. },.. "extdesc": {.. "message": "Saate luua, muuta ja vaadata oma dokumente, arvustustabeleid ning esitlusi ilma Interneti-.henduseta.".. },.. "extname": {.. "message": "V.rgu.henduseta Google.i dokumendid".. },.. "learnmore": {.. "message": "Lisateave".. },.. "popuphelptext": {.. "message": "Kirjutage, muutke ja tehke koost..d .ksk.ik kus olenemata sellest, kas teil on Interneti-.hendus.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):838
                        Entropy (8bit):4.4975520913636595
                        Encrypted:false
                        SSDEEP:
                        MD5:29A1DA4ACB4C9D04F080BB101E204E93
                        SHA1:2D0E4587DDD4BAC1C90E79A88AF3BD2C140B53B1
                        SHA-256:A41670D52423BA69C7A65E7E153E7B9994E8DD0370C584BDA0714BD61C49C578
                        SHA-512:B7B7A5A0AA8F6724B0FA15D65F25286D9C66873F03080CBABA037BDEEA6AADC678AC4F083BC52C2DB01BEB1B41A755ED67BBDDB9C0FE4E35A004537A3F7FC458
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"SORTU"},"explanationofflinedisabled":{"message":"Ez zaude konektatuta Internetera. Google Dokumentuak konexiorik gabe erabiltzeko, joan Google Dokumentuak zerbitzuaren orri nagusiko ezarpenetara eta aktibatu konexiorik gabeko sinkronizazioa Internetera konektatzen zaren hurrengoan."},"explanationofflineenabled":{"message":"Ez zaude konektatuta Internetera, baina erabilgarri dauden fitxategiak edita ditzakezu, baita beste batzuk sortu ere."},"extdesc":{"message":"Editatu, sortu eta ikusi dokumentuak, kalkulu-orriak eta aurkezpenak Interneteko konexiorik gabe."},"extname":{"message":"Google Dokumentuak konexiorik gabe"},"learnmore":{"message":"Lortu informazio gehiago"},"popuphelptext":{"message":"Edonon zaudela ere, ez duzu zertan konektatuta egon idatzi, editatu eta lankidetzan jardun ahal izateko."}}.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1305
                        Entropy (8bit):4.673517697192589
                        Encrypted:false
                        SSDEEP:
                        MD5:097F3BA8DE41A0AAF436C783DCFE7EF3
                        SHA1:986B8CABD794E08C7AD41F0F35C93E4824AC84DF
                        SHA-256:7C4C09D19AC4DA30CC0F7F521825F44C4DFBC19482A127FBFB2B74B3468F48F1
                        SHA-512:8114EA7422E3B20AE3F08A3A64A6FFE1517A7579A3243919B8F789EB52C68D6F5A591F7B4D16CEE4BD337FF4DAF4057D81695732E5F7D9E761D04F859359FADB
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "..... ... ....".. },.. "explanationofflinedisabled": {.. "message": "...... ...... .... ....... .. ....... Google .... ..... ........ .... ... .. .. ....... ... ..... .. ....... .. .... .... ....... Google ..... . .......... ...... .. .... .....".. },.. "explanationofflineenabled": {.. "message": "...... ..... ... ...... ......... ......... .. .. .. ..... ..... ...... .... .. ........ ..... ..... .....".. },.. "extdesc": {.. "message": "...... ............ . ........ .. ....... ..... . ...... .... . ... ... ..... .... ...... .. ........".. },.. "extname": {.. "message": "....... Google .
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):911
                        Entropy (8bit):4.6294343834070935
                        Encrypted:false
                        SSDEEP:
                        MD5:B38CBD6C2C5BFAA6EE252D573A0B12A1
                        SHA1:2E490D5A4942D2455C3E751F96BD9960F93C4B60
                        SHA-256:2D752A5DBE80E34EA9A18C958B4C754F3BC10D63279484E4DF5880B8FD1894D2
                        SHA-512:6E65207F4D8212736059CC802C6A7104E71A9CC0935E07BD13D17EC46EA26D10BC87AD923CD84D78781E4F93231A11CB9ED8D3558877B6B0D52C07CB005F1C0C
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "LUO UUSI".. },.. "explanationofflinedisabled": {.. "message": "Olet offline-tilassa. Jos haluat k.ytt.. Google Docsia ilman internetyhteytt., siirry Google Docsin etusivulle ja ota asetuksissa k.ytt..n offline-synkronointi, kun seuraavan kerran olet yhteydess. internetiin.".. },.. "explanationofflineenabled": {.. "message": "Olet offline-tilassa. Voit kuitenkin muokata k.ytett.viss. olevia tiedostoja tai luoda uusia.".. },.. "extdesc": {.. "message": "Muokkaa, luo ja katso dokumentteja, laskentataulukoita ja esityksi. ilman internetyhteytt..".. },.. "extname": {.. "message": "Google Docsin offline-tila".. },.. "learnmore": {.. "message": "Lis.tietoja".. },.. "popuphelptext": {.. "message": "Kirjoita, muokkaa ja tee yhteisty.t. paikasta riippumatta, my.s ilman internetyhteytt..".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):939
                        Entropy (8bit):4.451724169062555
                        Encrypted:false
                        SSDEEP:
                        MD5:FCEA43D62605860FFF41BE26BAD80169
                        SHA1:F25C2CE893D65666CC46EA267E3D1AA080A25F5B
                        SHA-256:F51EEB7AAF5F2103C1043D520E5A4DE0FA75E4DC375E23A2C2C4AFD4D9293A72
                        SHA-512:F66F113A26E5BCF54B9AAFA69DAE3C02C9C59BD5B9A05F829C92AF208C06DC8CCC7A1875CBB7B7CE425899E4BA27BFE8CE2CDAF43A00A1B9F95149E855989EE0
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "GUMAWA NG BAGO".. },.. "explanationofflinedisabled": {.. "message": "Naka-offline ka. Upang magamit ang Google Docs nang walang koneksyon sa internet, pumunta sa mga setting sa homepage ng Google Docs at i-on ang offline na pag-sync sa susunod na nakakonekta ka sa internet.".. },.. "explanationofflineenabled": {.. "message": "Naka-offline ka, ngunit maaari mo pa ring i-edit ang mga available na file o gumawa ng mga bago.".. },.. "extdesc": {.. "message": "I-edit, gawin, at tingnan ang iyong mga dokumento, spreadsheet, at presentation . lahat ng ito nang walang access sa internet.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Matuto Pa".. },.. "popuphelptext": {.. "message": "Magsulat, mag-edit at makipag-collaborate nasaan ka man, nang mayroon o walang koneksyon sa internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):977
                        Entropy (8bit):4.622066056638277
                        Encrypted:false
                        SSDEEP:
                        MD5:A58C0EEBD5DC6BB5D91DAF923BD3A2AA
                        SHA1:F169870EEED333363950D0BCD5A46D712231E2AE
                        SHA-256:0518287950A8B010FFC8D52554EB82E5D93B6C3571823B7CECA898906C11ABCC
                        SHA-512:B04AFD61DE490BC838354E8DC6C22BE5C7AC6E55386FFF78489031ACBE2DBF1EAA2652366F7A1E62CE87CFCCB75576DA3B2645FEA1645B0ECEB38B1FA3A409E8
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CR.ER".. },.. "explanationofflinedisabled": {.. "message": "Vous .tes hors connexion. Pour pouvoir utiliser Google.Docs sans connexion Internet, acc.dez aux param.tres de la page d'accueil de Google.Docs et activez la synchronisation hors connexion lors de votre prochaine connexion . Internet.".. },.. "explanationofflineenabled": {.. "message": "Vous .tes hors connexion, mais vous pouvez quand m.me modifier les fichiers disponibles ou cr.er des fichiers.".. },.. "extdesc": {.. "message": "Modifiez, cr.ez et consultez des documents, feuilles de calcul et pr.sentations, sans acc.s . Internet.".. },.. "extname": {.. "message": "Google.Docs hors connexion".. },.. "learnmore": {.. "message": "En savoir plus".. },.. "popuphelptext": {.. "message": "R.digez des documents, modifiez-les et collaborez o. que vous soyez, avec ou sans connexion Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):972
                        Entropy (8bit):4.621319511196614
                        Encrypted:false
                        SSDEEP:
                        MD5:6CAC04BDCC09034981B4AB567B00C296
                        SHA1:84F4D0E89E30ED7B7ACD7644E4867FFDB346D2A5
                        SHA-256:4CAA46656ECC46A420AA98D3307731E84F5AC1A89111D2E808A228C436D83834
                        SHA-512:160590B6EC3DCF48F3EA7A5BAA11A8F6FA4131059469623E00AD273606B468B3A6E56D199E97DAA0ECB6C526260EBAE008570223F2822811F441D1C900DC33D6
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CR.ER".. },.. "explanationofflinedisabled": {.. "message": "Vous .tes hors connexion. Pour utiliser Google.Documents sans connexion Internet, acc.dez aux param.tres sur la page d'accueil Google.Documents et activez la synchronisation hors ligne la prochaine fois que vous .tes connect. . Internet.".. },.. "explanationofflineenabled": {.. "message": "Vous .tes hors connexion, mais vous pouvez toujours modifier les fichiers disponibles ou en cr.er.".. },.. "extdesc": {.. "message": "Modifiez, cr.ez et consultez vos documents, vos feuilles de calcul et vos pr.sentations, le tout sans acc.s . Internet.".. },.. "extname": {.. "message": "Google.Documents hors connexion".. },.. "learnmore": {.. "message": "En savoir plus".. },.. "popuphelptext": {.. "message": ".crivez, modifiez et collaborez o. que vous soyez, avec ou sans connexion Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):990
                        Entropy (8bit):4.497202347098541
                        Encrypted:false
                        SSDEEP:
                        MD5:6BAAFEE2F718BEFBC7CD58A04CCC6C92
                        SHA1:CE0BDDDA2FA1F0AD222B604C13FF116CBB6D02CF
                        SHA-256:0CF098DFE5BBB46FC0132B3CF0C54B06B4D2C8390D847EE2A65D20F9B7480F4C
                        SHA-512:3DA23E74CD6CF9C0E2A0C4DBA60301281D362FB0A2A908F39A55ABDCA4CC69AD55638C63CC3BEFD44DC032F9CBB9E2FDC1B4C4ABE292917DF8272BA25B82AF20
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Est.s sen conexi.n. Para utilizar Documentos de Google sen conexi.n a Internet, accede .s opci.ns de configuraci.n na p.xina de inicio de Documentos de Google e activa a sincronizaci.n sen conexi.n a pr.xima vez que esteas conectado a Internet.".. },.. "explanationofflineenabled": {.. "message": "Est.s sen conexi.n. A.nda podes editar os ficheiros dispo.ibles ou crear outros novos.".. },.. "extdesc": {.. "message": "Modifica, crea e consulta os teus documentos, follas de c.lculo e presentaci.ns sen necesidade de acceder a Internet.".. },.. "extname": {.. "message": "Documentos de Google sen conexi.n".. },.. "learnmore": {.. "message": "M.is informaci.n".. },.. "popuphelptext": {.. "message": "Escribe, edita e colabora esteas onde esteas, tanto se tes conexi.n a Internet como se non a tes.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1658
                        Entropy (8bit):4.294833932445159
                        Encrypted:false
                        SSDEEP:
                        MD5:BC7E1D09028B085B74CB4E04D8A90814
                        SHA1:E28B2919F000B41B41209E56B7BF3A4448456CFE
                        SHA-256:FE8218DF25DB54E633927C4A1640B1A41B8E6CB3360FA386B5382F833B0B237C
                        SHA-512:040A8267D67DB05BBAA52F1FAC3460F58D35C5B73AA76BBF17FA78ACC6D3BFB796A870DD44638F9AC3967E35217578A20D6F0B975CEEEEDBADFC9F65BE7E72C9
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".... .....".. },.. "explanationofflinedisabled": {.. "message": "... ...... ... ........ ....... ... Google .......... ..... .... ...., ... .... .... ...... ........ .... ...... ... ...... Google ........ ...... .. ........ .. ... ... ...... ....... .... ....".. },.. "explanationofflineenabled": {.. "message": "... ...... .., ..... ... ... .. ...... ..... ....... ... ... .. .... ... ..... ... ...".. },.. "extdesc": {.. "message": "..... ........., ..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1672
                        Entropy (8bit):4.314484457325167
                        Encrypted:false
                        SSDEEP:
                        MD5:98A7FC3E2E05AFFFC1CFE4A029F47476
                        SHA1:A17E077D6E6BA1D8A90C1F3FAF25D37B0FF5A6AD
                        SHA-256:D2D1AFA224CDA388FF1DC8FAC24CDA228D7CE09DE5D375947D7207FA4A6C4F8D
                        SHA-512:457E295C760ABFD29FC6BBBB7FC7D4959287BCA7FB0E3E99EB834087D17EED331DEF18138838D35C48C6DDC8A0134AFFFF1A5A24033F9B5607B355D3D48FDF88
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "... .....".. },.. "explanationofflinedisabled": {.. "message": ".. ...... .... ....... ....... .. .... Google ........ .. ..... .... .. ..., .... ... ....... .. ...... .... .. Google ........ .. ........ .. ...... ... .... .. ...... ....... .... .....".. },.. "explanationofflineenabled": {.. "message": ".. ...... ..., ..... .. .. .. ...... ...... ..... .. .... ... .. .. ...... ... .... ....".. },.. "extdesc": {.. "message": ".... .... ....... ...... ..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):935
                        Entropy (8bit):4.6369398601609735
                        Encrypted:false
                        SSDEEP:
                        MD5:25CDFF9D60C5FC4740A48EF9804BF5C7
                        SHA1:4FADECC52FB43AEC084DF9FF86D2D465FBEBCDC0
                        SHA-256:73E6E246CEEAB9875625CD4889FBF931F93B7B9DEAA11288AE1A0F8A6E311E76
                        SHA-512:EF00B08496427FEB5A6B9FB3FE2E5404525BE7C329D9DD2A417480637FD91885837D134A26980DCF9F61E463E6CB68F09A24402805807E656AF16B116A75E02C
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "IZRADI NOVI".. },.. "explanationofflinedisabled": {.. "message": "Vi ste izvan mre.e. Da biste koristili Google dokumente bez internetske veze, idite na postavke na po.etnoj stranici Google dokumenata i uklju.ite izvanmre.nu sinkronizaciju sljede.i put kada se pove.ete s internetom.".. },.. "explanationofflineenabled": {.. "message": "Vi ste izvan mre.e, no i dalje mo.ete ure.ivati dostupne datoteke i izra.ivati nove.".. },.. "extdesc": {.. "message": "Uredite, izradite i pregledajte dokumente, prora.unske tablice i prezentacije . sve bez pristupa internetu.".. },.. "extname": {.. "message": "Google dokumenti izvanmre.no".. },.. "learnmore": {.. "message": "Saznajte vi.e".. },.. "popuphelptext": {.. "message": "Pi.ite, ure.ujte i sura.ujte gdje god se nalazili, povezani s internetom ili izvanmre.no.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1065
                        Entropy (8bit):4.816501737523951
                        Encrypted:false
                        SSDEEP:
                        MD5:8930A51E3ACE3DD897C9E61A2AEA1D02
                        SHA1:4108506500C68C054BA03310C49FA5B8EE246EA4
                        SHA-256:958C0F664FCA20855FA84293566B2DDB7F297185619143457D6479E6AC81D240
                        SHA-512:126B80CD3428C0BC459EEAAFCBE4B9FDE2541A57F19F3EC7346BAF449F36DC073A9CF015594A57203255941551B25F6FAA6D2C73C57C44725F563883FF902606
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".J L.TREHOZ.SA".. },.. "explanationofflinedisabled": {.. "message": "Jelenleg offline .llapotban van. Ha a Google Dokumentumokat internetkapcsolat n.lk.l szeretn. haszn.lni, a legk.zelebbi internethaszn.lata sor.n nyissa meg a Google Dokumentumok kezd.oldal.n tal.lhat. be.ll.t.sokat, .s tiltsa le az offline szinkroniz.l.s be.ll.t.st.".. },.. "explanationofflineenabled": {.. "message": "Offline .llapotban van, de az el.rhet. f.jlokat .gy is szerkesztheti, valamint l.trehozhat .jakat.".. },.. "extdesc": {.. "message": "Szerkesszen, hozzon l.tre .s tekintsen meg dokumentumokat, t.bl.zatokat .s prezent.ci.kat . ak.r internetkapcsolat n.lk.l is.".. },.. "extname": {.. "message": "Google Dokumentumok Offline".. },.. "learnmore": {.. "message": "Tov.bbi inform.ci.".. },.. "popuphelptext": {.. "message": ".rjon, szerkesszen .s dolgozzon egy.tt m.sokkal
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2771
                        Entropy (8bit):3.7629875118570055
                        Encrypted:false
                        SSDEEP:
                        MD5:55DE859AD778E0AA9D950EF505B29DA9
                        SHA1:4479BE637A50C9EE8A2F7690AD362A6A8FFC59B2
                        SHA-256:0B16E3F8BD904A767284345AE86A0A9927C47AFE89E05EA2B13AD80009BDF9E4
                        SHA-512:EDAB2FCC14CABB6D116E9C2907B42CFBC34F1D9035F43E454F1F4D1F3774C100CBADF6B4C81B025810ED90FA91C22F1AEFE83056E4543D92527E4FE81C7889A8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u054d\u054f\u0535\u0542\u053e\u0535\u053c \u0546\u0548\u0550"},"explanationofflinedisabled":{"message":"Google \u0553\u0561\u057d\u057f\u0561\u0569\u0572\u0569\u0565\u0580\u0568 \u0576\u0561\u0587 \u0561\u0576\u0581\u0561\u0576\u0581 \u057c\u0565\u056a\u056b\u0574\u0578\u0582\u0574 \u0585\u0563\u057f\u0561\u0563\u0578\u0580\u056e\u0565\u056c\u0578\u0582 \u0570\u0561\u0574\u0561\u0580 \u0574\u056b\u0561\u0581\u0565\u0584 \u0570\u0561\u0574\u0561\u0581\u0561\u0576\u0581\u056b\u0576, \u0562\u0561\u0581\u0565\u0584 \u056e\u0561\u057c\u0561\u0575\u0578\u0582\u0569\u0575\u0561\u0576 \u0563\u056c\u056d\u0561\u057e\u0578\u0580 \u0567\u057b\u0568, \u0561\u0576\u0581\u0565\u0584 \u056f\u0561\u0580\u0563\u0561\u057e\u0578\u0580\u0578\u0582\u0574\u0576\u0565\u0580 \u0587 \u0574\u056b\u0561\u0581\u0580\u0565\u0584 \u0561\u0576\u0581\u0561\u0576\u0581 \u0570\u0561\u0574\u0561\u056a\u0561\u0574\u0561\u0581\u0578\u0582\u0574\u0568:"},"explanationofflineenabled":{"message":"\u
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):858
                        Entropy (8bit):4.474411340525479
                        Encrypted:false
                        SSDEEP:
                        MD5:34D6EE258AF9429465AE6A078C2FB1F5
                        SHA1:612CAE151984449A4346A66C0A0DF4235D64D932
                        SHA-256:E3C86DDD2EFEBE88EED8484765A9868202546149753E03A61EB7C28FD62CFCA1
                        SHA-512:20427807B64A0F79A6349F8A923152D9647DA95C05DE19AD3A4BF7DB817E25227F3B99307C8745DD323A6591B515221BD2F1E92B6F1A1783BDFA7142E84601B1
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "BUAT BARU".. },.. "explanationofflinedisabled": {.. "message": "Anda sedang offline. Untuk menggunakan Google Dokumen tanpa koneksi internet, buka setelan di beranda Google Dokumen dan aktifkan sinkronisasi offline saat terhubung ke internet.".. },.. "explanationofflineenabled": {.. "message": "Anda sedang offline, namun Anda masih dapat mengedit file yang tersedia atau membuat file baru.".. },.. "extdesc": {.. "message": "Edit, buat, dan lihat dokumen, spreadsheet, dan presentasi . tanpa perlu akses internet.".. },.. "extname": {.. "message": "Google Dokumen Offline".. },.. "learnmore": {.. "message": "Pelajari Lebih Lanjut".. },.. "popuphelptext": {.. "message": "Tulis, edit, dan gabungkan di mana saja, dengan atau tanpa koneksi internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):954
                        Entropy (8bit):4.631887382471946
                        Encrypted:false
                        SSDEEP:
                        MD5:1F565FB1C549B18AF8BBFED8DECD5D94
                        SHA1:B57F4BDAE06FF3DFC1EB3E56B6F2F204D6F63638
                        SHA-256:E16325D1A641EF7421F2BAFCD6433D53543C89D498DD96419B03CBA60B9C7D60
                        SHA-512:A60B8E042A9BCDCC136B87948E9924A0B24D67C6CA9803904B876F162A0AD82B9619F1316BE9FF107DD143B44F7E6F5DF604ABFE00818DEB40A7D62917CDA69F
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"B\u00daA TIL N\u00ddTT"},"explanationofflinedisabled":{"message":"\u00de\u00fa ert \u00e1n nettengingar. Til a\u00f0 nota Google skj\u00f6l \u00e1n nettengingar skaltu opna stillingarnar \u00e1 heimas\u00ed\u00f0u Google skjala og virkja samstillingu \u00e1n nettengingar n\u00e6st \u00feegar \u00fe\u00fa tengist netinu."},"explanationofflineenabled":{"message":"Engin nettenging. \u00de\u00fa getur samt sem \u00e1\u00f0ur breytt tilt\u00e6kum skr\u00e1m e\u00f0a b\u00fai\u00f0 til n\u00fdjar."},"extdesc":{"message":"Breyttu, b\u00fa\u00f0u til og sko\u00f0a\u00f0u skj\u00f6lin \u00fe\u00edn, t\u00f6flureikna og kynningar \u2014 allt \u00e1n nettengingar."},"extname":{"message":"Google skj\u00f6l \u00e1n nettengingar"},"learnmore":{"message":"Frekari uppl\u00fdsingar"},"popuphelptext":{"message":"Skrifa\u00f0u, breyttu og starfa\u00f0u me\u00f0 \u00f6\u00f0rum hvort sem nettenging er til sta\u00f0ar e\u00f0a ekki."}}.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):899
                        Entropy (8bit):4.474743599345443
                        Encrypted:false
                        SSDEEP:
                        MD5:0D82B734EF045D5FE7AA680B6A12E711
                        SHA1:BD04F181E4EE09F02CD53161DCABCEF902423092
                        SHA-256:F41862665B13C0B4C4F562EF1743684CCE29D4BCF7FE3EA494208DF253E33885
                        SHA-512:01F305A280112482884485085494E871C66D40C0B03DE710B4E5F49C6A478D541C2C1FDA2CEAF4307900485946DEE9D905851E98A2EB237642C80D464D1B3ADA
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREA NUOVO".. },.. "explanationofflinedisabled": {.. "message": "Sei offline. Per utilizzare Documenti Google senza una connessione Internet, apri le impostazioni nella home page di Documenti Google e attiva la sincronizzazione offline la prossima volta che ti colleghi a Internet.".. },.. "explanationofflineenabled": {.. "message": "Sei offline, ma puoi comunque modificare i file disponibili o crearne di nuovi.".. },.. "extdesc": {.. "message": "Modifica, crea e visualizza documenti, fogli di lavoro e presentazioni, senza accesso a Internet.".. },.. "extname": {.. "message": "Documenti Google offline".. },.. "learnmore": {.. "message": "Ulteriori informazioni".. },.. "popuphelptext": {.. "message": "Scrivi, modifica e collabora ovunque ti trovi, con o senza una connessione Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2230
                        Entropy (8bit):3.8239097369647634
                        Encrypted:false
                        SSDEEP:
                        MD5:26B1533C0852EE4661EC1A27BD87D6BF
                        SHA1:18234E3ABAF702DF9330552780C2F33B83A1188A
                        SHA-256:BBB81C32F482BA3216C9B1189C70CEF39CA8C2181AF3538FFA07B4C6AD52F06A
                        SHA-512:450BFAF0E8159A4FAE309737EA69CA8DD91CAAFD27EF662087C4E7716B2DCAD3172555898E75814D6F11487F4F254DE8625EF0CFEA8DF0133FC49E18EC7FD5D2
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u05d9\u05e6\u05d9\u05e8\u05ea \u05d7\u05d3\u05e9"},"explanationofflinedisabled":{"message":"\u05d0\u05d9\u05df \u05dc\u05da \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8. \u05db\u05d3\u05d9 \u05dc\u05d4\u05e9\u05ea\u05de\u05e9 \u05d1-Google Docs \u05dc\u05dc\u05d0 \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8, \u05d1\u05d4\u05ea\u05d7\u05d1\u05e8\u05d5\u05ea \u05d4\u05d1\u05d0\u05d4 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8, \u05d9\u05e9 \u05dc\u05e2\u05d1\u05d5\u05e8 \u05dc\u05e7\u05d8\u05e2 \u05d4\u05d4\u05d2\u05d3\u05e8\u05d5\u05ea \u05d1\u05d3\u05e3 \u05d4\u05d1\u05d9\u05ea \u05e9\u05dc Google Docs \u05d5\u05dc\u05d4\u05e4\u05e2\u05d9\u05dc \u05e1\u05e0\u05db\u05e8\u05d5\u05df \u05d1\u05de\u05e6\u05d1 \u05d0\u05d5\u05e4\u05dc\u05d9\u05d9\u05df."},"explanationofflineenabled":{"message":"\u05d0\u05d9\u05df \u05dc\u05da \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1160
                        Entropy (8bit):5.292894989863142
                        Encrypted:false
                        SSDEEP:
                        MD5:15EC1963FC113D4AD6E7E59AE5DE7C0A
                        SHA1:4017FC6D8B302335469091B91D063B07C9E12109
                        SHA-256:34AC08F3C4F2D42962A3395508818B48CA323D22F498738CC9F09E78CB197D73
                        SHA-512:427251F471FA3B759CA1555E9600C10F755BC023701D058FF661BEC605B6AB94CFB3456C1FEA68D12B4D815FFBAFABCEB6C12311DD1199FC783ED6863AF97C0F
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "....".. },.. "explanationofflinedisabled": {.. "message": "....................... Google ............................... Google .............. [..] .......[.......] ...........".. },.. "explanationofflineenabled": {.. "message": ".............................................".. },.. "extdesc": {.. "message": ".........................................................".. },.. "extname": {.. "message": "Google ..... ......".. },.. "learnmore": {.. "message": "..".. },.. "popuphelp
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):3264
                        Entropy (8bit):3.586016059431306
                        Encrypted:false
                        SSDEEP:
                        MD5:83F81D30913DC4344573D7A58BD20D85
                        SHA1:5AD0E91EA18045232A8F9DF1627007FE506A70E0
                        SHA-256:30898BBF51BDD58DB397FF780F061E33431A38EF5CFC288B5177ECF76B399F26
                        SHA-512:85F97F12AD4482B5D9A6166BB2AE3C4458A582CF575190C71C1D8E0FB87C58482F8C0EFEAD56E3A70EDD42BED945816DB5E07732AD27B8FFC93F4093710DD58F
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u10d0\u10ee\u10da\u10d8\u10e1 \u10e8\u10d4\u10e5\u10db\u10dc\u10d0"},"explanationofflinedisabled":{"message":"\u10d7\u10e5\u10d5\u10d4\u10dc \u10ee\u10d0\u10d6\u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10ee\u10d0\u10e0\u10d7. Google Docs-\u10d8\u10e1 \u10d8\u10dc\u10e2\u10d4\u10e0\u10dc\u10d4\u10e2\u10d7\u10d0\u10dc \u10d9\u10d0\u10d5\u10e8\u10d8\u10e0\u10d8\u10e1 \u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10d2\u10d0\u10db\u10dd\u10e1\u10d0\u10e7\u10d4\u10dc\u10d4\u10d1\u10da\u10d0\u10d3 \u10d2\u10d0\u10d3\u10d0\u10d3\u10d8\u10d7 \u10de\u10d0\u10e0\u10d0\u10db\u10d4\u10e2\u10e0\u10d4\u10d1\u10d6\u10d4 Google Docs-\u10d8\u10e1 \u10db\u10d7\u10d0\u10d5\u10d0\u10e0 \u10d2\u10d5\u10d4\u10e0\u10d3\u10d6\u10d4 \u10d3\u10d0 \u10e9\u10d0\u10e0\u10d7\u10d4\u10d7 \u10ee\u10d0\u10d6\u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10e1\u10d8\u10dc\u10e5\u10e0\u10dd\u10dc\u10d8\u10d6\u10d0\u10ea\u10d8\u10d0, \u10e0\u10dd\u10d3\u10d4\u10e1\u10d0\u10ea \u10e8\u10d4\u10db\u10d3\u10d2\u10dd\u10
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):3235
                        Entropy (8bit):3.6081439490236464
                        Encrypted:false
                        SSDEEP:
                        MD5:2D94A58795F7B1E6E43C9656A147AD3C
                        SHA1:E377DB505C6924B6BFC9D73DC7C02610062F674E
                        SHA-256:548DC6C96E31A16CE355DC55C64833B08EF3FBA8BF33149031B4A685959E3AF4
                        SHA-512:F51CC857E4CF2D4545C76A2DCE7D837381CE59016E250319BF8D39718BE79F9F6EE74EA5A56DE0E8759E4E586D93430D51651FC902376D8A5698628E54A0F2D8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u0416\u0410\u04a2\u0410\u0421\u042b\u041d \u0416\u0410\u0421\u0410\u0423"},"explanationofflinedisabled":{"message":"\u0421\u0456\u0437 \u043e\u0444\u043b\u0430\u0439\u043d \u0440\u0435\u0436\u0438\u043c\u0456\u043d\u0434\u0435\u0441\u0456\u0437. Google Docs \u049b\u043e\u043b\u0434\u0430\u043d\u0431\u0430\u0441\u044b\u043d \u0436\u0435\u043b\u0456 \u0431\u0430\u0439\u043b\u0430\u043d\u044b\u0441\u044b\u043d\u0441\u044b\u0437 \u049b\u043e\u043b\u0434\u0430\u043d\u0443 \u04af\u0448\u0456\u043d, \u043a\u0435\u043b\u0435\u0441\u0456 \u0436\u043e\u043b\u044b \u0436\u0435\u043b\u0456\u0433\u0435 \u049b\u043e\u0441\u044b\u043b\u0493\u0430\u043d\u0434\u0430, Google Docs \u043d\u0435\u0433\u0456\u0437\u0433\u0456 \u0431\u0435\u0442\u0456\u043d\u0435\u043d \u043f\u0430\u0440\u0430\u043c\u0435\u0442\u0440\u043b\u0435\u0440 \u0431\u04e9\u043b\u0456\u043c\u0456\u043d \u043a\u0456\u0440\u0456\u043f, \u043e\u0444\u043b\u0430\u0439\u043d \u0440\u0435\u0436\u0438\u043c\u0456\u
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):3122
                        Entropy (8bit):3.891443295908904
                        Encrypted:false
                        SSDEEP:
                        MD5:B3699C20A94776A5C2F90AEF6EB0DAD9
                        SHA1:1F9B968B0679A20FA097624C9ABFA2B96C8C0BEA
                        SHA-256:A6118F0A0DE329E07C01F53CD6FB4FED43E54C5F53DB4CD1C7F5B2B4D9FB10E6
                        SHA-512:1E8D15B8BFF1D289434A244172F9ED42B4BB6BCB6372C1F300B01ACEA5A88167E97FEDABA0A7AE3BEB5E24763D1B09046AE8E30745B80E2E2FE785C94DF362F6
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u1794\u1784\u17d2\u1780\u17be\u178f\u200b\u1790\u17d2\u1798\u17b8"},"explanationofflinedisabled":{"message":"\u17a2\u17d2\u1793\u1780\u200b\u1782\u17d2\u1798\u17b6\u1793\u200b\u17a2\u17ca\u17b8\u1793\u1792\u17ba\u178e\u17b7\u178f\u17d4 \u178a\u17be\u1798\u17d2\u1794\u17b8\u200b\u1794\u17d2\u179a\u17be Google \u17af\u1780\u179f\u17b6\u179a\u200b\u1794\u17b6\u1793\u200b\u200b\u178a\u17c4\u1799\u200b\u200b\u1798\u17b7\u1793\u1798\u17b6\u1793\u200b\u200b\u200b\u17a2\u17ca\u17b8\u1793\u1792\u17ba\u178e\u17b7\u178f \u179f\u17bc\u1798\u200b\u200b\u1791\u17c5\u200b\u1780\u17b6\u1793\u17cb\u200b\u1780\u17b6\u179a\u200b\u1780\u17c6\u178e\u178f\u17cb\u200b\u1793\u17c5\u200b\u179b\u17be\u200b\u1782\u17c1\u17a0\u1791\u17c6\u1796\u17d0\u179a Google \u17af\u1780\u179f\u17b6\u179a \u1793\u17b7\u1784\u200b\u1794\u17be\u1780\u200b\u1780\u17b6\u179a\u1792\u17d2\u179c\u17be\u200b\u179f\u1798\u1780\u17b6\u179b\u1780\u1798\u17d2\u1798\u200b\u200b\u200b\u1782\u17d2\u1798\u17b6\u1793
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1880
                        Entropy (8bit):4.295185867329351
                        Encrypted:false
                        SSDEEP:
                        MD5:8E16966E815C3C274EEB8492B1EA6648
                        SHA1:7482ED9F1C9FD9F6F9BA91AB15921B19F64C9687
                        SHA-256:418FF53FCA505D54268413C796E4DF80E947A09F399AB222A90B81E93113D5B5
                        SHA-512:85B28202E874B1CF45B37BA05B87B3D8D6FE38E89C6011C4240CF6B563EA6DA60181D712CCE20D07C364F4A266A4EC90C4934CC8B7BB2013CB3B22D755796E38
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "........ .....".. },.. "explanationofflinedisabled": {.. "message": ".... ..................... ......... ............. Google ...... ....., Google ...... ............ ............... .... ..... ...... .... .... ............ ............. ........ ..... ... .....".. },.. "explanationofflineenabled": {.. "message": ".... ...................., .... .... .... ......... ........... ............ .... ........ .........."..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1042
                        Entropy (8bit):5.3945675025513955
                        Encrypted:false
                        SSDEEP:
                        MD5:F3E59EEEB007144EA26306C20E04C292
                        SHA1:83E7BDFA1F18F4C7534208493C3FF6B1F2F57D90
                        SHA-256:C52D9B955D229373725A6E713334BBB31EA72EFA9B5CF4FBD76A566417B12CAC
                        SHA-512:7808CB5FF041B002CBD78171EC5A0B4DBA3E017E21F7E8039084C2790F395B839BEE04AD6C942EED47CCB53E90F6DE818A725D1450BF81BA2990154AFD3763AF
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".. ...".. },.. "explanationofflinedisabled": {.. "message": ".... ...... ... .. .. Google Docs. ..... Google Docs .... .... .... .... .... ..... . .... .... ..... ......".. },.. "explanationofflineenabled": {.. "message": ".... ...... ... .. ... ... ..... ... ... .. . .....".. },.. "extdesc": {.. "message": ".... .... ... .., ...... . ....... .., .., ......".. },.. "extname": {.. "message": "Google Docs ....".. },.. "learnmore": {.. "message": "... ....".. },.. "popuphelptext": {.. "message": "... .. ... .... ..... .... .... .....
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2535
                        Entropy (8bit):3.8479764584971368
                        Encrypted:false
                        SSDEEP:
                        MD5:E20D6C27840B406555E2F5091B118FC5
                        SHA1:0DCECC1A58CEB4936E255A64A2830956BFA6EC14
                        SHA-256:89082FB05229826BC222F5D22C158235F025F0E6DF67FF135A18BD899E13BB8F
                        SHA-512:AD53FC0B153005F47F9F4344DF6C4804049FAC94932D895FD02EEBE75222CFE77EEDD9CD3FDC4C88376D18C5972055B00190507AA896488499D64E884F84F093
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u0eaa\u0ec9\u0eb2\u0e87\u0ec3\u0edd\u0ec8"},"explanationofflinedisabled":{"message":"\u0e97\u0ec8\u0eb2\u0e99\u0ead\u0ead\u0e9a\u0ea5\u0eb2\u0e8d\u0ea2\u0eb9\u0ec8. \u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0ec3\u0e8a\u0ec9 Google Docs \u0ec2\u0e94\u0e8d\u0e9a\u0ecd\u0ec8\u0ec0\u0e8a\u0eb7\u0ec8\u0ead\u0ea1\u0e95\u0ecd\u0ec8\u0ead\u0eb4\u0e99\u0ec0\u0e95\u0eb5\u0ec0\u0e99\u0eb1\u0e94, \u0ec3\u0eab\u0ec9\u0ec4\u0e9b\u0e97\u0eb5\u0ec8\u0e81\u0eb2\u0e99\u0e95\u0eb1\u0ec9\u0e87\u0e84\u0ec8\u0eb2\u0ec3\u0e99\u0edc\u0ec9\u0eb2 Google Docs \u0ec1\u0ea5\u0ec9\u0ea7\u0ec0\u0e9b\u0eb5\u0e94\u0ec3\u0e8a\u0ec9\u0e81\u0eb2\u0e99\u0e8a\u0eb4\u0ec9\u0e87\u0ec1\u0e9a\u0e9a\u0ead\u0ead\u0e9a\u0ea5\u0eb2\u0e8d\u0ec3\u0e99\u0ec0\u0e97\u0eb7\u0ec8\u0ead\u0e95\u0ecd\u0ec8\u0ec4\u0e9b\u0e97\u0eb5\u0ec8\u0e97\u0ec8\u0eb2\u0e99\u0ec0\u0e8a\u0eb7\u0ec8\u0ead\u0ea1\u0e95\u0ecd\u0ec8\u0ead\u0eb4\u0e99\u0ec0\u0e95\u0eb5\u0ec0\u0e99\u0eb1\u0e94."},"explanationofflineenabled":{"message":"\u0e97\u0ec
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1028
                        Entropy (8bit):4.797571191712988
                        Encrypted:false
                        SSDEEP:
                        MD5:970544AB4622701FFDF66DC556847652
                        SHA1:14BEE2B77EE74C5E38EBD1DB09E8D8104CF75317
                        SHA-256:5DFCBD4DFEAEC3ABE973A78277D3BD02CD77AE635D5C8CD1F816446C61808F59
                        SHA-512:CC12D00C10B970189E90D47390EEB142359A8D6F3A9174C2EF3AE0118F09C88AB9B689D9773028834839A7DFAF3AAC6747BC1DCB23794A9F067281E20B8DC6EA
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "SUKURTI NAUJ.".. },.. "explanationofflinedisabled": {.. "message": "Esate neprisijung.. Jei norite naudoti .Google. dokumentus be interneto ry.io, pagrindiniame .Google. dokument. puslapyje eikite . nustatym. skilt. ir .junkite sinchronizavim. neprisijungus, kai kit. kart. b.site prisijung. prie interneto.".. },.. "explanationofflineenabled": {.. "message": "Esate neprisijung., bet vis tiek galite redaguoti pasiekiamus failus arba sukurti nauj..".. },.. "extdesc": {.. "message": "Redaguokite, kurkite ir per.i.r.kite savo dokumentus, skai.iuokles ir pristatymus . visk. darykite be prieigos prie interneto.".. },.. "extname": {.. "message": ".Google. dokumentai neprisijungus".. },.. "learnmore": {.. "message": "Su.inoti daugiau".. },.. "popuphelptext": {.. "message": "Ra.ykite, redaguokite ir bendradarbiaukite bet kurioje vietoje naudodami interneto ry.. arba
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):994
                        Entropy (8bit):4.700308832360794
                        Encrypted:false
                        SSDEEP:
                        MD5:A568A58817375590007D1B8ABCAEBF82
                        SHA1:B0F51FE6927BB4975FC6EDA7D8A631BF0C1AB597
                        SHA-256:0621DE9161748F45D53052ED8A430962139D7F19074C7FFE7223ECB06B0B87DB
                        SHA-512:FCFBADEC9F73975301AB404DB6B09D31457FAC7CCAD2FA5BE348E1CAD6800F87CB5B56DE50880C55BBADB3C40423351A6B5C2D03F6A327D898E35F517B1C628C
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "IZVEIDOT JAUNU".. },.. "explanationofflinedisabled": {.. "message": "J.s esat bezsaist.. Lai lietotu pakalpojumu Google dokumenti bez interneta savienojuma, n.kamaj. reiz., kad ir izveidots savienojums ar internetu, atveriet Google dokumentu s.kumlapas iestat.jumu izv.lni un iesl.dziet sinhroniz.ciju bezsaist..".. },.. "explanationofflineenabled": {.. "message": "J.s esat bezsaist., ta.u varat redi..t pieejamos failus un izveidot jaunus.".. },.. "extdesc": {.. "message": "Redi..jiet, veidojiet un skatiet savus dokumentus, izkl.jlapas un prezent.cijas, neizmantojot savienojumu ar internetu.".. },.. "extname": {.. "message": "Google dokumenti bezsaist.".. },.. "learnmore": {.. "message": "Uzziniet vair.k".. },.. "popuphelptext": {.. "message": "Rakstiet, redi..jiet un sadarbojieties ar interneta savienojumu vai bez t. neatkar.gi no t., kur atrodaties.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2091
                        Entropy (8bit):4.358252286391144
                        Encrypted:false
                        SSDEEP:
                        MD5:4717EFE4651F94EFF6ACB6653E868D1A
                        SHA1:B8A7703152767FBE1819808876D09D9CC1C44450
                        SHA-256:22CA9415E294D9C3EC3384B9D08CDAF5164AF73B4E4C251559E09E529C843EA6
                        SHA-512:487EAB4938F6BC47B1D77DD47A5E2A389B94E01D29849E38E96C95CABC7BD98679451F0E22D3FEA25C045558CD69FDDB6C4FEF7C581141F1C53C4AA17578D7F7
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "....... ............".. },.. "explanationofflinedisabled": {.. "message": "...... ........... ........... ............. ..... Google ....... ..........., Google ....... .......... ............. .... ...... ...... ... ............... .................... '.......... ................' .........".. },.. "explanationofflineenabled": {.. "message": "................., .......... ......... ....... ...... ..............
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2778
                        Entropy (8bit):3.595196082412897
                        Encrypted:false
                        SSDEEP:
                        MD5:83E7A14B7FC60D4C66BF313C8A2BEF0B
                        SHA1:1CCF1D79CDED5D65439266DB58480089CC110B18
                        SHA-256:613D8751F6CC9D3FA319F4B7EA8B2BD3BED37FD077482CA825929DD7C12A69A8
                        SHA-512:3742E24FFC4B5283E6EE496813C1BDC6835630D006E8647D427C3DE8B8E7BF814201ADF9A27BFAB3ABD130B6FEC64EBB102AC0EB8DEDFE7B63D82D3E1233305D
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u0428\u0418\u041d\u0418\u0419\u0413 \u04ae\u04ae\u0421\u0413\u042d\u0425"},"explanationofflinedisabled":{"message":"\u0422\u0430 \u043e\u0444\u043b\u0430\u0439\u043d \u0431\u0430\u0439\u043d\u0430. Google \u0414\u043e\u043a\u044b\u0433 \u0438\u043d\u0442\u0435\u0440\u043d\u044d\u0442\u0433\u04af\u0439\u0433\u044d\u044d\u0440 \u0430\u0448\u0438\u0433\u043b\u0430\u0445\u044b\u043d \u0442\u0443\u043b\u0434 \u0434\u0430\u0440\u0430\u0430\u0433\u0438\u0439\u043d \u0443\u0434\u0430\u0430 \u0438\u043d\u0442\u0435\u0440\u043d\u044d\u0442\u044d\u0434 \u0445\u043e\u043b\u0431\u043e\u0433\u0434\u043e\u0445\u0434\u043e\u043e Google \u0414\u043e\u043a\u044b\u043d \u043d\u04af\u04af\u0440 \u0445\u0443\u0443\u0434\u0430\u0441\u043d\u0430\u0430\u0441 \u0442\u043e\u0445\u0438\u0440\u0433\u043e\u043e \u0434\u043e\u0442\u043e\u0440\u0445 \u043e\u0444\u043b\u0430\u0439\u043d \u0441\u0438\u043d\u043a\u0438\u0439\u0433 \u0438\u0434\u044d\u0432\u0445\u0436\u04af\u04af\u043b\u043d\u0
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1719
                        Entropy (8bit):4.287702203591075
                        Encrypted:false
                        SSDEEP:
                        MD5:3B98C4ED8874A160C3789FEAD5553CFA
                        SHA1:5550D0EC548335293D962AAA96B6443DD8ABB9F6
                        SHA-256:ADEB082A9C754DFD5A9D47340A3DDCC19BF9C7EFA6E629A2F1796305F1C9A66F
                        SHA-512:5139B6C6DF9459C7B5CDC08A98348891499408CD75B46519BA3AC29E99AAAFCC5911A1DEE6C3A57E3413DBD0FAE72D7CBC676027248DCE6364377982B5CE4151
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".... .... ...".. },.. "explanationofflinedisabled": {.. "message": "...... ...... ..... ......... ....... ....... ..... Google ....... ............, Google ....... .............. .......... .. ... ..... .... ...... ......... ...... ...... ...... .... .... ....".. },.. "explanationofflineenabled": {.. "message": "...... ...... ...., ..... ...... ...... ...... .... ....... ... ..... .... .... ... .....".. },.. "extdesc": {.. "message": "..... ..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):936
                        Entropy (8bit):4.457879437756106
                        Encrypted:false
                        SSDEEP:
                        MD5:7D273824B1E22426C033FF5D8D7162B7
                        SHA1:EADBE9DBE5519BD60458B3551BDFC36A10049DD1
                        SHA-256:2824CF97513DC3ECC261F378BFD595AE95A5997E9D1C63F5731A58B1F8CD54F9
                        SHA-512:E5B611BBFAB24C9924D1D5E1774925433C65C322769E1F3B116254B1E9C69B6DF1BE7828141EEBBF7524DD179875D40C1D8F29C4FB86D663B8A365C6C60421A7
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "BUAT BAHARU".. },.. "explanationofflinedisabled": {.. "message": "Anda berada di luar talian. Untuk menggunakan Google Docs tanpa sambungan Internet, pergi ke tetapan di halaman utama Google Docs dan hidupkan penyegerakan luar talian apabila anda disambungkan ke Internet selepas ini.".. },.. "explanationofflineenabled": {.. "message": "Anda berada di luar talian, tetapi anda masih boleh mengedit fail yang tersedia atau buat fail baharu.".. },.. "extdesc": {.. "message": "Edit, buat dan lihat dokumen, hamparan dan pembentangan anda . kesemuanya tanpa akses Internet.".. },.. "extname": {.. "message": "Google Docs Luar Talian".. },.. "learnmore": {.. "message": "Ketahui Lebih Lanjut".. },.. "popuphelptext": {.. "message": "Tulis, edit dan bekerjasama di mana-mana sahaja anda berada, dengan atau tanpa sambungan Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):3830
                        Entropy (8bit):3.5483353063347587
                        Encrypted:false
                        SSDEEP:
                        MD5:342335A22F1886B8BC92008597326B24
                        SHA1:2CB04F892E430DCD7705C02BF0A8619354515513
                        SHA-256:243BEFBD6B67A21433DCC97DC1A728896D3A070DC20055EB04D644E1BB955FE7
                        SHA-512:CD344D060E30242E5A4705547E807CE3CE2231EE983BB9A8AD22B3E7598A7EC87399094B04A80245AD51D039370F09D74FE54C0B0738583884A73F0C7E888AD8
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u1021\u101e\u1005\u103a \u1015\u103c\u102f\u101c\u102f\u1015\u103a\u101b\u1014\u103a"},"explanationofflinedisabled":{"message":"\u101e\u1004\u103a \u1021\u1031\u102c\u1037\u1016\u103a\u101c\u102d\u102f\u1004\u103a\u1038\u1016\u103c\u1005\u103a\u1014\u1031\u1015\u102b\u101e\u100a\u103a\u104b \u1021\u1004\u103a\u1010\u102c\u1014\u1000\u103a\u1001\u103b\u102d\u1010\u103a\u1006\u1000\u103a\u1019\u103e\u102f \u1019\u101b\u103e\u102d\u1018\u1032 Google Docs \u1000\u102d\u102f \u1021\u101e\u102f\u1036\u1038\u1015\u103c\u102f\u101b\u1014\u103a \u1014\u1031\u102c\u1000\u103a\u1010\u1005\u103a\u1000\u103c\u102d\u1019\u103a \u101e\u1004\u103a\u1021\u1004\u103a\u1010\u102c\u1014\u1000\u103a\u1001\u103b\u102d\u1010\u103a\u1006\u1000\u103a\u101e\u100a\u1037\u103a\u1021\u1001\u102b Google Docs \u1015\u1004\u103a\u1019\u1005\u102c\u1019\u103b\u1000\u103a\u1014\u103e\u102c\u101b\u103e\u102d \u1006\u1000\u103a\u1010\u1004\u103a\u1019\u103b\u102c\u1038\u101e\u102d\u102f\u1037\u1
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1898
                        Entropy (8bit):4.187050294267571
                        Encrypted:false
                        SSDEEP:
                        MD5:B1083DA5EC718D1F2F093BD3D1FB4F37
                        SHA1:74B6F050D918448396642765DEF1AD5390AB5282
                        SHA-256:E6ED0A023EF31705CCCBAF1E07F2B4B2279059296B5CA973D2070417BA16F790
                        SHA-512:7102B90ABBE2C811E8EE2F1886A73B1298D4F3D5D05F0FFDB57CF78B9A49A25023A290B255BAA4895BB150B388BAFD9F8432650B8C70A1A9A75083FFFCD74F1A
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".... ....... .........".. },.. "explanationofflinedisabled": {.. "message": "..... ...... .......... .... ........ .... .... Google ........ ...... .... ..... ..... ... .......... ....... .... Google ........ .......... ..... .......... .. ...... ..... .... ..... ......... .. ..........".. },.. "explanationofflineenabled": {.. "message": "..... ...... ........., .. ..... ... ... ...... ....... ....... .. .... ....... ....
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):914
                        Entropy (8bit):4.513485418448461
                        Encrypted:false
                        SSDEEP:
                        MD5:32DF72F14BE59A9BC9777113A8B21DE6
                        SHA1:2A8D9B9A998453144307DD0B700A76E783062AD0
                        SHA-256:F3FE1FFCB182183B76E1B46C4463168C746A38E461FD25CA91FF2A40846F1D61
                        SHA-512:E0966F5CCA5A8A6D91C58D716E662E892D1C3441DAA5D632E5E843839BB989F620D8AC33ED3EDBAFE18D7306B40CD0C4639E5A4E04DA2C598331DACEC2112AAD
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "NIEUW MAKEN".. },.. "explanationofflinedisabled": {.. "message": "Je bent offline. Wil je Google Documenten zonder internetverbinding gebruiken, ga dan de volgende keer dat je verbinding met internet hebt naar 'Instellingen' op de homepage van Google Documenten en zet 'Offline synchronisatie' aan.".. },.. "explanationofflineenabled": {.. "message": "Je bent offline, maar je kunt nog wel beschikbare bestanden bewerken of nieuwe bestanden maken.".. },.. "extdesc": {.. "message": "Bewerk, maak en bekijk je documenten, spreadsheets en presentaties. Allemaal zonder internettoegang.".. },.. "extname": {.. "message": "Offline Documenten".. },.. "learnmore": {.. "message": "Meer informatie".. },.. "popuphelptext": {.. "message": "Overal schrijven, bewerken en samenwerken, met of zonder internetverbinding.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):878
                        Entropy (8bit):4.4541485835627475
                        Encrypted:false
                        SSDEEP:
                        MD5:A1744B0F53CCF889955B95108367F9C8
                        SHA1:6A5A6771DFF13DCB4FD425ED839BA100B7123DE0
                        SHA-256:21CEFF02B45A4BFD60D144879DFA9F427949A027DD49A3EB0E9E345BD0B7C9A8
                        SHA-512:F55E43F14514EECB89F6727A0D3C234149609020A516B193542B5964D2536D192F40CC12D377E70C683C269A1BDCDE1C6A0E634AA84A164775CFFE776536A961
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "OPPRETT NYTT".. },.. "explanationofflinedisabled": {.. "message": "Du er uten nett. For . bruke Google Dokumenter uten internettilkobling, g. til innstillingene p. Google Dokumenter-nettsiden og sl. p. synkronisering uten nett neste gang du er koblet til Internett.".. },.. "explanationofflineenabled": {.. "message": "Du er uten nett, men du kan likevel endre tilgjengelige filer eller opprette nye.".. },.. "extdesc": {.. "message": "Rediger, opprett og se dokumentene, regnearkene og presentasjonene dine . uten nettilgang.".. },.. "extname": {.. "message": "Google Dokumenter uten nett".. },.. "learnmore": {.. "message": "Finn ut mer".. },.. "popuphelptext": {.. "message": "Skriv, rediger eller samarbeid uansett hvor du er, med eller uten internettilkobling.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2766
                        Entropy (8bit):3.839730779948262
                        Encrypted:false
                        SSDEEP:
                        MD5:97F769F51B83D35C260D1F8CFD7990AF
                        SHA1:0D59A76564B0AEE31D0A074305905472F740CECA
                        SHA-256:BBD37D41B7DE6F93948FA2437A7699D4C30A3C39E736179702F212CB36A3133C
                        SHA-512:D91F5E2D22FC2D7F73C1F1C4AF79DB98FCFD1C7804069AE9B2348CBC729A6D2DFF7FB6F44D152B0BDABA6E0D05DFF54987E8472C081C4D39315CEC2CBC593816
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u0a28\u0a35\u0a3e\u0a02 \u0a2c\u0a23\u0a3e\u0a13"},"explanationofflinedisabled":{"message":"\u0a24\u0a41\u0a38\u0a40\u0a02 \u0a06\u0a2b\u0a3c\u0a32\u0a3e\u0a08\u0a28 \u0a39\u0a4b\u0964 \u0a07\u0a70\u0a1f\u0a30\u0a28\u0a48\u0a71\u0a1f \u0a15\u0a28\u0a48\u0a15\u0a36\u0a28 \u0a26\u0a47 \u0a2c\u0a3f\u0a28\u0a3e\u0a02 Google Docs \u0a28\u0a42\u0a70 \u0a35\u0a30\u0a24\u0a23 \u0a32\u0a08, \u0a05\u0a17\u0a32\u0a40 \u0a35\u0a3e\u0a30 \u0a1c\u0a26\u0a4b\u0a02 \u0a24\u0a41\u0a38\u0a40\u0a02 \u0a07\u0a70\u0a1f\u0a30\u0a28\u0a48\u0a71\u0a1f \u0a26\u0a47 \u0a28\u0a3e\u0a32 \u0a15\u0a28\u0a48\u0a15\u0a1f \u0a39\u0a4b\u0a35\u0a4b \u0a24\u0a3e\u0a02 Google Docs \u0a2e\u0a41\u0a71\u0a16 \u0a2a\u0a70\u0a28\u0a47 '\u0a24\u0a47 \u0a38\u0a48\u0a1f\u0a3f\u0a70\u0a17\u0a3e\u0a02 \u0a35\u0a3f\u0a71\u0a1a \u0a1c\u0a3e\u0a13 \u0a05\u0a24\u0a47 \u0a06\u0a2b\u0a3c\u0a32\u0a3e\u0a08\u0a28 \u0a38\u0a3f\u0a70\u0a15 \u0a28\u0a42\u0a70 \u0a1a\u0a3e\u0a32\u0a42 \u0a15\u0a30\u0a4b\u0964"},"expla
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):978
                        Entropy (8bit):4.879137540019932
                        Encrypted:false
                        SSDEEP:
                        MD5:B8D55E4E3B9619784AECA61BA15C9C0F
                        SHA1:B4A9C9885FBEB78635957296FDDD12579FEFA033
                        SHA-256:E00FF20437599A5C184CA0C79546CB6500171A95E5F24B9B5535E89A89D3EC3D
                        SHA-512:266589116EEE223056391C65808255EDAE10EB6DC5C26655D96F8178A41E283B06360AB8E08AC3857D172023C4F616EF073D0BEA770A3B3DD3EE74F5FFB2296B
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "UTW.RZ NOWY".. },.. "explanationofflinedisabled": {.. "message": "Jeste. offline. Aby korzysta. z Dokument.w Google bez po..czenia internetowego, otw.rz ustawienia na stronie g..wnej Dokument.w Google i w..cz synchronizacj. offline nast.pnym razem, gdy b.dziesz mie. dost.p do internetu.".. },.. "explanationofflineenabled": {.. "message": "Jeste. offline, ale nadal mo.esz edytowa. dost.pne pliki i tworzy. nowe.".. },.. "extdesc": {.. "message": "Edytuj, tw.rz i wy.wietlaj swoje dokumenty, arkusze kalkulacyjne oraz prezentacje bez konieczno.ci ..czenia si. z internetem.".. },.. "extname": {.. "message": "Dokumenty Google offline".. },.. "learnmore": {.. "message": "Wi.cej informacji".. },.. "popuphelptext": {.. "message": "Pisz, edytuj i wsp..pracuj, gdziekolwiek jeste. . niezale.nie od tego, czy masz po..czenie z internetem.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):907
                        Entropy (8bit):4.599411354657937
                        Encrypted:false
                        SSDEEP:
                        MD5:608551F7026E6BA8C0CF85D9AC11F8E3
                        SHA1:87B017B2D4DA17E322AF6384F82B57B807628617
                        SHA-256:A73EEA087164620FA2260D3910D3FBE302ED85F454EDB1493A4F287D42FC882F
                        SHA-512:82F52F8591DB3C0469CC16D7CBFDBF9116F6D5B5D2AD02A3D8FA39CE1378C64C0EA80AB8509519027F71A89EB8BBF38A8702D9AD26C8E6E0F499BF7DA18BF747
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CRIAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Voc. est. off-line. Para usar o Documentos Google sem conex.o com a Internet, na pr.xima vez que se conectar, acesse as configura..es na p.gina inicial do Documentos Google e ative a sincroniza..o off-line.".. },.. "explanationofflineenabled": {.. "message": "Voc. est. off-line, mas mesmo assim pode editar os arquivos dispon.veis ou criar novos arquivos.".. },.. "extdesc": {.. "message": "Edite, crie e veja seus documentos, planilhas e apresenta..es sem precisar de acesso . Internet.".. },.. "extname": {.. "message": "Documentos Google off-line".. },.. "learnmore": {.. "message": "Saiba mais".. },.. "popuphelptext": {.. "message": "Escreva, edite e colabore onde voc. estiver, com ou sem conex.o com a Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):914
                        Entropy (8bit):4.604761241355716
                        Encrypted:false
                        SSDEEP:
                        MD5:0963F2F3641A62A78B02825F6FA3941C
                        SHA1:7E6972BEAB3D18E49857079A24FB9336BC4D2D48
                        SHA-256:E93B8E7FB86D2F7DFAE57416BB1FB6EE0EEA25629B972A5922940F0023C85F90
                        SHA-512:22DD42D967124DA5A2209DD05FB6AD3F5D0D2687EA956A22BA1E31C56EC09DEB53F0711CD5B24D672405358502E9D1C502659BB36CED66CAF83923B021CA0286
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CRIAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Est. offline. Para utilizar o Google Docs sem uma liga..o . Internet, aceda .s defini..es na p.gina inicial do Google Docs e ative a sincroniza..o offline da pr.xima vez que estiver ligado . Internet.".. },.. "explanationofflineenabled": {.. "message": "Est. offline, mas continua a poder editar os ficheiros dispon.veis ou criar novos ficheiros.".. },.. "extdesc": {.. "message": "Edite, crie e veja os documentos, as folhas de c.lculo e as apresenta..es, tudo sem precisar de aceder . Internet.".. },.. "extname": {.. "message": "Google Docs offline".. },.. "learnmore": {.. "message": "Saber mais".. },.. "popuphelptext": {.. "message": "Escreva edite e colabore onde quer que esteja, com ou sem uma liga..o . Internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):937
                        Entropy (8bit):4.686555713975264
                        Encrypted:false
                        SSDEEP:
                        MD5:BED8332AB788098D276B448EC2B33351
                        SHA1:6084124A2B32F386967DA980CBE79DD86742859E
                        SHA-256:085787999D78FADFF9600C9DC5E3FF4FB4EB9BE06D6BB19DF2EEF8C284BE7B20
                        SHA-512:22596584D10707CC1C8179ED3ABE46EF2C314CF9C3D0685921475944B8855AAB660590F8FA1CFDCE7976B4BB3BD9ABBBF053F61F1249A325FD0094E1C95692ED
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "CREEAZ. UN DOCUMENT".. },.. "explanationofflinedisabled": {.. "message": "E.ti offline. Pentru a utiliza Documente Google f.r. conexiune la internet, intr. .n set.rile din pagina principal. Documente Google .i activeaz. sincronizarea offline data viitoare c.nd e.ti conectat(.) la internet.".. },.. "explanationofflineenabled": {.. "message": "E.ti offline, dar po.i .nc. s. editezi fi.ierele disponibile sau s. creezi altele.".. },.. "extdesc": {.. "message": "Editeaz., creeaz. .i acceseaz. documente, foi de calcul .i prezent.ri - totul f.r. acces la internet.".. },.. "extname": {.. "message": "Documente Google Offline".. },.. "learnmore": {.. "message": "Afl. mai multe".. },.. "popuphelptext": {.. "message": "Scrie, editeaz. .i colaboreaz. oriunde ai fi, cu sau f.r. conexiune la internet.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1337
                        Entropy (8bit):4.69531415794894
                        Encrypted:false
                        SSDEEP:
                        MD5:51D34FE303D0C90EE409A2397FCA437D
                        SHA1:B4B9A7B19C62D0AA95D1F10640A5FBA628CCCA12
                        SHA-256:BE733625ACD03158103D62BC0EEF272CA3F265AC30C87A6A03467481A177DAE3
                        SHA-512:E8670DED44DC6EE30E5F41C8B2040CF8A463CD9A60FC31FA70EB1D4C9AC1A3558369792B5B86FA761A21F5266D5A35E5C2C39297F367DAA84159585C19EC492A
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".......".. },.. "explanationofflinedisabled": {.. "message": "..... ............ Google ......... ... ........., ............ . .... . ......... ............. . ......-...... . .......... .. ......... .........".. },.. "explanationofflineenabled": {.. "message": "... ........... . .......... .. ...... ......... ..... ..... . ............. .., . ....... ........ ......-.......".. },.. "extdesc": {.. "message": ".........., .............. . ............ ........., ....... . ........... ... ....... . ..........".. },.. "extname": {.. "message": "Google.......... ......".. },.. "learnmore": {.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2846
                        Entropy (8bit):3.7416822879702547
                        Encrypted:false
                        SSDEEP:
                        MD5:B8A4FD612534A171A9A03C1984BB4BDD
                        SHA1:F513F7300827FE352E8ECB5BD4BB1729F3A0E22A
                        SHA-256:54241EBE651A8344235CC47AFD274C080ABAEBC8C3A25AFB95D8373B6A5670A2
                        SHA-512:C03E35BFDE546AEB3245024EF721E7E606327581EFE9EAF8C5B11989D9033BDB58437041A5CB6D567BAA05466B6AAF054C47F976FD940EEEDF69FDF80D79095B
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u0db1\u0dc0 \u0dbd\u0dda\u0d9b\u0db1\u0dba\u0d9a\u0dca \u0dc3\u0dcf\u0daf\u0db1\u0dca\u0db1"},"explanationofflinedisabled":{"message":"\u0d94\u0db6 \u0db1\u0ddc\u0db6\u0dd0\u0db3\u0dd2\u0dba. \u0d85\u0db1\u0dca\u0dad\u0dbb\u0dca\u0da2\u0dcf\u0dbd \u0dc3\u0db8\u0dca\u0db6\u0db1\u0dca\u0db0\u0dad\u0dcf\u0dc0\u0d9a\u0dca \u0db1\u0ddc\u0db8\u0dd0\u0dad\u0dd2\u0dc0 Google Docs \u0db7\u0dcf\u0dc0\u0dd2\u0dad \u0d9a\u0dd2\u0dbb\u0dd3\u0db8\u0da7, Google Docs \u0db8\u0dd4\u0dbd\u0dca \u0db4\u0dd2\u0da7\u0dd4\u0dc0 \u0db8\u0dad \u0dc3\u0dd0\u0d9a\u0dc3\u0dd3\u0db8\u0dca \u0dc0\u0dd9\u0dad \u0d9c\u0ddc\u0dc3\u0dca \u0d94\u0db6 \u0d8a\u0dc5\u0d9f \u0d85\u0dc0\u0dc3\u0dca\u0dae\u0dcf\u0dc0\u0dda \u0d85\u0db1\u0dca\u0dad\u0dbb\u0dca\u0da2\u0dcf\u0dbd\u0dba\u0da7 \u0dc3\u0db6\u0dd0\u0db3\u0dd2 \u0dc0\u0dd2\u0da7 \u0db1\u0ddc\u0db6\u0dd0\u0db3\u0dd2 \u0dc3\u0db8\u0db8\u0dd4\u0dc4\u0dd4\u0dbb\u0dca\u0dad \u0d9a\u0dd2\u0dbb\u0dd3\u0db8 \u0d9a\u0dca\u200d\u0dbb\u0dd2\u0dba\u0dc
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):934
                        Entropy (8bit):4.882122893545996
                        Encrypted:false
                        SSDEEP:
                        MD5:8E55817BF7A87052F11FE554A61C52D5
                        SHA1:9ABDC0725FE27967F6F6BE0DF5D6C46E2957F455
                        SHA-256:903060EC9E76040B46DEB47BBB041D0B28A6816CB9B892D7342FC7DC6782F87C
                        SHA-512:EFF9EC7E72B272DDE5F29123653BC056A4BC2C3C662AE3C448F8CB6A4D1865A0679B7E74C1B3189F3E262109ED6BC8F8D2BDE14AEFC8E87E0F785AE4837D01C7
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "VYTVORI. NOV.".. },.. "explanationofflinedisabled": {.. "message": "Ste offline. Ak chcete pou.i. Dokumenty Google bez pripojenia na internet, po najbli..om pripojen. na internet prejdite do nastaven. na domovskej str.nke Dokumentov Google a.zapnite offline synchroniz.ciu.".. },.. "explanationofflineenabled": {.. "message": "Ste offline, no st.le m..ete upravova. dostupn. s.bory a.vytv.ra. nov..".. },.. "extdesc": {.. "message": ".prava, tvorba a.zobrazenie dokumentov, tabuliek a.prezent.ci.. To v.etko bez pr.stupu na internet.".. },.. "extname": {.. "message": "Dokumenty Google v re.ime offline".. },.. "learnmore": {.. "message": ".al.ie inform.cie".. },.. "popuphelptext": {.. "message": "P..te, upravujte a.spolupracuje, kdeko.vek ste, a.to s.pripojen.m na internet aj bez neho.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):963
                        Entropy (8bit):4.6041913416245
                        Encrypted:false
                        SSDEEP:
                        MD5:BFAEFEFF32813DF91C56B71B79EC2AF4
                        SHA1:F8EDA2B632610972B581724D6B2F9782AC37377B
                        SHA-256:AAB9CF9098294A46DC0F2FA468AFFF7CA7C323A1A0EFA70C9DB1E3A4DA05D1D4
                        SHA-512:971F2BBF5E9C84DE3D31E5F2A4D1A00D891A2504F8AF6D3F75FC19056BFD059A270C4C9836AF35258ABA586A1888133FB22B484F260C1CBC2D1D17BC3B4451AA
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "USTVARI NOVO".. },.. "explanationofflinedisabled": {.. "message": "Nimate vzpostavljene povezave. .e .elite uporabljati Google Dokumente brez internetne povezave, odprite nastavitve na doma.i strani Google Dokumentov in vklopite sinhronizacijo brez povezave, ko naslednji. vzpostavite internetno povezavo.".. },.. "explanationofflineenabled": {.. "message": "Nimate vzpostavljene povezave, vendar lahko .e vedno urejate razpolo.ljive datoteke ali ustvarjate nove.".. },.. "extdesc": {.. "message": "Urejajte, ustvarjajte in si ogledujte dokumente, preglednice in predstavitve . vse to brez internetnega dostopa.".. },.. "extname": {.. "message": "Google Dokumenti brez povezave".. },.. "learnmore": {.. "message": "Ve. o tem".. },.. "popuphelptext": {.. "message": "Pi.ite, urejajte in sodelujte, kjer koli ste, z internetno povezavo ali brez nje.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1320
                        Entropy (8bit):4.569671329405572
                        Encrypted:false
                        SSDEEP:
                        MD5:7F5F8933D2D078618496C67526A2B066
                        SHA1:B7050E3EFA4D39548577CF47CB119FA0E246B7A4
                        SHA-256:4E8B69E864F57CDDD4DC4E4FAF2C28D496874D06016BC22E8D39E0CB69552769
                        SHA-512:0FBAB56629368EEF87DEEF2977CA51831BEB7DEAE98E02504E564218425C751853C4FDEAA40F51ECFE75C633128B56AE105A6EB308FD5B4A2E983013197F5DBA
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "....... ....".. },.. "explanationofflinedisabled": {.. "message": "...... .... .. ..... ......... Google ......... ... ........ ...., ..... . .......... .. ........ ........ Google .......... . ........ ...... .............. ... ....... ... ...... ........ .. ...........".. },.. "explanationofflineenabled": {.. "message": "...... ..., ... . .... ...... .. ....... ...... . ........ ........ ... .. ....... .....".. },.. "extdesc": {.. "message": "....... . ........... ........., ...... . ............ . ....... ...... . ... . ... .. ... ........ .........".. },.. "extname": {.. "message
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):884
                        Entropy (8bit):4.627108704340797
                        Encrypted:false
                        SSDEEP:
                        MD5:90D8FB448CE9C0B9BA3D07FB8DE6D7EE
                        SHA1:D8688CAC0245FD7B886D0DEB51394F5DF8AE7E84
                        SHA-256:64B1E422B346AB77C5D1C77142685B3FF7661D498767D104B0C24CB36D0EB859
                        SHA-512:6D58F49EE3EF0D3186EA036B868B2203FE936CE30DC8E246C32E90B58D9B18C624825419346B62AF8F7D61767DBE9721957280AA3C524D3A5DFB1A3A76C00742
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "SKAPA NYTT".. },.. "explanationofflinedisabled": {.. "message": "Du .r offline. Om du vill anv.nda Google Dokument utan internetuppkoppling, .ppna inst.llningarna p. Google Dokuments startsida och aktivera offlinesynkronisering n.sta g.ng du .r ansluten till internet.".. },.. "explanationofflineenabled": {.. "message": "Du .r offline, men det g.r fortfarande att redigera tillg.ngliga filer eller skapa nya.".. },.. "extdesc": {.. "message": "Redigera, skapa och visa dina dokument, kalkylark och presentationer . helt utan internet.tkomst.".. },.. "extname": {.. "message": "Google Dokument Offline".. },.. "learnmore": {.. "message": "L.s mer".. },.. "popuphelptext": {.. "message": "Skriv, redigera och samarbeta .verallt, med eller utan internetanslutning.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):980
                        Entropy (8bit):4.50673686618174
                        Encrypted:false
                        SSDEEP:
                        MD5:D0579209686889E079D87C23817EDDD5
                        SHA1:C4F99E66A5891973315D7F2BC9C1DAA524CB30DC
                        SHA-256:0D20680B74AF10EF8C754FCDE259124A438DCE3848305B0CAF994D98E787D263
                        SHA-512:D59911F91ED6C8FF78FD158389B4D326DAF4C031B940C399569FE210F6985E23897E7F404B7014FC7B0ACEC086C01CC5F76354F7E5D3A1E0DEDEF788C23C2978
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "FUNGUA MPYA".. },.. "explanationofflinedisabled": {.. "message": "Haupo mtandaoni. Ili uweze kutumia Hati za Google bila muunganisho wa intaneti, wakati utakuwa umeunganishwa kwenye intaneti, nenda kwenye sehemu ya mipangilio kwenye ukurasa wa kwanza wa Hati za Google kisha uwashe kipengele cha usawazishaji nje ya mtandao.".. },.. "explanationofflineenabled": {.. "message": "Haupo mtandaoni, lakini bado unaweza kubadilisha faili zilizopo au uunde mpya.".. },.. "extdesc": {.. "message": "Badilisha, unda na uangalie hati, malahajedwali na mawasilisho yako . yote bila kutumia muunganisho wa intaneti.".. },.. "extname": {.. "message": "Hati za Google Nje ya Mtandao".. },.. "learnmore": {.. "message": "Pata Maelezo Zaidi".. },.. "popuphelptext": {.. "message": "Andika hati, zibadilishe na ushirikiane na wengine popote ulipo, iwe una muunganisho wa intaneti au huna.".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1941
                        Entropy (8bit):4.132139619026436
                        Encrypted:false
                        SSDEEP:
                        MD5:DCC0D1725AEAEAAF1690EF8053529601
                        SHA1:BB9D31859469760AC93E84B70B57909DCC02EA65
                        SHA-256:6282BF9DF12AD453858B0B531C8999D5FD6251EB855234546A1B30858462231A
                        SHA-512:6243982D764026D342B3C47C706D822BB2B0CAFFA51F0591D8C878F981EEF2A7FC68B76D012630B1C1EB394AF90EB782E2B49329EB6538DD5608A7F0791FDCF5
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "..... ....... .........".. },.. "explanationofflinedisabled": {.. "message": ".......... ........... .... ....... ..... Google ......... .........., ...... .... ........... ......... ...., Google ... ................... ................ ......, ........ ......... ..........".. },.. "explanationofflineenabled": {.. "message": ".......... ..........., .......... .......... .......... ......... ........... ...... .....
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1969
                        Entropy (8bit):4.327258153043599
                        Encrypted:false
                        SSDEEP:
                        MD5:385E65EF723F1C4018EEE6E4E56BC03F
                        SHA1:0CEA195638A403FD99BAEF88A360BD746C21DF42
                        SHA-256:026C164BAE27DBB36A564888A796AA3F188AAD9E0C37176D48910395CF772CEA
                        SHA-512:E55167CB5638E04DF3543D57C8027B86B9483BFCAFA8E7C148EDED66454AEBF554B4C1CF3C33E93EC63D73E43800D6A6E7B9B1A1B0798B6BDB2F699D3989B052
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "..... ...... ........ ......".. },.. "explanationofflinedisabled": {.. "message": ".... ........... ........ ......... ........ ....... Google Docs... .............., .... ............ ....... ..... ...... .... Google Docs .... ...... ............. ......, ........ ........ ... .......".. },.. "explanationofflineenabled": {.. "message": ".... ........... ......., .... .... ........ .......... .... ....... ..... ....... .... ..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1674
                        Entropy (8bit):4.343724179386811
                        Encrypted:false
                        SSDEEP:
                        MD5:64077E3D186E585A8BEA86FF415AA19D
                        SHA1:73A861AC810DABB4CE63AD052E6E1834F8CA0E65
                        SHA-256:D147631B2334A25B8AA4519E4A30FB3A1A85B6A0396BC688C68DC124EC387D58
                        SHA-512:56DD389EB9DD335A6214E206B3BF5D63562584394D1DE1928B67D369E548477004146E6CB2AD19D291CB06564676E2B2AC078162356F6BC9278B04D29825EF0C
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".........".. },.. "explanationofflinedisabled": {.. "message": ".............. ............. Google .................................... ............................... Google ...... .................................................................".. },.. "explanationofflineenabled": {.. "message": "................................................................".. },.. "extdesc": {.. "message": "..... ..... ........
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1063
                        Entropy (8bit):4.853399816115876
                        Encrypted:false
                        SSDEEP:
                        MD5:76B59AAACC7B469792694CF3855D3F4C
                        SHA1:7C04A2C1C808FA57057A4CCEEE66855251A3C231
                        SHA-256:B9066A162BEE00FD50DC48C71B32B69DFFA362A01F84B45698B017A624F46824
                        SHA-512:2E507CA6874DE8028DC769F3D9DFD9E5494C268432BA41B51568D56F7426F8A5F2E5B111DDD04259EB8D9A036BB4E3333863A8FC65AAB793BCEF39EDFE41403B
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "YEN. OLU.TUR".. },.. "explanationofflinedisabled": {.. "message": ".nternet'e ba.l. de.ilsiniz. Google Dok.manlar'. .nternet ba.lant.s. olmadan kullanmak i.in, .nternet'e ba.lanabildi.inizde Google Dok.manlar ana sayfas.nda Ayarlar'a gidin ve .evrimd... senkronizasyonu etkinle.tirin.".. },.. "explanationofflineenabled": {.. "message": ".nternet'e ba.l. de.ilsiniz. Ancak, yine de mevcut dosyalar. d.zenleyebilir veya yeni dosyalar olu.turabilirsiniz.".. },.. "extdesc": {.. "message": "Dok.man, e-tablo ve sunu olu.turun, bunlar. d.zenleyin ve g.r.nt.leyin. T.m bu i.lemleri internet eri.imi olmadan yapabilirsiniz.".. },.. "extname": {.. "message": "Google Dok.manlar .evrimd...".. },.. "learnmore": {.. "message": "Daha Fazla Bilgi".. },.. "popuphelptext": {.. "message": ".nternet ba.lant.n.z olsun veya olmas.n, nerede olursan.z olun yaz.n, d.zenl
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1333
                        Entropy (8bit):4.686760246306605
                        Encrypted:false
                        SSDEEP:
                        MD5:970963C25C2CEF16BB6F60952E103105
                        SHA1:BBDDACFEEE60E22FB1C130E1EE8EFDA75EA600AA
                        SHA-256:9FA26FF09F6ACDE2457ED366C0C4124B6CAC1435D0C4FD8A870A0C090417DA19
                        SHA-512:1BED9FE4D4ADEED3D0BC8258D9F2FD72C6A177C713C3B03FC6F5452B6D6C2CB2236C54EA972ECE7DBFD756733805EB2352CAE44BAB93AA8EA73BB80460349504
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "........".. },.. "explanationofflinedisabled": {.. "message": ".. . ...... ....... ... ............. Google ........... ... ......... . .........., ......... . ............ .. ........ ........ Google .......... . ......... ......-............., .... ...... . .......".. },.. "explanationofflineenabled": {.. "message": ".. . ...... ......, ..... ... .... ...... .......... ........ ..... ... .......... .....".. },.. "extdesc": {.. "message": "........., ......... . ............ ........., .......... ....... .. ........... ... ....... .. ..........".. },.. "extname": {.. "message": "Goo
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1263
                        Entropy (8bit):4.861856182762435
                        Encrypted:false
                        SSDEEP:
                        MD5:8B4DF6A9281333341C939C244DDB7648
                        SHA1:382C80CAD29BCF8AAF52D9A24CA5A6ECF1941C6B
                        SHA-256:5DA836224D0F3A96F1C5EB5063061AAD837CA9FC6FED15D19C66DA25CF56F8AC
                        SHA-512:FA1C015D4EA349F73468C78FDB798D462EEF0F73C1A762298798E19F825E968383B0A133E0A2CE3B3DF95F24C71992235BFC872C69DC98166B44D3183BF8A9E5
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "... ......".. },.. "explanationofflinedisabled": {.. "message": ".. .. .... .... Google Docs .. .... ....... ..... ....... .... ..... .... ... .. .. ....... .. ..... ... .. Google Docs ... ... .. ....... .. ..... ... .. .... ...... ..... .. .. .....".. },.. "explanationofflineenabled": {.. "message": ".. .. .... ... .... .. ... ... ...... ..... ... ..... .. .... ... .. ... ..... ... .... ....".. },.. "extdesc": {.. "message": ".......... .......... ... ....... . .... ... ....... .. ..... .. .... ...... ..... .... ... ..... .......".. },.. "extname": {.. "message": "Google Docs .. ....".. },.. "learnmore": {..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1074
                        Entropy (8bit):5.062722522759407
                        Encrypted:false
                        SSDEEP:
                        MD5:773A3B9E708D052D6CBAA6D55C8A5438
                        SHA1:5617235844595D5C73961A2C0A4AC66D8EA5F90F
                        SHA-256:597C5F32BC999746BC5C2ED1E5115C523B7EB1D33F81B042203E1C1DF4BBCAFE
                        SHA-512:E5F906729E38B23F64D7F146FA48F3ABF6BAED9AAFC0E5F6FA59F369DC47829DBB4BFA94448580BD61A34E844241F590B8D7AEC7091861105D8EBB2590A3BEE9
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "T.O M.I".. },.. "explanationofflinedisabled": {.. "message": "B.n .ang ngo.i tuy.n. .. s. d.ng Google T.i li.u m. kh.ng c.n k.t n.i Internet, .i ..n c.i ..t tr.n trang ch. c.a Google T.i li.u v. b.t ..ng b. h.a ngo.i tuy.n v.o l.n ti.p theo b.n ...c k.t n.i v.i m.ng Internet.".. },.. "explanationofflineenabled": {.. "message": "B.n .ang ngo.i tuy.n, tuy nhi.n b.n v.n c. th. ch.nh s.a c.c t.p c. s.n ho.c t.o c.c t.p m.i.".. },.. "extdesc": {.. "message": "Ch.nh s.a, t.o v. xem t.i li.u, b.ng t.nh v. b.n tr.nh b.y . t.t c. m. kh.ng c.n truy c.p Internet.".. },.. "extname": {.. "message": "Google T.i li.u ngo.i tuy.n".. },.. "learnmore": {.. "message": "Ti.m hi..u th.m".. },.. "popuphelptext": {.. "message": "Vi.t, ch.nh s.a v. c.ng t.c
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):879
                        Entropy (8bit):5.7905809868505544
                        Encrypted:false
                        SSDEEP:
                        MD5:3E76788E17E62FB49FB5ED5F4E7A3DCE
                        SHA1:6904FFA0D13D45496F126E58C886C35366EFCC11
                        SHA-256:E72D0BB08CC3005556E95A498BD737E7783BB0E56DCC202E7D27A536616F5EE0
                        SHA-512:F431E570AB5973C54275C9EEF05E49E6FE2D6C17000F98D672DD31F9A1FAD98E0D50B5B0B9CF85D5BBD3B655B93FD69768C194C8C1688CB962AA75FF1AF9BDB6
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": "..".. },.. "explanationofflinedisabled": {.. "message": "....................... Google ................ Google ....................".. },.. "explanationofflineenabled": {.. "message": ".............................".. },.. "extdesc": {.. "message": "...................... - ........".. },.. "extname": {.. "message": "Google .......".. },.. "learnmore": {.. "message": "....".. },.. "popuphelptext": {.. "message": "...............................".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):1205
                        Entropy (8bit):4.50367724745418
                        Encrypted:false
                        SSDEEP:
                        MD5:524E1B2A370D0E71342D05DDE3D3E774
                        SHA1:60D1F59714F9E8F90EF34138D33FBFF6DD39E85A
                        SHA-256:30F44CFAD052D73D86D12FA20CFC111563A3B2E4523B43F7D66D934BA8DACE91
                        SHA-512:D2225CF2FA94B01A7B0F70A933E1FDCF69CDF92F76C424CE4F9FCC86510C481C9A87A7B71F907C836CBB1CA41A8BEBBD08F68DBC90710984CA738D293F905272
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"\u5efa\u7acb\u65b0\u9805\u76ee"},"explanationofflinedisabled":{"message":"\u60a8\u8655\u65bc\u96e2\u7dda\u72c0\u614b\u3002\u5982\u8981\u5728\u6c92\u6709\u4e92\u806f\u7db2\u9023\u7dda\u7684\u60c5\u6cc1\u4e0b\u4f7f\u7528\u300cGoogle \u6587\u4ef6\u300d\uff0c\u8acb\u524d\u5f80\u300cGoogle \u6587\u4ef6\u300d\u9996\u9801\u7684\u8a2d\u5b9a\uff0c\u4e26\u5728\u4e0b\u6b21\u9023\u63a5\u4e92\u806f\u7db2\u6642\u958b\u555f\u96e2\u7dda\u540c\u6b65\u529f\u80fd\u3002"},"explanationofflineenabled":{"message":"\u60a8\u8655\u65bc\u96e2\u7dda\u72c0\u614b\uff0c\u4f46\u60a8\u4ecd\u53ef\u4ee5\u7de8\u8f2f\u53ef\u7528\u6a94\u6848\u6216\u5efa\u7acb\u65b0\u6a94\u6848\u3002"},"extdesc":{"message":"\u7de8\u8f2f\u3001\u5efa\u7acb\u53ca\u67e5\u770b\u60a8\u7684\u6587\u4ef6\u3001\u8a66\u7b97\u8868\u548c\u7c21\u5831\uff0c\u5b8c\u5168\u4e0d\u9700\u4f7f\u7528\u4e92\u806f\u7db2\u3002"},"extname":{"message":"\u300cGoogle \u6587\u4ef6\u300d\u96e2\u7dda\u7248"},"learnmore":{"message":"\u77ad\u89e3\u8a
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):843
                        Entropy (8bit):5.76581227215314
                        Encrypted:false
                        SSDEEP:
                        MD5:0E60627ACFD18F44D4DF469D8DCE6D30
                        SHA1:2BFCB0C3CA6B50D69AD5745FA692BAF0708DB4B5
                        SHA-256:F94C6DDEDF067642A1AF18D629778EC65E02B6097A8532B7E794502747AEB008
                        SHA-512:6FF517EED4381A61075AC7C8E80C73FAFAE7C0583BA4FA7F4951DD7DBE183C253702DEE44B3276EFC566F295DAC1592271BE5E0AC0C7D2C9F6062054418C7C27
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "createnew": {.. "message": ".....".. },.. "explanationofflinedisabled": {.. "message": ".................. Google ................ Google .................".. },.. "explanationofflineenabled": {.. "message": ".........................".. },.. "extdesc": {.. "message": ".............................".. },.. "extname": {.. "message": "Google .....".. },.. "learnmore": {.. "message": "....".. },.. "popuphelptext": {.. "message": "................................".. }..}..
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):912
                        Entropy (8bit):4.65963951143349
                        Encrypted:false
                        SSDEEP:
                        MD5:71F916A64F98B6D1B5D1F62D297FDEC1
                        SHA1:9386E8F723C3F42DA5B3F7E0B9970D2664EA0BAA
                        SHA-256:EC78DDD4CCF32B5D76EC701A20167C3FBD146D79A505E4FB0421FC1E5CF4AA63
                        SHA-512:30FA4E02120AF1BE6E7CC7DBB15FAE5D50825BD6B3CF28EF21D2F2E217B14AF5B76CFCC165685C3EDC1D09536BFCB10CA07E1E2CC0DA891CEC05E19394AD7144
                        Malicious:false
                        Reputation:unknown
                        Preview:{"createnew":{"message":"DALA ENTSHA"},"explanationofflinedisabled":{"message":"Awuxhunyiwe ku-inthanethi. Ukuze usebenzise i-Google Amadokhumenti ngaphandle koxhumano lwe-inthanethi, iya kokuthi izilungiselelo ekhasini lasekhaya le-Google Amadokhumenti bese uvula ukuvumelanisa okungaxhunyiwe ku-inthanethi ngesikhathi esilandelayo lapho uxhunywe ku-inthanethi."},"explanationofflineenabled":{"message":"Awuxhunyiwe ku-inthanethi, kodwa usangakwazi ukuhlela amafayela atholakalayo noma udale amasha."},"extdesc":{"message":"Hlela, dala, futhi ubuke amadokhumenti akho, amaspredishithi, namaphrezentheshini \u2014 konke ngaphandle kokufinyelela kwe-inthanethi."},"extname":{"message":"I-Google Amadokhumenti engaxhumekile ku-intanethi"},"learnmore":{"message":"Funda kabanzi"},"popuphelptext":{"message":"Bhala, hlela, futhi hlanganyela noma yikuphi lapho okhona, unalo noma ungenalo uxhumano lwe-inthanethi."}}.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):18518
                        Entropy (8bit):5.709939179890619
                        Encrypted:false
                        SSDEEP:
                        MD5:05BEDDE10A35815204BEB8BADD3DB9B4
                        SHA1:000E7E6984EDEF11E937929DB047FF6FCB87CB1E
                        SHA-256:65A138E44834C8EE9D2946960C97D6FF3978874F4641A16568322B9318976151
                        SHA-512:9F42514DBA8F11ED41041C68960B7538BADFC0CEC6AF01F885AB7197DA27CAE0EC0DE78E49D585612AC4B5C025C070EF4F03ED39E894D9699FFE887272487D07
                        Malicious:false
                        Reputation:unknown
                        Preview:[{"description":"treehash per file","signed_content":{"payload":"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
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):854
                        Entropy (8bit):4.284628987131403
                        Encrypted:false
                        SSDEEP:
                        MD5:4EC1DF2DA46182103D2FFC3B92D20CA5
                        SHA1:FB9D1BA3710CF31A87165317C6EDC110E98994CE
                        SHA-256:6C69CE0FE6FAB14F1990A320D704FEE362C175C00EB6C9224AA6F41108918CA6
                        SHA-512:939D81E6A82B10FF73A35C931052D8D53D42D915E526665079EEB4820DF4D70F1C6AEBAB70B59519A0014A48514833FEFD687D5A3ED1B06482223A168292105D
                        Malicious:false
                        Reputation:unknown
                        Preview:{. "type": "object",. "properties": {. "allowedDocsOfflineDomains": {. "type": "array",. "items": {. "type": "string". },. "title": "Allow users to enable Docs offline for the specified managed domains.",. "description": "Users on managed devices will be able to enable docs offline if they are part of the specified managed domains.". },. "autoEnabledDocsOfflineDomains": {. "type": "array",. "items": {. "type": "string". },. "title": "Auto enable Docs offline for the specified managed domains in certain eligible situations.",. "description": "Users on managed devices, in certain eligible situations, will be able to automatically access and edit recent files offline for the managed domains set in this property. They can still disable it from Drive settings.". }. }.}.
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text, with very long lines (3422)
                        Category:dropped
                        Size (bytes):82471
                        Entropy (8bit):5.379624543852408
                        Encrypted:false
                        SSDEEP:
                        MD5:A7D0D56DF8E576C9CDE7DB6C11045CD7
                        SHA1:EAFE0A7FE5217B254FCE57223A5C8F4A30B1B56A
                        SHA-256:37FABD0B7AB065ECAF481064D770A2DBF61A8C23F6BE1E10D2085812ADB0EC8A
                        SHA-512:66ACA2AA2BC4DB901250DA2DAD0202352D89CD8C1A16616F106FF73D0EED2E1EC4852940443BAFDFAAB264AF1185769B33E240BB94E8B263AA5B0D6AF16CFB10
                        Malicious:true
                        Reputation:unknown
                        Preview:'use strict';function m(){return function(){}}var p;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var ba="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ca(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var q=ca(this);function t(a,b){if(b)a:{var c=q;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&ba(c,a,{configurable:!0,writable:!0,value:b})}}.t("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}function c(f,g){this.g=f;ba(this,"description",{configurable:!
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2397
                        Entropy (8bit):5.424093225335539
                        Encrypted:false
                        SSDEEP:
                        MD5:A71CE16FE7E71948777A01794E461DE4
                        SHA1:51310DF56DBDEC1329DB8946888A208B477712CA
                        SHA-256:431EBF00F6BAB228FBAD80663CAAE73427516D6AB3D34939ECB6DCB5D0A566CC
                        SHA-512:EAA2513BCA54F184083CD6E50738EF99D8C5C562075D5237E5B5A23DDA8DA694A7B0F0E9251C7C9A3BE2BD51614CCEBF32127F4CC9C49DDA9A7036434E7D5AAB
                        Malicious:false
                        Reputation:unknown
                        Preview:{.. "author": {.. "email": "docs-hosted-app-own@google.com".. },.. "background": {.. "persistent": false,.. "scripts": [ "eventpage_bin_prod.js" ].. },.. "content_capabilities": {.. "matches": [ "https://docs.google.com/*", "https://drive.google.com/*", "https://drive-autopush.corp.google.com/*", "https://drive-daily-0.corp.google.com/*", "https://drive-daily-1.corp.google.com/*", "https://drive-daily-2.corp.google.com/*", "https://drive-daily-3.corp.google.com/*", "https://drive-daily-4.corp.google.com/*", "https://drive-daily-5.corp.google.com/*", "https://drive-daily-6.corp.google.com/*", "https://drive-preprod.corp.google.com/*", "https://drive-staging.corp.google.com/*" ],.. "permissions": [ "clipboardRead", "clipboardWrite", "unlimitedStorage" ].. },.. "content_security_policy": "script-src 'self'; object-src 'self'",.. "default_locale": "en_US",.. "description": "__MSG_extDesc__",.. "externally_connectable": {.. "matches": [ "htt
                        Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):291
                        Entropy (8bit):4.644891151983713
                        Encrypted:false
                        SSDEEP:
                        MD5:EE9839F99DED6F38DC561DB846B51E80
                        SHA1:DD2128A473C2FF47471400C81EFF416285DE606E
                        SHA-256:06E08E421EB7F0FE7959D68E27D40A9146A54503090D95CFAC6F2FFD72A78769
                        SHA-512:C8D77607F00CB8012CD056CE61CB77918EC43621270511303E09577F89CC57D4954E22E2C8C3FB1029AAE29F8142DAAE2E938CD5590AD0E5DE6DB1208AFEF874
                        Malicious:true
                        Reputation:unknown
                        Preview:(function(){window._docs_chrome_extension_exists=!0;window._docs_chrome_extension_features_version=2;window._docs_chrome_extension_permissions="alarms clipboardRead clipboardWrite storage unlimitedStorage offscreen".split(" ");window._docs_chrome_extension_manifest_version=2;}).call(this);.
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:Unicode text, UTF-8 text, with very long lines (62606)
                        Category:dropped
                        Size (bytes):1309620
                        Entropy (8bit):5.66134790970973
                        Encrypted:false
                        SSDEEP:
                        MD5:FB970BC9889933229160723A60571DDE
                        SHA1:B1B68348B77101B31BEA510311C6E85451F833FC
                        SHA-256:39E34FC3DFD74D25631EA2FECACA70A5D767B5F3F40F24380237DC06A80252E2
                        SHA-512:65C4B44E42C7D94A89BE9B18EF7589F16F247F47F459DA2E8B59B4FFBBBA25CBB07971F8484E9BC25BD8C6F953A291AB9384A154AAB9AD1572375B3B30C31886
                        Malicious:false
                        Reputation:unknown
                        Preview:!function(e){var t={};function a(n){if(t[n])return t[n].exports;var o=t[n]={i:n,l:!1,exports:{}};return e[n].call(o.exports,o,o.exports,a),o.l=!0,o.exports}a.m=e,a.c=t,a.d=function(e,t,n){a.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:n})},a.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},a.t=function(e,t){if(1&t&&(e=a(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var n=Object.create(null);if(a.r(n),Object.defineProperty(n,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var o in e)a.d(n,o,function(t){return e[t]}.bind(null,o));return n},a.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return a.d(t,"a",t),t},a.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},a.p="",a(a.s=642)}([function(e,t,a){"use strict";e.exports=a(370)},function(e,t,a){e.exports=a(388)()},fun
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):17894
                        Entropy (8bit):6.068058315880323
                        Encrypted:false
                        SSDEEP:
                        MD5:E48F35C0AEB8765971A4AA3944D521CB
                        SHA1:FD8434599517E15BE190E437885193D286ED2D37
                        SHA-256:54AB31324755712291BEB5BFC08849AAF38AC6DE67638A6D031BAEEAB3BADC81
                        SHA-512:B1A17426369CDF6A3133E56878AB204651D9A480F752DD947669BEC11429A365F97FFE879B90E891D3EA3816BE1E88E94650C69D34FCB4FEC4EDD329D5E8B88C
                        Malicious:false
                        Reputation:unknown
                        Preview:{"domain_actions_config":"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
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):3422
                        Entropy (8bit):5.276667535115119
                        Encrypted:false
                        SSDEEP:
                        MD5:E75BB7DC7B3444857EABF92F93F2459C
                        SHA1:9B7D2E162793570243439A3E7A652F86CC5221CC
                        SHA-256:112B0F8578CBF617BCD52BEEB219BB4D15583769DCDC063253BC5F22A04A6695
                        SHA-512:18F55D1CA16870B2798FC55BBFE61517FEC11F3C85C51B5AD92121CA1DC4BF2E9C19A5E14A045C74A270AE2180B683C553E7E420DD45FE2BBB44AF02DEE33861
                        Malicious:false
                        Reputation:unknown
                        Preview:{"dual_engine":{"ie_to_edge":{"redirection_mode":0}},"edge":{"tab_stabs":{"closed_without_unfreeze_never_unfrozen":0,"closed_without_unfreeze_previously_unfrozen":0,"discard_without_unfreeze_never_unfrozen":0,"discard_without_unfreeze_previously_unfrozen":0},"tab_stats":{"frozen_daily":0,"unfrozen_daily":0}},"fre":{"oem_bookmarks_set":true},"hardware_acceleration_mode_previous":true,"is_dsp_recommended":true,"legacy":{"profile":{"name":{"migrated":true}}},"network_time":{"network_time_mapping":{"local":1.710412425695459e+12,"network":1.710412426e+12,"ticks":5373406660.0,"uncertainty":1746952.0}},"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):1310720
                        Entropy (8bit):0.5605810490332483
                        Encrypted:false
                        SSDEEP:
                        MD5:D90D2E5BF102A0C9EE9B2222C7274DD0
                        SHA1:0AE5B35C39205D5711A8543C35032CF588E8E343
                        SHA-256:288F4240A12E19C637AC99AC6265B3E25B0F665E3422B8B4D5685544D0FFA221
                        SHA-512:918987A5F153C25AA399F6115ACE41A02F5E8904EBE211762862D3C95347660041D6EF720A94D2B136676773630801A227BB1122A24503F6CE8786DB56DEFA21
                        Malicious:false
                        Reputation:unknown
                        Preview:...@............C.].....@...............h...................`... ...i.y.........BrowserMetrics......i.y..Yd. .......A...................v.0.....UV&K.k<................UV&K.k<................UMA.PersistentHistograms.InitResult.....8...i.y.[".................................................i.y.Pq.30....G.........117.0.2045.47-64".en-GB*...Windows NT..10.0.190452(..x86_64..?........".xgvqee20,1...x86_64J....?.^o..P....6...............8.>..*......nW:00000000000000000000000000000000000000000000!00000000000000000000000000000000000000000000!Acrobat_Set-Up.exe.&1900/01/01:00:00:00!Acrobat_Set-Up.exe".2.12.0.232...".*.:..............,..(.......EarlyProcessSingleton.......Default3.(..$.......msEdgeEDropUI.......triggered....8..4... ...msDelayLoadAuthenticationManager....triggered....<..8...#...msSleepingTabsShorterTimeoutDefault.....triggered....8..4... ...msEdgeMouseGestureDefaultEnabled....triggered....8..4.......msEdgeShowHomeButtonByDefault.......triggered....<..8...$...msConsumerIEMode
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):280
                        Entropy (8bit):1.8758045962103351
                        Encrypted:false
                        SSDEEP:
                        MD5:62AA09717FB3603E5129C70740CCD802
                        SHA1:A8E8D9190050322991FCC7FFA70A65FAB518BF2B
                        SHA-256:C91C9510036174F0D5FFA3C1B68D40756A2E463D31511693AF26F51467BCE713
                        SHA-512:A5B60BC6D0C57DBA3247B8651AE6BA5A018324837B23ACE5834D29F25832D9111654EE49B62833D2A4F3043CAC9AF5669C23A040B951FB533B6D8104538E4BE7
                        Malicious:false
                        Reputation:unknown
                        Preview:sdPC......................H:sc.A....n.!................................................................................................................................................................................................{F3017226-FE2A-4295-8BDF-00C3A9A7E4C.}C:........
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):6144
                        Entropy (8bit):4.829090428472233
                        Encrypted:false
                        SSDEEP:
                        MD5:74377482AEE3EFB00E9679D0D3F67AD7
                        SHA1:447948B0A97AAA3500834EC5C40A2FE9EEDCAE44
                        SHA-256:1C89164AEA1BA0BE4BFCEE08E80F7A8FFDCA1A5DD4F16D8B087FDA0C247813E2
                        SHA-512:7E0D0014803FC45F52EFA4EBE7F569D42E6D681AEB7ADE6F9C082CE9D8B585F4E17E22847415692C67A1687946DCDBCF8DC9D0D87FB536E8EB628FD9812A115D
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:modified
                        Size (bytes):6179
                        Entropy (8bit):4.827884526325429
                        Encrypted:false
                        SSDEEP:
                        MD5:0B77E8B6686A8519617EF384C7821ED0
                        SHA1:89CB5784E38CBF335A5857A6B6B841AF8DE270D4
                        SHA-256:90518ACA0565920A4807FAE3666A8056743D6BA8D3CC5F3B103E399436F749DE
                        SHA-512:8C255AF49011AFCFF2FBADF5AE7BD5FC92BBEB2D39085A8F58B67C26B4FD9C5863367F220E8745E86EE45FC5C82BA430B5444C35CFE9591B229408FF0540A20D
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):6780
                        Entropy (8bit):5.58039878184256
                        Encrypted:false
                        SSDEEP:
                        MD5:E4FCBFA76ED5A068F1A19DA4B50FC1AA
                        SHA1:5A0404F32B768884C9720A0CAAB4778A058CE408
                        SHA-256:9693581A26603B31DA653313F7839012587779C8A9C5F36E0118A80E0EC6E0BD
                        SHA-512:E5209C1A02EEE48CC533DAFC3819C4EA03BFF109172EF511AC8F934C7803C564C83A78F33CF9C0011C1C89C9779BB30D5AAA900DF8249C1ED63BB80D48DDEB0A
                        Malicious:false
                        Reputation:unknown
                        Preview:{"extensions":{"settings":{"dgiklkfkllikcanfonkcabmbdfmgleag":{"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886024563976","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886024563976","location":5,"manifest":{"content_capabilities":{"include_globs":["https://*excel.officeapps.live.com/*","https://*onenote.officeapps.live.com/*","https://*powerpoint.officeapps.live.com/*","https://*word-edit.officeapps.live.com/*","https://*excel.officeapps.live.com.mcas.ms/*","https://*onenote.officeapps.live.com.mcas.ms/*","https://*word-edit.officeapps.live.com.mcas.ms/*","https://*excel.partner.officewebapps.cn/*","https://*onenote.partner.officewebapps.cn/*","https://*powerpoint.partner.officewebapps.cn/*","https://*word-edit.partner.officewebapps.cn/*","https://*excel.gov.online.office365.us/*","
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):5623
                        Entropy (8bit):4.788627820226945
                        Encrypted:false
                        SSDEEP:
                        MD5:9A06D33C26760E5D75F7CFE5E31DE1E6
                        SHA1:1B2A0D1D41EF533CAFF8F97FE4EA1DF7C8F7C633
                        SHA-256:6619415288BE319169620CF7DA53677D68AB9DD9516E304A9254CD11248AACC5
                        SHA-512:50872B68F5397AA0190BC1C34252FAB1F9AC3A9577A59D8172A736D801A983B304051EE6D9E1624BC6DC538E5A602105ED1A4FA21FF98327312C07CE3858593C
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):45056
                        Entropy (8bit):0.07507908812377878
                        Encrypted:false
                        SSDEEP:
                        MD5:BDF2AF2CA9107981737F557583E80F0B
                        SHA1:DAB7AE628EDC8AB9F46E435F4D7E4F93E10296EA
                        SHA-256:894530A9CAEFF4AEA0C8267195BFA8DE846D36E5A1E8D92D06E03EE9281D5609
                        SHA-512:C39A8CA73618A73E781D4787436016BCA32CC46887BB8C28BFCE1CDBF4332E1B53814DF60C9BBC660F1C1855981096531CABAD58556A8C6979A04F364161EB46
                        Malicious:false
                        Reputation:unknown
                        Preview:............$...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):270336
                        Entropy (8bit):0.08304357978824675
                        Encrypted:false
                        SSDEEP:
                        MD5:7C9B0E90C75FEA57D01AFE2124017EC4
                        SHA1:DA06C7311A178FC860180F347D2C2BE40215CD64
                        SHA-256:F55D155898CFFDA649FD0EE429CAA5DB54260852831531DA2790D4A6E1149502
                        SHA-512:787D68B700FEBA5EBCE73A2D803A8B2B5220B069A6DE68D250DD0E1D3512D9345ACFFA66BEA4EAEE9C8BFC56FCF95A97A136D57F9574D5CD8510A8E108A5DA3C
                        Malicious:false
                        Reputation:unknown
                        Preview:.................................................................................?......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):1056768
                        Entropy (8bit):0.46351566636200636
                        Encrypted:false
                        SSDEEP:
                        MD5:1E108E29EEE5ABFAC3E3BC6F67E77963
                        SHA1:4BACB4B9FD03CFFFFFE4DEDC68348E667E9D07BF
                        SHA-256:E693352178E07A8C5358C64DD208B854C6EEE43E3ABD0D7E31DA78CA4075E77F
                        SHA-512:BAD94A56647899BBEAD5BE02E177220BB9616165F7F906828EE8EFCF81ADFDF05E12A51CFAF475D7A0A8ED7AAA792F23A43BC94717314A09618FB064DA782E74
                        Malicious:false
                        Reputation:unknown
                        Preview:................................................................................?.......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):4202496
                        Entropy (8bit):0.04741999608269672
                        Encrypted:false
                        SSDEEP:
                        MD5:27D9B0005E24758BA9866F7E4FCD78D5
                        SHA1:B7EE61D051BFCDB0928AF65F6FA06F5F79B7F6AF
                        SHA-256:124845047D8F173998EC63E63F6F644FD358D1F5EA0AFB5C21A61CD96679D9B4
                        SHA-512:C3E5F8B4F1A3CCD59E84387D500BE99F52AE7663923B24538FE328F8E1CDC7DF87BF137BDA565482263E22C1B4A6597A777B7176D35635F35D50FB874614020F
                        Malicious:false
                        Reputation:unknown
                        Preview:................................................................................s.......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with very long lines (15202)
                        Category:dropped
                        Size (bytes):26912
                        Entropy (8bit):5.126880805073886
                        Encrypted:false
                        SSDEEP:
                        MD5:720529043EC027D2768EF7CDE3EEAD0C
                        SHA1:EBE0628E214BA3FFC4C8DA463035B7C87FC1E695
                        SHA-256:5788217AF30E06EBC039553CA37F5B059EBD0D5A248FF33F0822EE600C48A3ED
                        SHA-512:2B4F42664B100DA621D56B1FDA7A722C8A1D9CDE86D7ACD8B958936F4A06E124C0672819A17017EF18498BA479EB7453BEEDDCCC77FFAE89CB1A2D974B3D09E8
                        Malicious:false
                        Reputation:unknown
                        Preview:!function(e){var t={};function n(r){if(t[r])return t[r].exports;var o=t[r]={i:r,l:!1,exports:{}};return e[r].call(o.exports,o,o.exports,n),o.l=!0,o.exports}n.m=e,n.c=t,n.d=function(e,t,r){n.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:r})},n.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},n.t=function(e,t){if(1&t&&(e=n(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var r=Object.create(null);if(n.r(r),Object.defineProperty(r,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var o in e)n.d(r,o,function(t){return e[t]}.bind(null,o));return r},n.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return n.d(t,"a",t),t},n.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},n.p="../",n(n.s=38)}([function(e,t,n){"use strict";var r=n(6),o=n(22),i=Object.prototype.toString;function
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:Unicode text, UTF-8 text, with very long lines (2258)
                        Category:dropped
                        Size (bytes):17008
                        Entropy (8bit):5.5502271222360395
                        Encrypted:false
                        SSDEEP:
                        MD5:A10396392AF7006E81573A789F8F0367
                        SHA1:187F5E45A312D581FE4248DFF447F6DC4DDB208D
                        SHA-256:92C86130DAF66FC1BCEF9A45A15608ABE448740ABDC3BCA1EEE9301767DDAF8B
                        SHA-512:092900888FD08AE5B5458E91F92880EF10D909BA9F4656FB8DD80B9A4E24760213D5CB02E5BD6849360797FDD1D0D85E71BF4A6C868A40C9110EF3F7765300EA
                        Malicious:false
                        Reputation:unknown
                        Preview:/*. * The Typekit service used to deliver this font or fonts for use on websites. * is provided by Adobe and is subject to these Terms of Use. * http://www.adobe.com/products/eulas/tou_typekit. For font license. * information, see the list below.. *. * adobe-clean:. * - http://typekit.com/eulas/000000000000000000017701. * - http://typekit.com/eulas/000000000000000000017703. * - http://typekit.com/eulas/0000000000000000000176ff. *. * . 2009-2024 Adobe Systems Incorporated. All Rights Reserved.. */.if(!window.Typekit)window.Typekit={};window.Typekit.config={"a":"1164490","c":[".tk-adobe-clean","\"adobe-clean\",sans-serif"],"fi":[7180,7182,7184],"fc":[{"id":7180,"family":"adobe-clean","src":"https://use.typekit.net/af/cb695f/000000000000000000017701/27/{format}{?primer,subset_id,fvd,v}","descriptors":{"weight":"400","style":"normal","stretch":"normal","display":"auto","variable":false,"subset_id":2}},{"id":7182,"family":"adobe-clean","src":"https://use.typekit.net/af/eaf09c/0000000
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:Web Open Font Format (Version 2), CFF, length 29924, version 1.0
                        Category:dropped
                        Size (bytes):29924
                        Entropy (8bit):7.990737514218301
                        Encrypted:true
                        SSDEEP:
                        MD5:FCFE600FE9BF0239A8C3CD48738EC2DA
                        SHA1:C735EDEB5AC056F41E063A46B2F508057C9DBDAB
                        SHA-256:62517736E6872FB13CE951C67D689DEF5F6AC4AC222299BFE1E37AC5F05C37AD
                        SHA-512:2829D0BE5E38771D56D92371DD9A4131ECDEC577C50481043914A525DE1F0EB9197C731E549F67625EB954EE611377C771126A2A764F0E68B5928476DE05543A
                        Malicious:false
                        Reputation:unknown
                        Preview:wOF2OTTO..t........(..t..........................F...s?DYNA.i?GDYN.y..r.`..N...6.$..H...... .)...H........Q..aDA.........U...~..?../.....?B...w..{....:`v...9?/y'I..9@I...@..3V@....%WX{'...T@...`./Q...V.Tz....g( .... .....sFO...2..j.n..R....HBI.!.r[n.VR ...JhM.Aj.HI.~....o.&...q..\Gr..8T7..I!(1.0.t..B...Mq....)c....7..Mk)!..]....1k;.d....6..y..N4z...L.B).....'.*.T...Q..?......N>.|...+...V....K..e...I.#..b.j.................BN....B.#.T.._|.....V.:...E.\v./y...$.h....H.Y...;.L*..h..Y.}I.C..U!tR%.pS...i......STU|..).y...P.Y..4`...c.].w..E.>.[.u.R.._..2 )....}.R......... ..Cc!S......)*.$....4#hC...5O....``....0......O....&W..`....d..."...a(....4CP..d..(|.wY.n.I......a*..x....0..xO...~..}.._E.i.3....0k..i@....p.F. ...a....0..a._....w...Z.s...c..&.3.h.wY.W../_~.6.J...H...+......k...D.NKi_..}....K(q^;o}.v..&.>.+...b...m......x..R....B.....|I)Mn1..'.R/..t..Yb4..~.M.C.L.+.....[.......W.A..jc.n...........T3.qyow*..1....+7..K.p.v.^.LU'Z.|....
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:Web Open Font Format (Version 2), CFF, length 29980, version 1.0
                        Category:dropped
                        Size (bytes):29980
                        Entropy (8bit):7.991242817341188
                        Encrypted:true
                        SSDEEP:
                        MD5:864FC6D95444FD085441968A712F6C9F
                        SHA1:7E54F060DF28A16E146AB1EB15AB3A59D3D9BE06
                        SHA-256:371F06319FA71DE555AEBEFCFFBE3C1F755E5761D90AACD9BBA0C64C6CF40090
                        SHA-512:7CADDDDCD35910BC04D80EB10F0776BBF7C770AFCF960FBBDFCC8E8DB1BACD694883A3E9A1540552B544AE639FA42C9B79690ADB81F7D5210467B6494BA25880
                        Malicious:false
                        Reputation:unknown
                        Preview:wOF2OTTO..u........0..t..........................F...D?DYNA.i?GDYN.y..H.`..N...6.$..H...... .5...H..V.CDE....}........W.?@..................o.9.%r.xtl%V.H9I....{..;.3..._..Km...LL..5...$..d.-*0.b(...;I $..Vc3.d..|....9..=f..,....4../*......-..J..z...r...C.%....U.V,....T.l......q%...A..]I....E..$.......s...N...p.(4Is.K.r.C.v.L.a...(.e..{............m!...\&p.T2S.O..e...?....#...ylj..!....d....W..E...Q....y..z...!X..^QY..W_9..x...?...M.*..!.......,+`YV.e]........?V.{.jd..+krf.3K?.9...,.8....CREr...YLf..?.3.dqv..\...pU...H`!..*+...l}..)....J.....M.P.;.......;w.....Zw...(.....lM..zj....`X.:.CqL.L..?.....d./...l.y9..xy;. ...P.X .I.l....Y......5'.0S'..L../...p.....+.B.. ....eb..:3.ns..B..a........~L.....R.w..!E.9{.}..dB%.zxq.5.F. ..q0.f.|X..|.o.m..+w.....<&...k9{..&......+...s..."..d2.u.UC..q.K..8....VC'qr.....j[.qb2NZ!.N.O.:._...e..*.C.u..5.8....t.h+...:..!Lv>8......<J......R......A:B.Gg...:.6K.J.N... ......uIl.V.C....{....X..uS.2.)..=..s
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:Web Open Font Format (Version 2), CFF, length 29752, version 1.0
                        Category:dropped
                        Size (bytes):29752
                        Entropy (8bit):7.991259791890674
                        Encrypted:true
                        SSDEEP:
                        MD5:B45F7B0B58EA5CD543323A5E4BA4724B
                        SHA1:03E815A2FA7461F31FC8ECC18A7063930FC87475
                        SHA-256:9ABA873D54C84D8D56CFE572AB802BB34322DE6FD945C286D278FABE29A9F3F0
                        SHA-512:0726643B1B961B3A2E67380A6CED69030E5E97E99C938EBA29830638CC0CA7CF0C42E22DFC6AC77553B21B4E71FF8E3C6BDB8004168449C182A88C9A380D3422
                        Malicious:false
                        Reputation:unknown
                        Preview:wOF2OTTO..t8..........s..........................F...]?DYNA.i?GDYN.y..r.`..N...6.$..H....7. ............y..h.0....UUU.&.w... .._..w..._..........s..;.L.xJ.%..4w....{I>le-.pU....[Y.B......_v.....a|.%8Jj"4...I..O.O..d}.A.8P......a.f..S.Oh[...{w....M"...[.,`.B2...`.K=Ql.S...&;....M.C...Z*)..P..S..[;........7.K....h...%..jIC....-.N...n....P....%9.Le.....pT..Z..vk..........:..hvP.Q..h;.....i^__.N.@9.O...G...d...i.D_.6...3..<c..Hw.=...m.. .i...:..m0.H....\......<........4... ..'"<qQ....C.S..A.J.,2.... .2_.....s......[......|.@.6);.O....w6.&[x..7.z.|....if..XDE..].Mp.).I.i.'..H....PW..[c..oUOe...5....^.sJB.(^b.... fL.[..>.J.4.y.....0{QN...4.....E..Qdf....5b....d,.3.^.Z.UD.!..y.....i77.$.S........F.2.8.:.h....az.........:....`x........S_. ..$.q{J..Z2..iWqG`[f.M...p&...3..w....{......:h.....i.qg.%...x...a(...0...2...>...^.w..\.w..e.....]..S;..b..d....+...ld..w....r.k.1QJ...y.a_..\+.g^Vp....v.3[r..+...B>$w....}....u...+8...x..U..6..1Ln!zS..w..h
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):524656
                        Entropy (8bit):4.989325630401085E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:E0C0EEDA53155E88E21C9767E1CD93C5
                        SHA1:818082E8E3BD647FA9200604BBA7217D64A93CF9
                        SHA-256:78E27EF79C084DB1D6F577F2FACF9CFFBBA54A50D4FB6231FB4DD23025FFD767
                        SHA-512:E9B17D9CD1E2972CE1D1AADC8F18FD6872464E10A58D311EB3123D25632571181A02093A29D88AFB71418507AEA09635CF86379CE02ED67B3BE14C2B40882AAB
                        Malicious:false
                        Reputation:unknown
                        Preview:...........................................2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):198
                        Entropy (8bit):5.158441688086808
                        Encrypted:false
                        SSDEEP:
                        MD5:A2EF5741615BAAD1CD535930C98C2188
                        SHA1:E9FEC2C2F779AE5098512E94B16E6B09160D443C
                        SHA-256:5D3AA8336B4731F0BDD8C902617FBA59E48800D20B55A03AB1B81EAC499A1C0A
                        SHA-512:70BC0DDCC6F93FDFC546E4847D2FA3EF68F815F510E1E164CE5D2FE5049AE4A9A55148A13E82E7B00158FE74425B710BFD401BF0AD11690E1EC99A6E62C38248
                        Malicious:false
                        Reputation:unknown
                        Preview:0\r..m......:.....#^...._keyhttps://use.typekit.net/ecr2zvs.js .https://adobe.com/.A..Eo.....................2r/.........Z...........O.S.........bI....U.o...b..........A..Eo......C.t.$.......
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):241
                        Entropy (8bit):5.3691724375168395
                        Encrypted:false
                        SSDEEP:
                        MD5:44DD5D884B51F355F0210503DB0DDD9B
                        SHA1:F2AE6CB8D883BF37856AB1243F048D2345EDBA0A
                        SHA-256:56011E75A289B1F598ACCEAF1D7CFF2DEDFB953BE925BA3811A588D87216C47B
                        SHA-512:9294EB3A3E1EAFB0792C375013247A0A04789AF6CD34D652E42FF7FC4378673F05B8D92E36063A339D9D85ED9EEF4DB90D2BE72434547F80522CB3CE45229855
                        Malicious:false
                        Reputation:unknown
                        Preview:0\r..m......e.........._keyhttps://delegated.identity.adobe.com/darq/static/main.b0b118d96fd93fdea183.js .https://adobe.com/.A..Eo...................c..2r/.........Z.............S........A..K.;.j...u....\..s..R.Cs..A..Eo.......Im"$.......
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):24
                        Entropy (8bit):2.1431558784658327
                        Encrypted:false
                        SSDEEP:
                        MD5:54CB446F628B2EA4A5BCE5769910512E
                        SHA1:C27CA848427FE87F5CF4D0E0E3CD57151B0D820D
                        SHA-256:FBCFE23A2ECB82B7100C50811691DDE0A33AA3DA8D176BE9882A9DB485DC0F2D
                        SHA-512:8F6ED2E91AED9BD415789B1DBE591E7EAB29F3F1B48FDFA5E864D7BF4AE554ACC5D82B4097A770DABC228523253623E4296C5023CF48252E1B94382C43123CB0
                        Malicious:false
                        Reputation:unknown
                        Preview:0\r..m..................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):96
                        Entropy (8bit):4.0314022267421485
                        Encrypted:false
                        SSDEEP:
                        MD5:BE7F763B7E9AE52506437F4A4D449467
                        SHA1:F1F29600019EB0661B80AF0671DCDE42FC0DAB1F
                        SHA-256:6864794F325EAE5AC023B70BF4EB32CBEC0B3E667D2F01EB982F74EA72609758
                        SHA-512:9D9F7EDF03296EBCA94D12EA2772B7171CB1697DE62293ACB1D07D7C5585136C79F7F5153646834C3B5CE92316B13282DA971A72B6F53755CD2FA530DC71CB15
                        Malicious:false
                        Reputation:unknown
                        Preview:X.......oy retne............................J...Q..2r/...........{.>..W....2r/..........;..2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:E7A0B673A9033C353AC18CC933CD9DAA
                        SHA1:5175F75C8E34DC8B7D0B60015ED7642797489F24
                        SHA-256:1A8876D27C63693499E7C313DC8ECB2334A14FB500F6D2D0142F48E26EEBB095
                        SHA-512:F9A61438E0000D25554B219AC22EFD1F6A9D1BD310DE891C571A64F84F6AE863307ECB97C8241229C06BD022D1419DFE8EFE26C33742D44C4D936A66C0ED605A
                        Malicious:false
                        Reputation:unknown
                        Preview:(....s..oy retne.........................`..2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:E7A0B673A9033C353AC18CC933CD9DAA
                        SHA1:5175F75C8E34DC8B7D0B60015ED7642797489F24
                        SHA-256:1A8876D27C63693499E7C313DC8ECB2334A14FB500F6D2D0142F48E26EEBB095
                        SHA-512:F9A61438E0000D25554B219AC22EFD1F6A9D1BD310DE891C571A64F84F6AE863307ECB97C8241229C06BD022D1419DFE8EFE26C33742D44C4D936A66C0ED605A
                        Malicious:false
                        Reputation:unknown
                        Preview:(....s..oy retne.........................`..2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):48
                        Entropy (8bit):2.9555576533947305
                        Encrypted:false
                        SSDEEP:
                        MD5:D6C6D9ED754CC5E0BA787294D6885C12
                        SHA1:8836C55B71B60EFB25F3E7E804A5DEE3AE0FF16A
                        SHA-256:DE684FFD5FC5A3FC1D7B8A9DE5BD54031E75B14BEE097F0BD537361F10DF6154
                        SHA-512:E60A40E2C7D9B2ED8A77B827260E2D5F721ECC6F9C303FBB5B85DB8A89C60914491032C57AD9CD375780FCA3D44C807910E9CCB45D90D1D8275AC43A1951B1DC
                        Malicious:false
                        Reputation:unknown
                        Preview:(....a..oy retne.........................c..2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:D6C6D9ED754CC5E0BA787294D6885C12
                        SHA1:8836C55B71B60EFB25F3E7E804A5DEE3AE0FF16A
                        SHA-256:DE684FFD5FC5A3FC1D7B8A9DE5BD54031E75B14BEE097F0BD537361F10DF6154
                        SHA-512:E60A40E2C7D9B2ED8A77B827260E2D5F721ECC6F9C303FBB5B85DB8A89C60914491032C57AD9CD375780FCA3D44C807910E9CCB45D90D1D8275AC43A1951B1DC
                        Malicious:false
                        Reputation:unknown
                        Preview:(....a..oy retne.........................c..2r/.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x3, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):28672
                        Entropy (8bit):0.45684974566872455
                        Encrypted:false
                        SSDEEP:
                        MD5:9FC7EF44C3E187CAF1D3BE88F7DFA770
                        SHA1:3B21848045E9261EF660E84CAF0F8C0849A0AEB5
                        SHA-256:3FBAFFFE85945F96AA52CB1C28F17DFB6AD8BAF9E22C0AB2287868CCC446D5D2
                        SHA-512:CF9D9FD07A21317D55D49FAFD39F8CA6375CB2C8A17AF34417EDC4F0766969CDEDCBDEE953C6AD332B46E44F5844A59FC665A3F68780FB7E2D386D3227E507B2
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g.....8...n................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:9A49C9C8869A43637F14DC8D7B580EA9
                        SHA1:024F1B2B30E0D0F87129AD7AB2A2C72530AF0EA8
                        SHA-256:A092EF5947BE3DBB06025CCC58CDA5BDAA30CB2E0CE364FC8BC1F3D912CB8789
                        SHA-512:A7A72F725A740F30D5CB02B0CE105C2457A96B2F1E32EEBAF41C563CA81C45E24F4D189F5BD29235BAA92FCE19F60C94720A611DF47534F546923222F702D49B
                        Malicious:false
                        Reputation:unknown
                        Preview:.........................................<..2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 14, database pages 8, cookie 0xe, schema 4, UTF-8, version-valid-for 14
                        Category:modified
                        Size (bytes):32768
                        Entropy (8bit):0.494709561094235
                        Encrypted:false
                        SSDEEP:
                        MD5:CF7760533536E2AF66EA68BC3561B74D
                        SHA1:E991DE2EA8F42AE7E0A96A3B3B8AF87A689C8CCD
                        SHA-256:E1F183FAE5652BA52F5363A7E28BF62B53E7781314C9AB76B5708AF9918BE066
                        SHA-512:38B15FE7503F6DFF9D39BC74AA0150A7FF038029F973BE9A37456CDE6807BCBDEAB06E624331C8DFDABE95A5973B0EE26A391DB2587E614A37ADD50046470162
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j...i............t...c................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):337
                        Entropy (8bit):5.358812044459113
                        Encrypted:false
                        SSDEEP:
                        MD5:6EFE2C4A79A3CE03341FB5DAEF9DE392
                        SHA1:DB7E86F4ED3C9EB13836FA545560F53BE818CEBC
                        SHA-256:69CCB11801D79EC628D98FE2E86BAFF29BD4750A0476FC19204C676203CF1172
                        SHA-512:D62154E62CE9B04A8987C7FC60208130722C7A6830CC306311C5C6A705C85E67F847C16BD275FAF6168E6BB8C33BBACE299DEC9531B28E679FE74239674C46A2
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.568 1a88 Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Extension Rules since it was missing..2024/03/14-11:33:44.603 1a88 Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Extension Rules/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):341
                        Entropy (8bit):5.3575799481135356
                        Encrypted:false
                        SSDEEP:
                        MD5:4A93E6137F13D53C49C6A445E6E9F67F
                        SHA1:7620505EFE64433C469B9A933BC4D605F76291F8
                        SHA-256:7B0A8C5950B5B9B76C38D9D887DACCFAB0D523D47B4A89FBFF008EEB9074D896
                        SHA-512:9610AFAD3B8BF3C0510E3D2CFC22FCA1C1F2F6C635FB9EC82607437213119FA959F71C2B9255C528FBF6AA9169A08726F5F7FD73183E81E54663E547EC02ACC2
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.672 1a88 Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Extension Scripts since it was missing..2024/03/14-11:33:44.757 1a88 Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Extension Scripts/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:OpenPGP Secret Key
                        Category:dropped
                        Size (bytes):41
                        Entropy (8bit):4.704993772857998
                        Encrypted:false
                        SSDEEP:
                        MD5:5AF87DFD673BA2115E2FCF5CFDB727AB
                        SHA1:D5B5BBF396DC291274584EF71F444F420B6056F1
                        SHA-256:F9D31B278E215EB0D0E9CD709EDFA037E828F36214AB7906F612160FEAD4B2B4
                        SHA-512:DE34583A7DBAFE4DD0DC0601E8F6906B9BC6A00C56C9323561204F77ABBC0DC9007C480FFE4092FF2F194D54616CAF50AECBD4A1E9583CAE0C76AD6DD7C2375B
                        Malicious:false
                        Reputation:unknown
                        Preview:.|.."....leveldb.BytewiseComparator......
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):114
                        Entropy (8bit):1.8784775129881184
                        Encrypted:false
                        SSDEEP:
                        MD5:891A884B9FA2BFF4519F5F56D2A25D62
                        SHA1:B54A3C12EE78510CB269FB1D863047DD8F571DEA
                        SHA-256:E2610960C3757D1757F206C7B84378EFA22D86DCF161A98096A5F0E56E1A367E
                        SHA-512:CD50C3EE4DFB9C4EC051B20DD1E148A5015457EE0C1A29FFF482E62291B32097B07A069DB62951B32F209FD118FD77A46B8E8CC92DA3EAAE6110735D126A90EE
                        Malicious:false
                        Reputation:unknown
                        Preview:.f.5................f.5................f.5................f.5................f.5................f.5...............
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):337
                        Entropy (8bit):5.30588037448959
                        Encrypted:false
                        SSDEEP:
                        MD5:C5A9C03BFED44225672786A858FD8BF2
                        SHA1:C33D2D9D23F95B1CD1A675DB104C8AFBA8C488B6
                        SHA-256:87D25C7D319541A765C0D5910782D439A82B338B24909E09B92DF1266D1887A3
                        SHA-512:97483975C3427C517B3102E0FCFBAFC5B7088BC6985B17DC6E28F3B8FEA3A782B88D4EC9753DBA0AFD6A833BEE1E1F73B32742F91378FB4D6FCBA0B86E34F425
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:45.417 1a24 Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Extension State since it was missing..2024/03/14-11:33:45.456 1a24 Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Extension State/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 2, database pages 11, cookie 0x8, schema 4, UTF-8, version-valid-for 2
                        Category:dropped
                        Size (bytes):22528
                        Entropy (8bit):2.303933586658834
                        Encrypted:false
                        SSDEEP:
                        MD5:F5CE6A1BAF49376C239B41F13C48AAA4
                        SHA1:7379D63B81721FACAB579718710CBF6698F09D2D
                        SHA-256:C7664A3E4CBF08C94C181E1AAA7C7A625DF62C4D0986D6F08F293DACC0F15AE7
                        SHA-512:AA80C452DC830A149A854FED86CCE8C1799764427D1CC10EC2D31CC974D04521E5FD6688890633D9225F0A0A3302A0B7ACC09A6A893AB7E1608585B0BB91FF30
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g....._.c...~.2.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................s...;+...indexfavicon_bitmaps_icon_idfavico
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:539A6A226EB8E63D08147FDBBC7ECC4D
                        SHA1:46006E35B6F91C00C828E4212DF7F55426107EC6
                        SHA-256:1809DACFEB101B1DD87AD2DBE5D2A0F0C717E62E194E713E5504004F23A6BDAE
                        SHA-512:62F37E395EC4D02CA784D20D2BBD99BBF2BF114F3469CB7391C6AB20F44B10BA5F1FA28D270BCBDAC00B50D4710FC7C261F933924C1064D50FA6F528E8776C32
                        Malicious:false
                        Reputation:unknown
                        Preview:........................................3...2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 2, database pages 38, cookie 0x1f, schema 4, UTF-8, version-valid-for 2
                        Category:dropped
                        Size (bytes):155648
                        Entropy (8bit):0.606185420472909
                        Encrypted:false
                        SSDEEP:
                        MD5:7C17FA640C10B47E03664EF161D7E077
                        SHA1:7046FC662652C7D66F41B16F512256E2A6FFFF05
                        SHA-256:40110F92C42BDBC167171341D19A39C7B7FCD8FFF4864CF4FE6644811153E49D
                        SHA-512:D3E311A0FC77B7FD4D32EBDF59E8EA1B0A68613B6BDFACED93DC43D0E2FC7885D6600D3E5147892347E0A4A2199167BD7185EF37CC4B31DEE05B12385D2DA144
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ .......&..................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):16
                        Entropy (8bit):3.2743974703476995
                        Encrypted:false
                        SSDEEP:
                        MD5:46295CAC801E5D4857D09837238A6394
                        SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                        SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                        SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                        Malicious:false
                        Reputation:unknown
                        Preview:MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:46295CAC801E5D4857D09837238A6394
                        SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                        SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                        SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                        Malicious:false
                        Reputation:unknown
                        Preview:MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:modified
                        Size (bytes):349
                        Entropy (8bit):5.364237584734686
                        Encrypted:false
                        SSDEEP:
                        MD5:D9C3F78C40D95EA2C239C7F66BC1C070
                        SHA1:40150F5E8B7050C1F25603431AB3E47035276F54
                        SHA-256:77F7BF104CAFB73A581CF7A339D2F3D6CE58785B9AE172337984A8386EB15E7E
                        SHA-512:09ADFC6644646EDC47DA91E817E89D2715CDB787576BE36C0FC810E901C27675283497CC420E521F7FF4D24912C2B708860DBDD51A8973EE2850D8F97DCBC8D8
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:45.231 1c64 Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Local Storage\leveldb since it was missing..2024/03/14-11:33:45.276 1c64 Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Local Storage\leveldb/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 3, database pages 11, cookie 0x6, schema 4, UTF-8, version-valid-for 3
                        Category:dropped
                        Size (bytes):45056
                        Entropy (8bit):0.40293591932113104
                        Encrypted:false
                        SSDEEP:
                        MD5:ADC0CFB8A1A20DE2C4AB738B413CBEA4
                        SHA1:238EF489E5FDC6EBB36F09D415FB353350E7097B
                        SHA-256:7C071E36A64FB1881258712C9880F155D9CBAC693BADCC391A1CB110C257CC37
                        SHA-512:38C8B7293B8F7BEF03299BAFB981EEEE309945B1BDE26ACDAD6FDD63247C21CA04D493A1DDAFC3B9A1904EFED998E9C7C0C8E98506FD4AC0AB252DFF34566B66
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.......=......\.t.+.>...,...=........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):40
                        Entropy (8bit):4.1275671571169275
                        Encrypted:false
                        SSDEEP:
                        MD5:20D4B8FA017A12A108C87F540836E250
                        SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
                        SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
                        SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
                        Malicious:false
                        Reputation:unknown
                        Preview:{"SDCH":{"dictionaries":{},"version":2}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2
                        Entropy (8bit):1.0
                        Encrypted:false
                        SSDEEP:
                        MD5:D751713988987E9331980363E24189CE
                        SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                        SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                        SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                        Malicious:false
                        Reputation:unknown
                        Preview:[]
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:modified
                        Size (bytes):111
                        Entropy (8bit):4.718418993774295
                        Encrypted:false
                        SSDEEP:
                        MD5:285252A2F6327D41EAB203DC2F402C67
                        SHA1:ACEDB7BA5FBC3CE914A8BF386A6F72CA7BAA33C6
                        SHA-256:5DFC321417FC31359F23320EA68014EBFD793C5BBED55F77DAB4180BBD4A2026
                        SHA-512:11CE7CB484FEE66894E63C31DB0D6B7EF66AD0327D4E7E2EB85F3BCC2E836A3A522C68D681E84542E471E54F765E091EFE1EE4065641B0299B15613EB32DCC0D
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"http_server_properties":{"servers":[],"version":5},"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):59
                        Entropy (8bit):4.619434150836742
                        Encrypted:false
                        SSDEEP:
                        MD5:2800881C775077E1C4B6E06BF4676DE4
                        SHA1:2873631068C8B3B9495638C865915BE822442C8B
                        SHA-256:226EEC4486509917AA336AFEBD6FF65777B75B65F1FB06891D2A857A9421A974
                        SHA-512:E342407AB65CC68F1B3FD706CD0A37680A0864FFD30A6539730180EDE2CDCD732CC97AE0B9EF7DB12DA5C0F83E429DF0840DBF7596ACA859A0301665E517377B
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 8, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 8
                        Category:modified
                        Size (bytes):20480
                        Entropy (8bit):0.8749427078771509
                        Encrypted:false
                        SSDEEP:
                        MD5:262B3420362AB99963422990784E6B31
                        SHA1:73865FEE5FA3405D08DD994CE6246D778D077B94
                        SHA-256:F55499B4D598A128B3EEB2A8967994949AB481C6197CE379B4F2C0287C291EE6
                        SHA-512:31BB622442503DAC77E648A57FE4213C364A4EA40987C19A892E560BCE66501BB810C7A720B387EC6CD636225C6E39195717FC282E3E914AB88D05E71A902779
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j...$......g..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:2800881C775077E1C4B6E06BF4676DE4
                        SHA1:2873631068C8B3B9495638C865915BE822442C8B
                        SHA-256:226EEC4486509917AA336AFEBD6FF65777B75B65F1FB06891D2A857A9421A974
                        SHA-512:E342407AB65CC68F1B3FD706CD0A37680A0864FFD30A6539730180EDE2CDCD732CC97AE0B9EF7DB12DA5C0F83E429DF0840DBF7596ACA859A0301665E517377B
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:2800881C775077E1C4B6E06BF4676DE4
                        SHA1:2873631068C8B3B9495638C865915BE822442C8B
                        SHA-256:226EEC4486509917AA336AFEBD6FF65777B75B65F1FB06891D2A857A9421A974
                        SHA-512:E342407AB65CC68F1B3FD706CD0A37680A0864FFD30A6539730180EDE2CDCD732CC97AE0B9EF7DB12DA5C0F83E429DF0840DBF7596ACA859A0301665E517377B
                        Malicious:false
                        Reputation:unknown
                        Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:D751713988987E9331980363E24189CE
                        SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                        SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                        SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                        Malicious:false
                        Reputation:unknown
                        Preview:[]
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:20D4B8FA017A12A108C87F540836E250
                        SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
                        SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
                        SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
                        Malicious:false
                        Reputation:unknown
                        Preview:{"SDCH":{"dictionaries":{},"version":2}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 3, database pages 9, cookie 0x6, schema 4, UTF-8, version-valid-for 3
                        Category:dropped
                        Size (bytes):36864
                        Entropy (8bit):0.36515621748816035
                        Encrypted:false
                        SSDEEP:
                        MD5:25363ADC3C9D98BAD1A33D0792405CBF
                        SHA1:D06E343087D86EF1A06F7479D81B26C90A60B5C3
                        SHA-256:6E019B8B9E389216D5BDF1F2FE63F41EF98E71DA101F2A6BE04F41CC5954532D
                        SHA-512:CF7EEE35D0E00945AF221BEC531E8BF06C08880DA00BD103FA561BC069D7C6F955CBA3C1C152A4884601E5A670B7487D39B4AE9A4D554ED8C14F129A74E555F7
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.......X..g...}.....$.X..............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:B1E5FDD8B4BBDB36F25C9024E8068B9E
                        SHA1:F35BF34B84454EC98A82C80C8F3D80084A0657A5
                        SHA-256:D586E2573A546D6B53F66EBC20BF6B36ADB4DDACAD2A79AE11F721147157EEF6
                        SHA-512:DCC08D4937A252AFD010E96C7B997FAC3770785D117022EFF8F5C70E2178A342D2D37B97FEEA7F7A0579C8083B398D0974F65294E3FC89A7C0BFC979826BB5A2
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:B1E5FDD8B4BBDB36F25C9024E8068B9E
                        SHA1:F35BF34B84454EC98A82C80C8F3D80084A0657A5
                        SHA-256:D586E2573A546D6B53F66EBC20BF6B36ADB4DDACAD2A79AE11F721147157EEF6
                        SHA-512:DCC08D4937A252AFD010E96C7B997FAC3770785D117022EFF8F5C70E2178A342D2D37B97FEEA7F7A0579C8083B398D0974F65294E3FC89A7C0BFC979826BB5A2
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:B1E5FDD8B4BBDB36F25C9024E8068B9E
                        SHA1:F35BF34B84454EC98A82C80C8F3D80084A0657A5
                        SHA-256:D586E2573A546D6B53F66EBC20BF6B36ADB4DDACAD2A79AE11F721147157EEF6
                        SHA-512:DCC08D4937A252AFD010E96C7B997FAC3770785D117022EFF8F5C70E2178A342D2D37B97FEEA7F7A0579C8083B398D0974F65294E3FC89A7C0BFC979826BB5A2
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:B1E5FDD8B4BBDB36F25C9024E8068B9E
                        SHA1:F35BF34B84454EC98A82C80C8F3D80084A0657A5
                        SHA-256:D586E2573A546D6B53F66EBC20BF6B36ADB4DDACAD2A79AE11F721147157EEF6
                        SHA-512:DCC08D4937A252AFD010E96C7B997FAC3770785D117022EFF8F5C70E2178A342D2D37B97FEEA7F7A0579C8083B398D0974F65294E3FC89A7C0BFC979826BB5A2
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):182
                        Entropy (8bit):4.2629097520179995
                        Encrypted:false
                        SSDEEP:
                        MD5:643E00B0186AA80523F8A6BED550A925
                        SHA1:EC4056125D6F1A8890FFE01BFFC973C2F6ABD115
                        SHA-256:A0C9ABAE18599F0A65FC654AD36251F6330794BEA66B718A09D8B297F3E38E87
                        SHA-512:D91A934EAF7D9D669B8AD4452234DE6B23D15237CB4D251F2C78C8339CEE7B4F9BA6B8597E35FE8C81B3D6F64AE707C68FF492903C0EDC3E4BAF2C6B747E247D
                        Malicious:false
                        Reputation:unknown
                        Preview:Microsoft Edge settings and storage represent user-selected preferences and information and MUST not be extracted, overwritten or modified except through Microsoft Edge defined APIs.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:E4FCBFA76ED5A068F1A19DA4B50FC1AA
                        SHA1:5A0404F32B768884C9720A0CAAB4778A058CE408
                        SHA-256:9693581A26603B31DA653313F7839012587779C8A9C5F36E0118A80E0EC6E0BD
                        SHA-512:E5209C1A02EEE48CC533DAFC3819C4EA03BFF109172EF511AC8F934C7803C564C83A78F33CF9C0011C1C89C9779BB30D5AAA900DF8249C1ED63BB80D48DDEB0A
                        Malicious:false
                        Reputation:unknown
                        Preview:{"extensions":{"settings":{"dgiklkfkllikcanfonkcabmbdfmgleag":{"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13354886024563976","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13354886024563976","location":5,"manifest":{"content_capabilities":{"include_globs":["https://*excel.officeapps.live.com/*","https://*onenote.officeapps.live.com/*","https://*powerpoint.officeapps.live.com/*","https://*word-edit.officeapps.live.com/*","https://*excel.officeapps.live.com.mcas.ms/*","https://*onenote.officeapps.live.com.mcas.ms/*","https://*word-edit.officeapps.live.com.mcas.ms/*","https://*excel.partner.officewebapps.cn/*","https://*onenote.partner.officewebapps.cn/*","https://*powerpoint.partner.officewebapps.cn/*","https://*word-edit.partner.officewebapps.cn/*","https://*excel.gov.online.office365.us/*","
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:modified
                        Size (bytes):164
                        Entropy (8bit):4.992239230047774
                        Encrypted:false
                        SSDEEP:
                        MD5:F852150784D51DA28E96E5D591DD3AF2
                        SHA1:F16D8634731316CE3529B23F9447D622CE49C14D
                        SHA-256:F2FDB4742AC44653721A6F2194E1C63C708CBB576BCB4D4008EA384347D4C225
                        SHA-512:DC9CDBC87439ABAB3CC163CAA2BD6E30A8E8B94964E44AD419D77CB43DA932143FE014DBE5D3F7FABEC8612C7DA5206C478E5DDD966049E6D4FD934D1F9AB2EC
                        Malicious:false
                        Reputation:unknown
                        Preview:*...#................version.1..namespace-z4.*s................next-map-id.1.Tnamespace-3a03ff82_8a01_489a_9d25_dd8473874ca5-https://delegated.identity.adobe.com/.0
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):337
                        Entropy (8bit):5.319877978815005
                        Encrypted:false
                        SSDEEP:
                        MD5:EC204171E18C12B1B41F56E7B1BB9090
                        SHA1:F4ECEC5E46F31CFE1CA973227BB6C5A1FBE72E79
                        SHA-256:4E118F020BE5D66AADE551FB446237343CD00DC72FC25E8B051E6894035C4BCC
                        SHA-512:F09621F4D725595187D5CC1F5D5118F67EF87BCBFBAFFCE91B7A98591F1D88E2D4CCC00A38B1F4357921911BD8BD00E6BFFB0D597F0E853775ACAE8A999C1B73
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:34:53.930 1c64 Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Session Storage since it was missing..2024/03/14-11:34:53.971 1c64 Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Session Storage/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):365
                        Entropy (8bit):5.2394072922030634
                        Encrypted:false
                        SSDEEP:
                        MD5:49B55E51F61CF32E354DBDF51952E2A5
                        SHA1:C6DC6F5FD38D44B77788157F88A1FC7FC32ED3A3
                        SHA-256:ACD15C32113DC8D2CCA9F5B26F075D62393D7D0BCAA9A2F933BB0FC68BF74210
                        SHA-512:4EBC54ACE3A2B4C373011127D827E1A77D834C0AF1D67DD1C87F1AAA4E768A13DC580526C99EB5CE7ECC4E9FDAE70185C7A53311738917B0899FE257DA6982F3
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.477 1aec Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Site Characteristics Database since it was missing..2024/03/14-11:33:44.534 1aec Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Site Characteristics Database/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):46
                        Entropy (8bit):4.019797536844534
                        Encrypted:false
                        SSDEEP:
                        MD5:90881C9C26F29FCA29815A08BA858544
                        SHA1:06FEE974987B91D82C2839A4BB12991FA99E1BDD
                        SHA-256:A2CA52E34B6138624AC2DD20349CDE28482143B837DB40A7F0FBDA023077C26A
                        SHA-512:15F7F8197B4FC46C4C5C2570FB1F6DD73CB125F9EE53DFA67F5A0D944543C5347BDAB5CCE95E91DD6C948C9023E23C7F9D76CFF990E623178C92F8D49150A625
                        Malicious:false
                        Reputation:unknown
                        Preview:...n'................_mts_schema_descriptor...
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):341
                        Entropy (8bit):5.315290773249983
                        Encrypted:false
                        SSDEEP:
                        MD5:7CB81EB2AA0614345885452EDCAB5902
                        SHA1:5CBD15704016BB294ADAF01CE86DE75FEBB44793
                        SHA-256:736C0F93A2A44DCB14D5FB46F6958BB09895DAAA24F213E582B6135E3466FF61
                        SHA-512:596B0683D6696E6EA83124CB29107D4ADB7F813366F60133639B22AFD79F0769843018FB83AE13216014AB036F7E3E7F1236735E6542A805D21646BDD1FE0BE1
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:45.311 1a24 Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Sync Data\LevelDB since it was missing..2024/03/14-11:33:45.326 1a24 Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\Sync Data\LevelDB/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 1
                        Category:dropped
                        Size (bytes):20480
                        Entropy (8bit):0.3528485475628876
                        Encrypted:false
                        SSDEEP:
                        MD5:F2B4FB2D384AA4E4D6F4AEB0BBA217DC
                        SHA1:2CD70CFB3CE72D9B079170C360C1F563B6BF150E
                        SHA-256:1ECC07CD1D383472DAD33D2A5766625009EA5EACBAEDE2417ADA1842654CBBC8
                        SHA-512:48D03991660FA1598B3E002F5BC5F0F05E9696BCB2289240FA8CCBB2C030CDD23245D4ECC0C64DA1E7C54B092C3E60AE0427358F63087018BF0E6CEDC471DD34
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j..........g.....4....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):131072
                        Entropy (8bit):0.0033616753448762224
                        Encrypted:false
                        SSDEEP:
                        MD5:3C1578EBA4F6FE57A63A185304F9F25A
                        SHA1:6519A97F209BDE6CAE2592930ACF8B0E03ECF9BF
                        SHA-256:7CC4A2FE921C50D385C1FF3817BD21C9F1E505EFCE4C4BEBA79E6A08AF4102E9
                        SHA-512:9B88D23B8C1B9EA3E2BD108FAD782768EE33AE41B70F6FAB18C2D267D01BAF06009A504146DA453ADC77EB984F6662074B19101B3955D17B73F3620003FEFF58
                        Malicious:false
                        Reputation:unknown
                        Preview:VLnk.....?.......2.oZ..2................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 3, database pages 87, cookie 0x36, schema 4, UTF-8, version-valid-for 3
                        Category:dropped
                        Size (bytes):178176
                        Entropy (8bit):0.9328712687751187
                        Encrypted:false
                        SSDEEP:
                        MD5:6B2D5ED0A90C99FD05D58FE8E924C886
                        SHA1:34E1103E18E57E9D1769C89DFB2DAD84BFDD54B5
                        SHA-256:2873E973AB5B91CD07405FD5D35E2A843A408AD53696372BEC794F4582368E49
                        SHA-512:08373748A19C0381866090CB60929A4642BB624AF777240CB63B918180CEEE0C80DFAD852830FC6821AD6266DF1A865940A90D2089621F612617C5E92A4B29B2
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ .......W...........6......................................................j............W........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):2568
                        Entropy (8bit):0.06569804787746027
                        Encrypted:false
                        SSDEEP:
                        MD5:62679C3C4C6500F1253D93ED501A5548
                        SHA1:E51C8EE4BA10DF5B487236BD383B6E2D9F980B89
                        SHA-256:4EC6B01C757BDCD2000C61CEBBDAF60D67B07C0B0346935FF17EBC584FB44BD3
                        SHA-512:83EF79266D128E0F5036FE58AA78060036B1DC0A72D1E4EFCC3BB20CD7E249ACBFCA54594AFC5AA82F34CF3E28C6FBAFC20A5E23801C30AFA63906C69950AA59
                        Malicious:false
                        Reputation:unknown
                        Preview:.............S.~...W....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):5561
                        Entropy (8bit):4.781912917033544
                        Encrypted:false
                        SSDEEP:
                        MD5:B1E5FDD8B4BBDB36F25C9024E8068B9E
                        SHA1:F35BF34B84454EC98A82C80C8F3D80084A0657A5
                        SHA-256:D586E2573A546D6B53F66EBC20BF6B36ADB4DDACAD2A79AE11F721147157EEF6
                        SHA-512:DCC08D4937A252AFD010E96C7B997FAC3770785D117022EFF8F5C70E2178A342D2D37B97FEEA7F7A0579C8083B398D0974F65294E3FC89A7C0BFC979826BB5A2
                        Malicious:false
                        Reputation:unknown
                        Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13354886025383627","alternate_error_pages":{"backup":true,"enabled":false},"autocomplete":{"retention_policy_last_version":117},"autofill":{"autostuff_enabled":false,"credit_card_enabled":false,"custom_data_enabled":false,"custom_data_fill_enabled":false,"custom_data_identify_info_from_form_enabled":false,"custom_data_save_enabled":false},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false},"browser_content_container_height":800,"browser_content_container_width":1272,"browser_content_container_x":0,"browser_content_container_y":0,"countryid_at_install":17224,"credentials_enable_service":false,"dips_timer_last_update":"13354886025263907","domain_diversity":{"last_reporting_timestamp":"13354886024820163"},"dual_engine":{"consumer_mode":{"ie_user":false},"consumer_site_list_with_ie_entries":false,"consumer_sitelist_location":"","consumer_sitelist_version":"","external_consumer_shared_cookie_data"
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 2, database pages 4, cookie 0x2, schema 4, UTF-8, version-valid-for 2
                        Category:dropped
                        Size (bytes):16384
                        Entropy (8bit):0.35226517389931394
                        Encrypted:false
                        SSDEEP:
                        MD5:D2CCDC36225684AAE8FA563AFEDB14E7
                        SHA1:3759649035F23004A4C30A14C5F0B54191BEBF80
                        SHA-256:080AEE864047C67CB1586A5BA5EDA007AFD18ECC2B702638287E386F159D7AEE
                        SHA-512:1A915AF643D688CA68AEDC1FF26C407D960D18DFDE838B417C437D7ADAC7B91C906E782DCC414784E64287915BD1DE5BB6A282E59AA9FEB8C384B4D4BC5F70EC
                        Malicious:false
                        Reputation:unknown
                        Preview:SQLite format 3......@ ..........................................................................j.......Q......Q......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):100
                        Entropy (8bit):3.2073824618951257
                        Encrypted:false
                        SSDEEP:
                        MD5:72BE20D992CF12FF688D9C672A7EDAFD
                        SHA1:7D01A82EED7DD41776B04E0F9CC80059EA9715E3
                        SHA-256:C83848B49A734F0892972625B70108D27ABFC1A5B799D91C3CE11B89D5E51194
                        SHA-512:ED0A108AB089F3CDE11DA9409FF15EC94442B726863423C0E87EEAF47A3B112ADB4B92D4D28BA0B0F01A2DA112821D010186D3E40D0804DCCA6C33A07385382D
                        Malicious:false
                        Reputation:unknown
                        Preview:A..r.................20_1_1...1.,U.................20_1_1...1..&f.................&f...............
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):337
                        Entropy (8bit):5.369088192308102
                        Encrypted:false
                        SSDEEP:
                        MD5:8444D26D2D0B385F3F7013CE891054A8
                        SHA1:BC5C731D4979113145D590E1FAF81EEC6A7A7E44
                        SHA-256:FFAD697747EE4894B1641F075F9A6CFE14AA5974999F6588AF54FED8302C4673
                        SHA-512:F9D56E1F04BE733B005B0FBA70F7ED7A1BB4F2BCA1A02969EDD50F8C97108D6CBE10F425A2DDA8DEA1207D72D6810F845EC58050B8AD120FA8DDA773C5A43CDD
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.937 1aec Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\shared_proto_db since it was missing..2024/03/14-11:33:44.979 1aec Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\shared_proto_db/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):443
                        Entropy (8bit):3.8952441121020356
                        Encrypted:false
                        SSDEEP:
                        MD5:80BB493A17B2450E66F226F917C7300A
                        SHA1:98F75C94E81F24F8A9E2588D269383BCF2D77004
                        SHA-256:F57DEBC890ED00BC7EEF8F3245C70B49FFAF6E211F12D91CC7B99772CB4A1D81
                        SHA-512:3A92FE57E98B74FC5CB8F444DA765C55223A5D7CA806190A2AE19EAC376CF4D2E3846C6CC21208EC3935B5718E8CB4FC30FF3DF10A9EE8452636A5433F6D66BF
                        Malicious:false
                        Reputation:unknown
                        Preview:.h.6.................__global... .t...................__global... .9..b.................33_..........................33_........v.................21_.....vuNX.................21_.....<...................20_...../...................20_.....W.J+.................19_......qY.................18_.......w<.................20_........4.................18_..........................19_.....%.{..................9_.....f..U.................9_.....
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text
                        Category:dropped
                        Size (bytes):355
                        Entropy (8bit):5.3772371939183605
                        Encrypted:false
                        SSDEEP:
                        MD5:67DD5B969262CFEDDB676EAAF7A08311
                        SHA1:54D828D57E9CC553851DF21537BA47F716DA855F
                        SHA-256:2DE47EE15944E0BD13ACB64EBA5222503918C52439623F4A3D505115894F0CE6
                        SHA-512:C421F6D925BC7C80CF9218A6F7BA86073083A477E015447A8DC6C92F35503282F4F95AA5F2AA458AC64C58855697E2BFA30A4C3057EB3D0B57CED97CF5762434
                        Malicious:false
                        Reputation:unknown
                        Preview:2024/03/14-11:33:44.821 1aec Creating DB C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\shared_proto_db\metadata since it was missing..2024/03/14-11:33:44.865 1aec Reusing MANIFEST C:\Users\user\AppData\Local\Temp\{D203A074-44CF-40A3-AB92-7019F99D2AE5}\EBWebView\Default\shared_proto_db\metadata/MANIFEST-000001.
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 512, next free block index 3284796609, field type 0
                        Category:dropped
                        Size (bytes):8192
                        Entropy (8bit):0.01057775872642915
                        Encrypted:false
                        SSDEEP:
                        MD5:CF89D16BB9107C631DAABF0C0EE58EFB
                        SHA1:3AE5D3A7CF1F94A56E42F9A58D90A0B9616AE74B
                        SHA-256:D6A5FE39CD672781B256E0E3102F7022635F1D4BB7CFCC90A80FFFE4D0F3877E
                        SHA-512:8CB5B059C8105EB91E74A7D5952437AAA1ADA89763C5843E7B0F1B93D9EBE15ED40F287C652229291FAC02D712CF7FF5ECECEF276BA0D7DDC35558A3EC3F77B0
                        Malicious:false
                        Reputation:unknown
                        Preview:............$...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:3AA81DF2BE870615FEA861A1FD009B48
                        SHA1:8E39080C52DA6872F637B51C46D57038F879DBE1
                        SHA-256:3678DF162B615C55CA5D88E7D75AEBFAD7513E9C11E9E26B30FABCE1867590E7
                        SHA-512:83580DEAF2ECADA20AD7F206D5EC651EEC6FFC1A5CD842535FAFBD59BA5CA2E5C55E8A0B940288690CED782E16C0B22BA3204225ABC5715D6CE2BC41BA456E29
                        Malicious:false
                        Reputation:unknown
                        Preview:...........................................2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.47693366977411E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:58682A62B8DAB712FF0D5651DCB6A2B6
                        SHA1:C1754E8BBDC8670A2D59997DFE82E0E822135EEF
                        SHA-256:EE3EFBDD062BA118ADFDAA11DA8CCAFD0B362B2FAB6615B4DFF0EAF60645E18C
                        SHA-512:D229ED9013AC1285E3C5EF45BFE42C63AD92C0B8B16C34B6BB2D15DCB3FFF243ED5B5C28BB45F01B67B44240AB6963887BEFC127478DA98981DB212649680F82
                        Malicious:false
                        Reputation:unknown
                        Preview:...........................................2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):13
                        Entropy (8bit):2.7192945256669794
                        Encrypted:false
                        SSDEEP:
                        MD5:BF16C04B916ACE92DB941EBB1AF3CB18
                        SHA1:FA8DAEAE881F91F61EE0EE21BE5156255429AA8A
                        SHA-256:7FC23C9028A316EC0AC25B09B5B0D61A1D21E58DFCF84C2A5F5B529129729098
                        SHA-512:F0B7DF5517596B38D57C57B5777E008D6229AB5B1841BBE74602C77EEA2252BF644B8650C7642BD466213F62E15CC7AB5A95B28E26D3907260ED1B96A74B65FB
                        Malicious:false
                        Reputation:unknown
                        Preview:117.0.2045.47
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:7DD37A11D2EE09AD2154B0CA3D3072EF
                        SHA1:6C08C14DD9ED3361750E719516F3C90A4D48F6EF
                        SHA-256:502CFE1F850BEAF219A5FCD75301991C531C5BA023904037596B599C7E626252
                        SHA-512:14DDFBCD52A5CEE0C12EA7C6C73BBB73047A5EF69B36032B175FA16FCF6582E2D3E0B6DC89416FC49E848D552C14F60203F01DE2BE4955FE6B80B73A6446C722
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":7000,"pseudo_low_entropy_source":7198,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024056354","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:7DD37A11D2EE09AD2154B0CA3D3072EF
                        SHA1:6C08C14DD9ED3361750E719516F3C90A4D48F6EF
                        SHA-256:502CFE1F850BEAF219A5FCD75301991C531C5BA023904037596B599C7E626252
                        SHA-512:14DDFBCD52A5CEE0C12EA7C6C73BBB73047A5EF69B36032B175FA16FCF6582E2D3E0B6DC89416FC49E848D552C14F60203F01DE2BE4955FE6B80B73A6446C722
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":7000,"pseudo_low_entropy_source":7198,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024056354","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:7DD37A11D2EE09AD2154B0CA3D3072EF
                        SHA1:6C08C14DD9ED3361750E719516F3C90A4D48F6EF
                        SHA-256:502CFE1F850BEAF219A5FCD75301991C531C5BA023904037596B599C7E626252
                        SHA-512:14DDFBCD52A5CEE0C12EA7C6C73BBB73047A5EF69B36032B175FA16FCF6582E2D3E0B6DC89416FC49E848D552C14F60203F01DE2BE4955FE6B80B73A6446C722
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":7000,"pseudo_low_entropy_source":7198,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024056354","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:7DD37A11D2EE09AD2154B0CA3D3072EF
                        SHA1:6C08C14DD9ED3361750E719516F3C90A4D48F6EF
                        SHA-256:502CFE1F850BEAF219A5FCD75301991C531C5BA023904037596B599C7E626252
                        SHA-512:14DDFBCD52A5CEE0C12EA7C6C73BBB73047A5EF69B36032B175FA16FCF6582E2D3E0B6DC89416FC49E848D552C14F60203F01DE2BE4955FE6B80B73A6446C722
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":7000,"pseudo_low_entropy_source":7198,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024056354","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):0
                        Entropy (8bit):0.0
                        Encrypted:false
                        SSDEEP:
                        MD5:7DD37A11D2EE09AD2154B0CA3D3072EF
                        SHA1:6C08C14DD9ED3361750E719516F3C90A4D48F6EF
                        SHA-256:502CFE1F850BEAF219A5FCD75301991C531C5BA023904037596B599C7E626252
                        SHA-512:14DDFBCD52A5CEE0C12EA7C6C73BBB73047A5EF69B36032B175FA16FCF6582E2D3E0B6DC89416FC49E848D552C14F60203F01DE2BE4955FE6B80B73A6446C722
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":7000,"pseudo_low_entropy_source":7198,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024056354","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:FoxPro FPT, blocks size 768, next free block index 3284796353, field type 0
                        Category:dropped
                        Size (bytes):262512
                        Entropy (8bit):9.553120663130604E-4
                        Encrypted:false
                        SSDEEP:
                        MD5:11044DDF68170B5542C0AF81A2D4F882
                        SHA1:EAA6540AA3BB001E2078862D74DC03BE402197D0
                        SHA-256:D2A3C4B967F3563F858C864FDAA1B398761AFD25AA3E73BA221F35263897CCF1
                        SHA-512:FEDCA8956C4F4AC5218B675A35B49296569EC387A3290945BB6B63DD36358036D3F9EB4E28A919CF44CAC1F91EDBEB50004F32D0A3A8165374D844F42C3D98C1
                        Malicious:false
                        Reputation:unknown
                        Preview:..........................................}.2r/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):47
                        Entropy (8bit):4.3818353308528755
                        Encrypted:false
                        SSDEEP:
                        MD5:48324111147DECC23AC222A361873FC5
                        SHA1:0DF8B2267ABBDBD11C422D23338262E3131A4223
                        SHA-256:D8D672F953E823063955BD9981532FC3453800C2E74C0CC3653D091088ABD3B3
                        SHA-512:E3B5DB7BA5E4E3DE3741F53D91B6B61D6EB9ECC8F4C07B6AE1C2293517F331B716114BAB41D7935888A266F7EBDA6FABA90023EFFEC850A929986053853F1E02
                        Malicious:false
                        Reputation:unknown
                        Preview:customSettings_F95BA787499AB4FA9EFFF472CE383A14
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):35
                        Entropy (8bit):4.014438730983427
                        Encrypted:false
                        SSDEEP:
                        MD5:BB57A76019EADEDC27F04EB2FB1F1841
                        SHA1:8B41A1B995D45B7A74A365B6B1F1F21F72F86760
                        SHA-256:2BAE8302F9BD2D87AE26ACF692663DF1639B8E2068157451DA4773BD8BD30A2B
                        SHA-512:A455D7F8E0BE9A27CFB7BE8FE0B0E722B35B4C8F206CAD99064473F15700023D5995CC2C4FAFDB8FBB50F0BAB3EC8B241E9A512C0766AAAE1A86C3472C589FFD
                        Malicious:false
                        Reputation:unknown
                        Preview:{"forceServiceDetermination":false}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:ASCII text, with no line terminators
                        Category:dropped
                        Size (bytes):50
                        Entropy (8bit):3.9904355005135823
                        Encrypted:false
                        SSDEEP:
                        MD5:E144AFBFB9EE10479AE2A9437D3FC9CA
                        SHA1:5AAAC173107C688C06944D746394C21535B0514B
                        SHA-256:EB28E8ED7C014F211BD81308853F407DF86AEBB5F80F8E4640C608CD772544C2
                        SHA-512:837D15B3477C95D2D71391D677463A497D8D9FFBD7EB42E412DA262C9B5C82F22CE4338A0BEAA22C81A06ECA2DF7A9A98B7D61ECACE5F087912FD9BA7914AF3F
                        Malicious:false
                        Reputation:unknown
                        Preview:topTraffic_170540185939602997400506234197983529371
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):575056
                        Entropy (8bit):7.999649474060713
                        Encrypted:true
                        SSDEEP:
                        MD5:BE5D1A12C1644421F877787F8E76642D
                        SHA1:06C46A95B4BD5E145E015FA7E358A2D1AC52C809
                        SHA-256:C1CE928FBEF4EF5A4207ABAFD9AB6382CC29D11DDECC215314B0522749EF6A5A
                        SHA-512:FD5B100E2F192164B77F4140ADF6DE0322F34D7B6F0CF14AED91BACAB18BB8F195F161F7CF8FB10651122A598CE474AC4DC39EDF47B6A85C90C854C2A3170960
                        Malicious:false
                        Reputation:unknown
                        Preview:...._+jE.`..}....S..1....G}s..E....y".Wh.^.W.H...-...#.A...KR...9b........>k......bU.IVo...D......Y..[l.yx.......'c=..I0.....E.d...-...1 ....m../C...OQ.........qW..<:N.....38.u..X-..s....<..U.,Mi..._.......`.Y/.........^..,.E..........j@..G8..N.... ..Ea...4.+.79k.!T.-5W..!..@+..!.P..LDG.....V."....L.... .(#..$..&......C.....%A.T}....K_.S..'Q.".d....s....(j.D!......Ov..)*d0)."(..%..-..G..L.}....i.....m9;.....t.w..0....f?..-..M.c.3.....N7K.T..D>.3.x...z..u$5!..4..T.....U.O^L{.5..=E..'..;.}(|.6.:..f!.>...?M.8......P.D.J.I4.<...*.y.E....>....i%.6..Y.@..n.....M..r..C.f.;..<..0.H...F....h.......HB1]1....u..:...H..k....B.Q..J...@}j~.#...'Y.J~....I...ub.&..L[z..1.W/.Ck....M.......[.......N.F..z*.{nZ~d.V.4.u.K.V.......X.<p..cz..>*....X...W..da3(..g..Z$.L4.j=~.p.l.\.[e.&&.Y ...U)..._.^r0.,.{_......`S..[....(.\..p.bt.g..%.$+....f.....d....Im..f...W ......G..i_8a..ae..7....pS.....z-H..A.s.4.3..O.r.....u.S......a.}..v.-/..... ...a.x#./:...sS&U.().xL...pg
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):86
                        Entropy (8bit):4.3751917412896075
                        Encrypted:false
                        SSDEEP:
                        MD5:961E3604F228B0D10541EBF921500C86
                        SHA1:6E00570D9F78D9CFEBE67D4DA5EFE546543949A7
                        SHA-256:F7B24F2EB3D5EB0550527490395D2F61C3D2FE74BB9CB345197DAD81B58B5FED
                        SHA-512:535F930AFD2EF50282715C7E48859CC2D7B354FF4E6C156B94D5A2815F589B33189FFEDFCAF4456525283E993087F9F560D84CFCF497D189AB8101510A09C472
                        Malicious:false
                        Reputation:unknown
                        Preview:{"user_experience_metrics.stability.exited_cleanly":false,"variations_crash_streak":0}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):949
                        Entropy (8bit):5.718846121902889
                        Encrypted:false
                        SSDEEP:
                        MD5:7DD37A11D2EE09AD2154B0CA3D3072EF
                        SHA1:6C08C14DD9ED3361750E719516F3C90A4D48F6EF
                        SHA-256:502CFE1F850BEAF219A5FCD75301991C531C5BA023904037596B599C7E626252
                        SHA-512:14DDFBCD52A5CEE0C12EA7C6C73BBB73047A5EF69B36032B175FA16FCF6582E2D3E0B6DC89416FC49E848D552C14F60203F01DE2BE4955FE6B80B73A6446C722
                        Malicious:false
                        Reputation:unknown
                        Preview:{"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"uninstall_metrics":{"installation_date2":"1710412424"},"user_experience_metrics":{"client_id2":"{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}C:\\Users\\user0s:92C86F7C-DB2B-4F6A-95AD-98B4A2AE008A","diagnostics":{"last_data_collection_level_on_launch":1},"low_entropy_source3":7000,"pseudo_low_entropy_source":7198,"reset_client_id_deterministic":true,"stability":{"browser_last_live_timestamp":"13354886024056354","stats_buildtime":"1695934310","stats_version":"117.0.2045.47-64","system_crash_count":0}}}
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2899
                        Entropy (8bit):5.298057576469196
                        Encrypted:false
                        SSDEEP:
                        MD5:A12A5399955787672DDAFD174D3EDCA9
                        SHA1:6E19BC8A954B2138E4259B123DE2AF5CFA742319
                        SHA-256:DEC249BDA852EF0E7FBFAA9CF9756905ECA1EBF32B8926FB73B8AC4F62395CF8
                        SHA-512:29789E1D6B02F5F0FA1C807E730D4F3B397A8C6270F06912DC12CA368688213E54B6E8092962F04406655369D6F7F67FC7C2F94C53AB4A7999E7C26DCDCE6793
                        Malicious:false
                        Reputation:unknown
                        Preview:{"dual_engine":{"ie_to_edge":{"redirection_mode":0}},"edge":{"tab_stabs":{"closed_without_unfreeze_never_unfrozen":0,"closed_without_unfreeze_previously_unfrozen":0,"discard_without_unfreeze_never_unfrozen":0,"discard_without_unfreeze_previously_unfrozen":0},"tab_stats":{"frozen_daily":0,"unfrozen_daily":0}},"fre":{"oem_bookmarks_set":true},"hardware_acceleration_mode_previous":true,"legacy":{"profile":{"name":{"migrated":true}}},"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"policy":{"last_statistics_update":"13354886024326321"},"profile":{"info_cache":{"Default":{"avatar_icon":"chrome://t
                        Process:C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.47\msedgewebview2.exe
                        File Type:JSON data
                        Category:dropped
                        Size (bytes):2052
                        Entropy (8bit):5.464309988297625
                        Encrypted:false
                        SSDEEP:
                        MD5:8A10EAC0F90CB4EBCED3C2B5DCB8B6E5
                        SHA1:B286C4F3A8B933FD74AFE09EE214412BD3271727
                        SHA-256:7EE4A266CDE182503E4B278780300606768D01F3CD945DAC8E4A58B729461BF9
                        SHA-512:F4F57C17985CBF72DD4647AC18DA070F77332BE8E2E80E92C89CA333F6CE38192A8A114D9E540BC67678BFEF100BD0A55C7356C84196E8787C48F509C433F144
                        Malicious:false
                        Reputation:unknown
                        Preview:{"dual_engine":{"ie_to_edge":{"redirection_mode":0}},"edge":{"tab_stabs":{"closed_without_unfreeze_never_unfrozen":0,"closed_without_unfreeze_previously_unfrozen":0,"discard_without_unfreeze_never_unfrozen":0,"discard_without_unfreeze_previously_unfrozen":0},"tab_stats":{"frozen_daily":0,"unfrozen_daily":0}},"hardware_acceleration_mode_previous":true,"legacy":{"profile":{"name":{"migrated":true}}},"os_crypt":{"audit_enabled":true,"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADJ6nshPHp9TrQm6N6Y2njaEAAAAB4AAABNAGkAYwByAG8AcwBvAGYAdAAgAEUAZABnAGUAAAAQZgAAAAEAACAAAABTQgt3AgB8SLbRb0thnnjnvfJH9JxgOqxKBr+1dy9wfAAAAAAOgAAAAAIAACAAAACDUBnbxnJOYanaboa4hCla9uhSx4a9m8HdO/3E8AKHkjAAAACfwCyYgROj5GoIEp1GlZJZa6XL3po2yTfcib9TsPPQwReBw+EJ6HDCp+klEe21a9JAAAAA9DWbFw2qWVBjl2SzqvWEd5n3sU5Nl18GRFqSxq/X8ldcRgkjqSty0Iuwpo3nQg+bYqm51HziN3lp9UTV5NA+Iw=="},"policy":{"last_statistics_update":"13354886024326321"},"profile":{"info_cache":{},"profile_counts_reported":"13354886024349506","profiles_order":[]},
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:ASCII text, with very long lines (65536), with no line terminators
                        Category:modified
                        Size (bytes):939820
                        Entropy (8bit):6.068200229364156
                        Encrypted:false
                        SSDEEP:
                        MD5:12DB9598ECDD44D5F2FCF9C2EED93619
                        SHA1:8AFE7F33F182C191657A52FAB99805524F3C53B4
                        SHA-256:22DB89651EA56CD8FD6D2920C0BF7B02459989B60272522D4464CB43EDD2F34F
                        SHA-512:AE14E691C55A85E0897F8D16005F55D3EAA2E29649F6CECEF54D1B78F577CFF68A558A60141CB2F8E951C6CCA90072232EA12E6F1776AB4C67C70F0F4A778AB4
                        Malicious:false
                        Reputation:unknown
                        Preview:/*! normalize.css v7.0.0 | MIT License | github.com/necolas/normalize.css */html{line-height:1.15;-ms-text-size-adjust:100%;-webkit-text-size-adjust:100%}article,aside,footer,header,nav,section{display:block}h1{font-size:2em;margin:.67em 0}figcaption,figure,main{display:block}figure{margin:1em 40px}hr{box-sizing:content-box;height:0;overflow:visible}pre{font-family:monospace,monospace;font-size:1em}a{background-color:rgba(0,0,0,0);-webkit-text-decoration-skip:objects}abbr[title]{border-bottom:none;text-decoration:underline;text-decoration:underline dotted}b,strong{font-weight:inherit;font-weight:bolder}code,kbd,samp{font-family:monospace,monospace;font-size:1em}dfn{font-style:italic}mark{background-color:#ff0;color:#000}small{font-size:80%}sub,sup{font-size:75%;line-height:0;position:relative;vertical-align:baseline}sub{bottom:-.25em}sup{top:-.5em}audio,video{display:inline-block}audio:not([controls]){display:none;height:0}img{border-style:none}svg:not(:root){overflow:hidden}button,inp
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:HTML document, ASCII text, with CRLF line terminators
                        Category:dropped
                        Size (bytes):426
                        Entropy (8bit):5.032152269928686
                        Encrypted:false
                        SSDEEP:
                        MD5:A28AB17B18FF254173DFEEF03245EFD0
                        SHA1:C6CE20924565644601D4E0DD0FBA9DDE8DEA5C77
                        SHA-256:886C0AB69E6E9D9D5B5909451640EA587ACCFCDF11B8369CAD8542D1626AC375
                        SHA-512:9371A699921B028BD93C35F9F2896D9997B906C8ABA90DD4279ABBA0AE1909A8808A43BF829584E552CCFE534B2C991A5A7E3E3DE7618343F50B1C47CFF269D6
                        Malicious:false
                        Reputation:unknown
                        Preview:....<!DOCTYPE html>..<html>..<head>.. .. <meta charset='utf-8'>.. <meta http-equiv='X-UA-Compatible' content='chrome=1'>.. <meta name='viewport' content='width=1024, initial-scale=0.3, maximum-scale=1'>.... <title>CCD Installer</title>.... ....<link href="index.css" rel="stylesheet"></head>..<body>..<div id='root'>..</div>..<script type="text/javascript" src="CCDInstaller.js"></script></body>....</html>..
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):10485904
                        Entropy (8bit):0.07171134733047327
                        Encrypted:false
                        SSDEEP:
                        MD5:5F15ACEB49121604FE13791BAC2493CB
                        SHA1:B5CE736D91B4824394E885582B795A05CCFBB8BB
                        SHA-256:E5DD816B000AAE7311E097F6923AB9BF13EF5FD4D996BADF8B302FAE5AE9D21B
                        SHA-512:D49BF9A91F1BA2BA5E5C9DBDA658F01B43274C434D7605A3C00A152286FF5541DCB8EF7DCF374100E26CAF53514472936E7DB27F58FBDCF53AC3EA16850DFAB1
                        Malicious:false
                        Reputation:unknown
                        Preview:]....+y$...........................................................................................................................................[g...)[].h1..|@.........%S.}..Eqc......6....S..Vyi..1'=.n[.@Pi...Y.Xj...... ........ikG..7....A;..7.N.r..6.N.iH..Z..R[8/\.o..h%1Y.o.?v.%...........a.....w)"7......G`...RS..#...ej..+....S..[...A|.y5..B./.w...c.8L..].Cbhe.1.p.c..Vr0..^Q.4j.....R-p..S....(..D.hn.AH.@..'8....e.n<&-...P+.......B1..S.[..Jg-s../.>.D.5...k.".A.q.~Ak.tK..{...B.A..{.r..\....k.........t..t.u.....q.....x.pEL.......:g..._.KJ....5.q...e..i.....;.d..n.d.F...3..j\.M...k/.f......u.'.).f.......9....>..2.pJ.F./+.3..)/.Ed..#..>C4,.t9W-.=).[..O..Y..1.QQ.X.......e.OB.....O..:.NV.%...?H...,"...^V...|C?..M.!.y.G/..}?....3.....JA.Z......c..4BU_.Pd5..YR....../....-$..R.Hn.WI...9..0S:....".=..)Y.!.`1/p.?....4F..|'..g.R.........-.qQ....T.U..H...g.Hk.....n...X.....q.^..Y&%.;!....V..........5.'X.L.!s?..j.......+S.:..jQ...#s...aX..
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):224
                        Entropy (8bit):1.7858376280208008
                        Encrypted:false
                        SSDEEP:
                        MD5:515584677394F069C550251A59CBA9DF
                        SHA1:CF5F4D791DCAAFA1A76F28B9D40A95D534634D52
                        SHA-256:186E992A13B37775C25006E1E5CA60ECA4CFC364C564D10E294E1231370732E6
                        SHA-512:ADD6965E52DE0733408401AA854694F4EFB1268E9C1F4F0E22C4587CD2DF184FE2213D8F4BB18FE5D8D45F6A4C0A77D635DAEFC1FD4B2D712EF4CEA27BCE4701
                        Malicious:false
                        Reputation:unknown
                        Preview:]....+y$........................................(.......P.......P.......P.......................................................................$...3c9d196a-63f3-4315-b701-743b10c05dc4........................................
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):10485904
                        Entropy (8bit):0.002623212116378178
                        Encrypted:false
                        SSDEEP:
                        MD5:7A1944DE3698455132C993EAF5B4F73A
                        SHA1:1B2A6F803C5D6B5D598E85DB10B602D445DA6644
                        SHA-256:25449886739FD39C23FF28DD9DAE6070C428210AC31CCE94208E8007FC00FD3A
                        SHA-512:07490BF0078F0874CAB4CEAF4737896073AA36EC8AAEDC28B9981ECA8C79A3500CD653161C6E6591DC57C667D0288663FC6B72D75759B35A14F2DEADDBF64106
                        Malicious:false
                        Reputation:unknown
                        Preview:]....+y$............................................................................................................................................[g...)[].h1..|@.........%S.}..Eqc......6....S..Vyi..1'=.n[.@Pi...Y.Xj...... ........ikG..7......$WL..Jd.M.p.A/......f ......t...N7a...a...r.._....(.p......6-r...Q....*e..oeR.....".]7>..F4.t.......E.3p1......._.....h...6d. ."..Z .q...X.be....^{@.LV.w.E...K.q.X..{n.......u. v(D..nD`<.......S.......C..N....q..!....PSlx...X...6....3O....=..a>.{.......Ad.x.'W...Qi.M8.:..F.E..2xb..y....YS..|W-.s....@`....M.{.;C.x.m*.k...4....B]...O..."......ft.?..102.].r........|....s.8b...k.7.xel.wYa..p.....x......mJ.m..7Q~i1Q|I...nP<F0.u7...h.G....@.....l+9.....vC...v.wf.!.F...$K..p......... .Ro.ox].b.......uI...Y.5_A...PA..* ....(?.].......W@.....Pv.6.._6|..e..q.'..)...I...8...o.....@........Y.6i.O..@..+....k.....$|........2.....9<.......;W.....d..0.i6...p.+@..KUyp..YK...R.-Ta.....w.Y.y.8...=....|.q2#...7=...
                        Process:C:\Users\user\Desktop\Acrobat_Set-Up.exe
                        File Type:data
                        Category:dropped
                        Size (bytes):224
                        Entropy (8bit):1.8058832753229126
                        Encrypted:false
                        SSDEEP:
                        MD5:D1F83662292E3BAFAAAA7435723CDF00
                        SHA1:A84D811D6AE15517C8CC0353D0B71E2EE360E0D1
                        SHA-256:D9BF885BDA8EEC9692951FFDCA4D0F6C85ADC7849F86D78E5709CCABB53A99F5
                        SHA-512:C14B3C286CBDA8629383D0E81DCD38A5B4331085149AFD6988718A96CA9E2633D82F3A9A3CA320947F9F6A97997FCB57DB8F545A3F0BC1D2023E3EAC08D8848A
                        Malicious:false
                        Reputation:unknown
                        Preview:]....+y$........................................(.......P.......P.......P.......................................................................$...13d5c00b-8d7c-4e1f-b197-7b82486e0bcb........................................
                        File type:PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
                        Entropy (8bit):7.901710468106949
                        TrID:
                        • Win32 Executable (generic) a (10002005/4) 99.39%
                        • UPX compressed Win32 Executable (30571/9) 0.30%
                        • Win32 EXE Yoda's Crypter (26571/9) 0.26%
                        • Generic Win/DOS Executable (2004/3) 0.02%
                        • DOS Executable Generic (2002/1) 0.02%
                        File name:Acrobat_Set-Up.exe
                        File size:3'160'024 bytes
                        MD5:8d7d40664e5e9fc996304fda10ae7711
                        SHA1:0b2c3803d9343b9728111281c16bcb6cc9770b51
                        SHA256:3525e47b1e0f59a161a95093ab177f641b075073790ad908dc0b540ac71dc260
                        SHA512:5593843126d3bfa245d45edc9594a45f7ab45e59839344b1972afbc8fe7d7fe76672ab216adc3453b440a919f86025e856a98145fe583308f5851c7e4c8f505f
                        SSDEEP:49152:VZnCRw3438x0TVDKNxOafuUYUc9no2IWkAyf1CQ+v5XxCv6PxW:VARw3UJKHOa/Xffs0S5W
                        TLSH:BBE5233A0074DF00E06F2636D69362F26923DD58DE6A53CFF2983E9AB07AA40F471157
                        File Content Preview:MZ......................@................................... ...........!..L.!This program cannot be run in DOS mode....$..........J................<...e.......e.......k.......k.......e.......................................................k.......k.(....
                        Icon Hash:55ce539272690d72
                        Entrypoint:0xdb92f0
                        Entrypoint Section:UPX1
                        Digitally signed:true
                        Imagebase:0x400000
                        Subsystem:windows gui
                        Image File Characteristics:EXECUTABLE_IMAGE, 32BIT_MACHINE
                        DLL Characteristics:DYNAMIC_BASE, NX_COMPAT, TERMINAL_SERVER_AWARE
                        Time Stamp:0x65AE1874 [Mon Jan 22 07:25:40 2024 UTC]
                        TLS Callbacks:
                        CLR (.Net) Version:
                        OS Version Major:5
                        OS Version Minor:1
                        File Version Major:5
                        File Version Minor:1
                        Subsystem Version Major:5
                        Subsystem Version Minor:1
                        Import Hash:28a18f58924d2f4dd2bffbbc85a12952
                        Signature Valid:true
                        Signature Issuer:CN=DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1, O="DigiCert, Inc.", C=US
                        Signature Validation Error:The operation completed successfully
                        Error Number:0
                        Not Before, Not After
                        • 03/11/2023 01:00:00 05/11/2025 00:59:59
                        Subject Chain
                        • CN=Adobe Inc., OU=AAM 256, O=Adobe Inc., L=San Jose, S=ca, C=US, SERIALNUMBER=2748129, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US
                        Version:3
                        Thumbprint MD5:27F5C05722CD5478ADEB03BADB1B4103
                        Thumbprint SHA-1:02E4107713CE4E95A736D4ACE47926EDED13555C
                        Thumbprint SHA-256:1079E99A5160154F92A969871111FECC98F0CD6D4E7BE96ACAE9FBBB5511DB9D
                        Serial:098A2F313AB2C29CD42B062A0E467B0C
                        Instruction
                        pushad
                        mov esi, 00AC4000h
                        lea edi, dword ptr [esi-006C3000h]
                        push edi
                        jmp 00007F9FE88AFFEDh
                        nop
                        mov al, byte ptr [esi]
                        inc esi
                        mov byte ptr [edi], al
                        inc edi
                        add ebx, ebx
                        jne 00007F9FE88AFFE9h
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        jc 00007F9FE88AFFCFh
                        mov eax, 00000001h
                        add ebx, ebx
                        jne 00007F9FE88AFFE9h
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        adc eax, eax
                        add ebx, ebx
                        jnc 00007F9FE88AFFEDh
                        jne 00007F9FE88B000Ah
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        jc 00007F9FE88B0001h
                        dec eax
                        add ebx, ebx
                        jne 00007F9FE88AFFE9h
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        adc eax, eax
                        jmp 00007F9FE88AFFB6h
                        add ebx, ebx
                        jne 00007F9FE88AFFE9h
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        adc ecx, ecx
                        jmp 00007F9FE88B0034h
                        xor ecx, ecx
                        sub eax, 03h
                        jc 00007F9FE88AFFF3h
                        shl eax, 08h
                        mov al, byte ptr [esi]
                        inc esi
                        xor eax, FFFFFFFFh
                        je 00007F9FE88B0057h
                        sar eax, 1
                        mov ebp, eax
                        jmp 00007F9FE88AFFEDh
                        add ebx, ebx
                        jne 00007F9FE88AFFE9h
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        jc 00007F9FE88AFFAEh
                        inc ecx
                        add ebx, ebx
                        jne 00007F9FE88AFFE9h
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        jc 00007F9FE88AFFA0h
                        add ebx, ebx
                        jne 00007F9FE88AFFE9h
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        adc ecx, ecx
                        add ebx, ebx
                        jnc 00007F9FE88AFFD1h
                        jne 00007F9FE88AFFEBh
                        mov ebx, dword ptr [esi]
                        sub esi, FFFFFFFCh
                        adc ebx, ebx
                        jnc 00007F9FE88AFFC6h
                        add ecx, 02h
                        cmp ebp, FFFFFB00h
                        adc ecx, 02h
                        lea edx, dword ptr [edi+ebp]
                        cmp ebp, FFFFFFFCh
                        jbe 00007F9FE88AFFF0h
                        mov al, byte ptr [edx]
                        NameVirtual AddressVirtual Size Is in Section
                        IMAGE_DIRECTORY_ENTRY_EXPORT0x00x0
                        IMAGE_DIRECTORY_ENTRY_IMPORT0x9c491c0xd4.rsrc
                        IMAGE_DIRECTORY_ENTRY_RESOURCE0x9ba0000xa91c.rsrc
                        IMAGE_DIRECTORY_ENTRY_EXCEPTION0x00x0
                        IMAGE_DIRECTORY_ENTRY_SECURITY0x3006000x31d8UPX0
                        IMAGE_DIRECTORY_ENTRY_BASERELOC0x9c49f00x1c.rsrc
                        IMAGE_DIRECTORY_ENTRY_DEBUG0x00x0
                        IMAGE_DIRECTORY_ENTRY_COPYRIGHT0x00x0
                        IMAGE_DIRECTORY_ENTRY_GLOBALPTR0x00x0
                        IMAGE_DIRECTORY_ENTRY_TLS0x9b94c40x18UPX1
                        IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG0x9b94ec0xc0UPX1
                        IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT0x00x0
                        IMAGE_DIRECTORY_ENTRY_IAT0x00x0
                        IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT0x5e896c0x2a0UPX0
                        IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR0x00x0
                        IMAGE_DIRECTORY_ENTRY_RESERVED0x00x0
                        NameVirtual AddressVirtual SizeRaw SizeMD5Xored PEZLIB ComplexityFile TypeEntropyCharacteristics
                        UPX00x10000x6c30000x0d41d8cd98f00b204e9800998ecf8427eunknownunknownunknownunknownIMAGE_SCN_CNT_UNINITIALIZED_DATA, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
                        UPX10x6c40000x2f60000x2f5600b42ab35b40044483c5febca80c638c19unknownunknownunknownunknownIMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
                        .rsrc0x9ba0000xb0000xac001e7443f4d0c361d859640c3be79287d9False0.16755995639534885data3.8153067123035282IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
                        NameRVASizeTypeLanguageCountryZLIB Complexity
                        CSS0x62f7740xe572cemptyEnglishUnited States0
                        DICTIONARY0x714ea00x9210dataEnglishUnited States0.993581514762516
                        DICTIONARY0x71e0b00xaa58dataEnglishUnited States0.9945422858191157
                        DICTIONARY0x728b080xb022dataEnglishUnited States0.990441339543136
                        DICTIONARY0x733b2c0xc273dataEnglishUnited States0.9912211976938067
                        DICTIONARY0x73fda00xa5d9dataEnglishUnited States0.9912146406952917
                        DICTIONARY0x74a37c0x9ddedataEnglishUnited States0.9924283664076805
                        DICTIONARY0x75415c0xab1cdataEnglishUnited States0.9921696648707881
                        DICTIONARY0x75ec780xa26edataEnglishUnited States0.9915107498436824
                        DICTIONARY0x768ee80x8b1fdataEnglishUnited States0.993289344377369
                        DICTIONARY0x771a080x8d8edataEnglishUnited States0.995557149953088
                        DICTIONARY0x77a7980x9ff7dataEnglishUnited States0.9950428560963103
                        DICTIONARY0x7847900x9bb4dataEnglishUnited States0.9962870045158053
                        DICTIONARY0x78e3440xa699OpenPGP Public KeyEnglishUnited States0.9952636638608173
                        DICTIONARY0x7989e00xa4b2DOS executable (COM, 0x8C-variant)EnglishUnited States0.9949243394525876
                        DICTIONARY0x7a2e940xe588dataEnglishUnited States0.9925289312457454
                        DICTIONARY0x7b141c0xa3ffdataEnglishUnited States0.9928780696948765
                        DICTIONARY0x7bb81c0x9c47dataEnglishUnited States0.9939010673132201
                        DICTIONARY0x7c54640x9f5edataEnglishUnited States0.9931614294818374
                        DICTIONARY0x7cf3c40x9d4bdataEnglishUnited States0.9971192291454541
                        DICTIONARY0x7d91100xa5dbdataEnglishUnited States0.9970795355519442
                        DICTIONARY0x7e36ec0xb048dataEnglishUnited States0.9968755539797908
                        JS0x7ee7340x13fbb4dataEnglishUnited States0.9556398391723633
                        XML0x92e2e80x2c8dataEnglishUnited States1.0154494382022472
                        RT_ICON0x9ba7780x1045PNG image data, 256 x 256, 8-bit/color RGBA, non-interlacedEnglishUnited States0.9080432172869147
                        RT_ICON0x9bb7c40x4228Device independent bitmap graphic, 64 x 128 x 32, image size 16384, resolution 11811 x 11811 px/mEnglishUnited States0.03719886632026453
                        RT_ICON0x9bf9f00x25a8Device independent bitmap graphic, 48 x 96 x 32, image size 9216, resolution 11811 x 11811 px/mEnglishUnited States0.04948132780082987
                        RT_ICON0x9c1f9c0x10a8Device independent bitmap graphic, 32 x 64 x 32, image size 4096, resolution 11811 x 11811 px/mEnglishUnited States0.0799718574108818
                        RT_ICON0x9c30480x988Device independent bitmap graphic, 24 x 48 x 32, image size 2304, resolution 11811 x 11811 px/mEnglishUnited States0.1069672131147541
                        RT_ICON0x9c39d40x468Device independent bitmap graphic, 16 x 32 x 32, image size 1024, resolution 11811 x 11811 px/mEnglishUnited States0.15602836879432624
                        RT_GROUP_ICON0x9c3e400x5adataEnglishUnited States0.7666666666666667
                        RT_VERSION0x9c3ea00x304dataEnglishUnited States0.43523316062176165
                        RT_HTML0x937fc00x1aadataEnglishUnited States1.0258215962441315
                        RT_MANIFEST0x9c41a80x773XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with very long lines (1847), with CRLF line terminatorsEnglishUnited States0.29365495542737285
                        DLLImport
                        KERNEL32.DLLLoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess
                        WS2_32.dllWSACleanup
                        Language of compilation systemCountry where language is spokenMap
                        EnglishUnited States