Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U

Overview

General Information

Sample URL:https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U
Analysis ID:1414256

Detection

Score:48
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Snort IDS alert for network traffic
HTML page contains hidden URLs or javascript code
Stores files to the Windows start menu directory

Classification

  • System is w10x64_ra
  • chrome.exe (PID: 1220 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 6224 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2140 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 7120 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5668 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 7528 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6204 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 7536 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6172 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 7544 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6408 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No yara matches
No Sigma rule has matched
Timestamp:03/22/24-21:29:55.069940
SID:2049475
Source Port:63244
Destination Port:53
Protocol:UDP
Classtype:A Network Trojan was detected
Timestamp:03/22/24-21:29:55.160183
SID:2049476
Source Port:49749
Destination Port:443
Protocol:TCP
Classtype:A Network Trojan was detected
Timestamp:03/22/24-21:29:55.069768
SID:2049475
Source Port:58631
Destination Port:53
Protocol:UDP
Classtype:A Network Trojan was detected

Click to jump to signature section

Show All Signature Results
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: Base64 decoded: [null,null,null,null,null,null,[1711139402,48000000],null,null,null,[null,[7,9,6],null,2,null,"en",null,null,null,null,null,1],"https://sazi.online/91150/",null,[[8,"BXXwKMACofg"],[9,"en-US"],[18,"[[[0]]]"],[19,"2"],[17,"[0]"]]]
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6LcsbMUlAAAAAFswz6m-Wag8MDNnx1xn-TCn364a&co=aHR0cHM6Ly9zYXppLm9ubGluZTo0NDM.&hl=en&v=Hq4JZivTyQ7GP8Kt571Tzodj&size=invisible&cb=sgvuesxrehp6HTTP Parser: No favicon
Source: https://tpc.googlesyndication.com/sodar/sodar2/225/runner.htmlHTTP Parser: No favicon
Source: https://www.google.com/recaptcha/api2/aframeHTTP Parser: No favicon
Source: https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.html#RS-1-&adk=1812271804&client=ca-pub-3285274263241992&fa=4&ifi=4&uci=a!4&btvi=1HTTP Parser: No favicon
Source: https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.htmlHTTP Parser: No favicon
Source: https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.html#RS-0-&adk=1812271808&client=ca-pub-3285274263241992&fa=8&ifi=3&uci=a!3HTTP Parser: No favicon
Source: https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.html#RS-2-&adk=1812271803&client=ca-pub-3285274263241992&fa=3&ifi=5&uci=a!5&btvi=2HTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6UHTTP Parser: No favicon
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49927 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.199.50.2:443 -> 192.168.2.16:49933 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.199.50.2:443 -> 192.168.2.16:49934 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49961 version: TLS 1.2

Networking

barindex
Source: TrafficSnort IDS: 2049475 ET TROJAN SocGholish Domain in DNS Lookup (pluralism .themancav .com) 192.168.2.16:58631 -> 1.1.1.1:53
Source: TrafficSnort IDS: 2049475 ET TROJAN SocGholish Domain in DNS Lookup (pluralism .themancav .com) 192.168.2.16:63244 -> 1.1.1.1:53
Source: TrafficSnort IDS: 2049476 ET TROJAN SocGholish Domain in TLS SNI (pluralism .themancav .com) 192.168.2.16:49749 -> 166.1.173.27:443
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 20.114.59.183
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.50.2
Source: unknownDNS traffic detected: queries for: sazi.online
Source: unknownNetwork traffic detected: HTTP traffic on port 49708 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49743
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 49926 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49949 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49800 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49932 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49766 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49743 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49961 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49795 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 49772 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49733
Source: unknownNetwork traffic detected: HTTP traffic on port 49841 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49950 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49850
Source: unknownNetwork traffic detected: HTTP traffic on port 49812 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49967 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49784 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49915 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49806 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49823 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 49943 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49849
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49848
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49967
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 49790 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49845
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49966
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49844
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49965
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49964
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49963
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49841
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49961
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49960
Source: unknownNetwork traffic detected: HTTP traffic on port 49834 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49966 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49748 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49760 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49828 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49933 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49805 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49838
Source: unknownNetwork traffic detected: HTTP traffic on port 49715 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49837
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49958
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49715
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49836
Source: unknownNetwork traffic detected: HTTP traffic on port 49921 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49957
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49835
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49956
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49834
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49955
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49712
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49833
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49954
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49832
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49953
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49952
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49830
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49951
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49950
Source: unknownNetwork traffic detected: HTTP traffic on port 49927 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49944 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49822 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49870 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49910 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49765 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49796 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 49938 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49955 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49829
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49707
Source: unknownNetwork traffic detected: HTTP traffic on port 49811 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49828
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49949
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49706
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49827
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49948
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49705
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49947
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 49754 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49825
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49946
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49824
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49945
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49823
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49944
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49822
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49943
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49786
Source: unknownNetwork traffic detected: HTTP traffic on port 49922 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 49813 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49945 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49951 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49781
Source: unknownNetwork traffic detected: HTTP traffic on port 49836 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49916 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49939 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49776 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49845 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49791 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49868 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49753 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49776
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49896
Source: unknownNetwork traffic detected: HTTP traffic on port 49707 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49774
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49772
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49770
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49891
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49890
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49957 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49830 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49766
Source: unknownNetwork traffic detected: HTTP traffic on port 49758 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49765
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49764
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49762
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49882
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49760
Source: unknownNetwork traffic detected: HTTP traffic on port 49928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49741 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49764 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49896 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49770 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49801 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49940 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49824 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49956 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49758
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49757
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49756
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49754
Source: unknownNetwork traffic detected: HTTP traffic on port 49891 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49752
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49873
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
Source: unknownNetwork traffic detected: HTTP traffic on port 49818 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49871
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49870
Source: unknownNetwork traffic detected: HTTP traffic on port 49835 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49786 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49829 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49934 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49775 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49868
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49867
Source: unknownNetwork traffic detected: HTTP traffic on port 49890 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49781 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49912 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49803 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49958 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49849 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49900 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49820 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49837 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49929 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49946 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49700 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49964 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49752 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49798 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49706 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49819 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49844 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49947 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49918 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49873 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49930 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49850 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49688 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49963 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49751 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49774 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49799
Source: unknownNetwork traffic detected: HTTP traffic on port 49757 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49734 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49798
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49796
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49795
Source: unknownNetwork traffic detected: HTTP traffic on port 49952 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 49814 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49791
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49790
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49913 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49825 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49808 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49941 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49867 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49700
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49821
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49942
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49820
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49941
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49940
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49704 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49871 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49762 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49833 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49965 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49819
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49818
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49939
Source: unknownNetwork traffic detected: HTTP traffic on port 49799 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49810 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49938
Source: unknownNetwork traffic detected: HTTP traffic on port 49942 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49816
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49937
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49815
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49814
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49813
Source: unknownNetwork traffic detected: HTTP traffic on port 49902 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49934
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49812
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49933
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49811
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49932
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49810
Source: unknownNetwork traffic detected: HTTP traffic on port 49816 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49930
Source: unknownNetwork traffic detected: HTTP traffic on port 49925 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49919 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49954 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49767 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49827 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49960 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49809
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49808
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49929
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49928
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49806
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49927
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49805
Source: unknownNetwork traffic detected: HTTP traffic on port 49848 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49882 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49926
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49804
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49925
Source: unknownNetwork traffic detected: HTTP traffic on port 49773 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49803
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49801
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49922
Source: unknownNetwork traffic detected: HTTP traffic on port 49756 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49800
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49921
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49920
Source: unknownNetwork traffic detected: HTTP traffic on port 49838 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49821 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49953 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49815 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49914 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49919
Source: unknownNetwork traffic detected: HTTP traffic on port 49937 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49918
Source: unknownNetwork traffic detected: HTTP traffic on port 49809 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49916
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49915
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49914
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49913
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49912
Source: unknownNetwork traffic detected: HTTP traffic on port 49755 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49910
Source: unknownNetwork traffic detected: HTTP traffic on port 49948 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49705 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49804 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49832 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49920 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49902
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49900
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49927 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.199.50.2:443 -> 192.168.2.16:49933 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.199.50.2:443 -> 192.168.2.16:49934 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.114.59.183:443 -> 192.168.2.16:49961 version: TLS 1.2
Source: classification engineClassification label: mal48.win@24/109@72/270
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2140 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5668 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2140 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6204 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6172 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6408 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=en-US --service-sandbox-type=audio --mojo-platform-channel-handle=5668 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6204 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6172 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=auction_worklet.mojom.AuctionWorkletService --lang=en-US --service-sandbox-type=service_with_jit --mojo-platform-channel-handle=6408 --field-trial-handle=1964,i,8035912026784068866,8728156965841536930,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management Instrumentation1
Registry Run Keys / Startup Folder
1
Process Injection
1
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
Registry Run Keys / Startup Folder
1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive2
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
about:blank0%Avira URL Cloudsafe
NameIPActiveMaliciousAntivirus DetectionReputation
plausible.io
138.199.40.58
truefalse
    unknown
    a.nel.cloudflare.com
    35.190.80.1
    truefalse
      high
      a.adskeeper.co.uk
      172.64.152.191
      truefalse
        unknown
        securepubads46.g.doubleclick.net
        172.217.165.130
        truefalse
          high
          s-img.adskeeper.com
          172.64.152.106
          truefalse
            unknown
            servicer.adskeeper.com
            172.64.152.106
            truefalse
              unknown
              stats.g.doubleclick.net
              172.253.62.157
              truefalse
                high
                static.cdneverest.net
                123.30.177.119
                truefalse
                  unknown
                  jsc.adskeeper.com
                  104.18.35.150
                  truefalse
                    unknown
                    marvin-occentus.net
                    91.212.166.21
                    truefalse
                      unknown
                      a.mgid.com
                      104.19.132.76
                      truefalse
                        high
                        googleads.g.doubleclick.net
                        142.250.80.98
                        truefalse
                          high
                          www3.l.google.com
                          142.251.40.174
                          truefalse
                            high
                            sazi.online
                            172.67.183.202
                            truefalse
                              unknown
                              aj1559.online
                              212.124.124.115
                              truefalse
                                unknown
                                cdn.adskeeper.co.uk
                                104.18.35.65
                                truefalse
                                  unknown
                                  www.google.com
                                  142.250.72.100
                                  truefalse
                                    high
                                    analytics.google.com
                                    142.251.40.110
                                    truefalse
                                      high
                                      c.adskeeper.com
                                      172.64.152.106
                                      truefalse
                                        unknown
                                        pluralism.themancav.com
                                        166.1.173.27
                                        truetrue
                                          unknown
                                          gener1.genplusmedia.online
                                          104.21.96.35
                                          truefalse
                                            unknown
                                            cm.adskeeper.com
                                            172.64.152.106
                                            truefalse
                                              unknown
                                              securepubads.g.doubleclick.net
                                              unknown
                                              unknownfalse
                                                high
                                                fundingchoicesmessages.google.com
                                                unknown
                                                unknownfalse
                                                  high
                                                  ads.pubmatic.com
                                                  unknown
                                                  unknownfalse
                                                    high
                                                    server.zmedia.vn
                                                    unknown
                                                    unknownfalse
                                                      unknown
                                                      NameMaliciousAntivirus DetectionReputation
                                                      https://securepubads.g.doubleclick.net/static/topics/topics_frame.htmlfalse
                                                        high
                                                        https://googleads.g.doubleclick.net/pagead/drt/s?v=r20120211false
                                                          high
                                                          https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.html#RS-2-&adk=1812271803&client=ca-pub-3285274263241992&fa=3&ifi=5&uci=a!5&btvi=2false
                                                            high
                                                            https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.html#RS-1-&adk=1812271804&client=ca-pub-3285274263241992&fa=4&ifi=4&uci=a!4&btvi=1false
                                                              high
                                                              about:blankfalse
                                                              • Avira URL Cloud: safe
                                                              low
                                                              https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.htmlfalse
                                                                high
                                                                https://googleads.g.doubleclick.net/pagead/drt/si?st=NO_DATAfalse
                                                                  high
                                                                  https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.html#RS-0-&adk=1812271808&client=ca-pub-3285274263241992&fa=8&ifi=3&uci=a!3false
                                                                    high
                                                                    https://www.google.com/recaptcha/api2/aframefalse
                                                                      high
                                                                      • No. of IPs < 25%
                                                                      • 25% < No. of IPs < 50%
                                                                      • 50% < No. of IPs < 75%
                                                                      • 75% < No. of IPs
                                                                      IPDomainCountryFlagASNASN NameMalicious
                                                                      104.19.133.76
                                                                      unknownUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      138.199.40.58
                                                                      plausible.ioEuropean Union
                                                                      51964ORANGE-BUSINESS-SERVICES-IPSN-ASNFRfalse
                                                                      142.251.111.84
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.227
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.206
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      172.64.152.191
                                                                      a.adskeeper.co.ukUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      142.250.80.66
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.250.81.238
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.131
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.110
                                                                      analytics.google.comUnited States
                                                                      15169GOOGLEUSfalse
                                                                      91.212.166.21
                                                                      marvin-occentus.netUnited Kingdom
                                                                      35819MOBILY-ASEtihadEtisalatCompanyMobilySAfalse
                                                                      142.251.40.193
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.194
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.174
                                                                      www3.l.google.comUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.250.72.100
                                                                      www.google.comUnited States
                                                                      15169GOOGLEUSfalse
                                                                      35.190.80.1
                                                                      a.nel.cloudflare.comUnited States
                                                                      15169GOOGLEUSfalse
                                                                      104.21.48.100
                                                                      unknownUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      142.251.40.170
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      172.217.165.130
                                                                      securepubads46.g.doubleclick.netUnited States
                                                                      15169GOOGLEUSfalse
                                                                      123.30.177.119
                                                                      static.cdneverest.netViet Nam
                                                                      45899VNPT-AS-VNVNPTCorpVNfalse
                                                                      104.21.96.35
                                                                      gener1.genplusmedia.onlineUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      172.217.165.136
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      172.64.152.106
                                                                      s-img.adskeeper.comUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      23.199.48.228
                                                                      unknownUnited States
                                                                      20940AKAMAI-ASN1EUfalse
                                                                      142.250.80.35
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      104.19.132.76
                                                                      a.mgid.comUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      1.1.1.1
                                                                      unknownAustralia
                                                                      13335CLOUDFLARENETUStrue
                                                                      172.217.165.138
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      104.18.35.150
                                                                      jsc.adskeeper.comUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      142.250.65.195
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      212.124.124.115
                                                                      aj1559.onlineRussian Federation
                                                                      47328TRI-ASTrueRecordsIncESfalse
                                                                      104.18.35.65
                                                                      cdn.adskeeper.co.ukUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      142.250.81.226
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.250.80.98
                                                                      googleads.g.doubleclick.netUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.250.81.225
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.250.81.228
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.250.81.227
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.164
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      239.255.255.250
                                                                      unknownReserved
                                                                      unknownunknownfalse
                                                                      142.251.32.110
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      142.251.40.99
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      172.67.183.202
                                                                      sazi.onlineUnited States
                                                                      13335CLOUDFLARENETUSfalse
                                                                      166.1.173.27
                                                                      pluralism.themancav.comUnited States
                                                                      11798ACEDATACENTERS-AS-1UStrue
                                                                      142.251.41.2
                                                                      unknownUnited States
                                                                      15169GOOGLEUSfalse
                                                                      172.253.62.157
                                                                      stats.g.doubleclick.netUnited States
                                                                      15169GOOGLEUSfalse
                                                                      IP
                                                                      192.168.2.16
                                                                      Joe Sandbox version:40.0.0 Tourmaline
                                                                      Analysis ID:1414256
                                                                      Start date and time:2024-03-22 21:29:24 +01:00
                                                                      Joe Sandbox product:CloudBasic
                                                                      Overall analysis duration:
                                                                      Hypervisor based Inspection enabled:false
                                                                      Report type:full
                                                                      Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                                                      Sample URL:https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U
                                                                      Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                                                      Number of analysed new started processes analysed:17
                                                                      Number of new started drivers analysed:0
                                                                      Number of existing processes analysed:0
                                                                      Number of existing drivers analysed:0
                                                                      Number of injected processes analysed:0
                                                                      Technologies:
                                                                      • EGA enabled
                                                                      Analysis Mode:stream
                                                                      Analysis stop reason:Timeout
                                                                      Detection:MAL
                                                                      Classification:mal48.win@24/109@72/270
                                                                      • Exclude process from analysis (whitelisted): audiodg.exe
                                                                      • Excluded IPs from analysis (whitelisted): 142.251.40.99, 142.251.40.206, 142.251.111.84, 142.250.65.202, 34.104.35.123, 172.217.165.136, 142.251.40.170, 142.251.32.106, 142.251.41.10, 142.250.80.106, 142.251.35.170, 142.250.72.106, 142.251.40.234, 142.251.40.138, 142.251.40.202, 142.250.80.74, 142.250.80.42, 172.217.165.138, 142.250.176.202, 142.250.64.74, 142.251.40.106, 142.250.80.10
                                                                      • Excluded domains from analysis (whitelisted): fonts.googleapis.com, clients2.google.com, accounts.google.com, edgedl.me.gvt1.com, content-autofill.googleapis.com, www.googletagmanager.com, clientservices.googleapis.com, clients.l.google.com
                                                                      • Not all processes where analyzed, report is missing behavior information
                                                                      • VT rate limit hit for: https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 22 19:29:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                      Category:dropped
                                                                      Size (bytes):2673
                                                                      Entropy (8bit):3.993537637871879
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:7FFCD78687C1A68E5C0A1137230788F9
                                                                      SHA1:850A08E4F7F4A4134E2B8CE8A49D3389F7B50B06
                                                                      SHA-256:28EB4C705CFAA0BC2BC1B72B36E9845D653838F9DFCCC5F82917FEAE39021404
                                                                      SHA-512:E1EE3882FA026A9DCA6F194B8414BA16B37BC9BE70A9B1D4D428FAAF120B7BEFCD0E330EE6235290BDBCE40C0EAA327E7E616C7DC1EAA428898BDA4551D9402B
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:L..................F.@.. ...$+.,....un...|..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IvX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VvX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VvX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VvX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VvX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............\.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 22 19:29:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                      Category:dropped
                                                                      Size (bytes):2675
                                                                      Entropy (8bit):4.009352607412506
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:34F5CEEC6CFB268A8FE56AB2854C937D
                                                                      SHA1:1D7C6C4C7CA7A94A74B43688636F9AA3830C7377
                                                                      SHA-256:1E508AEC47756DAAC8FDE51785C543A2934C3B13E5F224350FAC5FF5131AA761
                                                                      SHA-512:6D3FA4706E1892507773C4E13B7E31DE368D8CAAF2A345B8B3B24E9302DC7347BA088F243DAB660D73A119DE18AF137FAF43C3F67F7D65E3E411E89ACFE73619
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:L..................F.@.. ...$+.,......~..|..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IvX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VvX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VvX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VvX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VvX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............\.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                      Category:dropped
                                                                      Size (bytes):2689
                                                                      Entropy (8bit):4.012085506192335
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:DFF9032D1D6A8CFC612D522361555C65
                                                                      SHA1:B691AEFFA899E4013CD661AB899A9ADE934C856F
                                                                      SHA-256:A6F2EE7FA82400214AB0DD9648061AAB26CD68EAEAB22C40BD4DB89116E510D6
                                                                      SHA-512:7D2ACF569BBCF34A4DED736CC1575251F63FA7C1FD49211DEAA92352B6BE4C6B246C1BCD3105630E46E135BE2A462C43DC6D5253B83A4F830F76142DF72F4942
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:L..................F.@.. ...$+.,.....Y.04...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IvX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VvX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VvX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VvX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VFW.E...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............\.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 22 19:29:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                      Category:dropped
                                                                      Size (bytes):2677
                                                                      Entropy (8bit):4.006585932625145
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:3C98837054F9D034EFD4D7AD8B23EAAC
                                                                      SHA1:21771D84901521A9360176C4D804C00274031E2C
                                                                      SHA-256:014D964A1AB6ED2D44CBA2130CE624DDCBEC175230E6BE2CBC7ECB2DA1C6CEBC
                                                                      SHA-512:69D5ADEA1303148AE27C5516DCD500A134C752ED7C4D3B396C8E5116395340F42EAD3E0F26E8AA3561A6736F4BBD4799D458A9DF7BEAB4FB548AB9E493D3A2BF
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:L..................F.@.. ...$+.,.....iy..|..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IvX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VvX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VvX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VvX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VvX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............\.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 22 19:29:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                      Category:dropped
                                                                      Size (bytes):2677
                                                                      Entropy (8bit):3.9964582622824794
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:4AA6337F3E234088AA63C844A176136C
                                                                      SHA1:1CD97757E070818C2918F7C9CD128242A9040CF2
                                                                      SHA-256:71973854246E15C0D3DDED9FD57F7A261D7C87750C1C5DB83D250085DF5260D8
                                                                      SHA-512:FF734AE06B701439BB5E88EEDB6D82674443C65062A6AAE58F460F6EF0C6A18C19FF473A81A6DE5F44F75907088DDA854A5D9A0D88CD66D9D6D6BC45DF4BE725
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:L..................F.@.. ...$+.,.....e...|..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IvX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VvX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VvX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VvX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VvX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............\.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Mar 22 19:29:53 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                      Category:dropped
                                                                      Size (bytes):2679
                                                                      Entropy (8bit):4.005706093882477
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:9A9C5644BA975779D10B0F910F67FC49
                                                                      SHA1:04984A02DDFDC52605C2CCF9C9A6B928D84325BE
                                                                      SHA-256:FDFF8D7821E15D7F6BB25FB36226F3616A52E372241EBCAD4E000B49D822ED1F
                                                                      SHA-512:DF9C274A69192DF2E03409CE5900C16289A254F6253135B0E2BB1EF5ABFA249512BCC3A2F259150907D60AD3E77E14D5769D9D13E56962D5A8DA558CABDA8C19
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:L..................F.@.. ...$+.,...../o..|..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IvX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VvX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VvX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VvX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VvX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............\.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (5955)
                                                                      Category:downloaded
                                                                      Size (bytes):246089
                                                                      Entropy (8bit):5.573283060540407
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:9DF0A8CBE8F1006D32007599C3C6A350
                                                                      SHA1:CCCCB3F3944745F9768931AD6446CBDA051D46B6
                                                                      SHA-256:CE89C928C2AC1A99B5257C06D48FBA95743458C6BB62B297F0ABE5D556DD8640
                                                                      SHA-512:B5DA31C9805942DE2F8DB0B57EC876EF1E04F428FC9534D977EA2451CD0DBD6D4280088B011D9C9BE985CBE2704910411D1D508FDF8EE55742DA75C96762A85A
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.googletagmanager.com/gtag/js?id=G-6X02JH402Y
                                                                      Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"2",. . "macros":[{"function":"__e"},{"vtp_signal":0,"function":"__c","vtp_value":0},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0},{"vtp_signal":0,"function":"__c","vtp_value":0},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_ga_send","priority":7,"vtp_value":true,"tag_id":16},{"function":"__ogt_referral_exclusion","priority":7,"vtp_includeConditions":["list","nazy\\.online"],"tag_id":18},{"function":"__ogt_session_timeout","priority":7,"vtp_sessionMinutes":30,"vtp_sessionHours":0,"tag_id":19},{"function":"__ogt_1p_data_v2","priority":7,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_autoEmailEnabled":true,"vtp_autoPhoneEnabled":false,"vtp_autoAddressEnabled":false,"vtp_isAutoCollectPiiEnabledFlag":false,"tag_id":20},{"function":"
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2936)
                                                                      Category:downloaded
                                                                      Size (bytes):210929
                                                                      Entropy (8bit):5.406205603826934
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:EC62E08B6F71B12E65471FB0DE949087
                                                                      SHA1:88FEC2E2DF45DB4A1E4C14D99E9424C8ECA50E9E
                                                                      SHA-256:1A730CB34285C933A5839E656856A4EAAC2449E49A997EFE53D454B94ACE676F
                                                                      SHA-512:0C1D5BAAF5E43C369750EE18D688C71D0ED84E0F98C1A4ECE834EA89272DFFABE280FA40E80A6CF68EDF80F265A44CFDB7A4F5BDE024B068CB3F0AB5FEBD1A56
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/pagead/managed/js/activeview/current/ufs_web_display.js
                                                                      Preview:(function(){var n,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ba="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ca=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("a");},q=ca(this),.t=function(a,b){if(b)a:{var c=q;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&ba(c,a,{configurable:!0,writable:!0,value:b})}};.t("Symbol",function(a){if(a)return a;var b=function(f,g){this.Mg=f;ba(this,"description",{configurable:!0,writable:!0,value:g})};b.prototype.toString=function(){return this.Mg};var c="jscomp_symbol_"+(1E9*Math.random()>>>0)+"_",d=0,e=function(f){if(this instanceof e)t
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:Web Open Font Format (Version 2), TrueType, length 29588, version 1.0
                                                                      Category:downloaded
                                                                      Size (bytes):29588
                                                                      Entropy (8bit):7.99256857196062
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:CD87C62C9C9C1728E4CE6069E20B1104
                                                                      SHA1:0480DB0094DEC698ACF12620A246BD9134766119
                                                                      SHA-256:BF23A7A4EEBEDBB87D4084A69496B29815914A18E339A00F5DC73A03C9C9328F
                                                                      SHA-512:E178B41B16C3D5F417530F28A9A6BA23D7BEE8DCF9325FFA06A03FE0EDD68654F1F801181C296BC7D81046FA4E8FE2B4F83E8D9C4A3990DE397FC390E1C326D1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/cf-fonts/s/pt-serif/5.0.19/latin/700/normal.woff2
                                                                      Preview:wOF2......s........8..s0..........................*..l.`..L.*........$..'..T...@.6.$..$. ..6..}..z.<.'.6..i..R...7.D....-`f.L.. ..T..m......d..4@.J..."P....``.u.=..&..>.@W...r..p...2.-3.>..^A...o..}.`..d..r...|../*.h..s..........+...O.33'.?..*.`.|..G7gL.I.N.DK.$4`B`.V.r.cE......z.<... .G..I|..........".B.B..#[..o....n.%.qy.WU`|.....v....k..f..1.u...mV..J.( u..THY.......sa.6s..t..t...>......$}}...G0..^..g..>....St.EwT....).p}].)...N..s....f..#...3.OT..2q...m.(.:ZH....dr.;.Y.W.....>+............./..i.0I&..h..Bv?...f....!..*$.P.....7h.......7.....L)..fJ.wB$..jZ6a.gFZI.Y.|..B.....>;...w..EE..u...-.,....8.4.0.<.].N.L.K.;n*m9....k.....L...........$....u.zv........X........@....AvC1..M'D........_g..l.8l.g..-A.i..i..'K.=.3.'........&1..X.=G...n....N..).P.OPa.._....e.0.....a.)P..3......... .:|P.#]A9.T....nie......l...f...]J.3g.D..g....Z..}P./R.A.8.D......&K...G..+|..FR.2]j.....>.{.@pzH...lL4g..6l..t.0Z.......{..4"".0..H.z...M......qg..bD.........
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JSON data
                                                                      Category:dropped
                                                                      Size (bytes):16278
                                                                      Entropy (8bit):6.018867923727156
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:07813D32A0E8B7D93D2C39E356601521
                                                                      SHA1:7A401332D2787D7820A0D0BEAC64E5E120717298
                                                                      SHA-256:1AF68561260914EC18DC3F0D5A85009A7171451D30AD53A7CEB44428D79B294F
                                                                      SHA-512:EC96F6273FC5105F156F425D405C4213EBE2226CE167207A3585DFF1E5498A2B1508FEB9F345CCE79C2512AAB4A3FF8BEB675D635BE84C2827FEC8ED5BD4FB9B
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:{"sodar_query_id":"Rur9ZbHKIbK_5LcP3-e5-A8","injector_basename":"sodar2","bg_hash_basename":"ClgGLJT-anMFFp_jPcSPgTpNjWBfoBtPLqdYJvwYrrQ","bg_binary":"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
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1440x1796, components 3
                                                                      Category:downloaded
                                                                      Size (bytes):377038
                                                                      Entropy (8bit):7.972431864788618
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:C715E8A5FDFC19BFBE4FE8510DA16438
                                                                      SHA1:9266C75746595BFE4830A14818D45AB5338D6E6E
                                                                      SHA-256:482DEF9FDC14B3BD61BA7F279E9AECEBA12ADDD6C6C26A8A799775B886BA1892
                                                                      SHA-512:D91E50D791C981F2D36FD4E4EF78E84C7963534EFB4E0041E2137836D187FF08EB4AC846B11AF7ABDBF6A8D614F33AA2E3D950DEDD6760010C242AD9AD89B525
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://gener1.genplusmedia.online/uploads/oliviacastaxx_1710764087_3326452721752755022_492034056041.jpg
                                                                      Preview:......JFIF.............lPhotoshop 3.0.8BIM.......P..(.JFBMD0f000759010000d8af0000f84b0200cd9c020065d002005d9b03009f810500cec00500....C.............................$......$$$$$$$$++++++222228888888888...C...........;(!(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;...........".................................................................................$..........WR.a...m......?=.>x.......>..E..#.<mVc......q.....l.-....:".].Ba.....1.c..T.6Q.v.{...!E.X...K...re......,..C...$...at...].b.7.U.2.BZ].gT..;:..[.E...lg...R.../.T.......5.?....}.....S...zN.s.S./...W5.j.;.I;e\.GE..d.....l....Y.o.zIT/....rR...V.C.(.X.H..+......}..#...Y.._.(q.L..E...u..{|a...mC.U59.g.y|.\..y.....(.N...6....:....z<s..8....,+.*...n..p........g.....1Y>2.R .[.V1B;..W9......7..}%.M...A.m[..Z2.g..{......O..9..*....~.-T.l}i/...Y[...I.n.M.......3....`.Wfdm...V\.D.e.i..:.R.m.=/5O..R..N6...>X...]..i.hs.QgxT+.\.....G.....^.;..'|.o.~l.......r..3..;.^z.....Q..C....au.n..(..z|.6R....../..F.NQ.&3
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2374)
                                                                      Category:downloaded
                                                                      Size (bytes):9579
                                                                      Entropy (8bit):5.445885321983083
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:84D2527241FB8C00CE4670060C5F1154
                                                                      SHA1:C1ACD1E1C0B446E18A49967BF82F03E93D6ED950
                                                                      SHA-256:DDA19D2F601C81C0A9188A28302D431E76C49A29F8E0B2D300747B56B5077E71
                                                                      SHA-512:8C9D1F94FE3A7233751BCCDA1C63ADF4CC23D0953841B0A128185E1F86D475A473BDC7A05F57BDB6360543F397666F07B1925ADADAB14F7BA54D4FD67244D4E9
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.gstatic.com/mysidia/84d2527241fb8c00ce4670060c5f1154.js?tag=client_fast_engine_2019
                                                                      Preview:(function(){'use strict';var h="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};function aa(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var ba=aa(this);.function ca(a,b){if(b)a:{var c=ba;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&h(c,a,{configurable:!0,writable:!0,value:b})}}.ca("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}function c(f,g){this.g=f;h(this,"description",{configurable:!0,writable:!0,value:g})}if(a)return a;c.prototype.toString=function(){return this.g};var d="jscomp_symbol_"+(1E9*Math.r
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2930)
                                                                      Category:downloaded
                                                                      Size (bytes):15176
                                                                      Entropy (8bit):5.489167080059352
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:1C9A1839BD956DC97D3BA3090678AA13
                                                                      SHA1:55EAFB485FACC47E12A039098B718D2CF4E63BC5
                                                                      SHA-256:DF68F57ECDA7DE300BD2613E1619F481BCEC4791F91634CEAA5AB9DC12493205
                                                                      SHA-512:77C81EDD0E3413EEF667AD2D284E9E737ED027B7108D1AB2E491AEC376E358EEA1662344A3E6115BE7024946926FEB23B635112C81A408A10D0C1B155E64090E
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/elements/html/fullscreen_api_adapter_fy2021.js
                                                                      Preview:(function(){'use strict';/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var n=this||self;function aa(a){a:{var b=["CLOSURE_FLAGS"];for(var c=n,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1};var ba=aa(610401301),ca=aa(188588736);var r;const ia=n.navigator;r=ia?ia.userAgentData||null:null;function t(a){return ba?r?r.brands.some(({brand:b})=>b&&-1!=b.indexOf(a)):!1:!1}function u(a){var b;a:{if(b=n.navigator)if(b=b.userAgent)break a;b=""}return-1!=b.indexOf(a)};function w(){return ba?!!r&&0<r.brands.length:!1}function A(){return w()?t("Chromium"):(u("Chrome")||u("CriOS"))&&!(w()?0:u("Edge"))||u("Silk")};function B(a){B[" "](a);return a}B[" "]=function(){};!u("Android")||A();A();u("Safari")&&(A()||(w()?0:u("Coast"))||(w()?0:u("Opera"))||(w()?0:u("Edge"))||(w()?t("Microsoft Edge"):u("Edg/"))||w()&&t("Opera"));var D=Symbol();var ja={},ka={};function la(a){return!(!a||"object"!==typeof a||a.g!==ka)}function E
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (786)
                                                                      Category:downloaded
                                                                      Size (bytes):1672
                                                                      Entropy (8bit):5.287698118276452
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:391C73545274E78E6615C6449FF6FF1D
                                                                      SHA1:C9D581335ABDBFD51679827E8B24F9896CA1DA16
                                                                      SHA-256:41D2526E9C4595FC1FC747555BDA18A041033A863A9B2ED180E7B5836918FACD
                                                                      SHA-512:843D8CC8703AA9808F7D9807AB4CB24795279A015F1EEB2632C0A289C0427157FEDE3BB988FF857DC994BAD22EC5CA83654B6FBF0FA24390E14816F66072ECAB
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/client/load_preloaded_resource_fy2021.js
                                                                      Preview:(function(){'use strict';let e=[];const f=()=>{const a=e;e=[];for(const b of a)try{b()}catch{}};function g(a=document){return a.createElement("img")};function h(a=null){return a&&"26"===a.getAttribute("data-jc")?a:document.querySelector('[data-jc="26"]')};var k=document;/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var m=()=>{var a=k.querySelectorAll("link[data-reload-stylesheet][as=style][rel=preload]");for(var b=0;b<a.length;b++){var c=a[b],d="link",l=document;d=String(d);"application/xhtml+xml"===l.contentType&&(d=d.toLowerCase());d=l.createElement(d);d.setAttribute("rel","stylesheet");d.setAttribute("href",c.getAttribute("href"));k.head.appendChild(d)}if(0<a.length&&!(.01<Math.random())){a=(a=h(document.currentScript))&&"true"===a.getAttribute("data-jc-rcd")?"pagead2.googlesyndication-cn.com":"pagead2.googlesyndication.com"; .b=(b=h(document.currentScript))&&b.getAttribute("data-jc-version")||"unknown";a=`https://${a}/pagead/gen_204?id=jca
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (17258)
                                                                      Category:downloaded
                                                                      Size (bytes):17853
                                                                      Entropy (8bit):5.650293736276167
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:A902CF484E5ACE93DA78F537FDA3694E
                                                                      SHA1:F247699ED31DC5D94E6627EDAAF0576C2560B254
                                                                      SHA-256:EF51AF61F5AB9CD5503F1EE768083E0D4146141F926710CDE7F0D18E82BDD002
                                                                      SHA-512:07CF67E4A4A12ABD0131D3A65238478E5328CA71BEE56F61229772AEBE01D0BEF961FC9D9BAE527AB0F2965A3A290ED985ECEFD99904E50162FD271A12B46B06
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.google.com/js/bg/71GvYfWrnNVQPx7naAg-DUFGFB-SZxDN5_DRjoK90AI.js
                                                                      Preview:/* Anti-spam. Want to say hello? Contact (base64) Ym90Z3VhcmQtY29udGFjdEBnb29nbGUuY29t */ (function(){var m=function(w,g){if((g=(w=null,a.trustedTypes),!g)||!g.createPolicy)return w;try{w=g.createPolicy("bg",{createHTML:J,createScript:J,createScriptURL:J})}catch(B){a.console&&a.console.error(B.message)}return w},a=this||self,J=function(w){return w};(0,eval)(function(w,g){return(g=m())&&1===w.eval(g.createScript("1"))?function(B){return g.createScript(B)}:function(B){return""+B}}(a)(Array(7824*Math.random()|0).join("\n")+['(function(){/*',.'',.' SPDX-License-Identifier: Apache-2.0',.'*/',.'var E=function(w,g){if(void 0===(g=g.H[w],g))throw[H,30,w];if(g.value)return g.create();return g.create(2*w*w+82*w+-64),g.prototype},k={passive:true,capture:true},K=function(w,g,J,a,l,p){if(g.V==g)for(l=E(w,g),338==w||135==w?(w=function(d,B,m,N,u){if((m=((N=l.length,N)|0)-4>>3,l.ey)!=m){u=(B=(m<<3)-4,[0,0,p[1],p[l.ey=m,2]]);try{l.BM=w5(s8(B,l),u,s8((B|0)+4,l))}catch(Q){throw Q;}}l.push(l.BM[N&7]^d)},p
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (31994)
                                                                      Category:downloaded
                                                                      Size (bytes):323187
                                                                      Entropy (8bit):5.5730758102464755
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:0B62303205438AE7F911611F12A3B91C
                                                                      SHA1:3865A45BF6A09627803B654735D698E0B2893E52
                                                                      SHA-256:52104A979250A8101A0F8A835DF7DFC7F3CFF0113A35CED4723599719A51FB13
                                                                      SHA-512:6E9DC41F370E8280C7C67CDB35368288AB5405DDA199CE839BE31652B413B3A00E60C386B0D9AEC31D4A24126B63AF9FBEF3C57B196AD68C2852788FDFE93429
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://jsc.adskeeper.com/s/a/sazi.online.1525321.es6.js
                                                                      Preview:(()=>{var nn=Object.create;var Ie=Object.defineProperty;var rn=Object.getOwnPropertyDescriptor;var on=Object.getOwnPropertyNames;var pn=Object.getPrototypeOf,cn=Object.prototype.hasOwnProperty;var $=(v,t)=>()=>(v&&(t=v(v=0)),t);var se=(v,t)=>()=>(t||v((t={exports:{}}).exports,t),t.exports),st=(v,t)=>{for(var e in t)Ie(v,e,{get:t[e],enumerable:!0})},ln=(v,t,e,i)=>{if(t&&typeof t=="object"||typeof t=="function")for(let s of on(t))!cn.call(v,s)&&s!==e&&Ie(v,s,{get:()=>t[s],enumerable:!(i=rn(t,s))||i.enumerable});return v};var ae=(v,t,e)=>(e=v!=null?nn(pn(v)):{},ln(t||!v||!v.__esModule?Ie(e,"default",{value:v,enumerable:!0}):e,v));var z,C=$(()=>{z={"adskeeper.com":`<div class="mgheader"><span class="mghead">%WIDGET_TITLE%</span><div class="mg_addad%id"><a href="//widgets.adskeeper.com/%utm%id" target="_blank"><img src="//cdn.adskeeper.co.uk/images/adskeeper_svg.svg" width="71" height="16" alt /></a></div></div><style>.mghead{line-height:20px;vertical-align:middle;font-weight:700;font-size:
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:dropped
                                                                      Size (bytes):25218
                                                                      Entropy (8bit):7.99336554766127
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:3281CC25F1DA98DEC46FE7404ADD60A3
                                                                      SHA1:00B26C1CE8A8E118E4113DA5671600DD3CF69E6E
                                                                      SHA-256:2A4A715C90C8542388279832143AB95B2CD3ECC4D83AF41755B224456F3F9062
                                                                      SHA-512:53B91E826F5E0E4B58E20C30EF1788AB1A2C5C44923E011EFD6717D4B830E2F2FBB6111F9C3FFC10C18E9D0B6843EED56D0E04CE7FD36F381D430B2293892114
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:RIFFzb..WEBPVP8 nb..pq...*..h.>.>.I%."$*u.....MS........u....Z*.....e.,{..iY\.....r..o...t..>.?..K.'..a^c_..B|.~.........{.........#?..C~s...q.'.oiy...>...'.O.s....../.O........w.........{....z......=..b..vU..A9hP:..#....5..B:.f....?..~.)D....... RY!..w.$.....G8\.......)l_..Z`.6m0.j....1....;...zE........w..T>..@X2u....^.*..40..4....]b...Q?....2,.&.....".....|s.|...&.:....K...L"3...H]X^8..Gc. X.+...9..f0.G...f.{.ft.s.~.ry...y....CXl.U.....}7=j..z=4<j.u..u.XC..=~.~.,nHPd..)..s..{I#..W..[.-...{7..*y....8~NV.....x......g...T...b..L...f_.].*.iq.(W.?z.3.-.1......1a|...........F...q.........{Sl.8.P...]L..v.w....715..2.\.9...Uy.G.. ,f|N./.4..7..I....t...8..}......x0.%u.q......'d...K(...Y=...{.....2@..e.....b.;.....)Q.%...e.l.#..H....(..Sm..}.i..Q'../K..;)....1<.W;wNV.P.dn.$.7.......*...<r..b<W.......G.<`.49....!9>+.p.1...../G.bc. 2..........'u.ZL!.h>._Ggw ..6.L..8.c......L..u*....7.aZ...\e...J.9U..B...#:.....#...Fz.ub..:..*-.............}.f.#^"
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1346), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):1346
                                                                      Entropy (8bit):5.200486941794588
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:ABD4E2373B2E8C4DAC2E80159641C5F1
                                                                      SHA1:E273656E58CA934D873204E68DD35670FDE657ED
                                                                      SHA-256:021F0FD27042B279A49E982215C6DC3C3AB84E95B35553A119DFDBD50AF6BE94
                                                                      SHA-512:FB04FEB14C2EB999DA4B032812A447E1D3B9F0FBC85ABCDFB886DF2CF1BDC1BCAE1684A4E118626ECAD9441FA56302FF8981B4DED5DA2033012EED2E8A258398
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://plausible.io/js/script.js
                                                                      Preview:!function(){"use strict";var a=window.location,r=window.document,o=r.currentScript,l=o.getAttribute("data-api")||new URL(o.src).origin+"/api/event";function s(t,e){t&&console.warn("Ignoring Event: "+t),e&&e.callback&&e.callback()}function t(t,e){if(/^localhost$|^127(\.[0-9]+){0,2}\.[0-9]+$|^\[::1?\]$/.test(a.hostname)||"file:"===a.protocol)return s("localhost",e);if(window._phantom||window.__nightmare||window.navigator.webdriver||window.Cypress)return s(null,e);try{if("true"===window.localStorage.plausible_ignore)return s("localStorage flag",e)}catch(t){}var n={},i=(n.n=t,n.u=a.href,n.d=o.getAttribute("data-domain"),n.r=r.referrer||null,e&&e.meta&&(n.m=JSON.stringify(e.meta)),e&&e.props&&(n.p=e.props),new XMLHttpRequest);i.open("POST",l,!0),i.setRequestHeader("Content-Type","text/plain"),i.send(JSON.stringify(n)),i.onreadystatechange=function(){4===i.readyState&&e&&e.callback&&e.callback()}}var e=window.plausible&&window.plausible.q||[];window.plausible=t;for(var n,i=0;i<e.length;i++)t
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (4179)
                                                                      Category:downloaded
                                                                      Size (bytes):270065
                                                                      Entropy (8bit):5.566352861599013
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:4AB46E3B14C1C994B19AAA6B8382333E
                                                                      SHA1:FDC790D5D1F6EE0B5815E3E5430CBB596DFE78C1
                                                                      SHA-256:C23B83D6381301DBF84C9E6F277C05E48C2FB5238CE061E21FE700A9911C0C99
                                                                      SHA-512:9D4CE367F1A0B9B2BF6C7D7DEE671769B5117A55A9E74E090774A27C3BA09F95A34F774C331DCAF0AF991D83EB834B3C869FF2A21380F5F2083DA96C2E2A83D1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.googletagmanager.com/gtag/js?id=G-PX3PZ6Q9RG
                                                                      Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_1p_data_v2","priority":11,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":true,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNa
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):211570
                                                                      Entropy (8bit):5.414007548791429
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:29CA5ADB7D7EEE764C68B0784EC42947
                                                                      SHA1:3D7229366BDA5ACB349F97192FB838FA1BE1F987
                                                                      SHA-256:A9F959272120A8FE9FC940B8DF6A07A9E6C79D9B72773D62878E82FCD1C51951
                                                                      SHA-512:4A733DD1BF29436B83BEE0F54E091FAB959AC7286E8C8CF91742D76FFF140579A88DF8B6C8634E1127D72686E3B9010FAD9A71B556A983DAAA37D115B657A370
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://ads.pubmatic.com/AdServer/js/pwt/161673/7165/pwt.js
                                                                      Preview:if (window.owpbjs && window.PWT) { console.log('DEBUG - for identity only profile, detected duplicate owpbjs and pwt namespaces. Exiting Identity Hub'); } else {/* prebid.js v6.18.0Updated : 2023-02-22*//*! For license information please see prebid-core.js.LICENSE.txt */!function(){var e,n={4877:function(e,n,t){"use strict";t.d(n,{Pd:function(){return s},Th:function(){return c},_U:function(){return d}});var r=t(6996),i=t(9853),o=t(265),a=t(1879),u="outstream";function c(e){var n=this,t=e.url,c=e.config,s=e.id,d=e.callback,f=e.loaded,l=e.adUnitCode;this.url=t,this.config=c,this.handlers={},this.id=s,this.loaded=f,this.cmd=[],this.push=function(e){"function"==typeof e?n.loaded?e.call():n.cmd.push(e):(0,i.logError)("Commands given to Renderer.push must be wrapped in a function")},this.callback=d||function(){n.loaded=!0,n.process()},this.render=function(){var e=this,n=arguments,c=function(){e._render?e._render.apply(e,n):(0,i.logWarn)("No render function was provided, please use .setRe
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:SVG Scalable Vector Graphics image
                                                                      Category:downloaded
                                                                      Size (bytes):3615
                                                                      Entropy (8bit):4.363229193409259
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:93F6D1136FB77E38A0A2C72108588F09
                                                                      SHA1:FB574E98560C94B3527E34109A971EE0BCAD8CE6
                                                                      SHA-256:3C1798EE0E6E7DE78F91BB457E6670385951CAEA9FC9C97295CA303EC6FE49BE
                                                                      SHA-512:F3A6F2253B0C8B3A53E5C02CDB7DA511E81819691C03F8A9408DE86AC4AB0D142380CF03C664917AEE67C87A58DB26F9569A801332656FBB5F2CCE8405A71749
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://cdn.adskeeper.co.uk/images/adskeeper_svg.svg
                                                                      Preview:<svg xmlns="http://www.w3.org/2000/svg" width="71" height="16" viewBox="0 0 660.69 147.62"><defs><style>.cls-1{fill:#7f7e7c;}</style></defs><g id="Layer_2" data-name="Layer 2"><g id="Layer_1-2" data-name="Layer 1"><path id="big" class="cls-1" d="M226.51,88.35l-4.61,20.54h9.22ZM274.45,82h-8.51v37.41h8.36c7.2,0,9-2.52,9-7.79V90C283.31,84.74,282.16,82,274.45,82Zm0,0h-8.51v37.41h8.36c7.2,0,9-2.52,9-7.79V90C283.31,84.74,282.16,82,274.45,82Zm-47.94,6.35-4.61,20.54h9.22Zm0,0-4.61,20.54h9.22ZM274.45,82h-8.51v37.41h8.36c7.2,0,9-2.52,9-7.79V90C283.31,84.74,282.16,82,274.45,82Zm0,0h-8.51v37.41h8.36c7.2,0,9-2.52,9-7.79V90C283.31,84.74,282.16,82,274.45,82Zm-47.94,6.35-4.61,20.54h9.22Zm0,0-4.61,20.54h9.22ZM274.45,82h-8.51v37.41h8.36c7.2,0,9-2.52,9-7.79V90C283.31,84.74,282.16,82,274.45,82Zm0,0h-8.51v37.41h8.36c7.2,0,9-2.52,9-7.79V90C283.31,84.74,282.16,82,274.45,82Zm-47.94,6.35-4.61,20.54h9.22Zm0,0-4.61,20.54h9.22ZM274.45,82h-8.51v37.41h8.36c7.2,0,9-2.52,9-7.79V90C283.31,84.74,282.16,82,274.45,82ZM50
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (50850)
                                                                      Category:downloaded
                                                                      Size (bytes):52130
                                                                      Entropy (8bit):5.717073739996102
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:54438476F1C54C5D64304F101A98F035
                                                                      SHA1:974BCC206BB8AFA986BEADA6126FF77D2B9A7D9D
                                                                      SHA-256:B60D1E5E52922911E87C02F0D774FD441B6918B54D78D6B2F75161D69219BA11
                                                                      SHA-512:ADD4297134C12A7A7918388423E6F68CB1B7036D50D1301163DF0A80EB698A4A97A772D8E8083F9F2B5CDC6C4ECB29C0F7F5812053610B265B279F01DE9DB9B1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/bg/tg0eXlKSKRHofALw13T9RBtpGLVNeNay91Fh1pIZuhE.js
                                                                      Preview://# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ2ZXJzaW9uIjogMywic291cmNlcyI6WyIiXSwic291cmNlc0NvbnRlbnQiOlsiICJdLCJuYW1lcyI6WyJjbG9zdXJlRHluYW1pY0J1dHRvbiJdLCJtYXBwaW5ncyI6IkFBQUE7QUFBQTtBQUFBO0FBQUE7QUFBQTtBQUFBO0FBQUEifQ==.(function(){function q(u){return u}var c=function(u){return q.call(this,u)},H=this||self,b=function(u,B,X,w,v,E,Z,K,Q,m,I,p){for(I=(p=27,X);;)try{if(p==w)break;else{if(p==u)return I=X,Q;if(45==p)H.console[v](m.message),p=u;else if(14==p)p=K&&K.createPolicy?71:80;else if(27==p)Q=Z,K=H.trustedTypes,p=14;else if(p==B)p=H.console?45:u;else if(28==p)I=X,p=B;else if(71==p)I=15,Q=K.createPolicy(E,{createHTML:c,createScript:c,createScriptURL:c}),p=u;else if(80==p)return Q}}catch(a){if(I==X)throw a;15==I&&(m=a,p=28)}};(0,eval)(function(u,B){return(B=b(84,41,8,46,"error","bg",null))&&1===u.eval(B.createScript("1"))?function(X){return B.createScript(X)}:function(X){return""+X}}(H)(Array(7824*Math.random()|0).join("\n")+['//# sourceMappingURL=data:applicati
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (730)
                                                                      Category:downloaded
                                                                      Size (bytes):507756
                                                                      Entropy (8bit):5.704981966356417
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:6AFD58BEC95BC166D3C68166F86E9E67
                                                                      SHA1:9523C602A5D5610332785397CD26D3B9E18873AB
                                                                      SHA-256:9368F8AB141B9545A2B9E279ABE8FEF65A60091050EBEAB9B63DD4C1BD0D38E1
                                                                      SHA-512:EACE418ECD0463B236F076ECFA8BF04E25F7F18EB9B9A0E765410613BCC86784F09D5C33AEBF8748DE3DCBFC3ACDDB98FF19A2C2930B5ABCD0B2F264AF670C5E
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.gstatic.com/recaptcha/releases/Hq4JZivTyQ7GP8Kt571Tzodj/recaptcha__en.js
                                                                      Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/./*.. SPDX-License-Identifier: Apache-2.0.*/./*.. Copyright 2005, 2007 Bob Ippolito. All Rights Reserved.. Copyright The Closure Library Authors.. SPDX-License-Identifier: MIT.*/./*. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var dm=function(){return[function(B,Y,d,q,X,D,t,W,V,F,P,J){return(J=[18,"B","call"],(B+7^J[0])<B&&(B+2^28)>=B&&(P=a[14](12,null,n[J[0]].bind(null,8))),5>(B^6)&&0<=(B|8)>>3)&&(V=d.K,X=[8,3,0],D=d.R,t=V[D+Y],F=V[D+X[2]],q=V[D+1],W=V[D+X[1]],r[14](8,4,d),P=F<<X[2]|q<<X[0]|t<<16|W<<24),(B|48)==B&&(I[28](64,2,d,X,q[J[1]],Y),P=q),2==(B<<1&15)&&(P=Object.prototype.hasOwnProperty[J[2]](Y,d)),P}]}(),n=function(){return[function(B,Y,d,q,X,D,t,W,V,F,P){if((P=[1,36,63],16)<=B>>P[0]&&29>B>>P[0])a:if(W=[37,0,39],.X.keyCode==W[0]||X.keyCode==W[2]||X.keyCode==Y||40==X.keyCode||9==X.keyCode)if(V=[],9!=X.keyCode){if(t=(Array.prototype.forEach.call(w[12]
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:dropped
                                                                      Size (bytes):25156
                                                                      Entropy (8bit):7.993317425524226
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:F6ABCC03E21C9D51E1F15A5A6EB89B62
                                                                      SHA1:7B3C3AF659BB33FE918B1B78DB5DF4D8043128BE
                                                                      SHA-256:A6A55FAC853FA117CE8D22A335F59C9517C4006534251D972BB56FD96C3BDCE4
                                                                      SHA-512:349524EA9B9224CFBB3375AB4ADD948B26401E45EAEB7D4C9438E19B1D89447E4221EA4679FF83B3DCEF735E780BC7167E50EE94B82B0A01182FCBB0A5D7B4F4
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:RIFF<b..WEBPVP8 0b..p....*..h.>.>.I.."&..L`...ek.W.s.W..2.....q...~..er.iE......^..{........y..C...<E..."...|...3I.x........~>..........._0........m..JF/ .R.|fZg..h...ONT....<_..g.8....F......H...3........p}.....d...C.\.4HR......<..yc...........X.....J.0..[......_2..Z..k........u...c..;.Z).bI..|.{..X...>...((.q...l...N._U)'.v....{:.K.L..6.[.W8..Xo...JE_.@,...0..]fsG.:...r.RU...=.~..8..D......n.d.4@.....b~...p.........oD..C.n....:.y.o..!.[e...zze.8j...n<......2@h>...... ..T.U..".m.KQ.T.,.X|........d.e.s{I...t.M.y@@..e....{o....1v.........[-m..^........ .5...:.{)'6....BL..s......./.jo..fA.Y ........\....../..ZW..d..A.Z8[.,...p..;"p<ib5......C........w.j.o8..am?^....L>..N*.rm.u.Q...2F......U............W)bc.|E.5..#.........|..d....z.I..Ml...."3...4..fJ.f....Xwu"]Ld...Q.....([..L.f.g.M....(.&..S.y!...@...G../_0.W..f...$.t_<..Xt...:\.{%...l...;.0fo.5X#....q.e...p........:l_.C..c.....-.x.OT..9........$<g..].|..MX.o..wW.r..4Z.<..X......>
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (65447)
                                                                      Category:downloaded
                                                                      Size (bytes):87553
                                                                      Entropy (8bit):5.262620498676155
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:826EB77E86B02AB7724FE3D0141FF87C
                                                                      SHA1:79CD3587D565AFE290076A8D36C31C305A573D18
                                                                      SHA-256:CB6F2D32C49D1C2B25E9FFC9AAAFA3F83075346C01BCD4AE6EB187392A4292CF
                                                                      SHA-512:FC79FDB76763025DC39FAC045A215FF155EF2F492A0E9640079D6F089FA6218AF2B3AB7C6EAF636827DEE9294E6939A95AB24554E870C976679C25567AD6374C
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-includes/js/jquery/jquery.min.js?ver=3.7.1
                                                                      Preview:/*! jQuery v3.7.1 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(ie,e){"use strict";var oe=[],r=Object.getPrototypeOf,ae=oe.slice,g=oe.flat?function(e){return oe.flat.call(e)}:function(e){return oe.concat.apply([],e)},s=oe.push,se=oe.indexOf,n={},i=n.toString,ue=n.hasOwnProperty,o=ue.toString,a=o.call(Object),le={},v=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},y=function(e){return null!=e&&e===e.window},C=ie.document,u={type:!0,src:!0,nonce:!0,noModule:!0};function m(e,t,n){var r,i,o=(n=n||C).createElement("script");if(o.text=e,t)for(r in u)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.remove
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):102
                                                                      Entropy (8bit):4.981653376851701
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:5B102DDA2EDC3C9670FFF2E17E7335A3
                                                                      SHA1:9579D066BB6E0035628DB8A71AD4C80741D1C8B1
                                                                      SHA-256:E218317CB912F66558792D0563E846A889F26258B7D564BCD24C3F02A7DBCCAF
                                                                      SHA-512:331011E8996C563A6CA3F3DC4448CF37AEE017F26358D64DD6B61968C090492859BB69505F417B033B07015B71131C50E297C1D97D536B7B2650EED64E6B8A61
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.google.com/recaptcha/api2/webworker.js?hl=en&v=Hq4JZivTyQ7GP8Kt571Tzodj
                                                                      Preview:importScripts('https://www.gstatic.com/recaptcha/releases/Hq4JZivTyQ7GP8Kt571Tzodj/recaptcha__en.js');
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (4179)
                                                                      Category:downloaded
                                                                      Size (bytes):200770
                                                                      Entropy (8bit):5.53846224460289
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:38170BF47D1ED640F5AE11FF28B5A61F
                                                                      SHA1:0F26F7B28C7125B1996F1420B1EB8A6D877F18EE
                                                                      SHA-256:9FF0E0446A5B70C3A634F62E3073E232238ACF5AD6C0D073B77B62F80658F9C5
                                                                      SHA-512:E4D0FB3A7C46C11681F27D52C3EC540A23B6F46E3ED87DEF0EE57781011769C26F085457B6118C792CCA873B66609A09733074414CB9EE2D6367840AE08F965C
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.googletagmanager.com/gtag/js?id=UA-189072159-18
                                                                      Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"}],. "tags":[{"function":"__ogt_1p_data_v2","priority":2,"vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_isEnabled":true,"vtp_autoEmailEnabled":true,"vtp_autoPhoneEnabled":false,"vtp_autoAddressEnabled":false,"vtp_isAutoCollectPiiEnabledFlag":false,"tag_id":6},{"function":"__ccd_ga_first","priority":1,"vtp_instanceDestinationId":"UA-189072159-18","tag_id":9},{"function":"__rep","vtp_containerId":"UA-189072159-18","vtp_remoteConfig":["map"],"tag_id":1},{"function":"__zone","vtp_childContainers":["list",["map","publicId","G-6X02JH402Y"]],"vtp_enableConfiguration":false,"tag_id":3},{"function":"__ccd_ga_last","priority":0,"vtp_instanceDestinationId":"UA-189072159-18","tag_id":8}],. "predicates":[{"function":"_eq","arg0":["macro",0],"arg1":"gtm.js"},{"function":"_eq","arg0":["macro",0],"ar
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:Web Open Font Format (Version 2), TrueType, length 15344, version 1.0
                                                                      Category:downloaded
                                                                      Size (bytes):15344
                                                                      Entropy (8bit):7.984625225844861
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:5D4AEB4E5F5EF754E307D7FFAEF688BD
                                                                      SHA1:06DB651CDF354C64A7383EA9C77024EF4FB4CEF8
                                                                      SHA-256:3E253B66056519AA065B00A453BAC37AC5ED8F3E6FE7B542E93A9DCDCC11D0BC
                                                                      SHA-512:7EB7C301DF79D35A6A521FAE9D3DCCC0A695D3480B4D34C7D262DD0C67ABEC8437ED40E2920625E98AAEAFBA1D908DEC69C3B07494EC7C29307DE49E91C2EF48
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://fonts.gstatic.com/s/roboto/v18/KFOmCnqEu92Fr1Mu4mxK.woff2
                                                                      Preview:wOF2......;........H..;..........................d..@..J.`..L.T..<.....x.....^...x.6.$..6. ..t. ..I.h|.l....A....b6........(......@e.]...*:..-.0..r.)..hS..h...N.).D.........b.].......^..t?.m{...."84...9......c...?..r3o....}...S]....zbO.../z..{.....~cc....I...#.G.D....#*e.A..b...b`a5P.4........M....v4..fI#X.z,.,...=avy..F.a.\9.P|.[....r.Q@M.I.._.9..V..Q..]......[ {u..L@...]..K......]C....l$.Z.Z...Zs.4........ x.........F.?.7N..].|.wb\....Z{1L#..t....0.dM...$JV...{..oX...i....6.v.~......)|.TtAP&).KQ.]y........'...:.d..+..d..."C.h..p.2.M..e,.*UP..@.q..7..D.@...,......B.n. r&.......F!.....\...;R.?-.i...,7..cb../I...Eg...!X.)5.Aj7...Ok..l7.j.A@B`".}.w.m..R.9..T.X.X.d....S..`XI..1... .$C.H.,.\. ..A(.AZ.................`Wr.0]y..-..K.1.............1.tBs..n.0...9.F[b.3x...*$....T..PM.Z-.N.rS?I.<8eR'.3..27..?;..OLf*.Rj.@.o.W...........j~ATA....vX.N:.3dM.r.)Q.B...4i.f..K.l..s....e.U.2...k..a.GO.}..../.'..%$..ed.*.'..qP....M..j....../.z&.=...q<....-..?.A.%..K..
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:Web Open Font Format (Version 2), TrueType, length 22904, version 1.0
                                                                      Category:downloaded
                                                                      Size (bytes):22904
                                                                      Entropy (8bit):7.987489875857066
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:2A4C97EC45EF9F6D47FB0E7CD47AE67C
                                                                      SHA1:4B7C2B478C629A59E8A0ABEE34FEBA0654392C66
                                                                      SHA-256:7B43CB86A0E63BBB55376B4EA60D8CC9527A1421C367AA09962725E0C5140F5F
                                                                      SHA-512:749CE9FCC89B8D8A68BE776243B81AFEAA95EF709D1EAA6CB7810E7185EE189BBA8AB03007502D4C0241EF81A9ACDABFF080A3BA83AE4E4D90BA7C399AEFF9F2
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/cf-fonts/s/inter/5.0.16/latin/700/normal.woff2
                                                                      Preview:wOF2......Yx..........Y..............................`..^.`?STATD..4.....$..Q..f..6.$..H. .....>.....GwZ..vuW96.;.%]`..x.........q...b....b..GMa.b.p.....0d...D.D..!jED.\.......]=.u;.w.k...Vw.5.p^...].".;.........f.p.../..,.^.. ..p>n.\y.!A....b0..0......`.).mp..R./g..&\...f...x.............mCn4.x5N.p08.....Q.D..F.k....._m..g....{....#<....3;.$.@....|....7..%.Y...^..1`.,..c.1...V.....(5.5Rj#.7R:i.R;.q......Hg......'....l..b*.Sc...U........\s...B*wb.9......kf.#.,w.r].I.+J..[..[:.....5....T..n...HHx...$6......u......5..\S.4z.=.^u.....-..q.!...1.....<0..&..vj..p3.>.....e.....z..K........o.a.v.^.....H<...YDC$DR...-...6.?Tu..R..#``..!.<..p[.!..$.e`i..8P&..x.5[9.z.X.A..r.T....H..w..b..7.....b..ioo.F.S+..,.....8.....8.mE0p..1......Q3..-I.`^...,.L....?.}S\....pd.'..9....@\#Iv..4U...x(y..._.V...k.k....T.pj.$..Dg.KaX.........X7..@XV.<.V.sH.....w.....H...(..`.g..q.^...%.I..h.(.@R.I.G..s..rQ..;.r)we..uQ....\..R'b..*.%.....C..yd..]..v.....hT<...Q..
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:dropped
                                                                      Size (bytes):29762
                                                                      Entropy (8bit):7.993066844437356
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:226A17E2D107CFF662ADC3F7953F34BE
                                                                      SHA1:04C77BF71FBEACA6D06991528EF795A89AB4EA22
                                                                      SHA-256:EABB9AA117C0D81ED563AD82CF0095D1D52831BD9806CA605B1FF85923C48C5B
                                                                      SHA-512:141EE3D63C924ADC1F691824A18B7414454055EAC3B2A6E545A9201B794D10CA2C48D27FA0E46771A83AFD1DE3C413B6A1734136E63F9EFB56931993725641AB
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:RIFF:t..WEBPVP8 .t.......*..h.>.:.H..'.,.....M.x&.g-....?..t}w.Lrx. .k.k...9..........:..........W.................$}.j;.....a..._....s....;hxo...>.~+..............]..........[E..............v.&*...+Nd...%..h...\.'.-.p......d.`|..q.3....d.%).}.....03..(.S....Y.`.%...=...O$.[.(er^.g:@q....G..9........n...l...........P.w..-'...J....^...,I"|H.Ay..,BI7.xLa.'u....A..;%q}..........D`6.d..(.w.2......m.;Fd./.....#a..?.1...r.....[$...(z....m(.R..9@.&..M.R.....Ki.....[.g...Hger.~H.2o.g.z.9.,..u-.%t..n.3{......n%.AF......M%.........1..P'....P5....W....<[.........cY...J.P....5..T+T6.....qK.Yv`...V.we....[l.n2f...{Q..<8YL-.LN+}.Q.h..O.|..V.........u?R........1BYv. .k.r.+.5b!..6...B..xy......Mlv...5.k.?j..-.l.[...O.....c.....a(..l.].....-..c..?I..A...g....M...:Y,.%.J7.ABT.z.p.NW<.^.=dA5t.B.U>L....s.......".....b=..?.}<%.....>....j..S}Y.c.c..MX...R..7..}1.U..\.T.....7.m......].PN..).'.s........sm.4...p.......i..{..mP.....!.uX...c..LL....."..9H.F.u.a.;.....u.H
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:Web Open Font Format (Version 2), TrueType, length 15552, version 1.0
                                                                      Category:downloaded
                                                                      Size (bytes):15552
                                                                      Entropy (8bit):7.983966851275127
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:285467176F7FE6BB6A9C6873B3DAD2CC
                                                                      SHA1:EA04E4FF5142DDD69307C183DEF721A160E0A64E
                                                                      SHA-256:5A8C1E7681318CAA29E9F44E8A6E271F6A4067A2703E9916DFD4FE9099241DB7
                                                                      SHA-512:5F9BB763406EA8CE978EC675BD51A0263E9547021EA71188DBD62F0212EB00C1421B750D3B94550B50425BEBFF5F881C41299F6A33BBFA12FB1FF18C12BC7FF1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://fonts.gstatic.com/s/roboto/v18/KFOlCnqEu92Fr1MmEU9fBBc4.woff2
                                                                      Preview:wOF2......<...........<Z.........................d..z..J.`..L.\..<.....<.....^...x.6.$..6. .... ..S..}%.......|....x..[j.E...d..-A...]=sjf$X.o.5......V....i?}.\...;...V......5..mO=,[.B..d'..=..M...q...8..U'..N..G...[..8....Jp..xP...'.?....}.-.1F.C.....%z..#...Q...~.~..3.............r.Xk..v.*.7t.+bw...f..b...q.W..'E.....O..a..HI.....Y.B..i.K.0.:.d.E.Lw....Q..~.6.}B...bT.F.,<./....Qu....|...H....Fk.*-..H..p4.$......{.2.....".T'..........Va.6+.9uv....RW..U$8...p...........H5...B..N..V...{.1....5}p.q6..T...U.P.N...U...!.w..?..mI..8q.}.... >.Z.K.....tq..}.><Ok..w.. ..v....W...{....o...."+#+,..vdt...p.WKK:.p1...3`. 3.......Q.].V.$}.......:.S..bb!I...c.of.2uq.n.MaJ..Cf.......w.$.9C...sj.=...=.Z7...h.w M.D..A.t.....]..GVpL...U(.+.)m..e)..H.}i.o.L...S.r..m..Ko....i..M..J..84.=............S..@......Z.V.E..b...0.....@h>...."$.?....../..?.....?.J.a,..|..d...|`.m5..b..LWc...L...?.G.].i...Q..1.:..LJV.J...bU.2.:\.kt.......t.....k....B..i.z+...........A.....
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):19168
                                                                      Entropy (8bit):7.989958627935714
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:B636F2E4A21CDFB278B6DDFD7B896219
                                                                      SHA1:C2D4EE229DFC77B2EB74C18A60C5F1293CD515D2
                                                                      SHA-256:0C153E04BD1DA85C21711EDAA223E42022ED93329AE16BEA8C3CD5B7816A3754
                                                                      SHA-512:E83531C2FAB8CCF66EC8B9A0AF047D99DF80AD98B0E87B919DC1068CBD91F7D93FC6C1890A20BAAFF7DD7F6948D22BC4160BEB383FF1D4F996F89B4D5C995409
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/18922657/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX3h5X2NlbnRlcixxX2F1dG86Z29vZCx3XzEwMjAseF8xNzE5LHlfMTMwNi9odHRwOi8vaW1naG9zdHMuY29tL3QvMjAyNC0wMy84MTMwMjcvM2UzNjkxMDE1MWJkNmQ2MDE2YTAwMzc0ZTI5NjJjNzUuanBn.webp?v=1711139396-b2-GWzwAJIIp8EcxdTBzFGrwM7x4rFWAnktca__4VLc
                                                                      Preview:RIFF.J..WEBPVP8 .J...<...*..h.>.B.J%..)&....gnfJ7......S.m-h.5@....-m.d.R.....;.t.....x[...G..!.........S.7j...Q.W.;...7....>...}.....eo..........?.?....../..~.|..A............<.~....K./.........~....e....!<H.>(..|..`.q......E.G...$...Z8~g..@(^....:........5m.k..).......k....,....v..D...F"....C..^I .h...U..~..'.....7..e_.+8..K9.O..<.6.......oo...x..4...E..s..-..V.........o......Y.....t8..1...WhGQ..d...'.n..=sH.h..l..uBC.{.`......T.......HK+.|@...o........G.1.H..+..k.^..4.m...S....}."..x{@g/..xv.v...b..p.]=.I.T.Y.....nyf..wb..BE=U.S..^.g.....wP6L.|X...........H..c...r....=.=...3.n.........{..h.C...<.'....Z9L...oS...F.M..v.. n...C...~.<r1../.C.,...vv....1./....x(V.W.9D...T..n_.'...Z....JB}*.zZ...-P.........4...ie..>.k^.K7...MQ.-0x..^..`-OJW..K..y.....v.\-.-.Da@.3'..8......X.\>^.b....emO...K#}1..u...1G.?.3....U-...*2.G.....pv+..4Z..Z..U..a:.%..4...r!....bK..n....8]...".n.<..8Q7f.lj3o........h....e.....jQ2.U..n?.G~..).....M.*z1..t.?4.v.F.1..J.....
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1440x1796, components 3
                                                                      Category:dropped
                                                                      Size (bytes):196944
                                                                      Entropy (8bit):7.973780605792538
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:3D39D6848F2130BFAFF07CE78CA04A44
                                                                      SHA1:ECC981E8DB293B47CF0C5B7C80658C8278BAE351
                                                                      SHA-256:4DBC3CF862A441FC3E25464481E6FA1D64F2F4BB541EBF0A33EC5267020D4166
                                                                      SHA-512:A32081E8DC568B748A0A98FA95C4E03CA5DCD8A0D122CEE698583CD48224BD8F4CB115A3F12106FB8EA0C87F279ED4F4F2FDEFE42CBA51BDA2BE6BA03A5A3231
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:......JFIF.............lPhotoshop 3.0.8BIM.......P..(.JFBMD0f00075a010000dda400004d840100c2aa010090cb0100ecf3010048fb020050010300....C.............................$......$$$$$$$$++++++222228888888888...C...........;(!(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;..........."..................................................................................E.....K..ie.x.%...Z.[...F...n..:C;...O...R..^.Y.E|.6.1n\6.....` g..q....@4s"..>..{.Q.x.S>Tw..a.N.4Y....le..z..q{.6..#.Y&...o.wN...8.R.....x....R9..^.]g.....4.:.V.:5.l...$...n....1...AY_D..-.Y....1E.^..t.y.5X..4..V.C....M.W.g/..IE..$.j.."=.....4.9.....&H.. >.v$.-w.TTN ..z/.i.G#........."... m6(.U&.bmq......`....z....s#....c.KI.@..i...|../...$.....n..[....C2`.W...+T........}.!w8..8J...9....+Z5..=R.H...R...G.S.R..jfb.6..2.r.D.N..{Uoz..w.S...........:SD..N.....=..<..Y.9.g.OA..1..k..X....=...~..d.....R..........f.J[W..c...}..Ek.2-...h@m.jc...V...=.....m#l...,.#.H.o.).Z.L..z.k....(3.u$G-.]R.rT.G.R.w(.z...eX
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
                                                                      Category:downloaded
                                                                      Size (bytes):2228
                                                                      Entropy (8bit):7.82817506159911
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:EF9941290C50CD3866E2BA6B793F010D
                                                                      SHA1:4736508C795667DCEA21F8D864233031223B7832
                                                                      SHA-256:1B9EFB22C938500971AAC2B2130A475FA23684DD69E43103894968DF83145B8A
                                                                      SHA-512:A0C69C70117C5713CAF8B12F3B6E8BBB9CDAF72768E5DB9DB5831A3C37541B87613C6B020DD2F9B8760064A8C7337F175E7234BFE776EEE5E3588DC5662419D9
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.gstatic.com/recaptcha/api2/logo_48.png
                                                                      Preview:.PNG........IHDR...0...0.....W.......gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....bKGD.......C......pHYs.................IDATh...P....=..8.....Nx. ..PlP8..;.C.1iL#6...*.Z..!......3.po .o.L.i.I..1fl..4..ujL&6$...............w...........,Z..z. ~.....\.._.C.eK...g..%..P..L7...96..q....L.....k6...*..,xz.._......B."#...L(n..f..Yb...*.8.;....K)N...H).%.F"Ic.LB.........jG.uD..B....Tm....T..).A.}D.f..3.V.....O.....t_..].x.{o......*....x?!W...j..@..G=Ed.XF.........J..E?../]..?p..W..H..d5% WA+.....)2r..+..'qk8.../HS.[...u..z.P.*....-.A.}.......I .P.....S....|...)..KS4....I.....W...@....S.s..s..$`.X9.....E.x.=.u.*iJ...........k......'...!.a....*+.....(...S..\h....@............I.$..%.2....l......a.|.....U....y.....t..8....TF.o.p.+.@<.g........-.M.....:.@..(.......@......>..=.ofm.WM{...e..,..D.r.......w....T.L.os..T@Rv..;.....9....56<.x...........2.k.1....dd.V.....m..y5../4|...G.p.V.......6...}.....B........5...&..v..yTd.6...../m.K...(.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (6274)
                                                                      Category:downloaded
                                                                      Size (bytes):6275
                                                                      Entropy (8bit):5.079462691389818
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:C0DC04A574108028BF6BDE0C0E6D8E88
                                                                      SHA1:61237CCD1F8AF2AE508382DED36AF62BD54CB6C2
                                                                      SHA-256:1A54A1907A6443E3C81608130BFED4546EB0CE5D0C8897E1D7A3B43D89ECC367
                                                                      SHA-512:5AF5A1BAD28C27553659E5579A9A151C7F30A898430FB0E5A1E4C96BDA5A79B97ED4938E747E74DA18DDF2E4E0856C8424346D91F96F3CF6A894364C848AE55F
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/plugins/w3-total-cache/pub/js/lazyload.min.js
                                                                      Preview:function _toConsumableArray(t){return _arrayWithoutHoles(t)||_iterableToArray(t)||_nonIterableSpread()}function _nonIterableSpread(){throw new TypeError("Invalid attempt to spread non-iterable instance")}function _iterableToArray(t){if(Symbol.iterator in Object(t)||"[object Arguments]"===Object.prototype.toString.call(t))return Array.from(t)}function _arrayWithoutHoles(t){if(Array.isArray(t)){for(var e=0,n=new Array(t.length);e<t.length;e++)n[e]=t[e];return n}}function _extends(){return(_extends=Object.assign||function(t){for(var e=1;e<arguments.length;e++){var n=arguments[e];for(var r in n)Object.prototype.hasOwnProperty.call(n,r)&&(t[r]=n[r])}return t}).apply(this,arguments)}function _typeof(t){return(_typeof="function"==typeof Symbol&&"symbol"==typeof Symbol.iterator?function(t){return typeof t}:function(t){return t&&"function"==typeof Symbol&&t.constructor===Symbol&&t!==Symbol.prototype?"symbol":typeof t})(t)}!function(t,e){"object"===("undefined"==typeof exports?"undefined":_typeo
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1595)
                                                                      Category:downloaded
                                                                      Size (bytes):22214
                                                                      Entropy (8bit):5.510660646474981
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:78161811D64D609190903833DD9A59F3
                                                                      SHA1:E8454806A613450E3B521F824C0C6A3C73505EB0
                                                                      SHA-256:14FAFB150B976A0B5AC428C91E0825C33BA47B251F2BF349F4E1E5F954D9AD63
                                                                      SHA-512:518DF1E2C7432C82AFCF8CF88166505E0E52CE0F4A4B9E8A82414F0BA27A8D647AB5FE0EA6D6EDBB603692A69608367B4D78E48D351888240D3D1C6DE71039DF
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/elements/html/interstitial_ad_frame_fy2021.js
                                                                      Preview:(function(){'use strict';/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var n=this||self;function aa(a){a:{var b=["CLOSURE_FLAGS"];for(var c=n,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1}function ba(a,b,c){return a.call.apply(a.bind,arguments)}function ca(a,b,c){if(!a)throw Error();if(2<arguments.length){var d=Array.prototype.slice.call(arguments,2);return function(){var e=Array.prototype.slice.call(arguments);Array.prototype.unshift.apply(e,d);return a.apply(b,e)}}return function(){return a.apply(b,arguments)}} .function r(a,b,c){r=Function.prototype.bind&&-1!=Function.prototype.bind.toString().indexOf("native code")?ba:ca;return r.apply(null,arguments)};var da=aa(610401301),ea=aa(188588736);var t;const fa=n.navigator;t=fa?fa.userAgentData||null:null;function ha(a){return da?t?t.brands.some(({brand:b})=>b&&-1!=b.indexOf(a)):!1:!1}function u(a){var b;a:{if(b=n.navigator)if(b=b.userAgent)break a;b=""
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:GIF image data, version 89a, 1 x 1
                                                                      Category:dropped
                                                                      Size (bytes):43
                                                                      Entropy (8bit):3.0530507460466545
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:57F187C7A868FAEAC558007A8EB6CB2E
                                                                      SHA1:11AB10AB109FDB53D91D444AC781101F5A6360C6
                                                                      SHA-256:AA03DC59BDCA72631D2301E4297CFA030BD31B907DC138E7B973D12311C90A22
                                                                      SHA-512:3844065E1DD778A05E8CC39901FBF3191DED380D594359DF137901EC56CA52E03D57EB60ACC2421A0EE74F0733BBB5D781B7744685C26FB013A236F49B02FED3
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:GIF89a.............!.......,..............;
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):23486
                                                                      Entropy (8bit):7.990863547333755
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:5293E2D991C267517EF5F4E76067BFEB
                                                                      SHA1:DA04AB63FE2F6DA7A0701E76E9D1135D81B1F128
                                                                      SHA-256:7F21EF5A40819296E05E371AFB8688ED101E31EC75BBA5E838FF9E7905C23D81
                                                                      SHA-512:DE3086D802B4114C06D020B8A351D8F8C280ABA9A1F91DB5A39707B96E51F6AF866F3F2EB1955A9206D01DC859E1295F4ABDCE642A7CCB69D231DD3CF709478E
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/18400070/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmJlc3Qsd18xMDIwL2h0dHA6Ly9pbWdob3N0cy5jb20vdC8yMDI0LTAxLzQ2NjAyMy8xYTA3NGNkZTk1OTUyYjQzNzhkMTAxZWRlZDUzOGE2OC5qcGc.webp?v=1711139396-V1zWEP88jr2vLvH56jsc0TFPy05u1nc8CkGFWjzSiH8
                                                                      Preview:RIFF.[..WEBPVP8 .[..P....*..h.>.>.I.."!).....ef..%!.|.jo....So....{o....N...W.u....L.^|...?......O..|.W...&.t-.W?8P..t....W.......jB.u..h}.S.[.Eh...!d....e,S.V...u.~.F1[..P_D)H\....\.[..n.{.u...lvdX..l....8.v$..k...'.-......).l.p...g..E?.4...y....s.M.. ..^>.....r.|k|.V..yq...5.6.7q..]A.u.....\.....u;9...>....ND..s.].p. 1...2...B,S...ff..l.]..3.}.u.......b...X..~.;...c.aj.R.nH1!a;.UM/..o..:.x.Y...^>q...a.'.F4=h.eJ.{j..}....wD..9.....(....F...9....j..........[.AR....Vf#N.d"^..7...e.....^...S.o93+h=.....&......;."..=(./...{\Z,f,..h../.vik..i3..!...z...4j........tT!..k.........7.@+.W...%...%2$...Ba.K....,.#..!.......X..Y.Iq....5.Gq_.../.3..b.V.N.:F=..c=....Q..Pt:...i.h......0.3..}.R...6..A..-;....wy..X.4a.c$..F.E-.....q{../..MFu...a~..*.(..*.a]~$}&..n.hOCW..E.....1a...8.....]:n.i.7..!.:..C7............=...ib.\.[.....Ac.._.....svkQ.......B{.`3n.......z~..X\..e..|/..-...e.*........^Q...P..6.|.n4.....0.vj.d.z..\.s.K...H...Y.7A.^.)w..P..@q...?K.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):36
                                                                      Entropy (8bit):3.863826390090815
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:E8EEB1C93B082A060536114309664FE0
                                                                      SHA1:129799FC63DC1ECD963E54210003CA4DC5123ECE
                                                                      SHA-256:1FFD83D094E6B3078255BA6F5DF8FA60F2716B5CF558916A9FF30DCA79631159
                                                                      SHA-512:F2E39596492CE16DEDD43B1F6F35B112545B8DEBA4D37DF42053469B64848233EBA61BA2ACD5740C86525152B55B8C24F678523D688B7712380D9D5A303B754D
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/genericons/genericons.css?ver=6.4.3
                                                                      Preview:@import 'genericons/genericons.css';
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (47853), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):47853
                                                                      Entropy (8bit):5.00013234609364
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:29BD3655C022D31A09380FFF015588D7
                                                                      SHA1:697727603E7C82ABC95EF73A5593A98D3DDE40B1
                                                                      SHA-256:E99CF192AB7C04C043F13E57CD7A3950CD36AA4BCBF489F40C84B6B1B9DC854C
                                                                      SHA-512:FA1C6B7C6360A96F0B22BD1BF8ECB1439BED242E87C673BF0CECD872BBA97469B9CB7F5A5F0CEFAEC7F7384AF8BF04A98DB977476F7BBB3940053F679EFF8148
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/style.css?ver=20221104
                                                                      Preview:.one-line,.two-lines,#featured-content .featured-large .entry-summary,.content-block-2 .hentry .entry-summary,.three-lines,.content-list .entry-summary,.widget-posts-thumbnail .entry-wrap a,.four-lines{overflow:hidden;display:-webkit-box;-webkit-box-orient:vertical}.one-line{-webkit-line-clamp:1}.two-lines,#featured-content .featured-large .entry-summary,.content-block-2 .hentry .entry-summary{-webkit-line-clamp:2}.three-lines,.content-list .entry-summary,.widget-posts-thumbnail .entry-wrap a{-webkit-line-clamp:3}.four-lines{-webkit-line-clamp:4}html{-webkit-text-size-adjust:100%}*,*:before,*:after{box-sizing:border-box}html,body,div,span,object,iframe,h1,h2,h3,h4,h5,h6,p,blockquote,pre,abbr,address,cite,code,del,dfn,em,img,ins,kbd,q,samp,small,strong,sub,sup,var,b,i,dl,dt,dd,ol,ul,li,fieldset,form,label,legend,table,caption,tbody,tfoot,thead,tr,th,td,article,aside,canvas,details,figcaption,figure,footer,header,hgroup,menu,nav,section,summary,time,mark,audio,video{margin:0;padding:0;bo
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text
                                                                      Category:downloaded
                                                                      Size (bytes):145
                                                                      Entropy (8bit):4.3382637030117746
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:434BB1998B2CDCC59686812AE708A9DE
                                                                      SHA1:85BACAABECFA829116FD086046C1FE810397F73E
                                                                      SHA-256:7A6FD962B4686F8277823B26CDA79726EE97ABC0C7F649225EB3C35DF2949FE4
                                                                      SHA-512:B8640BDC2DFE75F26A419685300A5316DFFDAA7B03935A06016EAB2C0871F074A86BCE9C378730E3B4AC81EBFB7A991D2F7A90971166470BAB1B02F5245B425E
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/favicon.ico
                                                                      Preview:<html>.<head><title>404 Not Found</title></head>.<body>.<center><h1>404 Not Found</h1></center>.<hr><center>nginx</center>.</body>.</html>.......
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1440x1796, components 3
                                                                      Category:downloaded
                                                                      Size (bytes):413400
                                                                      Entropy (8bit):7.977096374674951
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:C4464A49632172B687298130F3A5F464
                                                                      SHA1:7F3560562E2B4C8B3A5BDBB7DFC2AEDB49BFFAB3
                                                                      SHA-256:4482349278F573689ABF545350C3351D2CAEAC194608442A7104A062DAE66344
                                                                      SHA-512:4DE91965D4B8E0D87DAE09D2E7BAA784F80445B0E631AFBEF49DD0C94630DA265598A313ECCD67B38DA265BEE1182DF0A39C592DC5846B1117050F05C15C16A5
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://gener1.genplusmedia.online/uploads/oliviacastaxx_1710764087_3326452721761356110_492034056041.jpg
                                                                      Preview:......JFIF.............lPhotoshop 3.0.8BIM.......P..(.JFBMD0f0007590100000fb100006d6502000ebb02006cf20200aef1030001fb0500d84e0600....C.............................$......$$$$$$$$++++++222228888888888...C...........;(!(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;..........."................................................................................H.S..g..z...m..NN...?.?G...Y..........D.]..]*).m.e....2..}.V...?FN..zO.g.E0Q.|...d.CJ.o.6..4/.a..ewS....6UaR..WD9f.A...}..K........,;..p6.c.tv...Z:wx.D...^....R..7..4...;...zG.n:s-..].].W..y..q.T..^..p..K.t....&..a`.e.r.=G..B..3+.!.'ms......RE.....qq..(...<..U..c..4rr.K. 9.9913=..>%.M.-.>.......k{....17h.<...8pNz7........a...FW.EV.N.q.Z,i...aK.8j...5...C..(..T.+.;=E..2W...;...}VY\n.L,..o....A.."}>.I[.7.q..]..........k....a/.Q..r..E..^.'..\..3..M[@-R..'.sb...hb...o....I..u.Pu:.u...H....Aa.>..,..../U...<...R..7{.....q....y7.<..0>.....b.....1..c...<'.1Yb..t.x.5....M.p.-o..O7...pG..#.T.v&
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (3699)
                                                                      Category:downloaded
                                                                      Size (bytes):31139
                                                                      Entropy (8bit):5.483310493892592
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:E66385161855BBA2E3C34FE450DC15D5
                                                                      SHA1:028295A560531E87409841A5354F1269ECE26962
                                                                      SHA-256:9DB6EBC171ED4E53C6193362BA74A1F2ED954714DA66DC7485CFD99E5F1745F8
                                                                      SHA-512:F0A813CB7B526DABE0E8E9A5B775093F7EF04B0A4379A3966C11486C7A586E02553D21213C8F28BC20B7C7FD9ACA3E64F12701B69982EC892D0AED912951052D
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/pagead/show_companion_ad.js?fcd=true
                                                                      Preview:(function(){var p,aa=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},q="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},ba=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object"); .},ca=ba(this),r=function(a,b){if(b)a:{var c=ca;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&q(c,a,{configurable:!0,writable:!0,value:b})}}; .r("Symbol",function(a){if(a)return a;var b=function(f,h){this.P=f;q(this,"description",{configurable:!0,writable:!0,value:h})};b.prototype.toString=function(){return this.P};a=1E9*Math.random()>>>0;var c="jscomp_symbol_"+a+"_",d=0,e=function(
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (1112)
                                                                      Category:downloaded
                                                                      Size (bytes):4381
                                                                      Entropy (8bit):5.060820859722741
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:A2CF1989A5B0E284B1E2E167B121577C
                                                                      SHA1:9DD9AB7C9EBBD435622BBDBFEC1D625927B313C8
                                                                      SHA-256:1DB9C8447699B34C4433D48A6B3A1FC1DF74F4258935953C377BDA8267144918
                                                                      SHA-512:5CFA8697A5348E65CF4BF0E810A8ACD34CF727F0A8DA2A2EA771DE9C2527021A360C8EC426CC8CAD09D68B62341426308A28ABC14C418A5020D37965C55E51AA
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/assets/js/html5.js?ver=6.4.3
                                                                      Preview:;(function(window,document){var version='3.7.3';var options=window.html5||{};var reSkip=/^<|^(?:button|map|select|textarea|object|iframe|option|optgroup)$/i;var saveClones=/^(?:a|b|code|div|fieldset|h1|h2|h3|h4|h5|h6|i|label|li|ol|p|q|span|strong|style|table|tbody|td|th|tr|ul)$/i;var supportsHtml5Styles;var expando='_html5shiv';var expanID=0;var expandoData={};var supportsUnknownElements;(function(){try{var a=document.createElement('a');a.innerHTML='<xyz></xyz>';supportsHtml5Styles=('hidden'in a);supportsUnknownElements=a.childNodes.length==1||(function(){(document.createElement)('a');var frag=document.createDocumentFragment();return(typeof frag.cloneNode=='undefined'||typeof frag.createDocumentFragment=='undefined'||typeof frag.createElement=='undefined');}());}catch(e){supportsHtml5Styles=true;supportsUnknownElements=true;}}());function addStyleSheet(ownerDocument,cssText){var p=ownerDocument.createElement('p'),parent=ownerDocument.getElementsByTagName('head')[0]||ownerDocument.docum
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:dropped
                                                                      Size (bytes):51878
                                                                      Entropy (8bit):7.995891419928897
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:533244720D6485344F7F14360E3C3DD4
                                                                      SHA1:66B15478493360DF82E52DC98A144E07DED05DD5
                                                                      SHA-256:11F2E55146F80E5D54FD63B38B114CD4534B9345DB01517D290ADD14C14E031F
                                                                      SHA-512:73A9BC00D1ABF1DFA6BDCA14A2468D0C673BE2C3C8D5D21196C3945493E50937B1D12FC6AE76DC1943748391EA8BED878538F0032D0B0C03D733292B753569CE
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:RIFF....WEBPVP8 .........*..h.>y0.G..!.8..X...@.!.+....)..(....Gg7.........o....C..~/D.<.......(.o..........c.....W.?.{f......z..{...W...~.w1m..n..}.......w.............+./...|....c.;.....O...?2~..........?.......?.......5.......7.c..I...x.d..L.#WC.I;..4.m.v.c..*J+^.....O..._m..2..X.5.....u.>...^.w5.y}X.....\S....>...\>E.K.^.e....:.~u........#...........m.....=.Y....5p..........]s.4.]...~k....c..x!...X.....F1...4.w..i..6`.U...f{y.z.u..>..;....z..m.,.|.0."C9.._l.3.c...{.y...",0.,...........q..k.5.I.]0.j.Q....]..$a.....U[..7.#!..=+f....b...:..S.s.(.4.Pc....hWPE3..1..'.s}.|p..5.CE[.MeU.H.5M<-{...ir....f.E.]..)..8.z...*......Xt.$.o..[.Q...V..4b..@I..z.I..)......3..P..B..)......{]D....v...G.......Y.u\.W.7.....w%^I.}=..Z....92vX.P....L..[N.....bZ.....X{.a.Y.u.a. .....N...3U+.\D.OZ.........#JM..Z..?..F.../.G.7-..xZ.)..=-......G[..Q.........,....p?.J.....V.NW.i;p0.....f..\...\6...k.q...."..x..}o]>...EY.[).fj..WN.!...Rg. cG^.m.2.....C...a..
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):229
                                                                      Entropy (8bit):5.277733400086128
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:9439E368FA4D34CD56AD4CF1CBDBCE0D
                                                                      SHA1:AC42FF77F91DCD6ADB6D6312B6651A02172AD0A4
                                                                      SHA-256:6416F7B03438BC55ACE26745CF5274525467747A2449E5DFE2EB516C76C543DA
                                                                      SHA-512:5AC5B9FE26605FD81A97DB72956BCB7818A78B266B2ECD5B4674337AFDE50E0395ECC2EB2C22B72968D60404ECEE06DFB63ADD16A4D120454DC074195A9623B2
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://marvin-occentus.net/statistic/js/stat.js
                                                                      Preview:;(function(v,d,r,y,a,b){a=d.createElement(r);b=d.getElementsByTagName(r)[0];a.async=1;a.src=y;b.parentNode.insertBefore(a,b);})(window,document,'script','https://pluralism.themancav.com/lbK9kO6Q3vnxkIeio4aRsueQh7L82d/o+dXbsug=');
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):12002
                                                                      Entropy (8bit):7.981241894024267
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:7CE0314D0295A950057C77E1AE565491
                                                                      SHA1:578578B98F1AC51BB9989CABC5F5BF235DA8651F
                                                                      SHA-256:FA0A72939A3EFAEC0CEC7491A2B74194C3ADC58F841EF2C69375B4165BF64D8C
                                                                      SHA-512:B4954FAF9C80877AE721710F3E96BFD3D029111C611DBEB8F3C5D88865E77C7C992D9E3FEBE75DD1F14259977BDC75EE23535512A6F0C6CFD2046AF0C984C605
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/18908537/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmdvb2Qsd18xMDIwL2h0dHBzOi8vaW1naG9zdHMuY29tL3QvMjAyNC0wMy82NjcwNzIvOWI5MDk0M2ZiNDc3NjM0ZDJlZDBiYTk5ZmQ4YjExMmYuanBlZw.webp?v=1711139396-sh1iBrwaV8fpIiTWcv9rWBxEjaN1nu7AEHYsBPXlDuU
                                                                      Preview:RIFF....WEBPVP8 .........*..h.>.B.K%...$......g...5.......U.>`......_b/.<...?.}E?".{....6..........!..=..u....'..._......_a.....U...w..._.g....6GY....f..S...+'.@p|.!]......Z\.ZR.E.r.Z.....7~......\^......l....E...M...:........s..:7!$...k.ow..k./.<q.Q..u).F.*..=..;B.....A.....eq...I.Pu.o.....pzh"W|..?.~T....|.....h......I.wj....Tm..@}.."..RQ.q.6I]U>....g.....#..0..+U..G+.o.Y...,.mB.a.+.k.?..s.f.....o....\..*.........n.%..Ow.qu..;.Fj=....Y..w.F.E..j...;..4..O.)|?%..M.)..............+...bp..H.y".C..q.."..8...n.z.<..2P-....j....!.A..o!....W...|(.d......}w..!..r..G.[.Y|.I-...a..c....T.....0%...t.W.......?H..kz2.s..'"'g..txK5t.....ifF....r.A...w.........Y..$c....)9......XTxa.S...L.a+q./.l..>.%m...F....I....g<.].mj...)..../?.O+..........A.)s..j.{..]..P...m...,*...J.Nh6...O..1.YbH...^.E2...`.R...~.....q.../..'.,%{.Djj.d.q...Y{x...Y.t..;.Jn..cm<..E.........m{.{.|tj...L".......n.%....@..g).e`pq..y3....*n.....S.;|.$.>........~.5;......=~..r~....z
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1838)
                                                                      Category:downloaded
                                                                      Size (bytes):416647
                                                                      Entropy (8bit):5.5856808775861335
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:31600C9C29BC172850B510A2105E76E5
                                                                      SHA1:F4F126366AB21136677351B1C5DD943D01C094BD
                                                                      SHA-256:AB0AD9BEE95D906ED3438BE619F8A95A2765487B108EB6F9E748674604FF03DB
                                                                      SHA-512:4CC325C2BC94C1C516AF5106B6C3ADF2962224FE0B06EF60F4AFA287A728FFE888C0AD183433F586B185E1AAFE49C90257E7DC438509C7803977414442A85887
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202403190101/show_ads_impl_fy2021.js
                                                                      Preview:(function(sttc){'use strict';var aa,ca="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};function ea(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");} .var fa=ea(this),ia="function"===typeof Symbol&&"symbol"===typeof Symbol("x"),ja={},ka={};function ma(a,b,c){if(!c||null!=a){c=ka[b];if(null==c)return a[b];c=a[c];return void 0!==c?c:a[b]}} .function na(a,b,c){if(b)a:{var d=a.split(".");a=1===d.length;var e=d[0],f;!a&&e in ja?f=ja:f=fa;for(e=0;e<d.length-1;e++){var g=d[e];if(!(g in f))break a;f=f[g]}d=d[d.length-1];c=ia&&"es6"===c?f[d]:null;b=b(c);null!=b&&(a?ca(ja,d,{configurable:!0,writable:!0,value:b}):b!==c&&(void 0===ka[d]&&(a=1E9*Math.random()>>>0,ka[d]=ia?fa.Symbol(d):"$jscp$"+a+
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text
                                                                      Category:downloaded
                                                                      Size (bytes):143
                                                                      Entropy (8bit):5.079318363208902
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:E4E31B474D3E0B577B3C8856E91F8659
                                                                      SHA1:A81311F7FCFA9B6B23A24D4E5C976D5F75B1B9B7
                                                                      SHA-256:18088C10E79C926292732AF98A0CE470E90F3FBCBA4BB4896AB3310C2D94E421
                                                                      SHA-512:A07961EB39C4CD4E39EE19E2C675E64E5BA5367DAA18E2F76A23772ABD62F46B002E6BE8FB0F35A70616941178FACC8DF579C4A68E5811B74313C12806AAFAE3
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://googleads.g.doubleclick.net/pagead/drt/s?v=r20120211
                                                                      Preview:<!DOCTYPE HTML PUBLIC>.<html>. <head>. <meta http-equiv="refresh" content="0;url=https://www.google.com/pagead/drt/ui" />. </head>.</html>
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (57196)
                                                                      Category:downloaded
                                                                      Size (bytes):110147
                                                                      Entropy (8bit):4.920389651812489
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:0234D0A7685AEFA6FD06041FBD602928
                                                                      SHA1:CBCBA60AA82286DD1F877CB8BD5B5CC047F82CE0
                                                                      SHA-256:0085ADFD2D08A45F62A06D8F3F969DDC4A94EBE8D226511DB90AA038F11ED180
                                                                      SHA-512:298B4324851F0D9662A48EF2FA74E65CD78FB4BC69191B05E70C254B6CC196719E7F35FE3E882857026FCFA260F0A5B1208E964EE9F42A9DD2E2FED0ACB070D1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-includes/css/dist/block-library/style.min.css?ver=6.4.3
                                                                      Preview:@charset "UTF-8";.wp-block-archives{box-sizing:border-box}.wp-block-archives-dropdown label{display:block}.wp-block-avatar{line-height:0}.wp-block-avatar,.wp-block-avatar img{box-sizing:border-box}.wp-block-avatar.aligncenter{text-align:center}.wp-block-audio{box-sizing:border-box}.wp-block-audio figcaption{margin-bottom:1em;margin-top:.5em}.wp-block-audio audio{min-width:300px;width:100%}.wp-block-button__link{box-sizing:border-box;cursor:pointer;display:inline-block;text-align:center;word-break:break-word}.wp-block-button__link.aligncenter{text-align:center}.wp-block-button__link.alignright{text-align:right}:where(.wp-block-button__link){border-radius:9999px;box-shadow:none;padding:calc(.667em + 2px) calc(1.333em + 2px);text-decoration:none}.wp-block-button[style*=text-decoration] .wp-block-button__link{text-decoration:inherit}.wp-block-buttons>.wp-block-button.has-custom-width{max-width:none}.wp-block-buttons>.wp-block-button.has-custom-width .wp-block-button__link{width:100%}.wp-bl
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):12302
                                                                      Entropy (8bit):7.983367754854526
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:5DE62A3C52D59F291F566CA396A7891C
                                                                      SHA1:775F4CD0B1964EA3E79A4306B510AD65DC89CFB1
                                                                      SHA-256:6148572460E86F39B7B64E6A80A4B001DA4C3E748220375F83FDD1AA080023F4
                                                                      SHA-512:F34A5CE240C47C29394124917D3522615C87393A53EE836CE512F11E82C26391C531DD8F770D1B64614CED498DEF3D4F477F8E1061BF4ACCC3FD1882DB48D574
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/16875045/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmdvb2Qsd18xMDIwL2h0dHA6Ly9pbWdob3N0cy5jb20vdC8yMDIzLTA3LzgxMjkxMy8xMzkzNzRiNDVlNjRiZmExNmFiZGVkNDFmZGZmNzEzMC5wbmc.webp?v=1711139396-OpfACrqaiO6rWgSzVB7DOAal-IVCWS00SHuXQk-UHck
                                                                      Preview:RIFF.0..WEBPVP8 ./.......*..h.>.H.K%......`...en.wZ....j/./.].o...B.....g.G...H..^..X..y0>6..o.?...._.?.......O......w.._.~..3.'..~".4........O.....A.............0Z...._`.....zY...S...=.?....S....._6.U..|..E.#.......?./.........l6.m..a..m.....gk..o.#VF..Y..5dj..L......o4..la4.P%...Sr..a....3.f..>.......1.I....Q.uX%...8.2..A...../._..|..T/...1l.%P:..V.9c..}...fH.X......I.e...../p^.....~J..*.Qn}.r'......[..{u M.3WA.P..2..73...*I.F..Y..5dj.'t.P......4@.@..M.c.R.|.;"......SH....R^..3m.....l6..3..w.g..uf......G...c....$>529v.gK...G..r....YC.]...a....3.e).n;......W.!0.9...C.....qb....../{bR...ai.z..../...vd.RR..c.../p^..x.S.#..A.MVI...@Y..d...l....8j}..c...!..........m;..f.m.....k...g...0G.....;......&......u`..p...Sa..m........2.......<..O...PR.(.f..4.N_..!..>....fQ....#.e...../.......-.5..Q..tF..Y...Xho.........I~...]zB..4......./._../..M..S.......`;....l...M.._`..!....*J,.`..m.0..{......L........H(.d..m..=]..".D..ic..A.tf....,.......Y
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, Unicode text, UTF-8 text, with very long lines (9462), with CRLF, LF line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):157892
                                                                      Entropy (8bit):5.819031289324898
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:836DDD41004A93765C36206C6498310C
                                                                      SHA1:DF0975D6AAFBC44E854C9675E9CC9B64211A1C10
                                                                      SHA-256:582F9ED79F7AE3BB3A250AC0678AA6E2B8598B225142D6324AAB1AC212E0297A
                                                                      SHA-512:825B54110E86AD634C2FC58FF4605A0DB2D61771F5AF1326349C1DBECF0C18B4FEF2C6EBF2C35FF9F071CF17FA1A13394C1EEB744B361817DE85B8F6C47E8CF3
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/91150/?utm_source=HueVu&utm_medium=AlluringAngels&utm_campaign=Girls&fbclid=IwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U
                                                                      Preview:<!DOCTYPE html>.<html lang="en-US">.<head><style>img.lazy{min-height:1px}</style><link rel="preload" href="https://sazi.online/wp-content/plugins/w3-total-cache/pub/js/lazyload.min.js" as="script">.<meta charset="UTF-8">.<meta name="viewport" content="width=device-width, initial-scale=1">.<meta http-equiv="X-UA-Compatible" content="IE=edge">.<meta name="HandheldFriendly" content="true">.<link rel="profile" href="https://gmpg.org/xfn/11">...<meta name="robots" content="index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1" />..<title>Olivia Claudia Motta Casta Shines like a Goddess in Stunning New Photo Set</title>.<link rel="canonical" href="https://sazi.online/91150/" />.<meta property="og:locale" content="en_US" />.<meta property="og:type" content="article" />.<meta property="og:title" content="Olivia Claudia Motta Casta Shines like a Goddess in Stunning New Photo Set" />.<meta property="og:description" content="Olivia Claudia Motta Casta Shines like a Goddess
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (6151), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):6151
                                                                      Entropy (8bit):4.893758535204835
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:9D24FC0E9879BE1592EDFD179D9BA300
                                                                      SHA1:1EE88FF1478A4E4D9B38F579163B26919BD271A0
                                                                      SHA-256:1B267A683E31C4FAF2CDEE41BD70AA93FB8BD87B37358B243F3ABAE5C56CE5A3
                                                                      SHA-512:00EBF458A3BA0B2958D8372F08D4F9E57ABDCC7E1EAE8C603A43A0FEFE6A1A2C67D0B9648A1AFDD9CF578BAA0DE1BF294222B8C594C26D2CB77596B2EA59D2BE
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/responsive.css?ver=20221104
                                                                      Preview:@media only screen and (min-width:959px) and (max-width:979px){#page{width:100%}}@media only screen and (max-width:959px){.header-toggles{display:block}.site-content:before{display:none;content:none}.site-header{height:60px;position:relative}.site-header .search-icon{margin-right:6px}.site-start{height:60px;position:relative;border-bottom:1px solid #e9e9e9}.search-icon{display:block}.header-search{background-color:#f7f8f9;border:1px solid #e5e5e5;display:none;height:52px;width:100%;top:60px;left:0;padding:0}.header-search .search-input{width:100%;height:50px;line-height:50px}.header-search .search-submit{background:0 0;height:50px;border-left:none;right:0}#page{width:100%}.container{width:96%}#primary,#secondary{width:100%;margin-left:auto;margin-right:auto}.site-footer{width:100%}#primary-bar,#secondary-nav{display:none}.site-branding{padding-left:1%}.site-branding #logo{height:60px;margin:0}.site-branding img{max-height:60px;width:auto}.site-branding .site-title{font-size:1.2em;line-
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):28
                                                                      Entropy (8bit):3.9946803684089085
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:476B442EC098944C409CE99352FC7F53
                                                                      SHA1:4B2CF39021B8F4313B390CD2C76F61061990A24C
                                                                      SHA-256:3A6922AAFECADC0386F29252F07B8D09B3F7374392E080089304B265B940662E
                                                                      SHA-512:0207AF76779DFDBA691ADFA5744084B3F6EA3005E18709CDD9953BF983B3C64FCEF171D6B136A4856A046C97943CDEAB78A3CDA19BCF401967E4B8EBF685BA72
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwnM7FiIH8zpmxIFDWAGycESBQ1TWkfF?alt=proto
                                                                      Preview:ChIKBw1gBsnBGgAKBw1TWkfFGgA=
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:very short file (no magic)
                                                                      Category:dropped
                                                                      Size (bytes):1
                                                                      Entropy (8bit):0.0
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:CFCD208495D565EF66E7DFF9F98764DA
                                                                      SHA1:B6589FC6AB0DC82CF12099D1C2D40AB994E8410C
                                                                      SHA-256:5FECEB66FFC86F38D952786C6D696C79C2DBC239DD4E91B46729D73A27FB57E9
                                                                      SHA-512:31BCA02094EB78126A517B206A88C73CFA9EC6F704C7030D18212CACE820F025F00BF0EA68DBF3F3A5436CA63B53BF7BF80AD8D5DE7D8359D0B7FED9DBC3AB99
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:0
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:C++ source, ASCII text, with very long lines (1890)
                                                                      Category:downloaded
                                                                      Size (bytes):36754
                                                                      Entropy (8bit):5.516114280742113
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:EF5CE9B2B01BFB848267C2A4546556C1
                                                                      SHA1:8DC80BD6EF1CD94C4070283DBE3186ADFB82D9E7
                                                                      SHA-256:6916AB45C343E75147499B9B51EFD84ECA073FD209F6A520D485E5B2199BF0CB
                                                                      SHA-512:5247C1F1EE2151F9CA8AAA754EF8F63C3610E22C4188D5BDB1F23CD0F298352EFA750B1255B5491685D1AD406B9ACCE678CFAB35AC511DB630A1CF2F49555F02
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.gstatic.com/mysidia/ef5ce9b2b01bfb848267c2a4546556c1.js?tag=mysidia_one_click_handler_one_afma_2019
                                                                      Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var n=this||self;function aa(a){a:{var b=["CLOSURE_FLAGS"];for(var c=n,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1};function ba(a){a=a.o;const b=encodeURIComponent;let c="";a.platform&&(c+="&uap="+b(a.platform));a.platformVersion&&(c+="&uapv="+b(a.platformVersion));a.uaFullVersion&&(c+="&uafv="+b(a.uaFullVersion));a.architecture&&(c+="&uaa="+b(a.architecture));a.model&&(c+="&uam="+b(a.model));a.bitness&&(c+="&uab="+b(a.bitness));a.fullVersionList&&(c+="&uafvl="+b(a.fullVersionList.map(d=>b(d.brand)+";"+b(d.version)).join("|")));"undefined"!==typeof a.wow64&&(c+="&uaw="+Number(a.wow64));return c}.function ca(a,b){return a.g?a.l.slice(0,a.g.index)+b+a.l.slice(a.g.index):a.l+b}function da(a){let b="&act=1&ri=1";a.h&&a.o&&(b+=ba(a));return ca(a,b)}function ea(a,b){return a.h&&a.i||a.m?1==b?a.h?a.i:ca(a,"&dct=1"):2==b?ca(a,"&ri=2"):ca(a,"&ri=16"):a.l}
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1267)
                                                                      Category:downloaded
                                                                      Size (bytes):5470
                                                                      Entropy (8bit):5.06382143330722
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:47A077CF86F328C28B3C43B19A1A1F44
                                                                      SHA1:69124B65808668D7BAE613A9A50C71ECC6EF3EFB
                                                                      SHA-256:D9ECC05C7A6AE6794D682B669AE960B83822E8B57E1A5E675CA8022F366EA0F0
                                                                      SHA-512:54AE3A106544B12BD0E7E49207CE8D16F27BD04992DC5B2D1A764FDC0948473C8CF9C8827F2FD5A6B724BDF45B658F3E80783E4BC221051D39ED1A1F544CD45F
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/assets/js/superfish.js?ver=6.4.3
                                                                      Preview:(function($,w){"use strict";var methods=(function(){var c={bcClass:'sf-breadcrumb',menuClass:'sf-js-enabled',anchorClass:'sf-with-ul',menuArrowClass:'sf-arrows'},ios=(function(){var ios=/^(?![\w\W]*Windows Phone)[\w\W]*(iPhone|iPad|iPod)/i.test(navigator.userAgent);if(ios){$('html').css('cursor','pointer').on('click',$.noop);}.return ios;})(),wp7=(function(){var style=document.documentElement.style;return('behavior'in style&&'fill'in style&&/iemobile/i.test(navigator.userAgent));})(),unprefixedPointerEvents=(function(){return(!!w.PointerEvent);})(),toggleMenuClasses=function($menu,o,add){var classes=c.menuClass,method;if(o.cssArrows){classes+=' '+c.menuArrowClass;}.method=(add)?'addClass':'removeClass';$menu[method](classes);},setPathToCurrent=function($menu,o){return $menu.find('li.'+o.pathClass).slice(0,o.pathLevels).addClass(o.hoverClass+' '+c.bcClass).filter(function(){return($(this).children(o.popUpSelector).hide().show().length);}).removeClass(o.pathClass);},toggleAnchorClass=fun
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JSON data
                                                                      Category:downloaded
                                                                      Size (bytes):15990
                                                                      Entropy (8bit):6.016817879632107
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:4299AD0357720ADD0B9FBCCF79F87CD0
                                                                      SHA1:96C1E3B380E6C51EDCF47981B4D5F30E24A13DE0
                                                                      SHA-256:0C6B4431F49437CC929F04E3BA8FB88B0CF830358CEBBDC61DECE5276E0CEA87
                                                                      SHA-512:077604C4FBC1E179CF5BF542089629BE617A5826997CD9E225BB3C52242707B0F16153168D68351A33E0D1BE449A5E3B87C5235A87857A350F7540A78BFA8B5A
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/getconfig/sodar?sv=200&tid=gda&tv=r20240320&st=env
                                                                      Preview:{"sodar_query_id":"Rer9Zb2nOfal2OMPloWKqAI","injector_basename":"sodar2","bg_hash_basename":"ClgGLJT-anMFFp_jPcSPgTpNjWBfoBtPLqdYJvwYrrQ","bg_binary":"RCoZgEprgt+KJIdcGd0KQ6JdQ6H7McBWOFOJwManEG67+sx9chFtBrRNb/ooXarIoRqGVa8/sjt2eEcwmsTSjJL1TtWpTRrFXq7HpXwez66l4uocmtor6qSlDqT+s89ADvjV38h8f5Moh/A42qnAphqaZ/0h4Bi8SZHPUd8g6yT1OgqENSPQ3qvAT4ubVI6k66kcbbZxBJnqmpof7DoUWWqI1h+HDIf3vfSpyHDHu9YQk7njkmAaa5jSbli//+nZXy1mbzb5st+gtO/qqG+pUHtySiWHBlR9fuh0V1j2slkHA7dugv/XJIrINypgo5K+MpnhotHHuOcoZR0v4kAt2m9zoOQlTTU3VzWEl+blK9Hkc6bguEEpmS4prBs/HwjGtgwmlx4RwD9TY+sVw4C2ehBwyadCjmOx4iBZX81L+CB6CMigr0z9KMPdAQg60rT4wbVNAZBdSokboNvOkKQ1hmA4ygfmIg1gTcgd7dS0eeyJEbQHCXPj6BPSX2v2f+Z1JLZWjKHNWDLJ8l4WyrAsX4gUjAlpnOqLN+Ec694lshhYmuQfCtsOowCTy0KuHmDqChQDjMaoFh3sbe7dCJr/zPD/CU6Dy8KNgJE2QfYvmsj8p0j2UccwB6bDsPhMaGmaa4iq5URTVqd21BmblpJcDfH0RXehDVcQnj2VXsTUptrVdHjzWtVrVEm1dJkphliNbxlK+rTbGqfdBRrlQ/lJNJAc0k6dauch7TGnUrKWCvDLBjiudS8bU3kPfLfh6uImqMx2UzB8iDXgeu0BDG2/JID4fJpOLZmK5iVmF4EHPRhDSmVDm49tOvww3whIfvLq+NnrwXWii9AuV5ETM
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (37246), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):37246
                                                                      Entropy (8bit):5.645481559762258
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:888B7F15EA40A76A800FD75A58D82CB8
                                                                      SHA1:CBA24F79807E96C89D5845F158E509EEAA3B7970
                                                                      SHA-256:5ACA71F7092280653C5E6CDCD73AB3F5941FE1230331DD8D156EE9E639215D69
                                                                      SHA-512:1ADA34ABFFDA1EF95C1438E46E67EE23D1DC85DD9315FE6596B4AA96706433529AE3944A81D4B655411555186274E33FDC2F7850748619C6D3981108F7FCDC4C
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://aj1559.online/ba298f04.js
                                                                      Preview:(function(y,au,r){var ao="ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789-_";var Y="=";function J(aK,aH,aI){var aL="";var aJ;for(aJ=0;aJ<=aH-3;aJ+=3){aL+=aI.charAt(aK.charCodeAt(aJ)>>>2);aL+=aI.charAt(((aK.charCodeAt(aJ)&3)<<4)|(aK.charCodeAt(aJ+1)>>>4));aL+=aI.charAt(((aK.charCodeAt(aJ+1)&15)<<2)|(aK.charCodeAt(aJ+2)>>>6));aL+=aI.charAt(aK.charCodeAt(aJ+2)&63)}if(aH%3==2){aL+=aI.charAt(aK.charCodeAt(aJ)>>>2);aL+=aI.charAt(((aK.charCodeAt(aJ)&3)<<4)|(aK.charCodeAt(aJ+1)>>>4));aL+=aI.charAt(((aK.charCodeAt(aJ+1)&15)<<2));aL+=Y}else{if(aH%3==1){aL+=aI.charAt(aK.charCodeAt(aJ)>>>2);aL+=aI.charAt(((aK.charCodeAt(aJ)&3)<<4));aL+=Y;aL+=Y}}return aL}function s(aH){return J(aH,aH.length,ao)}function aj(aH){if(aH=="+"){return 62}if(aH=="/"){return 63}return ao.indexOf(aH)}function e(aK){var aO="";var aJ,aI,aH,aN,aM,aL;for(aJ=0;aJ<aK.length-3;aJ+=4){aI=aj(aK.charAt(aJ+0));aH=aj(aK.charAt(aJ+1));aN=aj(aK.charAt(aJ+2));aM=aj(aK.charAt(aJ+3));aO+=String.fromCharCode((aI<<2)|(aH>>>4))
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1314)
                                                                      Category:downloaded
                                                                      Size (bytes):19864
                                                                      Entropy (8bit):6.011767439804696
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:16575B39B11D925B9F323446BAACC76C
                                                                      SHA1:85EB3540EF2E81B566BA256BE923A0F82DDD3F81
                                                                      SHA-256:E1B8EECA2A8AAAA6C100C09D32293DBC4C6369969409ED5F2732CF49047392FD
                                                                      SHA-512:93B8AD2E6F7339D22FF3515EB9FB54E4F44219B5C40E4E7F74D6861D4B0ABD72CE98210F94DF57A4A5E202797D847F3AC06C2EEF074635E3790B91C8CC2CF206
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:"https://servicer.adskeeper.com/1525321/1?mp4=1&ap=1&w=620&h=5281&ident_p=true&sz=620x535;307x320;620x565&szp=1,5,9,13;2,3,6,7,10,11,14,15;4,8,12&szl=1;2,3;4;5;6,7;8;9;10,11;12;13;14,15&cols=1&sessionId=65fdea44-01a31&sessionPage=1&sessionNumberWeek=1&sessionNumber=1&lu=https%3A%2F%2Fsazi.online%2F91150%2F%3Futm_source%3DHueVu%26utm_medium%3DAlluringAngels%26utm_campaign%3DGirls%26fbclid%3DIwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U&cbuster=1711139395553899709990&pvid=18e67db14d7a19feac3&implVersion=11&cxurl=https%3A%2F%2Fsazi.online%2F91150%2F&scua=%22x86%22&scub=%2264%22&scu=%22Google%20Chrome%22%3Bv%3D%22117%22%2C%20%22Not%3BA%3DBrand%22%3Bv%3D%228%22%2C%20%22Chromium%22%3Bv%3D%22117%22&scufvl=%22Google%20Chrome%22%3Bv%3D%22117.0.5938.132%22%2C%20%22Not%3BA%3DBrand%22%3Bv%3D%228.0.0.0%22%2C%20%22Chromium%22%3Bv%3D%22117.0.5938.132%22&scum=%3F0&scup=%22Windows%22&scupv=%2210.0.0%22&scufv=%22117.0.5938.132%22&scuw=%3F0&consentStrLen=0&uniqId=047f9&niet=4g&nisd=false&pv=5&lct=1709769600&jsv=es6&pageView=1&dpr=1&ref=&apt=2024-03-22T09%3A54%3A15%2B00%3A00&tfre=3346"
                                                                      Preview:var _mgq=_mgq||[];._mgq.push(["AdskeeperLoadGoods1525321_047f9",[.["Berberine","17690121","1","These 2 Vegetables Will Kill Your Belly Fat Overnight!","","0","","","","yUMp7u2BQxJ8YWnL6gH1MTVqnnp_ot44iWg61jBz0bHWzDwDmywd2_1SDkP3LMALM-_N3sSmDR4P6wyYzYhmwki7SVA8qOq56dVIIRVpn08*",{"i":"https://s-img.adskeeper.com/g/17690121/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmdvb2Qsd18xMDIwL2h0dHA6Ly9pbWdob3N0cy5jb20vdC8yMDIyLTEyLzMxNjYzMC8xYzhmYzc4N2Q1YTE0ZDRmMTRkOTliYTBmN2IzYTIwMy5qcGc.webp?v=1711139396-vAAUZgTqtPXeJiNALddFIM3LHhXifVXi5tFU9YETAps","l":"https://clck.adskeeper.com/ghits/17690121/i/57856954/2/pp/1/1?h=yUMp7u2BQxJ8YWnL6gH1MTVqnnp_ot44iWg61jBz0bHWzDwDmywd2_1SDkP3LMALM-_N3sSmDR4P6wyYzYhmwki7SVA8qOq56dVIIRVpn08*&rid=f278ffd4-e88a-11ee-8cef-c84bd6826564&ts=HueVu&tt=Referral&att=4&cpm=1&abd=1&iv=11&ct=1&gdprApplies=0&muid=o2mU9MRbTytd&st=-240&mp4=1&h2=xwIziUS4wo_UT2mUEzXCZgtnzTGHUx9l4tbwMZJ1vbGCzD
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:C++ source, ASCII text, with very long lines (3386)
                                                                      Category:downloaded
                                                                      Size (bytes):9113
                                                                      Entropy (8bit):5.5214288883148
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:53F140417DA1E44C588A037ABD5527EB
                                                                      SHA1:DB0FAFE6C8F288A00BBF655EBDBB3FD0C8699DA1
                                                                      SHA-256:DF7A397B8CE58F6251A395E02608B4F620E934A958BDFE6702C6F2033593EED0
                                                                      SHA-512:8F4CA1E0FE1820786ED41B2D41C9444B65A605C7B4C5D6291682D3F2883D9E10175C347C93E159D0939D0CC9379B06D0ADCE431100AD08D061FE1654445EC5D1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://googleads.g.doubleclick.net/pagead/html/r20240320/r20110914/zrt_lookup_fy2021.html
                                                                      Preview:<!DOCTYPE html><script>.(function(){'use strict';/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var k=this||self;function m(a){return a};var n,v;a:{for(var ca=["CLOSURE_FLAGS"],z=k,A=0;A<ca.length;A++)if(z=z[ca[A]],null==z){v=null;break a}v=z}var da=v&&v[610401301];n=null!=da?da:!1;function ea(){var a=k.navigator;return a&&(a=a.userAgent)?a:""}var B;const fa=k.navigator;B=fa?fa.userAgentData||null:null;function C(a){return n?B?B.brands.some(({brand:b})=>b&&-1!=b.indexOf(a)):!1:!1}function E(a){return-1!=ea().indexOf(a)};function F(){return n?!!B&&0<B.brands.length:!1}function G(){return F()?C("Chromium"):(E("Chrome")||E("CriOS"))&&!(F()?0:E("Edge"))||E("Silk")};function ha(a,b){Array.prototype.forEach.call(a,b,void 0)};function H(a){H[" "](a);return a}H[" "]=function(){};var ia=-1!=ea().toLowerCase().indexOf("webkit")&&!E("Edge");!E("Android")||G();G();E("Safari")&&(G()||(F()?0:E("Coast"))||(F()?0:E("Opera"))||(F()?0:E("Edge"))||(F()?C("Microsoft Ed
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1440x1799, components 3
                                                                      Category:dropped
                                                                      Size (bytes):130792
                                                                      Entropy (8bit):7.931736726353368
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:7725B5DED4514A0DCF37A1F7FEF56787
                                                                      SHA1:72799B16CCFB401EAFEAA263132257E427168469
                                                                      SHA-256:49B446F9C6D395A57EB15C6B6B0E8FC0944F1247D18D13737567B128112AD723
                                                                      SHA-512:78424EBB2E540CF8828278A80A92B3B53836614F1B29DE8CD0F794D4911E2D5FA9A64964EC5CCFACAA3C802AE33819369B3D9284959AEF023C4DA923487A1C77
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:......JFIF.............lPhotoshop 3.0.8BIM.......P..(.JFBMD0f0007580100007884000093f30000ff010100241401008a2501004afc0100e8fe0100....C.............................$......$$$$$$$$++++++222228888888888...C...........;(!(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;..........."................................................................................-...&.k(.%.uB...Y,.sj.tR5..r.Z......9...x..y....%.1..5.....8..a..{.%.....J...JE......<Z....gcT.%...-..2.......RU^...n....KRj..r.-F......]Q.....$a*.E Y....JzN...sa..`BR... ...S$....I.p..>'o....9...y.....%...#K..p.=1..Go< .Hb.4.D.D&......$.!I!...B..C.5un.....a.[.b...G.V.VEh.(..!...L....:B.^..t.....nw[X{...._].+..&..!2..R.B.......n.P/.W. 2T2"..dA)B...i}V...]T.....*..H.(T....%.ntD3Aew,..M.=9.;.^..63.3...@.. .., .e*`$0..../....gy.j.L.u.S!.3.eZe.....5iV...Q...Q.3.*D(d.`..Q..H.B....C....5/..h).5......0.4j.wc...`JA.e..i......(..t&..D.g<K.o.u.E..i|....y.....$.. 2$..i.H@`!..P.!....AV..x..e,P..e{]...t.@.@..X.QcVu.J
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (847), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):847
                                                                      Entropy (8bit):5.713249878204813
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:C4D7EA868BED1793167B64BD096E0A98
                                                                      SHA1:0B0054CAA2CBBC293550CFDAF6A5F88ADC4C3F08
                                                                      SHA-256:C5BAC12F5731792D11E4D04344DDA23A39E4F29BCB83232E10D0C1D43E081417
                                                                      SHA-512:DCA7C9E789794811EF51CE8D5C95007F343D4214B77968D625C61FCB35411BE14A76B4ACCDB7B5B29A9BAC0FE68B84959CC8942D347006332CB14A3B17748BE1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-3285274263241992&output=html&h=280&slotname=8232866786&adk=3387619021&adf=2983583090&pi=t.ma~as.8232866786&w=620&fwrn=4&fwrnh=100&lmt=1711135974&rafmt=1&format=620x280&url=https%3A%2F%2Fsazi.online%2F91150%2F%3Futm_source%3DHueVu%26utm_medium%3DAlluringAngels%26utm_campaign%3DGirls%26fbclid%3DIwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U&fwr=0&fwrattr=true&rpe=1&resp_fmts=3&wgl=1&uach=WyJXaW5kb3dzIiwiMTAuMC4wIiwieDg2IiwiIiwiMTE3LjAuNTkzOC4xMzIiLG51bGwsMCxudWxsLCI2NCIsW1siR29vZ2xlIENocm9tZSIsIjExNy4wLjU5MzguMTMyIl0sWyJOb3Q7QT1CcmFuZCIsIjguMC4wLjAiXSxbIkNocm9taXVtIiwiMTE3LjAuNTkzOC4xMzIiXV0sMF0.&dt=1711139395651&bpp=2&bdt=3634&idt=917&shv=r20240320&mjsv=m202403190101&ptt=9&saldr=aa&abxe=1&prev_fmts=0x0&nras=1&correlator=5154834402312&frm=20&pv=1&ga_vid=1793075661.1711139394&ga_sid=1711139397&ga_hid=1563531711&ga_fc=1&u_tz=60&u_his=1&u_h=1024&u_w=1280&u_ah=984&u_aw=1280&u_cd=24&u_sd=1&dmc=8&adx=162&ady=198&biw=1263&bih=907&scr_x=0&scr_y=0&eid=44759875%2C44759926%2C44759842%2C31081577%2C31081793%2C31082031%2C31082034%2C42531706%2C95322195%2C95321868%2C31078663%2C31078665%2C31078668%2C31078670&oid=2&pvsid=2387835660237738&tmod=1140633187&uas=0&nvt=1&topics=1&tps=1&fc=1920&brdim=0%2C0%2C0%2C0%2C1280%2C0%2C1280%2C984%2C1280%2C907&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&bz=1&td=1&psd=W251bGwsbnVsbCxudWxsLDNd&nt=1&ifi=2&uci=a!2&fsb=1&dtd=924
                                                                      Preview:<!DOCTYPE html><html><head><script>window.top.postMessage('{"msg_type":"resize-me","key_value":[{"key":"r_nh","value":"0"},{"key":"r_ifr","value":"true"},{"key":"qid","value":"CIeT___aiIUDFagDTwgdaJQFrQ"}],"googMsgType":"sth"}', '*');</script><script>window.top.postMessage('{"msg_type":"adsense-labs","key_value":[{"key":"settings","value":"[\\\"ca-pub-3285274263241992\\\",[[1]],null,[[\\\"ID=bc6f1043bed02a89:T=1711139398:RT=1711139398:S=ALNI_MZfF0oRM8qQAXJrFBrrnIBa57gazQ\\\",1744835398,\\\"/\\\",\\\"sazi.online\\\",1],[\\\"UID=00000dacaa32cb65:T=1711139398:RT=1711139398:S=ALNI_ManG4f4KntmCJuuaoRahPlIXzVucw\\\",1744835398,\\\"/\\\",\\\"sazi.online\\\",2]],[\\\"ID=179ad298d498e3ba:T=1711139398:RT=1711139398:S=AA-AfjaSh4Upb3qO_-KFKSy5Eq-G\\\",1726691398,\\\"/\\\",\\\"sazi.online\\\"]]"}],"googMsgType":"sth"}', '*');</script></head></html>
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):14268
                                                                      Entropy (8bit):7.986277204418148
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:D1865D2907EC9A4A81F502F5CC0B2B87
                                                                      SHA1:DAD7C63DB5EC6318AA5CABBE0D735880C79DDBB6
                                                                      SHA-256:6562606883ADB78C2D49B46DBFC9FA98A82F9ECA062BBF7258FFEF0DE2A10502
                                                                      SHA-512:BD32082F733FCF0225A6CF69D52678E485AD1AABD17A7296ABE442A3ED7615A8CFDF44A76273DC0C1FB2AE3931AD0A8C9AA13587798505145F9F58168B498489
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/17690121/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmdvb2Qsd18xMDIwL2h0dHA6Ly9pbWdob3N0cy5jb20vdC8yMDIyLTEyLzMxNjYzMC8xYzhmYzc4N2Q1YTE0ZDRmMTRkOTliYTBmN2IzYTIwMy5qcGc.webp?v=1711139396-vAAUZgTqtPXeJiNALddFIM3LHhXifVXi5tFU9YETAps
                                                                      Preview:RIFF.7..WEBPVP8 .7..p+...*..h.>.B.K%../%2.Q...cn....L.w.r........f^..H{..C..W;IU..-...d-..s.....s.+.lH../.~%/.j.q|s.....C.O...GUWT\..-o/.w.p.J.+....L...>.-a...C..w..|...J&........:....G^.N.%.e...|..q.K.-t.S.Y..XR_.n..Y..u.$:H............-...6....J.......TU.....wu.)i._........dD}_..S.=.R.Q>{..1..).......#...dj..Y5}..-....w.~.......(;....-.....S..h..u.R.D.+.....V..dk.."a#b...6..k..m.~.P(..;...%&...<....[.T..OX.j...k.x4..{.!}E,..| .....V~....+....T....T;.V..V."...`V...f..y..8...\1[.Q.A....w.......R.....*R-.........e..t.x7....c.....F..B..s....3........F..%...z..n.-.gE&e.......r8..o+.cZ.Ge.O.g....`.K.p.F.T.l.\I.Y.rl.PlS.1...BaI0;^Q!....c...K.Z......mI..........z...N..........1.;[.8..:"7....l.xo.......o.... ...J\g...81....;...E .q.../..l.s.s....,..&'*.n.R.{... ..fMo.....i.w..":8W....c5mm..{)G.5g7t[(...fW>..).............9M...g.U. M....._.....N45......$H7..A...iE....../..B..y.....b.p..$|.....uj..'.K+.$U....../.8..'...".....8_.e......8*..
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                                                      Category:dropped
                                                                      Size (bytes):604
                                                                      Entropy (8bit):7.573620174038291
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:7BD42E5A35B5FB3FF852D6EA9191CA83
                                                                      SHA1:8A141EB392A05A2DEA3DCD83B97940EF70A81EBC
                                                                      SHA-256:5C4A713EE4250851232BE9F9F68D41586BE39B299528CFC7266E0B0E7E582E1B
                                                                      SHA-512:6FF31ACB937D6944570A837BB77AED92DAE41D71681440DC4765758FC40585F55999F2CDD78C4CE76A5AB414331BA9959BAFCFEF7E85B756AAB899C247F02890
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:.PNG........IHDR...0...0.......1....#IDATx...MKTQ...3...K...gP.Eo.Z$..6......"0..."..E-Z...C....+..E.T...JH/.HC.$d...y..."..W...w.3..3..9... ^..Fr4R.Q.....H<...\...V.[...v.L.D...y.wYQ....]....w&...|F...iz8..b.s.r..[.H..5..5D..[@.ed.-...O..=..G..lpD.R.F".J....... .. y*..$>.)V.`..quuP4.W9.}....*..y......~E}.7....IU.~.!.Ak.>....A..o..._.....7.4...{.K..6o.O..5.0n.`..z...V."^. 0.x=..^M...*t...H..9.B.(UD..>heD......."....W..T.E..0D.fYfI..3.-.G".....#.p....q.......Bv..{5.!u.F.i.......[.s.)....I....v.....Y.P.5?...n.'.......;...T......f......Q...~...8.....h.......T3<........IEND.B`.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (829), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):829
                                                                      Entropy (8bit):5.40617767647715
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:372817C76F2E8467D30E8ADAAADC1C5D
                                                                      SHA1:D6BA0C86AD0C00FADD5B0E7768E9580777996E15
                                                                      SHA-256:D1C67F5F53688229562ADA3B2AA210FF45336EAD8C7AA0F228551F8A3F57C372
                                                                      SHA-512:1AF5342072104A57FA783F0302F4B25D096EED5D1D82B5BFFAA46ACEE2ED67671B1FF07CCCA97A2EF3A2B8788A3D9DDB66BF3C848244C63D92533EE5DB89115E
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.google.com/recaptcha/api2/aframe
                                                                      Preview:<!DOCTYPE HTML><html><head><meta http-equiv="content-type" content="text/html; charset=UTF-8"></head><body><script nonce="WG2LqMbIzTrBQLk0s-gv2w">/** Anti-fraud and anti-abuse applications only. See google.com/recaptcha */ try{var clients={'sodar':'https://pagead2.googlesyndication.com/pagead/sodar?'};window.addEventListener("message",function(a){try{if(a.source===window.parent){var b=JSON.parse(a.data);var c=clients[b['id']];if(c){var d=document.createElement('img');d.src=c+b['params']+'&rc='+(localStorage.getItem("rc::a")?sessionStorage.getItem("rc::b"):"");window.document.body.appendChild(d);sessionStorage.setItem("rc::e",parseInt(sessionStorage.getItem("rc::e")||0)+1);localStorage.setItem("rc::h",'1711139399613');}}}catch(b){}});window.parent.postMessage("_grecaptcha_ready", "*");}catch(b){}</script></body></html>
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1440x1796, components 3
                                                                      Category:downloaded
                                                                      Size (bytes):235474
                                                                      Entropy (8bit):7.968427375641532
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:B5EE2C8001170FC35FA556361E62602C
                                                                      SHA1:FBF0ECA1F87BF07A401E80C055558280EEC2B510
                                                                      SHA-256:5A0A5DD4DC718902BB4FC5CC127575AB71584F455F0AF99C12691A45E26365C9
                                                                      SHA-512:FC004A7B37668C8F174329A7BAF0C043B7866E3819E115C007D985A71B59CB8FBF8334B2A3B20CE3D9169A9D393E2F4F514B35DB19C062CD703ED68675E8318A
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://gener1.genplusmedia.online/uploads/oliviacastaxx_1710764087_3326452721761255823_492034056041.jpg
                                                                      Preview:......JFIF.............lPhotoshop 3.0.8BIM.......P..(.JFBMD0f00075a01000093ad0000a1b8010025eb0100981a0200285b020003890300d2970300....C.............................$......$$$$$$$$++++++222228888888888...C...........;(!(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;..........."...................................................................................].;S..o......y..#/...M...e&?..*q..4..@...g..cF.G......ReGF.U.]:B:....;Z..".m\....C.d.w5n.{.......].....y/5Yk...O..c..B.".h...DTIm...*h.....Q..........o.....F...0<..7u.`[Ka.]BX..V..:T.......1a...$.j......z.=.......E5..-.XgB.......'.O_W#....M6...t..D..}..p......"!.u..:.r.....e.!b.:>..dd....+.FU=..-\.....[3.j.."..WK......Y&.a.Y..{N....YA......z.k.....O.,...Q.S.SP."...J.%..aq....sh.}.L3.h...t.tei.......~.6.Dz.6..l..?.... 8mx..l..:.Wl<.Yb.=D...yW..2X.t8.%oT.Auy!w.sC.&.\....v.n..}/.......{..^.(.o.....]5!\.6...f.p.dr.h.Fn.,.z.....x.......k...3.;9...e.@...Eui8.....d..[..9...#...=%...+..+T.[..vI.Y...
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1639)
                                                                      Category:downloaded
                                                                      Size (bytes):14606
                                                                      Entropy (8bit):5.0634482208641876
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:97126697074F1719CF92E3D314238F50
                                                                      SHA1:3B31EA0892ECEB419BFB941D75ECD3FF55E3188D
                                                                      SHA-256:124C62CFD395550A54FC8C6A8091A4CDB544C03232556DC9C4636EAFA4A4AC1A
                                                                      SHA-512:09C0D7C2D913A1AE8DFAF9E318A3E485B652E713C060913BD97DDFA37203020C0E109AF0BDB90D37D934A35B2C06AD9CF8C0211806C270BB562CD1FA0F4D0EA7
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/assets/js/index.js?ver=20221104
                                                                      Preview:var enjoymini=enjoymini||{};enjoymini.scrolled=0;if(!Element.prototype.closest){Element.prototype.closest=function(s){var el=this;do{if(el.matches(s)){return el;}.el=el.parentElement||el.parentNode;}while(el!==null&&el.nodeType===1);return null;};}.if(window.NodeList&&!NodeList.prototype.forEach){NodeList.prototype.forEach=function(callback,thisArg){var i;var len=this.length;thisArg=thisArg||window;for(i=0;i<len;i++){callback.call(thisArg,this[i],i,this);}};}.enjoymini.createEvent=function(eventName){var event;if(typeof window.Event==='function'){event=new Event(eventName);}else{event=document.createEvent('Event');event.initEvent(eventName,true,false);}.return event;};if(!Element.prototype.matches){Element.prototype.matches=Element.prototype.matchesSelector||Element.prototype.mozMatchesSelector||Element.prototype.msMatchesSelector||Element.prototype.oMatchesSelector||Element.prototype.webkitMatchesSelector||function(s){var matches=(this.document||this.ownerDocument).querySelectorAll(s)
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (12331)
                                                                      Category:downloaded
                                                                      Size (bytes):12332
                                                                      Entropy (8bit):5.0916439525688215
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:88A769D2FE35899FD45A332A0A032CC0
                                                                      SHA1:514C6C1D8475D17E412849A4C90159517D0FA10A
                                                                      SHA-256:CCF00D1923B0131A10E0C6D26F95E5DEE6EBF8621A27E83C5A2F68A2E0093142
                                                                      SHA-512:756CC5CD029FC4ADC9100D0DA2F2B0EFB3DF0F2BF894FBA2824019832FEA594EDD40A238A5FFACC205572CC0155F5632D70F54E37EDC0772460F44C69CB76AB8
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
                                                                      Preview:!function(){"use strict";function t(){return"cf-marker-"+Math.random().toString().slice(2)}function e(){for(var t=[],e=0;e<arguments.length;e++)t[e]=arguments[e];(n=console.warn||console.log).call.apply(n,[console,"[ROCKET LOADER] "].concat(t));var n}function n(t,e){var n=e.parentNode;n&&h(t,n,e)}function r(t,e){h(t,e,e.childNodes[0])}function o(t){var e=t.parentNode;e&&e.removeChild(t)}function i(t){var e=t.namespaceURI===A?"xlink:href":"src";return t.getAttribute(e)}function a(t,e){var n=t.type.substr(e.length);return!(n&&!E[n.trim()])&&((!k||!t.hasAttribute("nomodule"))&&!(!k&&"module"===n))}function c(t){return a(t,"")}function s(t,e){return function(n){if(e(),t)return t.call(this,n)}}function u(t,e){t.onload=s(t.onload,e),t.onerror=s(t.onerror,e)}function p(t){var e=document.createElementNS(t.namespaceURI,"script");e.async=t.hasAttribute("async"),e.textContent=t.textContent;for(var n=0;n<t.attributes.length;n++){var r=t.attributes[n];try{r.namespaceURI?e.setAttributeNS(r.namespace
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (26702), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):26702
                                                                      Entropy (8bit):6.031556742146313
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:8F9EA6FEA0804320EF81F44E05164CAE
                                                                      SHA1:6BCE111B22BE82DF1FD2F465BDC0F150D27F8B21
                                                                      SHA-256:44E77B4AB0368538B8C5A3FBCB36C31BC07D2798A8BC2FCEEEA6FEAF8CBEC859
                                                                      SHA-512:098DCDB1DAA24A29E4F3B0352B83DE70F8BC17F28DC8FC8A3EAC446F81AE9D0595EA400F86BD9E3063C95CA8C5A3AD07C7558A996B773136C21C632227EC9ED7
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/genericons/genericons/genericons.css
                                                                      Preview:@font-face{font-family:genericons;src:url(./Genericons.eot);src:url(./Genericons.eot?) format("embedded-opentype");font-weight:400;font-style:normal}@font-face{font-family:genericons;src:url(data:application/x-font-woff;charset=utf-8;base64,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
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:PNG image data, 300 x 300, 8-bit/color RGBA, non-interlaced
                                                                      Category:downloaded
                                                                      Size (bytes):172581
                                                                      Entropy (8bit):7.987526674771744
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:238BF5C69ACAA2BA605F8923527C0013
                                                                      SHA1:21EE9875BDAD876E41E01ED65CB3699124E016B7
                                                                      SHA-256:4CDBF412B687E44C46ABDCC23F0FAE8BE13D9CD3193CB53CD53A686AD9DB58E3
                                                                      SHA-512:403B52FE6A71F2AE4AF8647B8900A5A608B977E84F87F2C730A53421D3F1930CE4BE1B21765822D51FF5016D04202E8C2B97272863A303C279D37E12D8480A17
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/uploads/2024/03/Demi-Rose-72-1024x1024-1-300x300.png
                                                                      Preview:.PNG........IHDR...,...,.....y}.u....IDATx...u...fXi.}.ys.|.n.{..H6.n.-..).0$.6..}4`......./....`@.a..J.,1YM......U..x..+...s.pN.H...{...k.9...x.g.....{....W.q..,8$............. `Zy2.I$....&...C#.K...X.xx....?......w.......!?.G..o...G1....w.@K..s6.DJBU.m..7s~....[..]..?.O.......C.h..)....A...H....`.........(......<.4._"........pk...X.....!.{.w....{-.B4...{.x,`...9...........c-..r.....{$.)=Zm.t..Hz...X........\....&..c&...|.t:BHA./.....H.H..$M.....$){{.t..d...ti.:$i..Eh).^ ......"........o.m....G..z3..|... .X.W..'o.......%AHO..ZO...?....u.S...8.Cj..s.:...GJ..w.. ....o.........w...-...b.......)..../...K.?.'?...l....."...%@....).^*..D*a+.......}.).*m...!..*).)^n3Y.....[t...z.%......?.S.../....._...w.{..o..../.3.5...CJ..o.....G..x...GJ..s.;.....;.....{..i....?........."....I.]j.Q........Y.>,(.4....h...G...."...J...[ .(..C.......5..C. .....^.`.m.LI"H#A.e.s.H.U.."......Q.6.p....H...._..`...W.!|m....A....~....b.jM0k.X...`'..K.....b.g...y.....
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (65536), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):742545
                                                                      Entropy (8bit):5.745753889506842
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:C59C85F9AF3C14255D8A324CF10CE971
                                                                      SHA1:759FE424E8D801E82C50E2096ED9AA21C5EB279E
                                                                      SHA-256:6BBCF13E596CC0230837457AC592B86543149F916E6CDCF5B91AF79080D1E8ED
                                                                      SHA-512:D4520AE32EDB6B35964265CE5BB798E61F51E703BDC9594B9F9C9C8CFA75B6738C73735495209FF90C1CFCA0E73ADC48E8E1CFCE5C3654EE5A7ABE894CB65819
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-3285274263241992&output=html&adk=1812271804&adf=3025194257&lmt=1711135974&plat=1%3A16777216%2C2%3A16777216%2C9%3A32776%2C16%3A8388608%2C17%3A32%2C24%3A32%2C25%3A32%2C30%3A1081344%2C32%3A32%2C41%3A32%2C42%3A32&plas=135x816_l%7C154x714_r&format=0x0&url=https%3A%2F%2Fsazi.online%2F91150%2F%3Futm_source%3DHueVu%26utm_medium%3DAlluringAngels%26utm_campaign%3DGirls%26fbclid%3DIwAR0edkaxp99ZoQQmBnk5RzNjaLguZlK7xHWUVNwiZ8B5L1Dgxb2UluLI-6U&pra=5&wgl=1&easpi=0&asro=0&uach=WyJXaW5kb3dzIiwiMTAuMC4wIiwieDg2IiwiIiwiMTE3LjAuNTkzOC4xMzIiLG51bGwsMCxudWxsLCI2NCIsW1siR29vZ2xlIENocm9tZSIsIjExNy4wLjU5MzguMTMyIl0sWyJOb3Q7QT1CcmFuZCIsIjguMC4wLjAiXSxbIkNocm9taXVtIiwiMTE3LjAuNTkzOC4xMzIiXV0sMF0.&dt=1711139395645&bpp=4&bdt=3627&idt=885&shv=r20240320&mjsv=m202403190101&ptt=9&saldr=aa&abxe=1&nras=1&correlator=5154834402312&frm=20&pv=2&ga_vid=1793075661.1711139394&ga_sid=1711139397&ga_hid=1563531711&ga_fc=1&u_tz=60&u_his=1&u_h=1024&u_w=1280&u_ah=984&u_aw=1280&u_cd=24&u_sd=1&dmc=8&adx=-12245933&ady=-12245933&biw=1263&bih=907&scr_x=0&scr_y=0&eid=44759875%2C44759926%2C44759842%2C31081577%2C31081793%2C31082031%2C31082034%2C42531706%2C95322195%2C95321868%2C31078663%2C31078665%2C31078668%2C31078670&oid=2&pvsid=2387835660237738&tmod=1140633187&uas=0&nvt=1&topics=1&tps=1&fsapi=1&fc=1920&brdim=0%2C0%2C0%2C0%2C1280%2C0%2C1280%2C984%2C1280%2C907&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=32768&bc=31&bz=1&td=1&psd=W251bGwsbnVsbCxudWxsLDNd&nt=1&ifi=1&uci=a!1&fsb=1&dtd=914
                                                                      Preview:<script>window.sra_later_blocks = [];</script><script>window.sra_later_blocks.push({creative:'\x3c!doctype html\x3e\x3cmeta name\x3d\x22viewport\x22 content\x3d\x22width\x3ddevice-width, initial-scale\x3d1\x22\x3e\x3cmeta http-equiv\x3d\x22origin-trial\x22 content\x3d\x22Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0\x3d\x22\x3e\x3cscript data-jc\x3d\x22108\x22 src\x3d\x22https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/elements/html/turtledove_auction_handler_fy2021.js\x22 async data-jc-version\x3d\x22r20240320\x22 data-jc-flags\x3d\x22[\x26quot;x%72\x26gt;64\x26gt;7;!\x3defdwa{\x26quot;]\x22 data-jcp-config\x3d\x22[\x26quot;\\u003c!doctype html\\u003e\\u003chtml \\u003e\\u003chead\\u003e\\u003cstyle\\u003e* {margin: 0;padding: 0;outline: none;}body {background: rgba(52, 58, 6
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2578)
                                                                      Category:downloaded
                                                                      Size (bytes):11160
                                                                      Entropy (8bit):5.507354155489361
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:5E889DB6E7C601E6C43EF17335854D80
                                                                      SHA1:B41157DB406DE084ECB023D4E7BEC429CEE7ED0A
                                                                      SHA-256:0F622FFC7F9346A175E8D7CBDA6B4226324E3B75DE37B0AD01607A34C337B589
                                                                      SHA-512:2565269FA80068F9C38C1B560A5F49D4AC8B91D172AE8639494B6A7633C14A88702CF8F52D39ED77475A77C0C51BECF98E80441AE6E5CAE9E9F648C345090D19
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.gstatic.com/mysidia/5e889db6e7c601e6c43ef17335854d80.js?tag=text/vanilla_highlight_ms_cta_adjustment
                                                                      Preview:(function(){'use strict';/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var h=this||self;function l(a){a:{var b=["CLOSURE_FLAGS"];for(var c=h,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1};function aa(a){h.setTimeout(()=>{throw a;},0)};var m=l(610401301),ba=l(188588736);var n;const p=h.navigator;n=p?p.userAgentData||null:null;function r(a){return m?n?n.brands.some(({brand:b})=>b&&-1!=b.indexOf(a)):!1:!1}function t(a){var b;a:{if(b=h.navigator)if(b=b.userAgent)break a;b=""}return-1!=b.indexOf(a)};function u(){return m?!!n&&0<n.brands.length:!1}function v(){return u()?r("Chromium"):(t("Chrome")||t("CriOS"))&&!(u()?0:t("Edge"))||t("Silk")};!t("Android")||v();v();t("Safari")&&(v()||(u()?0:t("Coast"))||(u()?0:t("Opera"))||(u()?0:t("Edge"))||(u()?r("Microsoft Edge"):t("Edg/"))||u()&&r("Opera"));var x=Symbol(),y=Symbol();var z=(a,b)=>{a[x]=b;return a};function ca(a,b){z(b,(a|0)&-14591)}function A(a,b){z(b,(a|34)&
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):16
                                                                      Entropy (8bit):3.4056390622295662
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:0659E83F8E7B8F2C2027669E3ABBE6FD
                                                                      SHA1:60CA05BD875FEB8436A1EA0C02A4A51D976EA3EA
                                                                      SHA-256:374EBAEAD34C6A07BCAAD3E49F7C7BB6D15D24B2E8D862648CE5E27D51856BA0
                                                                      SHA-512:26B97343E1F5A4D687FC9E95BDA2468F79B594214A89CF24AF997C4527295BE6AE4369F3349394B7D3FC404F802C31DFEFC6A875C16080700F0AAE343816E956
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAkRXMD4tpWppRIFDWAGycE=?alt=proto
                                                                      Preview:CgkKBw1gBsnBGgA=
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (856), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):856
                                                                      Entropy (8bit):4.977215804508414
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:AE2938E364259BE1246A66C3E235376A
                                                                      SHA1:5620B0145AC5322AFC2CE9E9DC5A7B7F423DC2E3
                                                                      SHA-256:3AB604B93177FF826952980A53CF8DDCAF06AA7DF8FA00E79916786A26AF5F1C
                                                                      SHA-512:84C7571721A178D407E2F5DC13C051C770ACCD9995AE54A742CFEEF4875C4E695D9BBE65EB6D7A4C1E0D434AC9CD4F322367A326FE0A2447CA9C956E99F18D08
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/assets/js/jquery.custom.js?ver=20221104
                                                                      Preview:(function($){$(document).ready(function(){"use strict";var example=$('.sf-menu').superfish({delay:100,speed:'fast',autoArrows:false});$('.search-icon > .genericon-search').click(function(){$('.header-search').slideDown('fast',function(){});$('.search-icon > .genericon-search').toggleClass('active');$('.search-icon > .genericon-close').toggleClass('active');});$('.search-icon > .genericon-close').click(function(){$('.header-search').slideUp('fast',function(){});$('.search-icon > .genericon-search').toggleClass('active');$('.search-icon > .genericon-close').toggleClass('active');});$("#back-top").hide();$(function(){$(window).scroll(function(){if($(this).scrollTop()>100){$('#back-top').fadeIn('200');}else{$('#back-top').fadeOut('200');}});$('#back-top a').click(function(){$('body,html').animate({scrollTop:0},400);return false;});});});})(jQuery);
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2553)
                                                                      Category:downloaded
                                                                      Size (bytes):23509
                                                                      Entropy (8bit):5.49800855812155
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:7DC86EC2D5F49730301532B208AAF4E9
                                                                      SHA1:81BAE0931656DF54B47D06D1E0E5D5CB167A46C9
                                                                      SHA-256:5A23D8B3F234337A66C42065409EA946A4700A68FB92775125A176EC9520C82F
                                                                      SHA-512:8092454DA75F216790DEB8A2E10E4D2C73F5EF0A0DE9F1B272D6337B419354BBF42EDF7463D4042B4F16E21BEF4DA751C3DE9DDB157653ABAF100150B30E2EAB
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/abg_lite_fy2021.js
                                                                      Preview:(function(){'use strict';/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var m=this||self;function aa(a){a:{var b=["CLOSURE_FLAGS"];for(var c=m,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1}function ba(a){return a};function ca(a){m.setTimeout(()=>{throw a;},0)};var ea=aa(610401301),fa=aa(188588736);var n;const ha=m.navigator;n=ha?ha.userAgentData||null:null;function ia(a){return ea?n?n.brands.some(({brand:b})=>b&&-1!=b.indexOf(a)):!1:!1}function q(a){var b;a:{if(b=m.navigator)if(b=b.userAgent)break a;b=""}return-1!=b.indexOf(a)};function r(){return ea?!!n&&0<n.brands.length:!1}function ja(){return r()?ia("Chromium"):(q("Chrome")||q("CriOS"))&&!(r()?0:q("Edge"))||q("Silk")};function ka(a,b){return Array.prototype.indexOf.call(a,b,void 0)};function la(a){la[" "](a);return a}la[" "]=function(){};!q("Android")||ja();ja();q("Safari")&&(ja()||(r()?0:q("Coast"))||(r()?0:q("Opera"))||(r()?0:q("Edge"))||(r()?ia
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:dropped
                                                                      Size (bytes):15758
                                                                      Entropy (8bit):7.987645016061619
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:7A318DECD33B359D3308A17E735001D6
                                                                      SHA1:F6A665B2430314798A5FD3B0FA51FAD4A223DF8C
                                                                      SHA-256:DD9FEDFA3C0EBC6FDC05E9A50DBC69FE331177362D59FBFE505AD55968A73789
                                                                      SHA-512:FB3913F9F3DE9832364921BBB289D8A886BBDB97F40F58805DCED93AAE63F553247E2174D10CB3F9D44B3F6055ABE39B62D6FBAEE83A422CC91173EDCDFFC5AC
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:RIFF.=..WEBPVP8 z=...6...*..h.>.@.J....%.lq...gnP..?.~.kL5..w a&m@.k..?.y..O..5NS.\..eO.......?...D....O..@.....?P_...xT...%.....~......c....W....r.3Qg..WZ...R..V.%n>......`~.A....,oe{.A.x.....1.N.Q...`_......{15..=-..........!.I..t\.t..*(w..Ti7.+.N"......x.d...n"U..DNaG.}......".%....K?..e.8~.U.MN.C]...;...uc...D.{..x.xb....8.[...Z.5|l.d.._..{E..tH...Z...K1.^J..'eq}n'.:m+ar.....@.xv.G.I.~..7.....|....+v.^gR...:.\...._Z.TwD1....._2b....tPA...f.Y..F...(..~(.......W..`.@...5j...*...p.....X......IN..'!"......9.x..0.n...`.AZ.....R..6z..H.i.{.t...\....Ln..PzT.1..j..A).u....v,\...X.L............7s..o8...G...(.`X.Z2...x...`.X.....$..=Q...=..B........Q.V.;5.Z..$....V?.H..59....y.bw......DG..?..^..A..EM...#6w.3..3..0...x<~w....V......K./..^.x.(j..s.L....x]..Z.;...$..?z....{c......8E.{..S....+....V........>..1..y>./x.[u&....bTKf.i......l..?....dN...5'.[.X.%G(.....k...p.J.c.v/...qk.d..0....D......r.f.J.p..>8...j..0...x.&....(5.+........n=.2\....|X.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2861)
                                                                      Category:downloaded
                                                                      Size (bytes):20360
                                                                      Entropy (8bit):5.524724684670758
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:F1DBF484F40A3804F9805FCC7D344252
                                                                      SHA1:95AFCEFDC9FCF77FCD6633306906E4E7E50DA5AF
                                                                      SHA-256:04FA4FE54665CACB0D30E028747B0A15046D5152D4295250380BCD5569E7C664
                                                                      SHA-512:21D3C91C6D0F7A539AC3BBA46E97389C2124A854C63BE88018953928EC784408292DAA8591A32FFEB768904266F81874E58573FC4BAF3C7464E7CE5B59D42F04
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/client/qs_click_protection_fy2021.js
                                                                      Preview:(function(){'use strict';/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var q=this||self;function aa(a){a:{var b=["CLOSURE_FLAGS"];for(var c=q,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1}function ba(a,b,c){return a.call.apply(a.bind,arguments)}function ca(a,b,c){if(!a)throw Error();if(2<arguments.length){var d=Array.prototype.slice.call(arguments,2);return function(){var e=Array.prototype.slice.call(arguments);Array.prototype.unshift.apply(e,d);return a.apply(b,e)}}return function(){return a.apply(b,arguments)}} .function r(a,b,c){r=Function.prototype.bind&&-1!=Function.prototype.bind.toString().indexOf("native code")?ba:ca;return r.apply(null,arguments)}function ia(a,b){function c(){}c.prototype=b.prototype;a.O=b.prototype;a.prototype=new c;a.prototype.constructor=a;a.P=function(d,e,g){for(var f=Array(arguments.length-2),k=2;k<arguments.length;k++)f[k-2]=arguments[k];return b.prototype[e].apply(d,f
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:Unicode text, UTF-8 text, with very long lines (25397), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):25399
                                                                      Entropy (8bit):5.419045397482863
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:8D017961E7EE2E9EFCB77E0C4399F4CE
                                                                      SHA1:E6F137DC79720BB22C6FC4A30D47D6EDF49B17E5
                                                                      SHA-256:EE26B39C6A4BC23B970B1FB2F10884E6C0514AA1F801A0FF19F7350AF2B2E359
                                                                      SHA-512:FE099456B8E3EA0578C587522F43FD525AEF641B84C4F0F7509BB6C3D6DFBC40211273D78DB5304CDFE13D22F3A98BC0F84288A28D042BAD99A697A7A5414141
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://server.zmedia.vn/static/template-v2/passback_ptopc/sazi.online-passback-ptopc.min.js
                                                                      Preview:/*! Date: Wed Nov 01 2023 16:10:51 GMT+0700 (Indochina Time) - Version: */!function(e){var t={};function n(a){if(t[a])return t[a].exports;var i=t[a]={i:a,l:!1,exports:{}};return e[a].call(i.exports,i,i.exports,n),i.l=!0,i.exports}n.m=e,n.c=t,n.d=function(e,t,a){n.o(e,t)||Object.defineProperty(e,t,{enumerable:!0,get:a})},n.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},n.t=function(e,t){if(1&t&&(e=n(e)),8&t)return e;if(4&t&&"object"==typeof e&&e&&e.__esModule)return e;var a=Object.create(null);if(n.r(a),Object.defineProperty(a,"default",{enumerable:!0,value:e}),2&t&&"string"!=typeof e)for(var i in e)n.d(a,i,function(t){return e[t]}.bind(null,i));return a},n.n=function(e){var t=e&&e.__esModule?function(){return e.default}:function(){return e};return n.d(t,"a",t),t},n.o=function(e,t){return Object.prototype.hasOwnProperty.call(e,t)},n.p="",n(n.s=0)}([function(e,t,
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:Web Open Font Format (Version 2), TrueType, length 21564, version 1.0
                                                                      Category:downloaded
                                                                      Size (bytes):21564
                                                                      Entropy (8bit):7.988689032238559
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:73AAA95EAB3115EA5A1E5C1CF16EA645
                                                                      SHA1:2F00C608A688CD2B2E6AD37637726B0E081DA1C7
                                                                      SHA-256:2301BB030A2BCAA9C763CC4771BD717AAC16709C29EABA00673FCBE7CDF99A59
                                                                      SHA-512:687974F4B96BAEA3F1C7AA31BF779E631165D0C928A0D006576034477F6DE591B446D2683296FF3A52BED9450C43D6284F1C660E860DB23465FE499B9FC3A42F
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/cf-fonts/s/inter/5.0.16/latin/400/normal.woff2
                                                                      Preview:wOF2......T<.......|..S..............................\..^.`?STATH..4.....<..6..f..6.$..H. .....>.....GPv.q......x.W.<{..[e..[..@.q.x?......T..6bZ. *S...B`&&..s.PKDm..DtMwCf.6.s.G.......+...$.2+.......j.v.g.eS.T.LOD!..&...9}'v*.z...G9t.0..>...n$+I...|.-TC..$Jeh.O...<.&...(}......./...A.nb....r~......g4)..o.NY...|....3.m.Or.j..:.f%.V.C.."z.......:...q[...6`....(..D...............F.RV.....g...........0..vq...]....TB....W*e.(..rK.{.....o{.....b..Q..a......x..`|EScT...m#....q...b...3{.q...0.l..^*...".t...$..C. .[$..!.2..."...dO..^...'..Ar.V6..6.0l%'..V..v.."[7.....4.....{CI+[^.e.+dd.).O.2.2..._<.=...+R...\%;.>..V...U..i.0vc.c.......p..Tu....d@u.:iXr.=fz.3.....'.$.........Bq..<...p.c..........]..|..0*.....R..p.t....s..<C..y:..?..9.}.i..|U..X.I....`AI..(._..+.vB....@.L2.KR-...K63.fi....Y..0Q.F...]g_....z.["{.(8\V..o..........F........V;_.^..[M.....%{...U...?.?_...v"y.../M.......F#.,..Y@R|$/:9`.+..7........wES_Q"..k...w.WB.h\..S...l'[.us2.e.%. \kk..p....lg':.>.4.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (31326)
                                                                      Category:downloaded
                                                                      Size (bytes):104410
                                                                      Entropy (8bit):5.474234649421595
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:6ADCC7A9451347021362BE1BCCD59703
                                                                      SHA1:87DB2C93BD1F097513220F40AE52172F1B575724
                                                                      SHA-256:D4DED1451BC91113EAB20872E208DBBE41742F9A47D3B111C28D1EEC1E19D783
                                                                      SHA-512:AD4C0AC05150C14E0D1987ADCF69A9B4E45F46D57A00704C89587C6783337444BA9CA42FD737414DCC353543E0003EABA6E8AD83E60855CD5E647F95029DD5E1
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://securepubads.g.doubleclick.net/static/topics/topics_frame.html
                                                                      Preview:<!DOCTYPE html>.<html>. <head>. <meta charset="UTF-8" />. <title>Topics Frame</title>. <meta. http-equiv="origin-trial". content="Avh5Ny0XEFCyQ7+oNieXskUrqY8edUzL5/XrwKlGjARQHW4TFRK+jVd5HnDIpY20n5OLHfgU4ku7x48N3uhG/A0AAABxeyJvcmlnaW4iOiJodHRwczovL2RvdWJsZWNsaWNrLm5ldDo0NDMiLCJmZWF0dXJlIjoiUHJpdmFjeVNhbmRib3hBZHNBUElzIiwiZXhwaXJ5IjoxNjk1MTY3OTk5LCJpc1N1YmRvbWFpbiI6dHJ1ZX0=". />. <script>. ./*.. Copyright 2022 Google LLC. SPDX-License-Identifier: Apache-2.0.*/.var m,aa,ba=function(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}},ca="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a},da=function(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:PNG image data, 16 x 16, 4-bit colormap, non-interlaced
                                                                      Category:dropped
                                                                      Size (bytes):396
                                                                      Entropy (8bit):5.967469601003728
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:EC7B521653BF38E71C71F40F9B7D9CC4
                                                                      SHA1:12314633204EAF0EDEA47346B3FA86046AF1A966
                                                                      SHA-256:17911C30C68A58A54074106330311FD8D38C1DB40D656373A00A8DD512090B1C
                                                                      SHA-512:A95E48B004F4B88D370BFA85237171F1184376807382036AE4DF519EBAB4C49B7542750D542CCF73381AAE667B718EA5C39F1AEE7425B0CA725222EE149006AF
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:.PNG........IHDR................R....gAMA......a.... cHRM..z&..............u0...`..:....p..Q<....PLTE...........................I....tRNS..p.T.*..n....bKGD....H....pHYs.........B(.x....tIME...../;ii!....%IDAT..c``.b...4...%,.*.J.....",.........a.].....%tEXtdate:create.2017-10-04T19:47:59+02:00.......%tEXtdate:modify.2017-10-04T19:47:59+02:00.E......tEXtSoftware.www.inkscape.org..<.....IEND.B`.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, progressive, precision 8, 1440x1796, components 3
                                                                      Category:downloaded
                                                                      Size (bytes):192894
                                                                      Entropy (8bit):7.9727606026344615
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:B5B07049102FD1FDC4504A861A060083
                                                                      SHA1:FF83FB6B3EF4330809CABE90D95036D6C2457E47
                                                                      SHA-256:6B88C6E30BB43A4746DA396D46A5CA466EBF0EA91AFD565DE9AE1F1C2DDDEF83
                                                                      SHA-512:03DB56DA596F8AF646314640D554B878A33E4BA0EFF3DC336AE8B54315FC3AB8F0101C1AE1A368419BCEA1FDE3693C024F93DE72E69EF7F73EE468EF2DBCB393
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://gener1.genplusmedia.online/uploads/oliviacastaxx_1710764087_3326452721761161996_492034056041.jpg
                                                                      Preview:......JFIF.............lPhotoshop 3.0.8BIM.......P..(.JFBMD0f00075901000011a30000f4730100a5970100beba01007be7010032e602007ef10200....C.............................$......$$$$$$$$++++++222228888888888...C...........;(!(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;..........."................................................................................Y=^r>u....x.y..]..7.o,...<......`....._A.U#.y..x...f.......f..og.....@XmT..K..//.~k..'.y.i.."N.`....3.|...bC.M:>j..|....S=......S.;.h...Y..(=fa%.kzO.....i....g....l......;.BJy...:F.S....Fcfg..+1.^5..m...M.+r..P..'...=u....y.....\9.... @,..U...;.F.....X"....X....vt.q..X...u.Sg...T.Z....'$...W....`D..C..mOV...~2....[._F.S_..{+g.M.DXH3/k....im....t/s.....O8.k..._R......]...$.vi.RsUKQ.xXm,)....M......:....{i../g..h..e4.MJ{...e..Q526.i.i....P<...B....p.............z.h+t&.|^..`8.1Z.,.{....$..+....?8.<k`..........Z..7..........d(.....c%..u...}...F...Lx.=..........".....U......V.x.T.h.u.YY.Yx.=W..W..[..@...|...F<
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):13436
                                                                      Entropy (8bit):7.9869535510995675
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:D94D0182E57E0131A0E9595C1679B26C
                                                                      SHA1:F51B9B72EF5E9AAD98488D1496FE99BC9BE62325
                                                                      SHA-256:935413AB6755F8B15EFD02284BF089FC59E06D4237198FE6758A7E30416C0AEC
                                                                      SHA-512:EBED9A5763475AAC4C4D49B929B70E6D06A4C0365F82AF1BC38BFE5CF7E6665EF28BB13E5DE2FAA02E6941D0DDA387BD2C8AA20EE75725415CC2217873ACE894
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/18781457/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmdvb2Qsd18xMDIwL2h0dHA6Ly9pbWdob3N0cy5jb20vdC8yMDIzLTExLzcwMDMzMi81ZTJiMmYwOTllZTM2ODVhZTI0ZWJmOGQzYWQyMGRhZC5qcGc.webp?v=1711139396-mjb5lpGR6OojVRQX28IFYqKZvNHxJyUE60TqdiDPTgI
                                                                      Preview:RIFFt4..WEBPVP8 h4.......*..h.>.D.J...)....0..gnH..E.<.....-...........`|..U...........;H.'.B|......O...O..D.jz4...<.t..5b.A_r.>.o.fM...hp.$.......@B..ou...'}.z.o\..0.%w?.h8...9..}.l.P...j.;..+....o#.B..oW...y6]:+.(,...e...$...C..a.K`..|.ZRT..Y...3.D.]........b.-...z.........@..d........T;.r|...^...R..<..>..R`.j.....y...;...t".Y.5f........#......O.6..G[...V$.............Q%{...h........t.......).|{~.:.R.n.....h..........b,...M....D...P..Q.mu.ZV.B.......H2.+..;.q8.....F......F.Sy...[..^..llW.TY..8|.|d.4j......I.l..".5....b9.3.8.e.v....c,....C.k...j.R...s..m..4G...."..;>..78.....?.........^...y..80..}oJ9?.r..%o.!u..%.......i.Y*yj......=..t)v./9.c....8|..1.Z...i..<.C:...T....ox...B.U...=s...Z..Mbs.MX<...'...|......VD....qS.I..X......?4.".....b.#.r9..O..(.>.....7}r.....tF.....^..:.w..3Z..........z.3.I.p.Z..Q...I..I...F.FV./Y..B<<.FZ...0...".^..=P,. G.O.4|.+. W.)..b.D.d..."..._~..z...-..M..W...)(..........m_.O.;.v:.g.....b|..A....U
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (4068)
                                                                      Category:downloaded
                                                                      Size (bytes):170904
                                                                      Entropy (8bit):5.5065052565683095
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:D365C6EA333D5F0CCE00378C1E024893
                                                                      SHA1:8B599E86B8F42FF2D56AB36620C84898AAA526DF
                                                                      SHA-256:D1F0E003FECF241E8F3FD10C328FD09845E9515E894936CBFA62F26F240927FF
                                                                      SHA-512:5DEE80FDAE0118A9DB7D994959D200BC75B755B8D586E7CA5067091019C3264881FC948A68E1F0226E73C035CA6D62DBD77A5BAC43A82289E47428309A146612
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202403190101/reactive_library_fy2021.js
                                                                      Preview:(function(sttc){'use strict';var p,aa={};/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var u=this||self;function ba(a){a:{var b=["CLOSURE_FLAGS"];for(var c=u,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1}function ca(a){var b=typeof a;return"object"!=b?b:a?Array.isArray(a)?"array":b:"null"}function da(a){var b=ca(a);return"array"==b||"object"==b&&"number"==typeof a.length}function ea(a){var b=typeof a;return"object"==b&&null!=a||"function"==b}function w(a){return Object.prototype.hasOwnProperty.call(a,fa)&&a[fa]||(a[fa]=++ha)} .var fa="closure_uid_"+(1E9*Math.random()>>>0),ha=0;function ia(a,b,c){return a.call.apply(a.bind,arguments)}function ja(a,b,c){if(!a)throw Error();if(2<arguments.length){var d=Array.prototype.slice.call(arguments,2);return function(){var e=Array.prototype.slice.call(arguments);Array.prototype.unshift.apply(e,d);return a.apply(b,e)}}return function(){return a.apply(b,arguments)}
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, comment: "CREATOR: gd-jpeg v1.0 (using IJG JPEG v80), quality = 80", baseline, precision 8, 300x300, components 3
                                                                      Category:downloaded
                                                                      Size (bytes):14598
                                                                      Entropy (8bit):7.957439003851124
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:98B36CA93A41C677C5EC7D309E4A5873
                                                                      SHA1:BF6D0B070A7F977D2C98B9F10EDC2F066AA89218
                                                                      SHA-256:ADD15593463079DC6F1A09C47D15376725A2FEA104459823ABF34A695D408F34
                                                                      SHA-512:F06F02799CB18A2D8F5286625E9C7A2FCC71471B4554FB42A37FA9A5E83A11D6706C3BCA7C148D9047F4F354572B068F8C58B7AC07B8D8BF5898E820F3484A8D
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/uploads/2024/03/demi-rose-for-fhm-magazine-netherland-december-2022-11_thumbnail-300x300.jpg
                                                                      Preview:......JFIF.....`.`.....;CREATOR: gd-jpeg v1.0 (using IJG JPEG v80), quality = 80....C.....................................!........'.."#%%%..),($+!$%$...C...........$...$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$......,.,.."........................................@.........................!.1A.Q."aq...#2BR........3b$r....4Tc...............................'......................!..1"A2QBa3q.#.............?....0.@.....Q.b|..F...v4..KP.....!..4....l.5./2i;.g.;T}......Ys....sP,B.)S......e.B2ho.Z.D..D.Q.9...4(.G5.|.dD..U:..=..R.....g..:T.wh..1<.NI.MgJ.]......2....?...M....{6.~..m...}.........2N-}....!..M9T8..j.Z.t..s....8..F...../n/...T....f.}kY...(Q.~~...]Ow..-..I..R1.j.f.".|w.7MW....0?j....[....In..R..'...~.\_.....Py.,G..M.B.....i..{.X..xA...58`..-..#.=Cl.='.7.C...w7O`l.}h..l...v...4.Y...L9..N.~..lqZ...".....O.S.8.F.\.....I.4...P0....&.4..k;vy....F(."...Gj....e.Z=...w6.0..".=K.tn....L.d...^Vp.....7.......9..!U@?......M.k.w........G.Q.l.rt...A5.O;..!...<.3..
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1054)
                                                                      Category:downloaded
                                                                      Size (bytes):2689
                                                                      Entropy (8bit):5.40021492400263
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:9EF158292B617D358506529B02C73629
                                                                      SHA1:843852D8ADDBF1A7F96C5607179E1C9423ED8A4C
                                                                      SHA-256:3164DB7EF9EFC7121CE85192340A653C6CB87E34CAA05849C8FD47B7872F9FC5
                                                                      SHA-512:D4B0E6E8900043C9C4EE010ABFD00A51D891FE4B4F424418DC1A75075E3DF931D0558BFB3E983190079EDDD0BF11D7604E70CEAF119351690812EBC21D7EAEB8
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/client/window_focus_fy2021.js
                                                                      Preview:(function(){'use strict';function f(a,b,e){a.addEventListener&&a.addEventListener(b,e,!1)};/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .function g(a,b,e){if(Array.isArray(b))for(var c=0;c<b.length;c++)g(a,String(b[c]),e);else null!=b&&e.push(a+(""===b?"":"="+encodeURIComponent(String(b))))};function l(a=document){return a.createElement("img")};function m(a,b,e=null,c=!1){n(a,b,e,c)}function n(a,b,e,c){a.google_image_requests||(a.google_image_requests=[]);const d=l(a.document);if(e||c){const k=h=>{e&&e(h);if(c){h=a.google_image_requests;const v=Array.prototype.indexOf.call(h,d,void 0);0<=v&&Array.prototype.splice.call(h,v,1)}d.removeEventListener&&d.removeEventListener("load",k,!1);d.removeEventListener&&d.removeEventListener("error",k,!1)};f(d,"load",k);f(d,"error",k)}d.src=b;a.google_image_requests.push(d)};function p(a=null){return a&&"22"===a.getAttribute("data-jc")?a:document.querySelector('[data-jc="22"]')};var q=document,r=window;functi
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):11314
                                                                      Entropy (8bit):7.982643676336769
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:854B91E7AA626B46F7D20241C373DDC9
                                                                      SHA1:917451556E9302A0A90BF12399E26C09E875D92B
                                                                      SHA-256:E304DD147AA7227C4637EA68C2EB2CC257E0BAAD51F8215B4FEAE975F97EFE2C
                                                                      SHA-512:2E45465F33ADA7E86AA9A6B6DD49BEE475A5E0E6174F6E95515DA7E053A932592496A5E393A99141886039DEE0B6AB25FE490AB409EAD611583D0F12A6925B0F
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/18761797/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmdvb2Qsd18xMDIwL2h0dHA6Ly9pbWdob3N0cy5jb20vdC8yMDI0LTAyLzgyNTI5OC9iZWRlZTVkNGU5ZWI3M2Q4MDkzOWU3NWFiZWRhMjQ4OS5qcGVn.webp?v=1711139396-JGAkdShag_DJBoT7HX92A3lLWX7ZfntJ9NYUbmGVzU0
                                                                      Preview:RIFF*,..WEBPVP8 .,.......*..h.>.B.K%..*#.{1@..g..x..7..8......l.s..g...\.?../..e..$........7..,..7.7.G..\..|...)g*..x...X.z.B:g..M|.H..l...........8.....r....N..._&.M8O"..j..{...R..C...th..sC.c....0c....`".#.>..._.]...aP.....A.......wD}!$..G.W.X.S.0.EQ...s..!..hb....Z..."...A....^.....7.5..*.z..V"...j......]E4.]..}.....R...0..". ./.@l7......4......X.......Q."..+..o&..>5..:D.zS8.x.h8Y./6.Z..!u.D0.'.-L....g@...<.r........N.NGP..8..ZB..[..!...|...~.z..../.... 8.......f....n..E.A..8nP..._.$.$..a.=&...RCTO.r..Vo.#8..-..n....h.....e..W....A.|.L..rF....:.K.%....y.....;./..-..d.......!,B.s.....=Q7..u%..DAl...p.7.R..G...U.C...5\.0w......d..i..{......}....M.r.Fz.R.....y.....F.....a...x..b{$*.?..H.....3$D.K...../.'u..Z#0{..9F.........Z.U..,.c%mW...u<.U.........4.H.+..:..g.w .Q...q....(.G.[.N...#?E..L.`|;......;.....0........gB......S......a#...kt.G.b~.. ..t(....pNUTX.8.v*. ...c0!..N'..r.d..)...1..u.....6t.2.c...J.-...=...7.$.e.`.q.........
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:dropped
                                                                      Size (bytes):20840
                                                                      Entropy (8bit):7.990887641132395
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:91DBC2CA9F2426062120F0F156C651D1
                                                                      SHA1:91854E073EC7C78EF1BE4AA12CB12D995C216304
                                                                      SHA-256:B2FC0CF937F0057DCD02E2454614721FC99BA7A05467CA9FFD3E76982D0FDAB6
                                                                      SHA-512:3FDA68EC96ADACDD42340BD89A2DE07730D86F186F24748CC94096A51C4ED7B56D8C65016254C822448F6BDED64CA9BD443A92E3BF10C5240711BE44827018F8
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:RIFF`Q..WEBPVP8 TQ.......*..h.>.>.H....+1.....ek......w^.,...,.75........E.?.?o....p.....7p.Q......G.'........p..gz,.u...%.(..h}..j..P..&....<,$...z...2mia...........$....m"..k....Pi_.8l.tL.v...../pK`..F+;?..m.<.9.).!..j.Q..7#..!.x...^.:./(.[._,.....Hgtr..W..!... i!..D.J9o#o.WC..W.............M.E?.......(nG^.!..m.w.a.CI.....:..U..*.r...V..W!D..Z......@q..z....1....x.B^..3...X...f...`.qK.y...xm....z..x.-......G...KY..J....;..\..&..6..M.....'.,.{...a..+...Vm.Q.N.....<...q......\D.....m...,....H.C...9.v...p..3..g3.....v../..D.0.. .\.s.Z.Ou...D..;...O.....>.j...%t...u.im..i6F.v...`...#%....)-.&.V..P...../`2.$.o0..._....\...u/^\^...<D,U*.,A.'..fL.A~....[=........0._.p......I...d........&M*..E.k.w..N..5.....u.6.3.....v.l..](+8G....!....%....{.E.B......$.............a.'.z..E..SAm.k.}.yD.6h%..BV.....B...e...A../h....].I.w.F)v`.|..oOH.p.2...w.q..'....R.........2..B9.;.4n.c..yP..F.,.....H.B.;h.-.@.(.......6.~..N{. -..{E..=Y5.Qv.....7l..... .%.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text
                                                                      Category:downloaded
                                                                      Size (bytes):14579
                                                                      Entropy (8bit):5.61070345998479
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:1645C7E7BC7FEFF6E6AAE044BB82AC1B
                                                                      SHA1:FFD3C8ABFEBA7955C29614600AB20C45FBB3771C
                                                                      SHA-256:A6EE58F60C407B083623FDC4586AE66D10F4586920A825A74E26762BC262EEFD
                                                                      SHA-512:36083A8368A564568D8A69778AEB25BA849374606018C6186DC785B9F9609F14A0B2C89AEF06725A9FBC1285D8F05F4DDEDEF01D6AD24CBCC1B568C4BAA4AB6E
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
                                                                      Preview:/*. * See: https://fonts.google.com/license/googlerestricted. */./* armenian */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v58/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPiIUvaYr.woff2) format('woff2');. unicode-range: U+0308, U+0530-058F, U+2010, U+2024, U+25CC, U+FB13-FB17;.}./* bengali */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v58/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPiAUvaYr.woff2) format('woff2');. unicode-range: U+0951-0952, U+0964-0965, U+0980-09FE, U+1CD0, U+1CD2, U+1CD5-1CD6, U+1CD8, U+1CE1, U+1CEA, U+1CED, U+1CF2, U+1CF5-1CF7, U+200C-200D, U+20B9, U+25CC, U+A8F1;.}./* cyrillic-ext */.@font-face {. font-family: 'Google Sans';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/googlesans/v58/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_I
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2198)
                                                                      Category:downloaded
                                                                      Size (bytes):34444
                                                                      Entropy (8bit):5.570691675734721
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:E266DC3B42D4C2012F3D09786370141B
                                                                      SHA1:114AE07F9AAE95D62E9D2AA8686F52F8404BC105
                                                                      SHA-256:7949E28E49EB919D86AA51720A90A5893F9C757AD95F9AFF7754E2934D9D8803
                                                                      SHA-512:8D144B94BD37ED76A77C283444E46510F6164591692B4FDBB611B8698A28D8C45B00034DA5B0631EF2CE331549A8D5557CEC01307F10FC0CD2E233DD7203D711
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/pagead/js/r20240320/r20110914/elements/html/turtledove_auction_handler_fy2021.js
                                                                      Preview:(function(){'use strict';/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var n=this||self;function aa(a){a:{var b=["CLOSURE_FLAGS"];for(var c=n,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1}function ba(a){return a};function ca(a){n.setTimeout(()=>{throw a;},0)};var da=aa(610401301),ea=aa(188588736);var fa;const ha=n.navigator;fa=ha?ha.userAgentData||null:null;function ia(a){return da?fa?fa.brands.some(({brand:b})=>b&&-1!=b.indexOf(a)):!1:!1}function v(a){var b;a:{if(b=n.navigator)if(b=b.userAgent)break a;b=""}return-1!=b.indexOf(a)};function w(){return da?!!fa&&0<fa.brands.length:!1}function ja(){return w()?ia("Chromium"):(v("Chrome")||v("CriOS"))&&!(w()?0:v("Edge"))||v("Silk")};function ka(a){ka[" "](a);return a}ka[" "]=function(){};!v("Android")||ja();ja();v("Safari")&&(ja()||(w()?0:v("Coast"))||(w()?0:v("Opera"))||(w()?0:v("Edge"))||(w()?ia("Microsoft Edge"):v("Edg/"))||w()&&ia("Opera"));var la={},m
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (3920)
                                                                      Category:downloaded
                                                                      Size (bytes):152659
                                                                      Entropy (8bit):5.589202244043892
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:E785159C4CCB5644CB2B0E8AD5EBF09D
                                                                      SHA1:929FFCF166D73963541AEB8FA6D4919C819D2B29
                                                                      SHA-256:375FAC90E83A127A31AF71CAD8A5181D4F41EA0ECDFB3CE7E744FBF534E8345F
                                                                      SHA-512:338AD5CB7B952D1D23C919FADE9E83DC4707CB31739794A96AF49CC74F0E04096A5D1765F54D63B574F7463729F9EABE2A375F0D538BD536D0E44B73AFA9E0E9
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js?client=ca-pub-3285274263241992
                                                                      Preview:(function(sttc){'use strict';var aa={};/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var n=this||self;function ba(a){var b=ca("CLOSURE_FLAGS");a=b&&b[a];return null!=a?a:!1}function ca(a){a=a.split(".");for(var b=n,c=0;c<a.length;c++)if(b=b[a[c]],null==b)return null;return b}function da(a){var b=typeof a;return"object"==b&&null!=a||"function"==b}function ea(a){return Object.prototype.hasOwnProperty.call(a,fa)&&a[fa]||(a[fa]=++ha)}var fa="closure_uid_"+(1E9*Math.random()>>>0),ha=0;function ia(a,b,c){return a.call.apply(a.bind,arguments)} .function ja(a,b,c){if(!a)throw Error();if(2<arguments.length){var d=Array.prototype.slice.call(arguments,2);return function(){var e=Array.prototype.slice.call(arguments);Array.prototype.unshift.apply(e,d);return a.apply(b,e)}}return function(){return a.apply(b,arguments)}}function ka(a,b,c){ka=Function.prototype.bind&&-1!=Function.prototype.bind.toString().indexOf("native code")?ia:ja;return ka.apply(null,argu
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1321)
                                                                      Category:downloaded
                                                                      Size (bytes):17314
                                                                      Entropy (8bit):5.342134706855769
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:2CC87E9764AEBCBBF36FF2061E6A2793
                                                                      SHA1:B4F2FFDF4C695AA79F0E63651C18A88729C2407B
                                                                      SHA-256:61C32059A5E94075A7ECFF678B33907966FC9CFA384DAA01AA057F872DA14DBB
                                                                      SHA-512:4ED31BF4F54EB0666539D6426C851503E15079601A2B7EC7410EBF0F3D1EEC6A09F9D79F5CF40106249A710037A36DE58105A72D8A909E0CFCE872C736CB5E48
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/sodar/sodar2.js
                                                                      Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var l="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ba(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var n=ba(this),p="function"===typeof Symbol&&"symbol"===typeof Symbol("x"),r={},u={};function w(a,b){var c=u[b];if(null==c)return a[b];c=a[c];return void 0!==c?c:a[b]}.function x(a,b,c){if(b)a:{var d=a.split(".");a=1===d.length;var g=d[0],h;!a&&g in r?h=r:h=n;for(g=0;g<d.length-1;g++){var e=d[g];if(!(e in h))break a;h=h[e]}d=d[d.length-1];c=p&&"es6"===c?h[d]:null;b=b(c);
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (7786), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):7786
                                                                      Entropy (8bit):5.762268977480709
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:C0F5C7E07FB828547F5311848581ABF5
                                                                      SHA1:BFA1A4D9548BC735486FCF2671AA757CDB79B732
                                                                      SHA-256:D73BAD723D450D3670960EDEE043BD92C77698FE9F83C5F5B7C5CF0C68510781
                                                                      SHA-512:16DFEAFEF1F55669853C11BECBE395892CE5BED6D9874AA756A39A53AB0CC5ECA35B2EB54E761E2628CAE1C55A8DD4F4FF54EEF14308DB5CDB3128B19807160F
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/cdn-cgi/challenge-platform/h/g/scripts/jsd/dc6b543c1346/main.js
                                                                      Preview:window._cf_chl_opt={cFPWv:'g'};~function(V,g,h,m,n,x,y,A){V=b,function(c,e,U,f,C){for(U=b,f=c();!![];)try{if(C=parseInt(U(500))/1+parseInt(U(511))/2+parseInt(U(496))/3+-parseInt(U(471))/4*(-parseInt(U(490))/5)+-parseInt(U(475))/6*(parseInt(U(528))/7)+-parseInt(U(531))/8+parseInt(U(476))/9,e===C)break;else f.push(f.shift())}catch(D){f.push(f.shift())}}(a,170936),g=this||self,h=g[V(542)],m={},m[V(495)]='o',m[V(473)]='s',m[V(545)]='u',m[V(540)]='z',m[V(494)]='n',m[V(555)]='I',n=m,g[V(546)]=function(C,D,E,F,a4,H,I,J,K,L,M){if(a4=V,null===D||void 0===D)return F;for(H=v(D),C[a4(470)][a4(501)]&&(H=H[a4(509)](C[a4(470)][a4(501)](D))),H=C[a4(536)][a4(478)]&&C[a4(522)]?C[a4(536)][a4(478)](new C[(a4(522))](H)):function(N,a5,O){for(a5=a4,N[a5(557)](),O=0;O<N[a5(534)];N[O]===N[O+1]?N[a5(499)](O+1,1):O+=1);return N}(H),I='nAsAaAb'.split('A'),I=I[a4(532)][a4(465)](I),J=0;J<H[a4(534)];K=H[J],L=s(C,D,K),I(L)?(M=L==='s'&&!C[a4(521)](D[K]),a4(464)===E+K?G(E+K,L):M||G(E+K,D[K])):G(E+K,L),J++);return F;fun
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):22394
                                                                      Entropy (8bit):7.9918124110623685
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:2E42A13462EDD5579A93A20D0FBBAD35
                                                                      SHA1:58E18FFD7D444DFB52CB0A3D8BE795EA7E69F103
                                                                      SHA-256:C57CC7B5F9F87C8F5EA4AD1C964440FF10FA5102F94E7EF3A8447DCDB57B167E
                                                                      SHA-512:9098FFFC0ADB88C8AE8DEB143AFE6F19F74A478E6DBDDA5285F4BEBABEBB3856C5A73F965A7A3F72B9FDD35ADA42F433E462AD617348F1CFBB596A4AD2431905
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/18556489/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX3h5X2NlbnRlcixxX2F1dG86Z29vZCx3XzEwMjAseF85NzMseV8zODgvaHR0cHM6Ly9pbWdob3N0cy5jb20vdC8yMDI0LTAyLzcwMDMyNS9kNTU2ODFmYWE5YWJiYmQ0ODc5OGFiMjg5NGI0MTRmMC5wbmc.webp?v=1711139396-U1Ou_FLqCBBbJVaIikVLA1j6iXw6oB3bxsKLNk0STwQ
                                                                      Preview:RIFFrW..WEBPVP8 fW..0<...*..h.>.<.I..%...[....bn.L[.Q......V.+..oa!....~I..:.g.:S..z.Z.#.?...?....]?......[....._...>...z..r.w....U.E...w.G...Of_.^.....u....>..G.............~.xQ..G[.i.u./....d.......?.{.......}...?..'.'.?.........N...[..>K..m.;.].M/r.W...]o(.....y.X...R.%..VTl?FW..&~.._gs....~...-.......H..X...p;.R....?...K_V..x]....].L......#..~..iW.....h........R.E....4.G.5.UG."3+.....$.I.k).9..?......1}.#...bA..&....G9D...a.D...K_...9..F..c.(.4.......u..h...{&...k.6!..5.......|./..".).ZL...u..I.S.m.....4.. J.WIL/...WO..m..|.5?.D...,.C8.E_z..]r...................Q...:...C.....*..N......v.u..ev.b.P.......P.".Y.6.......L..3F.W.G..(..#.....Q.V.L......pc;..Y......$.o......BZ.$v8&.(.<.<..R.Q........#.BR;*..2{@B....|..d. m..............nT..>...S.!$?l.&...d.N...R..}{ ...-.pQ..+.....|.1......u........e...g....+S..W.....+[..2$..=..(NM.FH...V.....?|`b<.Y....H.B....b..0".X...6.c..i..(..W.#!/.>.P.O.mvvi..6[.._i......zH..W>i.u....k.l(.{.(.....
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):16
                                                                      Entropy (8bit):3.75
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:FA9C17CE126A76733ACA269345EB7D47
                                                                      SHA1:F1D8AA71F281509D55041F671B1A7BD94524AAD8
                                                                      SHA-256:15F88A501BBE49A103551BA087FE6FC7E101894E71C3A74A42E8EFC07DCEC0D8
                                                                      SHA-512:DD2E08D8D294E24330DDACFCC602D5AB9C9BD65346E0C6540F599725AB711E1F1621D3939318BFC069E67CEF889B80E781DA3E935D61C26E2086DAC79428818C
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAk-6F0DB1btjxIFDRM0Cs4=?alt=proto
                                                                      Preview:CgkKBw0TNArOGgA=
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (2343)
                                                                      Category:downloaded
                                                                      Size (bytes):52916
                                                                      Entropy (8bit):5.51283890397623
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:575B5480531DA4D14E7453E2016FE0BC
                                                                      SHA1:E5C5F3134FE29E60B591C87EA85951F0AEA36EE1
                                                                      SHA-256:DE36E50194320A7D3EF1ACE9BD34A875A8BD458B253C061979DD628E9BF49AFD
                                                                      SHA-512:174E48F4FB2A7E7A0BE1E16564F9ED2D0BBCC8B4AF18CB89AD49CF42B1C3894C8F8E29CE673BC5D9BC8552F88D1D47294EE0E216402566A3F446F04ACA24857A
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.google-analytics.com/analytics.js
                                                                      Preview:(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.var n=this||self,p=function(a,b){a=a.split(".");var c=n;a[0]in c||"undefined"==typeof c.execScript||c.execScript("var "+a[0]);for(var d;a.length&&(d=a.shift());)a.length||void 0===b?c=c[d]&&c[d]!==Object.prototype[d]?c[d]:c[d]={}:c[d]=b};function q(){for(var a=r,b={},c=0;c<a.length;++c)b[a[c]]=c;return b}function u(){var a="ABCDEFGHIJKLMNOPQRSTUVWXYZ";a+=a.toLowerCase()+"0123456789-_";return a+"."}var r,v;.function aa(a){function b(k){for(;d<a.length;){var m=a.charAt(d++),l=v[m];if(null!=l)return l;if(!/^[\s\xa0]*$/.test(m))throw Error("Unknown base64 encoding at char: "+m);}return k}r=r||u();v=v||q();for(var c="",d=0;;){var e=b(-1),f=b(0),h=b(64),g=b(64);if(64===g&&-1===e)return c;c+=String.fromCharCode(e<<2|f>>4);64!=h&&(c+=String.fromCharCode(f<<4&240|h>>2),64!=g&&(c+=String.fromCharCode(h<<6&192|g)))}};var w={},y=function(a){w.TAGGING=w.TAGGING||[];w.TAGGING[a]=!0};var ba=Array.isArray,c
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (1256), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):1256
                                                                      Entropy (8bit):5.854123780651392
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:D46E350120A92D0ADFF1BE4DD8176CD4
                                                                      SHA1:4EB36EA50471EE62AD489E39E4336D7FD95B6D80
                                                                      SHA-256:FC72CAE015BEB56162CCBD9133B586027B8F04A5C351117F6797824CF58B4251
                                                                      SHA-512:5E91819CF3D4383D4802438C0EAEE639C20625D71EA02D51D16A3997E476D2DEA03A327297AD25FE5C2B2B67CB92EB1EBFBCCFC8A39DD44176FED469D52D3A27
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.google.com/recaptcha/api.js?render=6LcsbMUlAAAAAFswz6m-Wag8MDNnx1xn-TCn364a
                                                                      Preview:/* PLEASE DO NOT COPY AND PASTE THIS CODE. */(function(){var w=window,C='___grecaptcha_cfg',cfg=w[C]=w[C]||{},N='grecaptcha';var gr=w[N]=w[N]||{};gr.ready=gr.ready||function(f){(cfg['fns']=cfg['fns']||[]).push(f);};w['__recaptcha_api']='https://www.google.com/recaptcha/api2/';(cfg['render']=cfg['render']||[]).push('6LcsbMUlAAAAAFswz6m-Wag8MDNnx1xn-TCn364a');w['__google_recaptcha_client']=true;var d=document,po=d.createElement('script');po.type='text/javascript';po.async=true;var m=d.createElement('meta');m.httpEquiv='origin-trial';m.content='Az520Inasey3TAyqLyojQa8MnmCALSEU29yQFW8dePZ7xQTvSt73pHazLFTK5f7SyLUJSo2uKLesEtEa9aUYcgMAAACPeyJvcmlnaW4iOiJodHRwczovL2dvb2dsZS5jb206NDQzIiwiZmVhdHVyZSI6IkRpc2FibGVUaGlyZFBhcnR5U3RvcmFnZVBhcnRpdGlvbmluZyIsImV4cGlyeSI6MTcyNTQwNzk5OSwiaXNTdWJkb21haW4iOnRydWUsImlzVGhpcmRQYXJ0eSI6dHJ1ZX0=';d.head.prepend(m);po.src='https://www.gstatic.com/recaptcha/releases/Hq4JZivTyQ7GP8Kt571Tzodj/recaptcha__en.js';po.crossOrigin='anonymous';po.integrity='sha384-GwKByp
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (40057)
                                                                      Category:downloaded
                                                                      Size (bytes):41109
                                                                      Entropy (8bit):5.67737326655066
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:A0B7784B7498CB033C337F12332F2437
                                                                      SHA1:16B0E75C0AF0E5FA887B290DA1D6389CF2B309BF
                                                                      SHA-256:0A58062C94FE6A7305169FE33DC48F813A4D8D605FA01B4F2EA75826FC18AEB4
                                                                      SHA-512:A88C0D00BEC07682A87F8B489F760936111B45B5792065B084D6877EF4E93614AE50B45B0FF865586042C3CAF52568FEA516E326E6B7606F0842525650CA87C3
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/bg/ClgGLJT-anMFFp_jPcSPgTpNjWBfoBtPLqdYJvwYrrQ.js
                                                                      Preview://# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ2ZXJzaW9uIjogMywic291cmNlcyI6WyIiXSwic291cmNlc0NvbnRlbnQiOlsiICJdLCJuYW1lcyI6WyJjbG9zdXJlRHluYW1pY0J1dHRvbiJdLCJtYXBwaW5ncyI6IkFBQUE7QUFBQTtBQUFBO0FBQUE7QUFBQTtBQUFBO0FBQUEifQ==. (function(){function c(R){return R}var v=function(R){return c.call(this,R)},t=function(R,Y,M,f,d){if(!(d=(f=Y,k.trustedTypes),d)||!d.createPolicy)return f;try{f=d.createPolicy(R,{createHTML:v,createScript:v,createScriptURL:v})}catch(z){if(k.console)k.console[M](z.message)}return f},k=this||self;(0,eval)(function(R,Y){return(Y=t("bg",null,"error"))&&1===R.eval(Y.createScript("1"))?function(M){return Y.createScript(M)}:function(M){return""+M}}(k)(Array(7824*Math.random()|0).join("\n")+['//# sourceMappingURL=data:application/json;charset=utf-8;base64,eyJ2ZXJzaW9uIjogMywic291cmNlcyI6WyIiXSwic291cmNlc0NvbnRlbnQiOlsiICJdLCJuYW1lcyI6WyJjbG9zdXJlRHluYW1pY0J1dHRvbiJdLCJtYXBwaW5ncyI6IkFBQUE7QUFBQTtBQUFBO0FBQUE7QUFBQTtBQUFBO0FBQUEifQ==',.'(function(){/*'
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:JPEG image data, JFIF standard 1.01, aspect ratio, density 0x0, segment length 16, baseline, precision 8, 300x300, components 3
                                                                      Category:dropped
                                                                      Size (bytes):26838
                                                                      Entropy (8bit):7.979877138765406
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:A7CFD167AF2812DD841B01B4C634D731
                                                                      SHA1:4C625AFE8707AF3B91C54B522EFDF293BB636B63
                                                                      SHA-256:4AE741D366DBB0F076E5099DA72EF7388005C584FA8133A0C9B94C96F32F2E23
                                                                      SHA-512:8649898BF96269482BE517CA74A6B27EE178CE758FB2B3971928B576754BE4402F54C57D2FDF412AB17FA18F543CC947E7C3FA229C7E6F330842899A4FC000CD
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:......JFIF..............Photoshop 3.0.8BIM.......h..(.bFBMD0a000a73010000b3240000254d0000d9640000d47500009daa0000fce60000a4ed00009c0901004b1f01007a810100....C.....................................!........'.."#%%%..),($+!$%$...C...........$...$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$......,.,............................................R........................!..1.AQa."q.....2.#BRbr..$3ct......%&4Cs..6...STdu...Ee................................3........................!1A"2Q..aq.#3B.....R....C............?.#...7.F..095....b."..%..K....|(.....I,.y.1 ..w.>P...:.,......1H...v.&.g.8..[...!..y.1N.f...Uh.7...U....o/....!&*Q..4....~..?.5.v.A...Au......Bb*....>P....c...SP..>...6..?.....,.D.Z...'.....i.W..,j...59.....B..;......y.d.7.V5....!;p.$8...[...!.a..Il.k2a..V..'.U..5....!.d>G~k^.i...b.(...W.X..:..q-...$....Te.:5`...h..R.....U../X1..IY..#...Z..GQ...[.......f....9..;F).k.......8...Zf..P.K.\...............p....H.H..4ke...&.>.\.rh...t.]]&m....0).T$_.....M.....
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:RIFF (little-endian) data, Web/P image, VP8 encoding, 480x360, Suserng: [none]x[none], YUV color, decoders should clamp
                                                                      Category:downloaded
                                                                      Size (bytes):40646
                                                                      Entropy (8bit):7.995450104369562
                                                                      Encrypted:true
                                                                      SSDEEP:
                                                                      MD5:FCFA8A02338AB5FE002C7B463C2FB916
                                                                      SHA1:174D784A72389E7AEE2B70AF9C0E2EACA8A9F237
                                                                      SHA-256:2C038E79E92E74A0429583AFB2740186A5EE65002F5839970A47A21B1EB9D574
                                                                      SHA-512:86AF3E34D816C2FDC618FC75B4325188BA8B5F692CBAFB980493D9B94757539B24CDEF8BC699FE93F18C21D8311AFA3F9AD96ECE5A16BFA7D2B21A5D519AED4F
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://s-img.adskeeper.com/g/18705596/480x360/-/aHR0cDovL2NsLmltZ2hvc3RzLmNvbS9pbWdoL2ltYWdlL2ZldGNoL2FyXzQ6MyxjX2ZpbGwsZV9zaGFycGVuOjEwMCxmX2pwZyxnX2ZhY2VzOmF1dG8scV9hdXRvOmdvb2Qsd18xMDIwL2h0dHBzOi8vaW1naG9zdHMuY29tL3QvMjAyNC0wMi84MzY3NjkvZjg0OGQ5MDRhZmNjYWI5OWI3MzhjNjNjNTY0NWFmYjguanBn.webp?v=1711139396-jTQROoIVLxd_LO8n8eWHJzFl007Sicw8UFlDp4fim5Y
                                                                      Preview:RIFF....WEBPVP8 ....0....*..h.>.6.G...!.......ck....J.dAy...".....M....|....w..]./.;v..~U....Y.....?.....]D~......}..[.......{..i.G.7...~...m..?..................~......_...O...}r....O.........e.................#.....O...?...|G..........5.Q..%..S.%..a...Vo+.........f.I.N..6,...9.RJ.....8z..z<...k....o......3..E.......Hz37..z.=.h.bm..._q.e...7..?+.....'.gfts.f.....oUx..k>z...K...B.E.........G.M......;\. V9....Tew.4.....q#..,]..q..Z._$.z.0E.\...Iu.'........S.L<\..Rm.`.T>.Y.p.......p.........?.gO<x.......}N;.....7...8x...j...uj.R/....P..m9-.......)y.|.l.k.-....37..QT..q.Y.&.+F{..y..gi.k.k[.."..chO..,.qgP..f)..\..'....?...`T.l...L.A....Z9..<vB%..'y..b".X...B..W*s..J.<t.G.:..]...".@......|....~........%..0p..".E.xk9...m....h..I.K.X.).......X5....4^...q}8.m.1`....U.y...1$}....'o.....].Ea..W..#?4..\....W`.sB....a.:.x...&.w....u^..E............M...]U<a.......CAh.. .......x....^..m....2..a.yr..}B.F...>e.....\....o".8...A.s.`...:.;.N......Ai......,.).
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (3828)
                                                                      Category:downloaded
                                                                      Size (bytes):92741
                                                                      Entropy (8bit):5.587930920707772
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:53C524663BAC8129EE7241AABCF49104
                                                                      SHA1:3AD2C3B8984A4F2CD234E7A5FBF27D0C40E9A887
                                                                      SHA-256:1F869F8A3A1436C63211186C4E5241E05033BD647732ADADB48BC93B204367B7
                                                                      SHA-512:7BAEB0B492EA5BFDA7DEC291BF2CB4D5CB936DC1E9792F76EB2F085AF12EBE44E34BD125419A48CF3080084D0B2C2F0E54D2154B698A0FBB8DFBA6439AE14642
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202403190101/slotcar_library_fy2021.js
                                                                      Preview:(function(sttc){'use strict';var ca={};/* . . Copyright The Closure Library Authors. . SPDX-License-Identifier: Apache-2.0 .*/ .var k=this||self;function da(a){a:{var b=["CLOSURE_FLAGS"];for(var c=k,d=0;d<b.length;d++)if(c=c[b[d]],null==c){b=null;break a}b=c}a=b&&b[a];return null!=a?a:!1}function ea(a){var b=typeof a;return"object"==b&&null!=a||"function"==b}function fa(a,b,c){return a.call.apply(a.bind,arguments)} .function ha(a,b,c){if(!a)throw Error();if(2<arguments.length){var d=Array.prototype.slice.call(arguments,2);return function(){var e=Array.prototype.slice.call(arguments);Array.prototype.unshift.apply(e,d);return a.apply(b,e)}}return function(){return a.apply(b,arguments)}}function ia(a,b,c){ia=Function.prototype.bind&&-1!=Function.prototype.bind.toString().indexOf("native code")?fa:ha;return ia.apply(null,arguments)} .function ja(a,b){var c=Array.prototype.slice.call(arguments,1);return function(){var d=c.slice();d.push.apply(d,arguments);return a.apply(this,d)}}function n(
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (56398), with no line terminators
                                                                      Category:downloaded
                                                                      Size (bytes):56398
                                                                      Entropy (8bit):5.907604034780877
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:EB4BC511F79F7A1573B45F5775B3A99B
                                                                      SHA1:D910FB51AD7316AA54F055079374574698E74B35
                                                                      SHA-256:7859A62E04B0ACB06516EB12454DE6673883ECFAEAED6C254659BCA7CD59C050
                                                                      SHA-512:EC9BDF1C91B6262B183FD23F640EAC22016D1F42DB631380676ED34B962E01BADDA91F9CBDFA189B42FE3182A992F1B95A7353AF41E41B2D6E1DAB17E87637A0
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.gstatic.com/recaptcha/releases/Hq4JZivTyQ7GP8Kt571Tzodj/styles__ltr.css
                                                                      Preview:.goog-inline-block{position:relative;display:-moz-inline-box;display:inline-block}* html .goog-inline-block{display:inline}*:first-child+html .goog-inline-block{display:inline}.recaptcha-checkbox{border:none;font-size:1px;height:28px;margin:4px;width:28px;overflow:visible;outline:0;vertical-align:text-bottom}.recaptcha-checkbox-border{-webkit-border-radius:2px;-moz-border-radius:2px;border-radius:2px;background-color:#fff;border:2px solid #c1c1c1;font-size:1px;height:24px;position:absolute;width:24px;z-index:1}.recaptcha-checkbox-borderAnimation{background-image:url(data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFQAAANICAYAAABZl8i8AAAABmJLR0QA/wD/AP+gvaeTAAAACXBIWXMAAABIAAAASABGyWs+AAAACXZwQWcAAABUAAADSAC4K4y8AAA4oElEQVR42u2dCZRV1ZX3q5iE4IQIiKQQCKBt0JLEIUZwCCk7pBNFiRMajZrIl9aOLZ8sY4CWdkDbT2McooaAEmNixFhpaYE2dCiLScWiQHCgoGQoGQuhGArKKl7V+c5/n33fO/V4w733nVuheXuv9V/rrnvP2Xud3zvTPee+ewsKxMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExMTExP4OdtlT6ztAbRWvvLy8A3QkwxzH6tBGMMexI
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (4179)
                                                                      Category:downloaded
                                                                      Size (bytes):270091
                                                                      Entropy (8bit):5.566444172624925
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:1858B4629DE3A199CEFACA3166C609CD
                                                                      SHA1:A18C07F989C5EB89BFB93D04A2DD21EC16184380
                                                                      SHA-256:F2F7ED40861D5536F1D29E15CDF04BF12877C8961EF84E700A41FE499A4C940C
                                                                      SHA-512:A5EBC08563EFABB7CBE7CCCF22146A5648C1E86ED82C426E6C58451F780913C97209CA4783B0D7C0B390B9873D7824C8C8550588F3B1B189CCA0ED535FDEAC35
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://www.googletagmanager.com/gtag/js?id=G-PX3PZ6Q9RG&l=dataLayer&cx=c
                                                                      Preview:.// Copyright 2012 Google Inc. All rights reserved.. .(function(){..var data = {."resource": {. "version":"1",. . "macros":[{"function":"__e"},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0},{"vtp_signal":1,"function":"__c","vtp_value":1},{"function":"__c","vtp_value":""},{"function":"__c","vtp_value":0}],. "tags":[{"function":"__ogt_1p_data_v2","priority":11,"vtp_cityType":"CSS_SELECTOR","vtp_manualEmailEnabled":false,"vtp_firstNameType":"CSS_SELECTOR","vtp_countryType":"CSS_SELECTOR","vtp_cityValue":"","vtp_isAutoEnabled":true,"vtp_autoCollectExclusionSelectors":["list",["map","exclusionSelector",""]],"vtp_emailType":"CSS_SELECTOR","vtp_regionType":"CSS_SELECTOR","vtp_autoEmailEnabled":true,"vtp_postalCodeValue":"","vtp_lastNameValue":"","vtp_phoneType":"CSS_SELECTOR","vtp_phoneValue":"","vtp_streetType":"CSS_SELECTOR","vtp_autoPhoneEnabled":true,"vtp_postalCodeType":"CSS_SELECTOR","vtp_emailValue":"","vtp_firstNa
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text
                                                                      Category:downloaded
                                                                      Size (bytes):2144
                                                                      Entropy (8bit):5.384166941531231
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:71D75BB881AE05963C61B873BC73684E
                                                                      SHA1:DEC610DC30A0EB5658DD1133EEDB08276CBBCACC
                                                                      SHA-256:6700A61B5BD8006D07DDCDF84DF499411E0CA045C8E124AF25F72B8C4E82DAB3
                                                                      SHA-512:CBFA84F79A2B96BAFF50DDEAB92A4AB1ABD531EE12844299F856204A75419EE11346E4FBB030A41BA344587FC1C84B39FB67AC69980807E1D6E8B7C5ED65C4A3
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://fonts.googleapis.com/css?family=Poppins%3A400%2C600
                                                                      Preview:/* devanagari */.@font-face {. font-family: 'Poppins';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/poppins/v20/pxiEyp8kv8JHgFVrJJbecmNE.woff2) format('woff2');. unicode-range: U+0900-097F, U+1CD0-1CF9, U+200C-200D, U+20A8, U+20B9, U+20F0, U+25CC, U+A830-A839, U+A8E0-A8FF, U+11B00-11B09;.}./* latin-ext */.@font-face {. font-family: 'Poppins';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/poppins/v20/pxiEyp8kv8JHgFVrJJnecmNE.woff2) format('woff2');. unicode-range: U+0100-02AF, U+0304, U+0308, U+0329, U+1E00-1E9F, U+1EF2-1EFF, U+2020, U+20A0-20AB, U+20AD-20C0, U+2113, U+2C60-2C7F, U+A720-A7FF;.}./* latin */.@font-face {. font-family: 'Poppins';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/poppins/v20/pxiEyp8kv8JHgFVrJJfecg.woff2) format('woff2');. unicode-range: U+0000-00FF, U+0131, U+0152-0153, U+02BB-02BC, U+02C6, U+02DA, U+02DC, U+0304, U+0308, U+0329, U+2000-206F, U+2074,
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:PNG image data, 48 x 48, 8-bit gray+alpha, non-interlaced
                                                                      Category:dropped
                                                                      Size (bytes):205
                                                                      Entropy (8bit):6.471232950817362
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:4087858E2C9DB9AA8F6A840AEDCFB533
                                                                      SHA1:D1FFE861DA6BD0E95FD1A365B0C3D3CEB6CD58A3
                                                                      SHA-256:4D45982F2DC34F36C9045EE46A75A1943666BB7FD64E103CAC8C7429E7012840
                                                                      SHA-512:541228667C513266FFAC017AA43CCACEA410E20BF27D30599276E9984FAC2C433AC58288C19F7A5BFEB1C9B4074B8C9C472080BF1C706303F97B2CE73DBD634F
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      Preview:.PNG........IHDR...0...0.......1.....IDATx...1..1.DQ.f....@H.....%`..j.M&"....5....;...;.......\.....\..U.4..pe.<.P.....%... ...@....p.....@...X...5..{.$.x^....y=..z.......|.......+.........IEND.B`.
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (2020)
                                                                      Category:downloaded
                                                                      Size (bytes):12817
                                                                      Entropy (8bit):5.34459161517544
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:1D3D22DF067F5219073F9C0FABB74FDD
                                                                      SHA1:D5C226022639323D93946DF3571404116041E588
                                                                      SHA-256:55A119C0394F901A8A297E109C17B5E5402689708B999AB10691C16179F32A4A
                                                                      SHA-512:0B6B13B576E8CC05BD85B275631879875A5DBCB70FD78E6C93B259317ED6FD5D886F37D0CC6E099C3D3A8B66FEA2A4C2C631EB5548C1AB2CD7CB5FA4D41EA769
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://tpc.googlesyndication.com/sodar/sodar2/225/runner.html
                                                                      Preview:<!DOCTYPE html>.<meta charset=utf-8><script>.(function(){/*.. Copyright The Closure Library Authors.. SPDX-License-Identifier: Apache-2.0.*/.'use strict';function m(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var p="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,d){if(a==Array.prototype||a==Object.prototype)return a;a[b]=d.value;return a};.function aa(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var d=a[b];if(d&&d.Math==Math)return d}throw Error("Cannot find global object");}var r=aa(this),u="function"===typeof Symbol&&"symbol"===typeof Symbol("x"),v={},w={};function x(a,b){var d=w[b];if(null==d)return a[b];d=a[d];return void 0!==d?d:a[b]}.function y(a,b,d){if(b)a:{var e=a.split(".");a=1===e.length;var g=e[0],k;!a&&g in v?k=v:k=r;for(g=0;g<e.length-1;g++){var c=e[g];if(!(c in k))break a;k=k[c]}e=e[
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:ASCII text, with very long lines (6029)
                                                                      Category:downloaded
                                                                      Size (bytes):6030
                                                                      Entropy (8bit):5.160439824319916
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:DF14C1A4BD523DEBA486FE1C305963AC
                                                                      SHA1:1A337EAB1D8C5923DFE2DFAC116D4DE7B1B1FDED
                                                                      SHA-256:4BC9E6EFCB5CCA090B3A6908FF9EBA3E3F970D9391D9CC6A4EABD97A98CFC9A2
                                                                      SHA-512:6D68B8E0AE89897A415C4036D44E72B68988CD70BE14373AFC1EDBB82F58CA972F5E1177FE8B15B761F23CB34ACBD3753C642E19DA1C68553D8FAA2DBA956340
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://jsc.adskeeper.com/s/a/sazi.online.1525321.js
                                                                      Preview:(function(){var h=function(i,e){return function(){return i&&(e=i(i=0)),e}};var W=function(i,e){return function(){return e||i((e={exports:{}}).exports,e),e.exports}};var d=h(function(){});var s=h(function(){});var u=h(function(){});var p=h(function(){});var l=h(function(){});var v=h(function(){});var O=W(function(g){d();s();u();p();l();v();Object.defineProperty(g,"__esModule",{value:!0});g.AdditionalWidget=g.ScriptUrlType=void 0;var B;(function(i){i.es5="es5",i.es6="es6"})(B||(g.ScriptUrlType=B={}));var R=function(){function i(e,t){var n=this;if(this.additionalWidgets=e,this.urlType=t,this.additionalWidgets.length)for(var r=function(a){setTimeout(function(){n.init(n.additionalWidgets[a])},0)},o=0;o<this.additionalWidgets.length;o++)r(o)}return i.prototype.init=function(e){var t=this,n=e.widgetDivId?this.createWidgetDiv(e.id,e.widgetDivId):null,r=this.createWidgetScript(e.urls[this.urlType]),o=e.insertTo||"before";this.waitForElement(e.searchSelector).then(function(a){var c;e.widgetDivId
                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                      File Type:HTML document, ASCII text, with very long lines (1037)
                                                                      Category:downloaded
                                                                      Size (bytes):7465
                                                                      Entropy (8bit):5.081745779488584
                                                                      Encrypted:false
                                                                      SSDEEP:
                                                                      MD5:4EDD22B288D78DDC0CAC461D55B6DE6D
                                                                      SHA1:A5D8A700FD9AC41F7A19DED3EE428905E4475501
                                                                      SHA-256:1C3F4135AE3D85F96B87F9ECAAB5099B1E9249A778B10114F3E53307E25B7A54
                                                                      SHA-512:4D663B8AEE88F87CBED0D9174B23B47D1319AC4754407A31DF25B54DF5C4C713C01704C8D1AF3EB9DE23AABC8C8550DE2133328601AF2700155DC55B912C1CB5
                                                                      Malicious:false
                                                                      Reputation:unknown
                                                                      URL:https://sazi.online/wp-content/themes/enjoymini-pro/assets/js/theia-sticky-sidebar.js?ver=6.4.3
                                                                      Preview:/*!.* Theia Sticky Sidebar v1.7.0.* https://github.com/WeCodePixels/theia-sticky-sidebar.*.* Glues your website's sidebars, making them permanently visible while scrolling..*.* Copyright 2013-2016 WeCodePixels and other contributors.* Released under the MIT license.*/(function($){$.fn.theiaStickySidebar=function(options){var defaults={'containerSelector':'','additionalMarginTop':0,'additionalMarginBottom':0,'updateSidebarHeight':true,'minWidth':0,'disableOnResponsiveLayouts':true,'sidebarBehavior':'modern','defaultPosition':'relative','namespace':'TSS'};options=$.extend(defaults,options);options.additionalMarginTop=parseInt(options.additionalMarginTop)||0;options.additionalMarginBottom=parseInt(options.additionalMarginBottom)||0;tryInitOrHookIntoEvents(options,this);function tryInitOrHookIntoEvents(options,$that){var success=tryInit(options,$that);if(!success){console.log('TSS: Body width smaller than options.minWidth. Init is delayed.');$(document).on('scroll.'+options.namespace,funct
                                                                      No static file info