Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://www.google.md/url?url=https://demeropkdfzdbi&uxzs=zemleptc&icmeyuc=zn0&ywprgz=icmeyuc&uxzs=zemleptc&ywprgz=icmeyuc&fzdbi=demeropkd&znzn=ywprgzuxzs&q=amp%2Fdecentafrica.com%2Flok%2F1160851136%2FZHVzdGluLmZpY2NvQHZvc3Nsb2guY29t

Overview

General Information

Sample URL:https://www.google.md/url?url=https://demeropkdfzdbi&uxzs=zemleptc&icmeyuc=zn0&ywprgz=icmeyuc&uxzs=zemleptc&ywprgz=icmeyuc&fzdbi=demeropkd&znzn=ywprgzuxzs&q=amp%2Fdecentafrica.com%2Flok%2F1160851136%2
Analysis ID:1513046
Infos:

Detection

Score:48
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Multi AV Scanner detection for domain / URL
Stores files to the Windows start menu directory

Classification

  • System is w10x64_ra
  • chrome.exe (PID: 6572 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://www.google.md/url?url=https://demeropkdfzdbi&uxzs=zemleptc&icmeyuc=zn0&ywprgz=icmeyuc&uxzs=zemleptc&ywprgz=icmeyuc&fzdbi=demeropkd&znzn=ywprgzuxzs&q=amp%2Fdecentafrica.com%2Flok%2F1160851136%2FZHVzdGluLmZpY2NvQHZvc3Nsb2guY29t MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 6916 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2196 --field-trial-handle=1896,i,7682131304449899028,15001621221694475515,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • msedge.exe (PID: 7596 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" MD5: 69222B8101B0601CC6663F8381E7E00F)
    • msedge.exe (PID: 7820 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2344 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:3 MD5: 69222B8101B0601CC6663F8381E7E00F)
    • msedge.exe (PID: 8412 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=6340 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:8 MD5: 69222B8101B0601CC6663F8381E7E00F)
    • msedge.exe (PID: 8444 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6592 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:8 MD5: 69222B8101B0601CC6663F8381E7E00F)
  • cleanup
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: drysstore.comVirustotal: Detection: 7%Perma Link
Source: unknownHTTPS traffic detected: 204.79.197.200:443 -> 192.168.2.16:49718 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.28.14:443 -> 192.168.2.16:49719 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.1.33.206:443 -> 192.168.2.16:49725 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.16:49728 version: TLS 1.2
Source: unknownHTTPS traffic detected: 51.104.15.253:443 -> 192.168.2.16:49729 version: TLS 1.2
Source: unknownHTTPS traffic detected: 204.79.197.222:443 -> 192.168.2.16:49731 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.16:49734 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.253.72:443 -> 192.168.2.16:49755 version: TLS 1.2
Source: unknownHTTPS traffic detected: 150.171.69.254:443 -> 192.168.2.16:49787 version: TLS 1.2
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 192.229.211.108
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 23.1.33.206
Source: unknownTCP traffic detected without corresponding DNS query: 23.1.33.206
Source: unknownTCP traffic detected without corresponding DNS query: 23.1.33.206
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.200
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.28.14
Source: global trafficHTTP traffic detected: GET /lok/1160851136/ZHVzdGluLmZpY2NvQHZvc3Nsb2guY29t HTTP/1.1Host: decentafrica.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: decentafrica.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Referer: http://decentafrica.com/lok/1160851136/ZHVzdGluLmZpY2NvQHZvc3Nsb2guY29tAccept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /lok/1160851136/ZHVzdGluLmZpY2NvQHZvc3Nsb2guY29t HTTP/1.1Host: decentafrica.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Accept-Encoding: gzip, deflateAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: decentafrica.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept: image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Referer: http://decentafrica.com/lok/1160851136/ZHVzdGluLmZpY2NvQHZvc3Nsb2guY29tAccept-Encoding: gzip, deflateAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficDNS traffic detected: DNS query: www.google.md
Source: global trafficDNS traffic detected: DNS query: decentafrica.com
Source: global trafficDNS traffic detected: DNS query: drysstore.com
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: ntp.msn.com
Source: global trafficDNS traffic detected: DNS query: bzib.nelreports.net
Source: global trafficDNS traffic detected: DNS query: clients2.googleusercontent.com
Source: global trafficDNS traffic detected: DNS query: sb.scorecardresearch.com
Source: global trafficDNS traffic detected: DNS query: c.msn.com
Source: global trafficDNS traffic detected: DNS query: assets.msn.com
Source: global trafficDNS traffic detected: DNS query: api.msn.com
Source: global trafficDNS traffic detected: DNS query: chrome.cloudflare-dns.com
Source: global trafficDNS traffic detected: DNS query: websitedemos.net
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundDate: Wed, 18 Sep 2024 10:10:23 GMTServer: Apache/2.4.62 (cPanel) OpenSSL/1.1.1w mod_bwlimited/1.4Content-Length: 315Keep-Alive: timeout=5, max=99Connection: Keep-AliveContent-Type: text/html; charset=iso-8859-1Data Raw: 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 20 50 55 42 4c 49 43 20 22 2d 2f 2f 49 45 54 46 2f 2f 44 54 44 20 48 54 4d 4c 20 32 2e 30 2f 2f 45 4e 22 3e 0a 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 0a 3c 74 69 74 6c 65 3e 34 30 34 20 4e 6f 74 20 46 6f 75 6e 64 3c 2f 74 69 74 6c 65 3e 0a 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0a 3c 68 31 3e 4e 6f 74 20 46 6f 75 6e 64 3c 2f 68 31 3e 0a 3c 70 3e 54 68 65 20 72 65 71 75 65 73 74 65 64 20 55 52 4c 20 77 61 73 20 6e 6f 74 20 66 6f 75 6e 64 20 6f 6e 20 74 68 69 73 20 73 65 72 76 65 72 2e 3c 2f 70 3e 0a 3c 70 3e 41 64 64 69 74 69 6f 6e 61 6c 6c 79 2c 20 61 20 34 30 34 20 4e 6f 74 20 46 6f 75 6e 64 0a 65 72 72 6f 72 20 77 61 73 20 65 6e 63 6f 75 6e 74 65 72 65 64 20 77 68 69 6c 65 20 74 72 79 69 6e 67 20 74 6f 20 75 73 65 20 61 6e 20 45 72 72 6f 72 44 6f 63 75 6d 65 6e 74 20 74 6f 20 68 61 6e 64 6c 65 20 74 68 65 20 72 65 71 75 65 73 74 2e 3c 2f 70 3e 0a 3c 2f 62 6f 64 79 3e 3c 2f 68 74 6d 6c 3e 0a Data Ascii: <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"><html><head><title>404 Not Found</title></head><body><h1>Not Found</h1><p>The requested URL was not found on this server.</p><p>Additionally, a 404 Not Founderror was encountered while trying to use an ErrorDocument to handle the request.</p></body></html>
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundDate: Wed, 18 Sep 2024 10:10:43 GMTServer: Apache/2.4.62 (cPanel) OpenSSL/1.1.1w mod_bwlimited/1.4Content-Length: 315Keep-Alive: timeout=5, max=99Connection: Keep-AliveContent-Type: text/html; charset=iso-8859-1Data Raw: 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 20 50 55 42 4c 49 43 20 22 2d 2f 2f 49 45 54 46 2f 2f 44 54 44 20 48 54 4d 4c 20 32 2e 30 2f 2f 45 4e 22 3e 0a 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 0a 3c 74 69 74 6c 65 3e 34 30 34 20 4e 6f 74 20 46 6f 75 6e 64 3c 2f 74 69 74 6c 65 3e 0a 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0a 3c 68 31 3e 4e 6f 74 20 46 6f 75 6e 64 3c 2f 68 31 3e 0a 3c 70 3e 54 68 65 20 72 65 71 75 65 73 74 65 64 20 55 52 4c 20 77 61 73 20 6e 6f 74 20 66 6f 75 6e 64 20 6f 6e 20 74 68 69 73 20 73 65 72 76 65 72 2e 3c 2f 70 3e 0a 3c 70 3e 41 64 64 69 74 69 6f 6e 61 6c 6c 79 2c 20 61 20 34 30 34 20 4e 6f 74 20 46 6f 75 6e 64 0a 65 72 72 6f 72 20 77 61 73 20 65 6e 63 6f 75 6e 74 65 72 65 64 20 77 68 69 6c 65 20 74 72 79 69 6e 67 20 74 6f 20 75 73 65 20 61 6e 20 45 72 72 6f 72 44 6f 63 75 6d 65 6e 74 20 74 6f 20 68 61 6e 64 6c 65 20 74 68 65 20 72 65 71 75 65 73 74 2e 3c 2f 70 3e 0a 3c 2f 62 6f 64 79 3e 3c 2f 68 74 6d 6c 3e 0a Data Ascii: <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"><html><head><title>404 Not Found</title></head><body><h1>Not Found</h1><p>The requested URL was not found on this server.</p><p>Additionally, a 404 Not Founderror was encountered while trying to use an ErrorDocument to handle the request.</p></body></html>
Source: unknownNetwork traffic detected: HTTP traffic on port 49708 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49865
Source: unknownNetwork traffic detected: HTTP traffic on port 49817 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49864
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49863
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49862
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49861
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49860
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49800 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49898 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49875 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 49881 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
Source: unknownNetwork traffic detected: HTTP traffic on port 49772 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49733
Source: unknownNetwork traffic detected: HTTP traffic on port 49841 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49731
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49850
Source: unknownNetwork traffic detected: HTTP traffic on port 49812 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49893 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49784 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49915 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49909 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49806 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49823 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49849
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 49681 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49848
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49847
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 49790 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49845
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49844
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49722
Source: unknownNetwork traffic detected: HTTP traffic on port 49674 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49843
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49842
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49841
Source: unknownNetwork traffic detected: HTTP traffic on port 49731 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49840
Source: unknownNetwork traffic detected: HTTP traffic on port 49892 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49828 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49805 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49719
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49838
Source: unknownNetwork traffic detected: HTTP traffic on port 49904 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49837
Source: unknownNetwork traffic detected: HTTP traffic on port 49847 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49836
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49835
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49712
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49831
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49830
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49864 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49822 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49829
Source: unknownNetwork traffic detected: HTTP traffic on port 49811 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49828
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49827
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49705
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49826
Source: unknownNetwork traffic detected: HTTP traffic on port 49754 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49825
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49824
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49823
Source: unknownNetwork traffic detected: HTTP traffic on port 49771 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49822
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49788
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49787
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49786
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49785
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 49813 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49836 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49916 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49785 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49807 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49845 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49791 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49868 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49885 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49899
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49898
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49897
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49896
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49895
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 49862 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49894
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49772
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49893
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49771
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49892
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49891
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49897 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49879 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49802 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49851 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49830 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49905 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49889
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49888
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49885
Source: unknownNetwork traffic detected: HTTP traffic on port 49863 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49884
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49883
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49761
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49882
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49881
Source: unknownNetwork traffic detected: HTTP traffic on port 49840 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49880
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49896 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49719 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49801 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49824 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49879
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49878
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49877
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49876
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49754
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49875
Source: unknownNetwork traffic detected: HTTP traffic on port 49891 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49874
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49752
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49873
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49872
Source: unknownNetwork traffic detected: HTTP traffic on port 49818 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49835 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49786 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49874 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49829 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49880 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49775 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49792 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49868
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49746
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49866
Source: unknownNetwork traffic detected: HTTP traffic on port 49746 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49878 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49912 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49803 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49826 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49906 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49849 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49889 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49900 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49866 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49820 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49837 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49872 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49752 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49861 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49901 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49819 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49844 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49873 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49787 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49850 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49831 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49734 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49677 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 49814 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49791
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49790
Source: unknownNetwork traffic detected: HTTP traffic on port 49895 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49913 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49683 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49825 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49808 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49884 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49907 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49821
Source: unknownNetwork traffic detected: HTTP traffic on port 49865 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49820
Source: unknownNetwork traffic detected: HTTP traffic on port 49842 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49894 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49819
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49818
Source: unknownNetwork traffic detected: HTTP traffic on port 49810 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49817
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49816
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49815
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49814
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49813
Source: unknownNetwork traffic detected: HTTP traffic on port 49902 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49812
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49811
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49810
Source: unknownNetwork traffic detected: HTTP traffic on port 49816 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49788 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49827 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49876 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49809
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49808
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49807
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49806
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49805
Source: unknownNetwork traffic detected: HTTP traffic on port 49848 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49882 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49804
Source: unknownNetwork traffic detected: HTTP traffic on port 49773 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49803
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49802
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49801
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49800
Source: unknownNetwork traffic detected: HTTP traffic on port 49838 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49821 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49815 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49877 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49722 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49914 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49908 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49809 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49860 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49883 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49916
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49915
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49914
Source: unknownNetwork traffic detected: HTTP traffic on port 49778 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49913
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49912
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49755 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49705 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49843 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49761 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49899 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49804 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49909
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49908
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49907
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49906
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49905
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49904
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49903
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49902
Source: unknownNetwork traffic detected: HTTP traffic on port 49903 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49901
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49900
Source: unknownNetwork traffic detected: HTTP traffic on port 49888 -> 443
Source: unknownHTTPS traffic detected: 204.79.197.200:443 -> 192.168.2.16:49718 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.28.14:443 -> 192.168.2.16:49719 version: TLS 1.2
Source: unknownHTTPS traffic detected: 23.1.33.206:443 -> 192.168.2.16:49725 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.16:49728 version: TLS 1.2
Source: unknownHTTPS traffic detected: 51.104.15.253:443 -> 192.168.2.16:49729 version: TLS 1.2
Source: unknownHTTPS traffic detected: 204.79.197.222:443 -> 192.168.2.16:49731 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.16:49734 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.253.72:443 -> 192.168.2.16:49755 version: TLS 1.2
Source: unknownHTTPS traffic detected: 150.171.69.254:443 -> 192.168.2.16:49787 version: TLS 1.2
Source: classification engineClassification label: mal48.win@69/216@34/191
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeFile created: C:\Users\user\AppData\Local\Temp\a323886b-2f3b-4890-a9b1-8db8c82fd19e.tmp
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://www.google.md/url?url=https://demeropkdfzdbi&uxzs=zemleptc&icmeyuc=zn0&ywprgz=icmeyuc&uxzs=zemleptc&ywprgz=icmeyuc&fzdbi=demeropkd&znzn=ywprgzuxzs&q=amp%2Fdecentafrica.com%2Flok%2F1160851136%2FZHVzdGluLmZpY2NvQHZvc3Nsb2guY29t
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2196 --field-trial-handle=1896,i,7682131304449899028,15001621221694475515,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknownProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2196 --field-trial-handle=1896,i,7682131304449899028,15001621221694475515,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2344 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:3
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=6340 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6592 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2344 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:3
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=6340 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6592 --field-trial-handle=2008,i,1051232177554079073,2646749478915313897,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management Instrumentation1
Registry Run Keys / Startup Folder
1
Process Injection
1
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
Registry Run Keys / Startup Folder
1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media3
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive4
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture3
Ingress Tool Transfer
Traffic DuplicationData Destruction

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://www.google.md/url?url=https://demeropkdfzdbi&uxzs=zemleptc&icmeyuc=zn0&ywprgz=icmeyuc&uxzs=zemleptc&ywprgz=icmeyuc&fzdbi=demeropkd&znzn=ywprgzuxzs&q=amp%2Fdecentafrica.com%2Flok%2F1160851136%2FZHVzdGluLmZpY2NvQHZvc3Nsb2guY29t0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
drysstore.com7%VirustotalBrowse
www.google.com0%VirustotalBrowse
www.google.md0%VirustotalBrowse
decentafrica.com0%VirustotalBrowse
s-part-0044.t-0009.fb-t-msedge.net0%VirustotalBrowse
mcr-9999.mcr-msedge.net0%VirustotalBrowse
sni1gl.wpc.nucdn.net0%VirustotalBrowse
websitedemos.net0%VirustotalBrowse
sb.scorecardresearch.com0%VirustotalBrowse
assets.msn.com0%VirustotalBrowse
c.msn.com0%VirustotalBrowse
chrome.cloudflare-dns.com0%VirustotalBrowse
ntp.msn.com0%VirustotalBrowse
clients2.googleusercontent.com0%VirustotalBrowse
s-part-0032.t-0009.t-msedge.net0%VirustotalBrowse
googlehosted.l.googleusercontent.com0%VirustotalBrowse
api.msn.com0%VirustotalBrowse
bzib.nelreports.net0%VirustotalBrowse
SourceDetectionScannerLabelLink
http://decentafrica.com/favicon.ico0%Avira URL Cloudsafe
NameIPActiveMaliciousAntivirus DetectionReputation
chrome.cloudflare-dns.com
162.159.61.3
truefalseunknown
s-part-0044.t-0009.fb-t-msedge.net
13.107.253.72
truefalseunknown
websitedemos.net
172.67.72.52
truefalseunknown
drysstore.com
46.250.237.211
truetrueunknown
mcr-9999.mcr-msedge.net
150.171.69.254
truefalseunknown
decentafrica.com
107.182.236.192
truefalseunknown
sb.scorecardresearch.com
18.244.18.122
truefalseunknown
www.google.com
216.58.206.68
truefalseunknown
www.google.md
142.250.184.227
truefalseunknown
googlehosted.l.googleusercontent.com
142.250.184.193
truefalseunknown
sni1gl.wpc.nucdn.net
152.199.21.175
truefalseunknown
s-part-0032.t-0009.t-msedge.net
13.107.246.60
truefalseunknown
assets.msn.com
unknown
unknownfalseunknown
c.msn.com
unknown
unknownfalseunknown
ntp.msn.com
unknown
unknownfalseunknown
clients2.googleusercontent.com
unknown
unknownfalseunknown
bzib.nelreports.net
unknown
unknownfalseunknown
api.msn.com
unknown
unknownfalseunknown
NameMaliciousAntivirus DetectionReputation
http://decentafrica.com/favicon.icofalse
  • Avira URL Cloud: safe
unknown
http://decentafrica.com/lok/1160851136/ZHVzdGluLmZpY2NvQHZvc3Nsb2guY29tfalse
    unknown
    • No. of IPs < 25%
    • 25% < No. of IPs < 50%
    • 50% < No. of IPs < 75%
    • 75% < No. of IPs
    IPDomainCountryFlagASNASN NameMalicious
    23.33.40.139
    unknownUnited States
    20940AKAMAI-ASN1EUfalse
    13.107.6.158
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    13.107.246.40
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    23.33.40.136
    unknownUnited States
    20940AKAMAI-ASN1EUfalse
    23.51.57.215
    unknownUnited States
    4788TMNET-AS-APTMNetInternetServiceProviderMYfalse
    46.250.237.211
    drysstore.comUnited Kingdom
    39674SOLUTIOSGBtrue
    142.250.80.67
    unknownUnited States
    15169GOOGLEUSfalse
    162.159.61.3
    chrome.cloudflare-dns.comUnited States
    13335CLOUDFLARENETUSfalse
    2.23.209.182
    unknownEuropean Union
    1273CWVodafoneGroupPLCEUfalse
    142.250.185.142
    unknownUnited States
    15169GOOGLEUSfalse
    204.79.197.239
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    142.250.184.227
    www.google.mdUnited States
    15169GOOGLEUSfalse
    20.110.205.119
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    104.40.82.182
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    88.221.110.179
    unknownEuropean Union
    20940AKAMAI-ASN1EUfalse
    204.79.197.237
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    142.250.184.195
    unknownUnited States
    15169GOOGLEUSfalse
    13.91.222.61
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    1.1.1.1
    unknownAustralia
    13335CLOUDFLARENETUSfalse
    13.107.21.237
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    23.33.40.147
    unknownUnited States
    20940AKAMAI-ASN1EUfalse
    142.250.184.193
    googlehosted.l.googleusercontent.comUnited States
    15169GOOGLEUSfalse
    13.107.21.239
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    23.38.98.115
    unknownUnited States
    16625AKAMAI-ASUSfalse
    74.125.71.84
    unknownUnited States
    15169GOOGLEUSfalse
    13.107.42.16
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    216.58.206.46
    unknownUnited States
    15169GOOGLEUSfalse
    142.250.186.106
    unknownUnited States
    15169GOOGLEUSfalse
    239.255.255.250
    unknownReserved
    unknownunknownfalse
    52.139.252.32
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    20.75.60.91
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    104.208.16.89
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    172.217.16.195
    unknownUnited States
    15169GOOGLEUSfalse
    23.200.197.152
    unknownUnited States
    2860NOS_COMUNICACOESPTfalse
    216.58.206.74
    unknownUnited States
    15169GOOGLEUSfalse
    152.195.19.97
    unknownUnited States
    15133EDGECASTUSfalse
    104.26.4.45
    unknownUnited States
    13335CLOUDFLARENETUSfalse
    13.107.246.60
    s-part-0032.t-0009.t-msedge.netUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    2.19.126.145
    unknownEuropean Union
    16625AKAMAI-ASUSfalse
    108.139.47.33
    unknownUnited States
    16509AMAZON-02USfalse
    13.74.129.1
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    204.79.197.219
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    172.64.41.3
    unknownUnited States
    13335CLOUDFLARENETUSfalse
    172.67.72.52
    websitedemos.netUnited States
    13335CLOUDFLARENETUSfalse
    18.244.18.122
    sb.scorecardresearch.comUnited States
    16509AMAZON-02USfalse
    107.182.236.192
    decentafrica.comUnited States
    32780HOSTINGSERVICES-INCUSfalse
    4.209.164.61
    unknownUnited States
    3356LEVEL3USfalse
    104.26.5.45
    unknownUnited States
    13335CLOUDFLARENETUSfalse
    216.58.206.68
    www.google.comUnited States
    15169GOOGLEUSfalse
    23.59.251.227
    unknownUnited States
    20940AKAMAI-ASN1EUfalse
    142.250.81.234
    unknownUnited States
    15169GOOGLEUSfalse
    2.23.209.131
    unknownEuropean Union
    1273CWVodafoneGroupPLCEUfalse
    204.79.197.203
    unknownUnited States
    8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    2.23.209.132
    unknownEuropean Union
    1273CWVodafoneGroupPLCEUfalse
    IP
    192.168.2.16
    Joe Sandbox version:41.0.0 Charoite
    Analysis ID:1513046
    Start date and time:2024-09-18 12:09:48 +02:00
    Joe Sandbox product:CloudBasic
    Overall analysis duration:
    Hypervisor based Inspection enabled:false
    Report type:full
    Cookbook file name:defaultwindowsinteractivecookbook.jbs
    Sample URL:https://www.google.md/url?url=https://demeropkdfzdbi&uxzs=zemleptc&icmeyuc=zn0&ywprgz=icmeyuc&uxzs=zemleptc&ywprgz=icmeyuc&fzdbi=demeropkd&znzn=ywprgzuxzs&q=amp%2Fdecentafrica.com%2Flok%2F1160851136%2FZHVzdGluLmZpY2NvQHZvc3Nsb2guY29t
    Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
    Number of analysed new started processes analysed:19
    Number of new started drivers analysed:0
    Number of existing processes analysed:0
    Number of existing drivers analysed:0
    Number of injected processes analysed:0
    Technologies:
    • EGA enabled
    Analysis Mode:stream
    Analysis stop reason:Timeout
    Detection:MAL
    Classification:mal48.win@69/216@34/191
    • Exclude process from analysis (whitelisted): svchost.exe
    • Excluded IPs from analysis (whitelisted): 172.217.16.195, 142.250.185.142, 74.125.71.84, 34.104.35.123
    • Excluded domains from analysis (whitelisted): clients2.google.com, accounts.google.com, edgedl.me.gvt1.com, clientservices.googleapis.com, clients.l.google.com
    • Not all processes where analyzed, report is missing behavior information
    • Report size getting too big, too many NtAllocateVirtualMemory calls found.
    • Report size getting too big, too many NtOpenFile calls found.
    • Report size getting too big, too many NtProtectVirtualMemory calls found.
    • Report size getting too big, too many NtWriteVirtualMemory calls found.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:46BC3CA050C9032312C051408F8C6227
    SHA1:4EC92F610AC217A2AB2927A8B71AD8BF5157D72D
    SHA-256:CB9C9EED0F363C3193E8676B326299AED296899E17323BA2D48619BAF5249FC6
    SHA-512:BB3126EBAD87C08B80CF3125BCDF838CEB7012F72B142B6CE67C8DAB7E57C52478876CAF19ECAC5670D5A0C2C3505F92DFB2E3013791359BFDD7094B29FC157F
    Malicious:false
    Reputation:unknown
    Preview:{"sites":[{"url":"24video.be"},{"url":"7dnifutbol.bg"},{"url":"6tv.dk"},{"url":"9kefa.com"},{"url":"aculpaedoslb.blogspot.pt"},{"url":"aek-live.gr"},{"url":"arcadepunk.co.uk"},{"url":"acidimg.cc"},{"url":"aazah.com"},{"url":"allehensbeverwijk.nl"},{"url":"amateurgonewild.org"},{"url":"aindasoudotempo.blogspot.com"},{"url":"anorthosis365.com"},{"url":"autoreview.bg"},{"url":"alivefoot.us"},{"url":"arbitro10.com"},{"url":"allhard.org"},{"url":"babesnude.info"},{"url":"aysel.today"},{"url":"animepornx.com"},{"url":"bahisideal20.com"},{"url":"analyseindustrie.nl"},{"url":"bahis10line.org"},{"url":"apoel365.net"},{"url":"bahissitelerisikayetleri.com"},{"url":"bambusratte.com"},{"url":"banzaj.pl"},{"url":"barlevegas.com"},{"url":"baston.info"},{"url":"atomcurve.com"},{"url":"atascadocherba.com"},{"url":"astrologer.gr"},{"url":"adultpicz.com"},{"url":"alleporno.com"},{"url":"beaver-tube.com"},{"url":"beachbabes.info"},{"url":"bearworldmagazine.com"},{"url":"bebegimdensonra.com"},{"url":"autoy
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):107893
    Entropy (8bit):4.640145133154881
    Encrypted:false
    SSDEEP:
    MD5:46BC3CA050C9032312C051408F8C6227
    SHA1:4EC92F610AC217A2AB2927A8B71AD8BF5157D72D
    SHA-256:CB9C9EED0F363C3193E8676B326299AED296899E17323BA2D48619BAF5249FC6
    SHA-512:BB3126EBAD87C08B80CF3125BCDF838CEB7012F72B142B6CE67C8DAB7E57C52478876CAF19ECAC5670D5A0C2C3505F92DFB2E3013791359BFDD7094B29FC157F
    Malicious:false
    Reputation:unknown
    Preview:{"sites":[{"url":"24video.be"},{"url":"7dnifutbol.bg"},{"url":"6tv.dk"},{"url":"9kefa.com"},{"url":"aculpaedoslb.blogspot.pt"},{"url":"aek-live.gr"},{"url":"arcadepunk.co.uk"},{"url":"acidimg.cc"},{"url":"aazah.com"},{"url":"allehensbeverwijk.nl"},{"url":"amateurgonewild.org"},{"url":"aindasoudotempo.blogspot.com"},{"url":"anorthosis365.com"},{"url":"autoreview.bg"},{"url":"alivefoot.us"},{"url":"arbitro10.com"},{"url":"allhard.org"},{"url":"babesnude.info"},{"url":"aysel.today"},{"url":"animepornx.com"},{"url":"bahisideal20.com"},{"url":"analyseindustrie.nl"},{"url":"bahis10line.org"},{"url":"apoel365.net"},{"url":"bahissitelerisikayetleri.com"},{"url":"bambusratte.com"},{"url":"banzaj.pl"},{"url":"barlevegas.com"},{"url":"baston.info"},{"url":"atomcurve.com"},{"url":"atascadocherba.com"},{"url":"astrologer.gr"},{"url":"adultpicz.com"},{"url":"alleporno.com"},{"url":"beaver-tube.com"},{"url":"beachbabes.info"},{"url":"bearworldmagazine.com"},{"url":"bebegimdensonra.com"},{"url":"autoy
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:DIY-Thermocam raw data (Lepton 3.x), scale 0-0, spot sensor temperature 0.000000, unit celsius, color scheme 0, userbration: offset 2048.000000, slope 17753217332035315519916605440.000000
    Category:dropped
    Size (bytes):4194304
    Entropy (8bit):0.5181601625860741
    Encrypted:false
    SSDEEP:
    MD5:CE23292FEB320FFDC760D2BAE93133C9
    SHA1:AEC3BF3B035E5FD890D00154F8CAF79D435D82FE
    SHA-256:D9EFBD6AF9657A6AF27D41CE3FFE2468104C818808B83EEDBBDBD0F295E80E57
    SHA-512:C1834D50716E9BB2F7989D971CF09534C0FCECC12F14F76BBC8BE0DFC2E77D592D14C946F04D64AFEF912CBD105236B9308B14A4AF544B45162BD63DD690A5EF
    Malicious:false
    Reputation:unknown
    Preview:...@..@...@.....C.].....@...............hL...K..............`... ...i.y.........BrowserMetrics......i.y..Yd. .......A...................v.0.....UV&K.k<................UV&K.k<................UMA.PersistentHistograms.InitResult.....8...i.y.[".................................................i.y.Pq.30....e.........117.0.2045.47-64..".en-GB*...Windows NT..10.0.190452l..x86_64..?........".gtanll20,1(.0..8..B.......2.:.M..BU..Be...?j...GenuineIntel... .. ..........x86_64...J....k..^o..J..l.zL.^o..J....\.^o..J.....f.^o..J....?.^o..P.Z...b.INBXj....... .8.@..............2......................w..U.>.........."....."...2...".*.:............B)..1.3.177.11.. .*.RegKeyNotFound2.windowsR...Z....+....W@..$...SF@.......Y@.......Y@.......Y@........?........?.................?.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@................Y@.......Y@.......Y@........?........?z............<..8...#...msNurturingAssistanceHomeDependency.....triggered....(..$.......
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):280
    Entropy (8bit):4.182630182615968
    Encrypted:false
    SSDEEP:
    MD5:C760E0B69978E63840B03457CF1CE24B
    SHA1:50285CF1679E38D336A8D4F7770AD6D9A82A4848
    SHA-256:17899E4ABA7B20EE2C8055BDC88D7B28E1E51453C39CA0590E086A5E63E94256
    SHA-512:7052961D214DB49C4020EFD09A8D2ADCE974CC99614A08757A9D1717667E86802E416FE85582DCB8FACEC5224C55D269FD3D595BF64B289FAC516830021AB747
    Malicious:false
    Reputation:unknown
    Preview:sdPC......................z....K..s...x."1SCRpGKHAwpF5kOwXUUSc/ojBrTkNG2SgkvqW1WE7kI="..................................................................................47DEQpj8HBSa+/TImW+5JCeuQeRkm5NMpJWZG3hSuFU=....................7dc5f755-0f90-4102-bc8e-37d02917bdc7............
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):30210
    Entropy (8bit):5.564813504388869
    Encrypted:false
    SSDEEP:
    MD5:61D1365B78EC0E4D24459003B53AD078
    SHA1:4649A31D3A52133618206FBE08B969FA6609D46D
    SHA-256:10F7B5572053739035A88BE3F424984EE1570927E86AD8F45833F5B379C622BE
    SHA-512:8D18EA2EF4B1E8C3BF16C46FA290BB7F7DE3B2CA84AC27E7B13DC295025B64718BD799DBAB0195ACD11CDD4954E2403860138DD8AA6788731DEF6761D37B8EDD
    Malicious:false
    Reputation:unknown
    Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13371127828327911","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13371127828327911","location":5,"ma
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):12126
    Entropy (8bit):5.151769373609643
    Encrypted:false
    SSDEEP:
    MD5:B7E5154DFE2A433DEAEC6B6051FCD88A
    SHA1:7FD814EFF2D535855BF8F9EAEB005FD2F73229AB
    SHA-256:A3BC99A1AC39968C9AE39874DD572CADFEBFB284128F978A4F54435EDD7A7890
    SHA-512:B01B18D792268B60F50B841F907EC1B965008C3CA76EFC77AC09F2E9DFF6A73CDF32CDA63AE07B473823E49B61D641CBF5CFB9249A424307A91943869CDC35C5
    Malicious:false
    Reputation:unknown
    Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13371127828753034","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":914,"browser_content_container_width":1236,"browser_content_container_x":0,"browser_content_container_y":70,"continuous_migration":{"advance_consent":{"consented":0},"ci_correction_for_holdout_treatment_state":1,"datatype_detai
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:modified
    Size (bytes):480979
    Entropy (8bit):5.394901181609474
    Encrypted:false
    SSDEEP:
    MD5:563DC23B5C5987FCB529C517C1303AD2
    SHA1:960A420ECB7114095B7FC8977665A248962C5CF7
    SHA-256:FDE6FBDB482CB4B1F3429D5C366A5F08DF6CC20EDAD3D73515A9522E1ED45E70
    SHA-512:C1DD0D8233173F89255F94EFA502F220B6CD9FB3884D2C4E98226AC6D73D6108957542D421D01AD8C36F659707B97EB7EAD76EE4878A487043BC8FCBC63AF023
    Malicious:false
    Reputation:unknown
    Preview:...m.................DB_VERSION.1...8.................QUERY_TIMESTAMP:arbitration_priority_list4.*.*.13341056840624329.$QUERY:arbitration_priority_list4.*.*..[{"name":"arbitration_priority_list","url":"https://edgeassetservice.azureedge.net/assets/arbitration_priority_list/4.0.5/asset?sv=2017-07-29&sr=c&sig=NtPyTqjbjPElpw2mWa%2FwOk1no4JFJEK8%2BwO4xQdDJO4%3D&st=2021-01-01T00%3A00%3A00Z&se=2023-12-30T00%3A00%3A00Z&sp=r&assetgroup=ArbitrationService","version":{"major":4,"minor":0,"patch":5},"hash":"N0MkrPHaUyfTgQSPaiVpHemLMcVgqoPh/xUYLZyXayg=","size":11749}]...................'ASSET_VERSION:arbitration_priority_list.4.0.5..ASSET:arbitration_priority_list.[{. "configVersion": 32,. "PrivilegedExperiences": [. "ShorelinePrivilegedExperienceID",. "SHOPPING_AUTO_SHOW_COUPONS_CHECKOUT",. "SHOPPING_AUTO_SHOW_LOWER_PRICE_FOUND",. "SHOPPING_AUTO_SHOW_BING_SEARCH",. "SHOPPING_AUTO_SHOW_REBATES",. "SHOPPING_AUTO_SHOW_REBATES_CONFIRMATION",. "SHOPPING_AUTO_SHOW_REBATES_DEACTI
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):332
    Entropy (8bit):5.113247686269087
    Encrypted:false
    SSDEEP:
    MD5:07AE037E183AED39BBA5ACC3A2ED9101
    SHA1:747BFF73A255E80CB402DD54F7F65E387575064C
    SHA-256:43E1B0FB6F41AAF5CB7ECD1707300E2C529F5479892686C057FD2246C6CF1582
    SHA-512:AF5B4E2D69F395BA757B8A2C8C82C9E2860615AE080AAF832169597D1B3782220CF6A3AC54BF060CFB7B59DD14152DCBE8867F82AC96D5FC3F964244529063BC
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:31.108 2150 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/MANIFEST-000001.2024/09/18-06:10:31.111 2150 Recovering log #3.2024/09/18-06:10:31.288 2150 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x3, schema 4, UTF-8, version-valid-for 1
    Category:dropped
    Size (bytes):28672
    Entropy (8bit):0.484714253179741
    Encrypted:false
    SSDEEP:
    MD5:7B0E24EA7DB6D709BE6F6CA4E5A50706
    SHA1:5CF6D982311FFDF7EADBCA7E7661CE4E90BC98B0
    SHA-256:0E6628E50FD1FA96383F93A8FF2B354C319146F6242835B54CE5D29D4DEBFAC1
    SHA-512:49F4981ACE9946D135421F5595F01F0A0F74A25B7A7EA1C52592D4645EE2FE4965CF8C4E8B23894C52C13421B322367C38DB299C12A9C6198B18D60F22E40BBE
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j..........g.....8...n................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 5, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 5
    Category:dropped
    Size (bytes):10240
    Entropy (8bit):0.8708334089814068
    Encrypted:false
    SSDEEP:
    MD5:92F9F7F28AB4823C874D79EDF2F582DE
    SHA1:2D4F1B04C314C79D76B7FF3F50056ECA517C338B
    SHA-256:6318FCD9A092D1F5B30EBD9FB6AEC30B1AEBD241DC15FE1EEED3B501571DA3C7
    SHA-512:86FEF0E05F871A166C3FAB123B0A4B95870DCCECBE20B767AF4BDFD99653184BBBFE4CE1EDF17208B7700C969B65B8166EE264287B613641E7FDD55A6C09E6D4
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j...v... .. .....M....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):344
    Entropy (8bit):5.220678710798718
    Encrypted:false
    SSDEEP:
    MD5:2906960AE69BA5FC1578CFD0635106C7
    SHA1:DC59509B03ADBEC30E6BCB36993C1DF866DFD3E1
    SHA-256:BCF482A102E56C19C782ED5AD788F5D56E262080DDCA0FDE9963DEF433F14611
    SHA-512:64FBEB97C98DDDCD12E76D83A53A6F881C33BFE818F00B98B1397F9A007370A7E202F9EAFC60BE095291CADD82F459CDF4CA6DD7952E6585DF5E4FE5B19B1DCF
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.335 1e58 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/MANIFEST-000001.2024/09/18-06:10:28.338 1e58 Recovering log #3.2024/09/18-06:10:28.338 1e58 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):375520
    Entropy (8bit):5.354100980812951
    Encrypted:false
    SSDEEP:
    MD5:5DC1C4F6F110BEC167D1DD89284C5BDF
    SHA1:52843635A61FD1FC88AEE47C25B440B1E27CE160
    SHA-256:5CA7264FF0895B28FDADC091EBFCC6720792BCE7C2EF9BE1604FEB5EFB1FC0E9
    SHA-512:794A8A5F38159871D8C61B02B7F55AB6E80D43DE526A354DD4DF4AB6D3474C4A76058CA58EE9645DA2E77F8978B48A3E2E881D7921562CF42B0908C58A804703
    Malicious:false
    Reputation:unknown
    Preview:...m.................DB_VERSION.1/..Qq...............&QUERY_TIMESTAMP:domains_config_gz2.*.*.13371127831927913..QUERY:domains_config_gz2.*.*..[{"name":"domains_config_gz","url":"https://edgeassetservice.azureedge.net/assets/domains_config_gz/2.8.76/asset?assetgroup=EntityExtractionDomainsConfig","version":{"major":2,"minor":8,"patch":76},"hash":"78Xsq/1H+MXv88uuTT1Rx79Nu2ryKVXh2J6ZzLZd38w=","size":374872}]..*.`~...............ASSET_VERSION:domains_config_gz.2.8.76..ASSET:domains_config_gz...{"config": {"token_limit": 1600, "page_cutoff": 4320, "default_locale_map": {"bg": "bg-bg", "bs": "bs-ba", "el": "el-gr", "en": "en-us", "es": "es-mx", "et": "et-ee", "cs": "cs-cz", "da": "da-dk", "de": "de-de", "fa": "fa-ir", "fi": "fi-fi", "fr": "fr-fr", "he": "he-il", "hr": "hr-hr", "hu": "hu-hu", "id": "id-id", "is": "is-is", "it": "it-it", "ja": "ja-jp", "ko": "ko-kr", "lv": "lv-lv", "lt": "lt-lt", "mk": "mk-mk", "nl": "nl-nl", "nb": "nb-no", "no": "no-no", "pl": "pl-pl", "pt": "pt-pt", "ro": "
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):307
    Entropy (8bit):5.162414013259787
    Encrypted:false
    SSDEEP:
    MD5:57355C9069D6A06CB3832B152AE7BC04
    SHA1:52607880E5CC3D066F8BBAB26F71D6A78E27E177
    SHA-256:41688D3D8CCA5A01A968697357730FBE4F6E95B33934B818D8807715762BDA1E
    SHA-512:5339ED52AF7C27AB5CFA3EFD6815A5A325477A6D5BD29267CF31161D434DFED4998A9A7465EAF740A80ADB9FF64E7EB7729657BB727D43B07DAF11B4DF914057
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:31.128 219c Creating DB C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EntityExtractionAssetStore.db since it was missing..2024/09/18-06:10:31.233 219c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EntityExtractionAssetStore.db/MANIFEST-000001.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:modified
    Size (bytes):358860
    Entropy (8bit):5.324620176894863
    Encrypted:false
    SSDEEP:
    MD5:A300C92F6E50782587C1CE46A308C86A
    SHA1:CF1A6E7E782EFF10D5A9ADBD4250BDA2F5BEC006
    SHA-256:C066A3FE3A99716037C38B7AD4F346B0685A6ACE4EF6BB416930E4C25C7B5D75
    SHA-512:307A0B53BEB0E6081555A7B2967B75311B838334C7C9ADA3F627481ED21CE66F4B4C3659C7846A2A10FDCF10B04CB3FC6D8168C668D6F47DE84DD3FAEC8FCA7F
    Malicious:false
    Reputation:unknown
    Preview:{"aee_config":{"ar":{"price_regex":{"ae":"(((ae|aed|\\x{062F}\\x{0660}\\x{0625}\\x{0660}|\\x{062F}\\.\\x{0625}|dhs|dh)\\s*\\d{1,3})|(\\d{1,3}\\s*(ae|aed|\\x{062F}\\x{0660}\\x{0625}\\x{0660}|\\x{062F}\\.\\x{0625}|dhs|dh)))","dz":"(((dzd|da|\\x{062F}\\x{062C})\\s*\\d{1,3})|(\\d{1,3}\\s*(dzd|da|\\x{062F}\\x{062C})))","eg":"(((e\\x{00a3}|egp)\\s*\\d{1,3})|(\\d{1,3}\\s*(e\\x{00a3}|egp)))","ma":"(((mad|dhs|dh)\\s*\\d{1,3})|(\\d{1,3}\\s*(mad|dhs|dh)))","sa":"((\\d{1,3}\\s*(sar\\s*\\x{fdfc}|sar|sr|\\x{fdfc}|\\.\\x{0631}\\.\\x{0633}))|((sar\\s*\\x{fdfc}|sar|sr|\\x{fdfc}|\\.\\x{0631}\\.\\x{0633})\\s*\\d{1,3}))"},"product_terms":"((\\x{0623}\\x{0636}\\x{0641}\\s*\\x{0625}\\x{0644}\\x{0649}\\s*\\x{0627}\\x{0644}\\x{0639}\\x{0631}\\x{0628}\\x{0629})|(\\x{0623}\\x{0636}\\x{0641}\\s*\\x{0625}\\x{0644}\\x{0649}\\s*\\x{0627}\\x{0644}\\x{062D}\\x{0642}\\x{064A}\\x{0628}\\x{0629})|(\\x{0627}\\x{0634}\\x{062A}\\x{0631}\\x{064A}\\s*\\x{0627}\\x{0644}\\x{0622}\\x{0646})|(\\x{062E}\\x{064A}\\x{0627}\\x{0631}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):418
    Entropy (8bit):1.8784775129881184
    Encrypted:false
    SSDEEP:
    MD5:BF097D724FDF1FCA9CF3532E86B54696
    SHA1:4039A5DD607F9FB14018185F707944FE7BA25EF7
    SHA-256:1B8B50A996172C16E93AC48BCB94A3592BEED51D3EF03F87585A1A5E6EC37F6B
    SHA-512:31857C157E5B02BCA225B189843CE912A792A7098CEA580B387977B29E90A33C476DF99AD9F45AD5EB8DA1EFFD8AC3A78870988F60A32D05FA2DA8F47794FACE
    Malicious:false
    Reputation:unknown
    Preview:.f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5...............
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):320
    Entropy (8bit):5.188311816011811
    Encrypted:false
    SSDEEP:
    MD5:E836A85A624BD1289553C9F9A6AD9792
    SHA1:F47D3F2F8582C418279183A4F05D965B8044BD98
    SHA-256:FBBB87B51C12D9A7557C7BF49C586295F12FA368DE22797BAAE32CEC1918C9EA
    SHA-512:B915055A958A0085124F1670B6850C2D35405DD449AFE6873820A825FE20768BCC35F4DB65DC82C348A57363AE15B2A2758F82ED94532B4A31A83F927175E09A
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.338 1e5c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/MANIFEST-000001.2024/09/18-06:10:28.339 1e5c Recovering log #3.2024/09/18-06:10:28.369 1e5c Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):324
    Entropy (8bit):5.209959562322931
    Encrypted:false
    SSDEEP:
    MD5:98677B91741C42BF187A5684BED863A9
    SHA1:1DF3C57384A56BF0271921F2B05996E8AB6F6D0E
    SHA-256:3BAADAE6C617DE0C89002C52BC7305039448864F3F863BA5CC2B557DF455ABC5
    SHA-512:08EDDA178A9D0A680B9B185AC34748DFD07BB3E6D2DCEDF2498F5A4E577BCB80656C531D240DE269ED80C79B91F67284EA63384416779B797B68DD13970077C7
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.372 1e5c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/MANIFEST-000001.2024/09/18-06:10:28.373 1e5c Recovering log #3.2024/09/18-06:10:28.373 1e5c Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):1254
    Entropy (8bit):1.8784775129881184
    Encrypted:false
    SSDEEP:
    MD5:826B4C0003ABB7604485322423C5212A
    SHA1:6B8EF07391CD0301C58BB06E8DEDCA502D59BCB4
    SHA-256:C56783C3A6F28D9F7043D2FB31B8A956369F25E6CE6441EB7C03480334341A63
    SHA-512:0474165157921EA84062102743EE5A6AFE500F1F87DE2E87DBFE36C32CFE2636A0AE43D8946342740A843D5C2502EA4932623C609B930FE8511FE7356D4BAA9C
    Malicious:false
    Reputation:unknown
    Preview:.f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5........
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):320
    Entropy (8bit):5.151071101001965
    Encrypted:false
    SSDEEP:
    MD5:EF8F9275C6B74178117D2B1DC4A4C2C3
    SHA1:6EC169AC4101E02057BCC5AF7E345902EB0C5F2C
    SHA-256:144C8C80B5078398A2049527D50B86043781D90EE25AF971F934B68E2B67AA68
    SHA-512:C8C4D2DB178A6DCC4F8D0A99E468BED7E6289D1B944F388FCB0CE00A19D89340AF667F067914F072B0F68C970B26761B7E64AA3E9ACD75013B10B482D36D2923
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.914 1e18 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/MANIFEST-000001.2024/09/18-06:10:28.915 1e18 Recovering log #3.2024/09/18-06:10:28.915 1e18 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):429
    Entropy (8bit):5.809210454117189
    Encrypted:false
    SSDEEP:
    MD5:5D1D9020CCEFD76CA661902E0C229087
    SHA1:DCF2AA4A1C626EC7FFD9ABD284D29B269D78FCB6
    SHA-256:B829B0DF7E3F2391BFBA70090EB4CE2BA6A978CCD665EEBF1073849BDD4B8FB9
    SHA-512:5F6E72720E64A7AC19F191F0179992745D5136D41DCDC13C5C3C2E35A71EB227570BD47C7B376658EF670B75929ABEEBD8EF470D1E24B595A11D320EC1479E3C
    Malicious:false
    Reputation:unknown
    Preview:{"file_hashes":[{"block_hashes":["OdZL4YFLwCTKbdslekC6/+U9KTtDUk+T+nnpVOeRzUc=","6RbL+qKART8FehO4s7U0u67iEI8/jaN+8Kg3kII+uy4=","CuN6+RcZAysZCfrzCZ8KdWDkQqyaIstSrcmsZ/c2MVs="],"block_size":4096,"path":"content.js"},{"block_hashes":["OdZL4YFLwCTKbdslekC6/+U9KTtDUk+T+nnpVOeRzUc=","UL53sQ5hOhAmII/Yx6muXikzahxM+k5gEmVOh7xJ3Rw=","u6MdmVNzBUfDzMwv2LEJ6pXR8k0nnvpYRwOL8aApwP8="],"block_size":4096,"path":"content_new.js"}],"version":2}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 3, database pages 17, cookie 0x8, schema 4, UTF-8, version-valid-for 3
    Category:dropped
    Size (bytes):36864
    Entropy (8bit):4.326631260951354
    Encrypted:false
    SSDEEP:
    MD5:4E36900ADFD7440741A4C941772BE33A
    SHA1:FF976064D46EAD53C7C70BD342B57B6354C62B09
    SHA-256:3528B0A706F5D9EEF20AAB5FD1E73FF87C414DABBEBB12A967135B9B9FF73DAA
    SHA-512:EA93C072A7DF1DC04DE3B129182DC1094E611D9EC8062E73063DFC2835DF0DBD9708238C0B9D40692EE044DF73169091F8A6822294304F772ADA708C34E28344
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j..........g....._.c...~.2.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................s...;+...indexfavicon_bitmaps_icon_idfavico
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):270336
    Entropy (8bit):8.280239615765425E-4
    Encrypted:false
    SSDEEP:
    MD5:D0D388F3865D0523E451D6BA0BE34CC4
    SHA1:8571C6A52AACC2747C048E3419E5657B74612995
    SHA-256:902F30C1FB0597D0734BC34B979EC5D131F8F39A4B71B338083821216EC8D61B
    SHA-512:376011D00DE659EB6082A74E862CFAC97A9BB508E0B740761505142E2D24EC1C30AA61EFBC1C0DD08FF0F34734444DE7F77DD90A6CA42B48A4C7FAD5F0BDDD17
    Malicious:false
    Reputation:unknown
    Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 2, database pages 38, cookie 0x1f, schema 4, UTF-8, version-valid-for 2
    Category:dropped
    Size (bytes):155648
    Entropy (8bit):0.6566102375457277
    Encrypted:false
    SSDEEP:
    MD5:5AEDE70A51AD6C9F7CD1654E16D1E71B
    SHA1:44BC2913E6D19A231CEFBC073C579D15759B647E
    SHA-256:F057FC9478AB295D434378F7EA16656D2C95F98BDB6898FD135071DA0B30614B
    SHA-512:0737200850F38BB39CDE7F981B042FEEB1AD878630BDA4033BE8FD4AC844820914A73C3FD91049424BAC8BFA0477DE184CBBE08B131689CDF9DD088CC29D32F5
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ .......&..................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):404
    Entropy (8bit):5.21627099059592
    Encrypted:false
    SSDEEP:
    MD5:C2F6F899DD5BEF9FD705E37D29A9E2FA
    SHA1:82EB61AC199677E851BB49EA9125FE7092E9790F
    SHA-256:A1D2BEEDABC3DF0BE1DF031A017AD198D9F85FEEA80EE4D319F10A47AACC4661
    SHA-512:B4453D66FEDB641DBDA4B90156330436F9F967C2EED829111DF4A7C0C0B7071E141518BDB70C449521A01FB457FED9215416AFCD1970529502D8F63C2D964517
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:30.043 1e10 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/MANIFEST-000001.2024/09/18-06:10:30.044 1e10 Recovering log #3.2024/09/18-06:10:30.044 1e10 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):131
    Entropy (8bit):4.739611065304598
    Encrypted:false
    SSDEEP:
    MD5:F968BA5F51ABCDFAF61C2910403D1CE8
    SHA1:617D12F0483359B06FCB749943A5427E0F5137C9
    SHA-256:8EDF0AB5CA363CED9A5CDF0E52CDF09AB429C05AC02A7DD1FE4C012BB537A5EA
    SHA-512:03B281804F5BFE6791F2EB2FD8623EF35AB8499312CE3EDEDFC7EFB5AC46AA747CF75E31E07E5342FDC1BF7881D0CBEA415FE7726550FE0ECA4B4CFC36340D88
    Malicious:false
    Reputation:unknown
    Preview:...k1................VERSION.1..META:https://ntp.msn.com...@D................META:https://drysstore.com.._https://drysstore.com..wc
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):332
    Entropy (8bit):5.140461794000888
    Encrypted:false
    SSDEEP:
    MD5:8A0D6A7B2B0A02D0CE24EE212743D148
    SHA1:7A9C32EE917063E3C15160BA09089DF33127A4DD
    SHA-256:1DECA2468ED086AE7E425E745F0030432AFFBBBDAEF9EE1910FB888C33C822C2
    SHA-512:1A06F93F46A3723C3C01DBEDFEA17FB9CA7C408ABBF13FE612491C11FD0255865BCE58AC9B0DB789F178F26EAF2EB40F46E29BF712DB895A72B18E5180A5DA7D
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.449 1ee4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/MANIFEST-000001.2024/09/18-06:10:28.453 1ee4 Recovering log #3.2024/09/18-06:10:28.461 1ee4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 4, database pages 11, cookie 0x6, schema 4, UTF-8, version-valid-for 4
    Category:dropped
    Size (bytes):45056
    Entropy (8bit):0.6775340308671143
    Encrypted:false
    SSDEEP:
    MD5:048068C062895634EA5259AF73B68433
    SHA1:17589560BDBD6C07401008597DAF37BCE1063F3E
    SHA-256:37BF78B1F4E4D22D2C6FC8E0DF858A72FEB5184C4CF0987B9C89F02365B3ADC3
    SHA-512:6FD4381A4BC07B7D3D7291D930888F55301EE0A64BA93253DBFADB0EC44D51D96ECBA9148FAA8E9181130E5FA553E218EA71EE0FB907B73415B30722ED8E40EC
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j.......=......\.t.+.>...,...=........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 10, database pages 7, cookie 0x5, schema 4, UTF-8, version-valid-for 10
    Category:modified
    Size (bytes):28672
    Entropy (8bit):2.2824574552234655
    Encrypted:false
    SSDEEP:
    MD5:534CC33C38372E2E8B8D9870AD92388F
    SHA1:2A216D5BB51438D8D4E43DFC6D7CB48647D553DA
    SHA-256:B38E5BC0A2BAD5BDA8F65EE49483B75271A40A65050DF190E3D47061A1F54115
    SHA-512:24156B607C2C9C5F59A242A21498B658A539F8AF9DFB54049A2B385584A6B6BE9484DABB40FCD97263EFA8C7F6BA34BF4C7BE1F51045A90E285382A070053055
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j...$......g..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:285252A2F6327D41EAB203DC2F402C67
    SHA1:ACEDB7BA5FBC3CE914A8BF386A6F72CA7BAA33C6
    SHA-256:5DFC321417FC31359F23320EA68014EBFD793C5BBED55F77DAB4180BBD4A2026
    SHA-512:11CE7CB484FEE66894E63C31DB0D6B7EF66AD0327D4E7E2EB85F3BCC2E836A3A522C68D681E84542E471E54F765E091EFE1EE4065641B0299B15613EB32DCC0D
    Malicious:false
    Reputation:unknown
    Preview:{"net":{"http_server_properties":{"servers":[],"version":5},"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 6, database pages 9, cookie 0x4, schema 4, UTF-8, version-valid-for 6
    Category:dropped
    Size (bytes):36864
    Entropy (8bit):1.4840282089039694
    Encrypted:false
    SSDEEP:
    MD5:DCDFF98C6F691161CFCC2BFEA2F8BC41
    SHA1:6F107BF50B644953F20DFB65057F532990E368BB
    SHA-256:6BA8BA8E59BD5F2A827D05DC6A610574F7C5D3281341E2C00710251A9B238949
    SHA-512:0F1E0868FA6C49FBDE211C9DC7F44EA3CB9ED898FA32C4AA8AF99013FB04623DF41E6BCDD7780C1825F99B045635153E4ED2F7A58990A6A74C74FC869CC061BA
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j..........g...D.........7............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 2, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 2
    Category:dropped
    Size (bytes):20480
    Entropy (8bit):0.4716248163409303
    Encrypted:false
    SSDEEP:
    MD5:72E9D82D6C1742197EEA43EC203C6825
    SHA1:275AE552E437747FD707962111675AA2C8DEEB0F
    SHA-256:0DB0BA239E0421208146C4FBB809F2DBD960019FE4F4EC4CBC894C29627DD759
    SHA-512:C62C7C0C9BBE1CFAE2FEF39FBDF70BB5316713D87453096676BD854A19FDD8BC62F1608F8BE3602AD8770B94C13FFE5A9516F05A95548615CB78ED9CEADC7EA9
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j.......q..g...q.0....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):111
    Entropy (8bit):4.718418993774295
    Encrypted:false
    SSDEEP:
    MD5:285252A2F6327D41EAB203DC2F402C67
    SHA1:ACEDB7BA5FBC3CE914A8BF386A6F72CA7BAA33C6
    SHA-256:5DFC321417FC31359F23320EA68014EBFD793C5BBED55F77DAB4180BBD4A2026
    SHA-512:11CE7CB484FEE66894E63C31DB0D6B7EF66AD0327D4E7E2EB85F3BCC2E836A3A522C68D681E84542E471E54F765E091EFE1EE4065641B0299B15613EB32DCC0D
    Malicious:false
    Reputation:unknown
    Preview:{"net":{"http_server_properties":{"servers":[],"version":5},"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 3, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 3
    Category:dropped
    Size (bytes):20480
    Entropy (8bit):0.8024195212890469
    Encrypted:false
    SSDEEP:
    MD5:46EDAE9A257690D0F0113262903FC779
    SHA1:3743EBAEA077D0970A30B40EA36135C8EAB0BDAC
    SHA-256:A17EE4A87C39F35505B7CF9715E0F63F87F62DDDD9956569774AE6664B3C4BA1
    SHA-512:663973F9EA720B3FBEA37008253A9D21734589FD34A88F8739D71CDEDBEA67A49BE45DEFE5E3F7D75EF1EA018EAAC39948BCE0305FC8332921A63B23880E8912
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:B7E5154DFE2A433DEAEC6B6051FCD88A
    SHA1:7FD814EFF2D535855BF8F9EAEB005FD2F73229AB
    SHA-256:A3BC99A1AC39968C9AE39874DD572CADFEBFB284128F978A4F54435EDD7A7890
    SHA-512:B01B18D792268B60F50B841F907EC1B965008C3CA76EFC77AC09F2E9DFF6A73CDF32CDA63AE07B473823E49B61D641CBF5CFB9249A424307A91943869CDC35C5
    Malicious:false
    Reputation:unknown
    Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13371127828753034","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":914,"browser_content_container_width":1236,"browser_content_container_x":0,"browser_content_container_y":70,"continuous_migration":{"advance_consent":{"consented":0},"ci_correction_for_holdout_treatment_state":1,"datatype_detai
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:B7E5154DFE2A433DEAEC6B6051FCD88A
    SHA1:7FD814EFF2D535855BF8F9EAEB005FD2F73229AB
    SHA-256:A3BC99A1AC39968C9AE39874DD572CADFEBFB284128F978A4F54435EDD7A7890
    SHA-512:B01B18D792268B60F50B841F907EC1B965008C3CA76EFC77AC09F2E9DFF6A73CDF32CDA63AE07B473823E49B61D641CBF5CFB9249A424307A91943869CDC35C5
    Malicious:false
    Reputation:unknown
    Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13371127828753034","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":914,"browser_content_container_width":1236,"browser_content_container_x":0,"browser_content_container_y":70,"continuous_migration":{"advance_consent":{"consented":0},"ci_correction_for_holdout_treatment_state":1,"datatype_detai
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:B7E5154DFE2A433DEAEC6B6051FCD88A
    SHA1:7FD814EFF2D535855BF8F9EAEB005FD2F73229AB
    SHA-256:A3BC99A1AC39968C9AE39874DD572CADFEBFB284128F978A4F54435EDD7A7890
    SHA-512:B01B18D792268B60F50B841F907EC1B965008C3CA76EFC77AC09F2E9DFF6A73CDF32CDA63AE07B473823E49B61D641CBF5CFB9249A424307A91943869CDC35C5
    Malicious:false
    Reputation:unknown
    Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13371127828753034","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":914,"browser_content_container_width":1236,"browser_content_container_x":0,"browser_content_container_y":70,"continuous_migration":{"advance_consent":{"consented":0},"ci_correction_for_holdout_treatment_state":1,"datatype_detai
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:B7E5154DFE2A433DEAEC6B6051FCD88A
    SHA1:7FD814EFF2D535855BF8F9EAEB005FD2F73229AB
    SHA-256:A3BC99A1AC39968C9AE39874DD572CADFEBFB284128F978A4F54435EDD7A7890
    SHA-512:B01B18D792268B60F50B841F907EC1B965008C3CA76EFC77AC09F2E9DFF6A73CDF32CDA63AE07B473823E49B61D641CBF5CFB9249A424307A91943869CDC35C5
    Malicious:false
    Reputation:unknown
    Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13371127828753034","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":914,"browser_content_container_width":1236,"browser_content_container_x":0,"browser_content_container_y":70,"continuous_migration":{"advance_consent":{"consented":0},"ci_correction_for_holdout_treatment_state":1,"datatype_detai
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:CF1FD5DD7FBB8A5D80FD8151F0E87F38
    SHA1:0334E71756EFB1107C71326E675F6C843D4DA041
    SHA-256:3B2378D61759B9C3A78CBE6628FAEEA2B9542F3279EFCDDA107C3706E40B197E
    SHA-512:2A293074B003B1C3D01494791AAA6CC35A299D5E602B3FEEB83032E77F006F040A9E188A44EDF97A72B3337131F23799E31E875923D797243381F17100AD888E
    Malicious:false
    Reputation:unknown
    Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13371127828327911","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13371127828327911","location":5,"ma
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:CF1FD5DD7FBB8A5D80FD8151F0E87F38
    SHA1:0334E71756EFB1107C71326E675F6C843D4DA041
    SHA-256:3B2378D61759B9C3A78CBE6628FAEEA2B9542F3279EFCDDA107C3706E40B197E
    SHA-512:2A293074B003B1C3D01494791AAA6CC35A299D5E602B3FEEB83032E77F006F040A9E188A44EDF97A72B3337131F23799E31E875923D797243381F17100AD888E
    Malicious:false
    Reputation:unknown
    Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13371127828327911","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13371127828327911","location":5,"ma
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):146
    Entropy (8bit):4.86866935033365
    Encrypted:false
    SSDEEP:
    MD5:F0AA97D544B19B4F2E04F278F29F631E
    SHA1:AE679131C99D7622EEEE4409B3620E83ABB22537
    SHA-256:2E36B2B5B72D12101EF21DAD64FE299B14DD6A3FF4EB8F9AEC04444D591358C2
    SHA-512:BF6D9D80696AE907A331CEE1E02376D82F80A8B176F0D4E11B30C0ECF98BD4A21E01E679123C6245B4F79AED405A0F1820E831C4573D8C554A3CED484AB11667
    Malicious:false
    Reputation:unknown
    Preview:....I................URES:0...INITDATA_NEXT_RESOURCE_ID.1..INITDATA_DB_VERSION.2r..;................REG:https://ntp.msn.com/.0..REGID_TO_ORIGIN:0
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):295
    Entropy (8bit):5.169182705412822
    Encrypted:false
    SSDEEP:
    MD5:BF7A823805300333FC992728239B5D78
    SHA1:E8D767991B8B2E7511FD3D4D23A71AB7CF3E9977
    SHA-256:5B3E4C4C8F9A5ABFF430D540927BE4FB85314DD2D96E97147680D5527485C31F
    SHA-512:91013B36BB832ECD77FFBBB883C48286EF5939E5AF7C58FAA1DB18E05D4097C7D780FF3F38B75018A9619D6F20015E45CA2F70C278CFBEFF1FB1441355B241D1
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:35.943 1e18 Creating DB C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Service Worker\Database since it was missing..2024/09/18-06:10:35.951 1e18 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Service Worker\Database/MANIFEST-000001.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):48
    Entropy (8bit):2.9138909867280645
    Encrypted:false
    SSDEEP:
    MD5:FC6F94A25462116D50489AF7A371156D
    SHA1:52870A0385379D1CCC25F89DE67EA12BB2FB1FB0
    SHA-256:CECD883BD369858B367FED89E5FC689554C89196762528E1112E933B1FB4746C
    SHA-512:D88414A98B2B05D53D702768C74B58C719C7523D13B414AD9B0EE00AD82F6090FEA861FA8A8153B51D5C864F227D4B8D089420BAD57A6CDEC5C715208DCE5879
    Malicious:false
    Reputation:unknown
    Preview:(...*/..oy retne...........................L../.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:FC6F94A25462116D50489AF7A371156D
    SHA1:52870A0385379D1CCC25F89DE67EA12BB2FB1FB0
    SHA-256:CECD883BD369858B367FED89E5FC689554C89196762528E1112E933B1FB4746C
    SHA-512:D88414A98B2B05D53D702768C74B58C719C7523D13B414AD9B0EE00AD82F6090FEA861FA8A8153B51D5C864F227D4B8D089420BAD57A6CDEC5C715208DCE5879
    Malicious:false
    Reputation:unknown
    Preview:(...*/..oy retne...........................L../.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):887
    Entropy (8bit):4.841548530574839
    Encrypted:false
    SSDEEP:
    MD5:4D5089EC6199735517EDCF801A46D9E6
    SHA1:552DDC5676C0B69A8F686294C2BFF6C59F444A1C
    SHA-256:F7577954F78D8AF2DBA051C71835F7392C144556C7B6ED06B851E6294A67058C
    SHA-512:EB6683EAEDFD9B53B6F92A5CB6191A64E8227638659EFC0C6C45F9F0012A1C66A65343794BD7154375F26ED17459E8A774ABE5A1FEF9382076CDAAD740DA2CA2
    Malicious:false
    Reputation:unknown
    Preview:*...#................version.1..namespace-..&f.................&f.................&f.................&f.................&f...............%..Fb................next-map-id.1.Cnamespace-07833ef1_d8b5_456c_a17c_a6892b4588dc-https://ntp.msn.com/.0V.e................V.e................hr,Bh................next-map-id.2.Inamespace-3da8828c_708c_48ff_9200_d6cd047ae5d1-https://www.microsoft.com/.1.^..f................next-map-id.3.Gnamespace-07833ef1_d8b5_456c_a17c_a6892b4588dc-http://decentafrica.com/.2.R..................R..................R..................R.....................d................next-map-id.4.Enamespace-07833ef1_d8b5_456c_a17c_a6892b4588dc-https://drysstore.com/.3....................map-3-wpEmojiSettingsSupports..{.".s.u.p.p.o.r.t.T.e.s.t.s.".:.{.".f.l.a.g.".:.f.a.l.s.e.,.".e.m.o.j.i.".:.f.a.l.s.e.}.,.".t.i.m.e.s.t.a.m.p.".:.1.7.2.6.6.5.4.2.5.8.3.8.0.}...map-3-wc
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):320
    Entropy (8bit):5.125898298567857
    Encrypted:false
    SSDEEP:
    MD5:1A0CB49F13F48CBAB76EC6EFF8828DE7
    SHA1:BBBA04EBD0B563DE982B508BB5B099A118AA58A4
    SHA-256:4A3D065DD2FDDB0F69E983E6FC87E329D4F3F8F4826E291A5580F3AE10BAB5AB
    SHA-512:B6C0E78931B9958C749EAD5E486B47C9907FA60BC070967B1A6CB62777FF75D152AE39490772C006086CD3DE3E4BC14719D6D6F502460996CAFB503BB09AB0CF
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.798 1ee4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/MANIFEST-000001.2024/09/18-06:10:28.803 1ee4 Recovering log #3.2024/09/18-06:10:28.805 1ee4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):18139
    Entropy (8bit):3.6309849702573422
    Encrypted:false
    SSDEEP:
    MD5:E5B1FCE9D824D577C9B20B10F4D3AA91
    SHA1:52C1E5F5482F7A4024560A1874788F8F1D12B977
    SHA-256:A1FBC81F1AD2D1EB1E3FD200AA3DCBD1BF5A5B52AFEACC9FE9A4F9441F37C89C
    SHA-512:9A64AABBFF3F0C5D317BA2A5008E01B22E81CA9E697DCE80355CC76FAA98ABB9BAD126734A234534D914C15698B47FFB99D140053B751330D8C730E494945C43
    Malicious:false
    Reputation:unknown
    Preview:SNSS.........* .............* ......"..* .............* .........* .........* .........* ....!....* .................................* ..* 1..,.....* $...07833ef1_d8b5_456c_a17c_a6892b4588dc.....* .........* ..... ...........* .....* .........................* ....................5..0.....* &...{544A81F3-86CF-4601-B565-C8CB2CA3983A}.......* .........* .........................* .............* ........edge://newtab/......N.e.w. .t.a.b...........!...............................................................x...............................x.......^...b".._...b".................................. ...................................................r...h.t.t.p.s.:././.n.t.p...m.s.n...c.o.m./.e.d.g.e./.n.t.p.?.l.o.c.a.l.e.=.e.n.-.G.B.&.t.i.t.l.e.=.N.e.w.%.2.0.t.a.b.&.d.s.p.=.1.&.s.p.=.B.i.n.g.&.i.s.F.R.E.M.o.d.a.l.B.a.c.k.g.r.o.u.n.d.=.1.&.s.t.a.r.t.p.a.g.e.=.1.&.P.C.=.U.5.3.1.....................................8.......0.......8...............................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):1416
    Entropy (8bit):4.03875884088633
    Encrypted:false
    SSDEEP:
    MD5:0D116105AC255BA7BD11B9CE3D2EA38A
    SHA1:D18D3869C3E8E23E049EC9A97D57F3B99FFB3C88
    SHA-256:86030B237CCE0BA0F56F90122BFF4B57AFD630BCE4A6546A73B4565408C38AE8
    SHA-512:8946B94E0B4F8CCE61BB5214868E458D79A16FD0D1AF0C5181B7780C2CD1579941F1C6439561C49D68EB847EBF931F859A94AFAB7D22BAA8DD2BC12E4786914F
    Malicious:false
    Reputation:unknown
    Preview:SNSS.........* ....y..M../..........* ....Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47...........................Microsoft Edge......117.....Not;A=Brand.....8.......Chromium....117.........Microsoft Edge......117.0.2045.47.......Not;A=Brand.....8.0.0.0.....Chromium....117.0.5938.132......117.0.2045.47.......Windows.....10.0.0......x86.............64...................* ....8...https://www.microsoft.com/en-gb/edge/welcome?form=MT00LJ....W.e.l.c.o.m.e. .t.o. .M.i.c.r.o.s.o.f.t. .E.d.g.e...........!..........................................................................................................b".....b"..@.......X...............P.......................................................x...8...h.t.t.p.s.:././.w.w.w...m.i.c.r.o.s.o.f.t...c.o.m./.e.n.-.g.b./.e.d.g.e./.w.e.l.c.o.m.e.?.f.o.r.m.=.M.T.0.0.L.J.................................8.......0.......8..............................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 1
    Category:dropped
    Size (bytes):20480
    Entropy (8bit):0.6576685356866997
    Encrypted:false
    SSDEEP:
    MD5:B793D6F22AEE536A6CEA6F12015C43E6
    SHA1:B8641649BA6C56BCE8389A517B22CCA52E1517AF
    SHA-256:E7A5CFA2EFF4F42138D22CBC12F7A13EE4B9278CF7F466BE2D7ADF91A78E7999
    SHA-512:05C209C1BB4883DD19EB6B1C5480D5CD878B46E26B7933064190F6C29DBE9578BEB8043D10166DD5589060EA39913D1508C6637D70080A98C5D00B424E8D32C7
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j..........g....."....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):348
    Entropy (8bit):5.1329824037029645
    Encrypted:false
    SSDEEP:
    MD5:C91AC332122290CDB214D72B0C149895
    SHA1:68F31DA3EB179F21058A795841E9961E2EC8B5D1
    SHA-256:32756168343B57517FA681FBB31351BF229BFCFF652A7A89E32A107AC5BEF708
    SHA-512:4B68D6FF6A9ECE45E00BA22F79013FCA4B25E9BA67745EEBD2DBCBCA34A5C226706640DC706B9DEA34CBF205A7AEA922848B32649DD10A373BB7C66849551074
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.386 1e50 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/MANIFEST-000001.2024/09/18-06:10:28.390 1e50 Recovering log #3.2024/09/18-06:10:28.394 1e50 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):270336
    Entropy (8bit):0.0012471779557650352
    Encrypted:false
    SSDEEP:
    MD5:F50F89A0A91564D0B8A211F8921AA7DE
    SHA1:112403A17DD69D5B9018B8CEDE023CB3B54EAB7D
    SHA-256:B1E963D702392FB7224786E7D56D43973E9B9EFD1B89C17814D7C558FFC0CDEC
    SHA-512:BF8CDA48CF1EC4E73F0DD1D4FA5562AF1836120214EDB74957430CD3E4A2783E801FA3F4ED2AFB375257CAEED4ABE958265237D6E0AACF35A9EDE7A2E8898D58
    Malicious:false
    Reputation:unknown
    Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):430
    Entropy (8bit):5.2178758571302986
    Encrypted:false
    SSDEEP:
    MD5:CFC82240834B3348B6879ED088B212AE
    SHA1:66493143AB6DC6830E901C169DC55F80C10BFA49
    SHA-256:E5D8B10A35C9E311189B0ADF2D8095A9025ABD250E346AE31E8E1FFF67BB3C90
    SHA-512:E55E42B3585E76453E88FF045D748460E17D4AD59B0DFB7FC4EA6D46BCF182748618C8006C5D62C30D19E2AED7CD8DDFFCAFD233CA29CBF9089775620D1AA2DA
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.918 1ee4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/MANIFEST-000001.2024/09/18-06:10:28.948 1ee4 Recovering log #3.2024/09/18-06:10:28.955 1ee4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):40
    Entropy (8bit):4.1275671571169275
    Encrypted:false
    SSDEEP:
    MD5:20D4B8FA017A12A108C87F540836E250
    SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
    SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
    SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
    Malicious:false
    Reputation:unknown
    Preview:{"SDCH":{"dictionaries":{},"version":2}}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:20D4B8FA017A12A108C87F540836E250
    SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
    SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
    SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
    Malicious:false
    Reputation:unknown
    Preview:{"SDCH":{"dictionaries":{},"version":2}}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 4, database pages 9, cookie 0x7, schema 4, UTF-8, version-valid-for 4
    Category:dropped
    Size (bytes):36864
    Entropy (8bit):0.3886039372934488
    Encrypted:false
    SSDEEP:
    MD5:DEA619BA33775B1BAEEC7B32110CB3BD
    SHA1:949B8246021D004B2E772742D34B2FC8863E1AAA
    SHA-256:3669D76771207A121594B439280A67E3A6B1CBAE8CE67A42C8312D33BA18854B
    SHA-512:7B9741E0339B30D73FACD4670A9898147BE62B8F063A59736AFDDC83D3F03B61349828F2AE88F682D42C177AE37E18349FD41654AEBA50DDF10CD6DC70FA5879
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j..........g...}.....$.X..............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):80
    Entropy (8bit):3.4921535629071894
    Encrypted:false
    SSDEEP:
    MD5:69449520FD9C139C534E2970342C6BD8
    SHA1:230FE369A09DEF748F8CC23AD70FD19ED8D1B885
    SHA-256:3F2E9648DFDB2DDB8E9D607E8802FEF05AFA447E17733DD3FD6D933E7CA49277
    SHA-512:EA34C39AEA13B281A6067DE20AD0CDA84135E70C97DB3CDD59E25E6536B19F7781E5FC0CA4A11C3618D43FC3BD3FBC120DD5C1C47821A248B8AD351F9F4E6367
    Malicious:false
    Reputation:unknown
    Preview:*...#................version.1..namespace-..&f.................&f...............
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):418
    Entropy (8bit):5.221573822729919
    Encrypted:false
    SSDEEP:
    MD5:265AC7FD66551506E5B4FD101141210B
    SHA1:4F34660EA9E05F9D326227B11C339179F7DC1A17
    SHA-256:B1810280A71726BAB32EAB91F8D6D800DA26107CCD268CEE97EC32FC34F1F400
    SHA-512:E926507A5A98CFB4A07DD67811EDFA2AF81769E4309A7B37D990182898284212A009C40A18425429103AE6641E523815ABA8F3F5C9DE3FBC5B602EA0BAA39EDB
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:44.871 1ee4 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Session Storage/MANIFEST-000001.2024/09/18-06:10:44.872 1ee4 Recovering log #3.2024/09/18-06:10:44.877 1ee4 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Session Storage/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):324
    Entropy (8bit):5.195370721392234
    Encrypted:false
    SSDEEP:
    MD5:FF7B693851C8B8B889C61CFBCA3F5B37
    SHA1:C8A66F367A5DF099F4B88737BF8255383E4E30AE
    SHA-256:0097447CC5299D1592AEABD08BACCB16366CBCBCE5685C206E7E1F783573EFF0
    SHA-512:647706765CB7FE8638B9576F31EE6E69A6D13D689018E53B862E72AED60E9D609EE8CEBCF59234B9A11740BAF96D0DFAB6E477D064F7081F79F8C1564A5CF123
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.325 1e1c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/MANIFEST-000001.2024/09/18-06:10:28.326 1e1c Recovering log #3.2024/09/18-06:10:28.327 1e1c Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):131072
    Entropy (8bit):0.006677525943585664
    Encrypted:false
    SSDEEP:
    MD5:71A20D1D9A2B96206E4ECD7700161DF2
    SHA1:86744A5B3AB61D13BFAC4D760179683B3FC312F8
    SHA-256:C1F46563D52F6B49543951756C1CAF74E4E58BF85F751AFF14014576BD57D638
    SHA-512:EFCBAD1EEA53543B85D11EAD65940D1E449D4E4915E2D79203BA9F9BA8EFC73D7BA43C94BF3FF3F812C5DB594CD61CF47D9B6D2F9D1A53336A2033EDAA85835E
    Malicious:false
    Reputation:unknown
    Preview:VLnk.....?.......v|..lON................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 10, database pages 91, cookie 0x36, schema 4, UTF-8, version-valid-for 10
    Category:dropped
    Size (bytes):196608
    Entropy (8bit):1.2655693235354846
    Encrypted:false
    SSDEEP:
    MD5:67E3A6EF83C261C575D358C054CA5124
    SHA1:2E225F0B8A8FB53445B54F1604C156B91BC1727B
    SHA-256:8471D3E5C16B232E1A252EE9FA313859AD5EAD4F79B3157A471A41ADA306155E
    SHA-512:A37A3A7B7D40D0EE3D3BA45FD743E5177DD3A811D9EB33573BEB77EA6C41A86AF9B1AE5FEEF49D4722FF856B08CC72F01C89CC52C44BC2FDD439825D56BCF723
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ .......[...........6......................................................j............W........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 10, cookie 0x7, schema 4, UTF-8, version-valid-for 1
    Category:dropped
    Size (bytes):40960
    Entropy (8bit):0.46627359886263464
    Encrypted:false
    SSDEEP:
    MD5:A2C84B4A521496E249AE9C6F8B44D8E7
    SHA1:201D3A4DF99A9878663618C2EF13C2AF22D06FA8
    SHA-256:BC7B585A1EFBCAB1D42F7191292F6BF6455E27F66DB10F1EDFD6FCFB08BFC3F0
    SHA-512:BC841D1DB0F3B23E973C403EB379C891B59486FFB7B652DE46C83493A0AE7FA3D0A4EBCA8BB396086085F1FE14E4BC13E69B2BDF57007D36D5F271AA3DA2CB0F
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j.......w..g...........M...w..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with very long lines (3951), with CRLF line terminators
    Category:dropped
    Size (bytes):11755
    Entropy (8bit):5.190465908239046
    Encrypted:false
    SSDEEP:
    MD5:07301A857C41B5854E6F84CA00B81EA0
    SHA1:7441FC1018508FF4F3DBAA139A21634C08ED979C
    SHA-256:2343C541E095E1D5F202E8D2A0807113E69E1969AF8E15E3644C51DB0BF33FBF
    SHA-512:00ADE38E9D2F07C64648202F1D5F18A2DFB2781C0517EAEBCD567D8A77DBB7CB40A58B7C7D4EC03336A63A20D2E11DD64448F020C6FF72F06CA870AA2B4765E0
    Malicious:false
    Reputation:unknown
    Preview:{.. "DefaultCohort": {.. "21f3388b-c2a5-4791-8f6e-a4cad6d17f4f.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.BingHomePage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Covid.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Finance.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Jobs.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.KnowledgeCard.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Local.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.NTP3PCLICK.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.NotifySearchPage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Recipe.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.SearchPage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Sports.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Travel.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Weather.Bubble": 1,.. "2cb2db96-3bd0-403e-abe2-9269b3761041.Bubble": 1,.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):28366
    Entropy (8bit):5.55696791970772
    Encrypted:false
    SSDEEP:
    MD5:CF1FD5DD7FBB8A5D80FD8151F0E87F38
    SHA1:0334E71756EFB1107C71326E675F6C843D4DA041
    SHA-256:3B2378D61759B9C3A78CBE6628FAEEA2B9542F3279EFCDDA107C3706E40B197E
    SHA-512:2A293074B003B1C3D01494791AAA6CC35A299D5E602B3FEEB83032E77F006F040A9E188A44EDF97A72B3337131F23799E31E875923D797243381F17100AD888E
    Malicious:false
    Reputation:unknown
    Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13371127828327911","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13371127828327911","location":5,"ma
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:modified
    Size (bytes):14066
    Entropy (8bit):5.240093004121469
    Encrypted:false
    SSDEEP:
    MD5:47489E5078E4985CA3AC7B79C2B3FF2A
    SHA1:885FAEFFD33E70F228F7E41E49FC81DE37EFA789
    SHA-256:3461F4C6E64B400AA63D2B10F5BDDA745FECC76AD37997ACF1DB3751A51FF518
    SHA-512:71D0C0923F1D00DB0526CD11F2A59688869F8F12024AF00A3AFB0003A1215B0B4E5FDF34995493B9994E6BC4345491944EBA81CC651D25BC48AA7F04A8D78244
    Malicious:false
    Reputation:unknown
    Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13371127828753034","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":914,"browser_content_container_width":1236,"browser_content_container_x":0,"browser_content_container_y":70,"continuous_migration":{"advance_consent":{"consented":0},"ci_correction_for_holdout_treatment_state":1,"datatype_detai
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x4, schema 4, UTF-8, version-valid-for 1
    Category:dropped
    Size (bytes):28672
    Entropy (8bit):0.3410017321959524
    Encrypted:false
    SSDEEP:
    MD5:98643AF1CA5C0FE03CE8C687189CE56B
    SHA1:ECADBA79A364D72354C658FD6EA3D5CF938F686B
    SHA-256:4DC3BF7A36AB5DA80C0995FAF61ED0F96C4DE572F2D6FF9F120F9BC44B69E444
    SHA-512:68B69FCE8EF5AB1DDA2994BA4DB111136BD441BC3EFC0251F57DC20A3095B8420669E646E2347EAB7BAF30CACA4BCF74BD88E049378D8DE57DE72E4B8A5FF74B
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j..........g.....P....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):12979
    Entropy (8bit):5.170030282843729
    Encrypted:false
    SSDEEP:
    MD5:81AF9D9A8DA53351C6C570E24E26388E
    SHA1:FDA74AB49728FBB5034C3B82761EB1539EBF357C
    SHA-256:2C434F498042B06CF3F0E075333494C99D450E741EB93A2CB00CC644C70F6B32
    SHA-512:3C73B899ABAD18752442BE409AA2A45B33CF20F3FEF2E5FDF085BB9DF7EA79A85BAFCF6EFA749D40C697BAEBBD8109FE06969551851FBDC0CC3FE2BD0C658E46
    Malicious:false
    Reputation:unknown
    Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13371127828753034","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13341058280410352","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":974,"left":10,"maximized":true,"right":1060,"top":10,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":914,"browser_content_container_width":1236,"browser_content_container_x":0,"browser_content_container_y":70,"continuous_migration":{"advance_consent":{"consented":0},"ci_correction_for_holdout_treatment_state":1,"datatype_detai
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):32768
    Entropy (8bit):0.1706515363717876
    Encrypted:false
    SSDEEP:
    MD5:74F107D389BF05CB4EE238F31316C71F
    SHA1:26E452FC2675F62002B2AD32842802F4C8AAACD1
    SHA-256:73747840628CC441E09953B336EA7B5C20E82E6F6CB3E19B1F31C4EC4884EE70
    SHA-512:240A5E2F2D6737FE78BB9AFACDE05619BB6E24F44BEE33D23738C4832FD4EC5860EE2C96B8C014E734FD70A5086C0333AB57B831E244620A8210508EE0300CEF
    Malicious:false
    Reputation:unknown
    Preview:..-.....$...............n.T?y.2=^..>l_......n7I...-.....$...............n.T?y.2=^..>l_......n7I.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite Write-Ahead Log, version 3007000
    Category:dropped
    Size (bytes):663352
    Entropy (8bit):1.7729549220190297
    Encrypted:false
    SSDEEP:
    MD5:D730A0BA86A4D1692DADDA0D9924F1B5
    SHA1:D91DCAF8DE8AA291AD3850FB669BA21E60DB35B6
    SHA-256:06DC26D32FACADB23A5C5D060D31E25AAA0773FBBB59D8BF61D8728AF9578859
    SHA-512:6E72E5658BF00386C6F0E3711FE9F3A7BBF4403A37725215470B2F1BCCEA8BAFA46F366D7081B199DA018362F9D3ED02919F468691576ADAF2711079B249C9EA
    Malicious:false
    Reputation:unknown
    Preview:7....-..........^..>l_.....q..$.........^..>l_..X....9I4SQLite format 3......@ ..........................................................................j.............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):580
    Entropy (8bit):3.7609960345976408
    Encrypted:false
    SSDEEP:
    MD5:F491C857170F2CCBACDC4D4858D44AC6
    SHA1:40D1499DBBA66F46EE1D6975D000A4E92F699EB7
    SHA-256:0B72C3965B06220E8E60524775AD89B365BF980A9A20D51F328CDD7C06D3B4A9
    SHA-512:D2914348FC95291556067981A2944BB16938C6E7EBAC9F27056414EEEE04FFC1EF61DBE1EE8DEC0607982207D15BED1DA3822C43A89930242301C5BBCBDD03C2
    Malicious:false
    Reputation:unknown
    Preview:A..r.................20_1_1...1.,U.................20_1_1...1?.Q;0................39_config..........6.....n ...1u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=..................;...............#38_h.......6.Z..W.F......8.......8...........V.e................3...0................39_config..........6.....n ....1
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):320
    Entropy (8bit):5.2243584551718065
    Encrypted:false
    SSDEEP:
    MD5:B209D8AF1B86C1633F2FA9989EAA82E8
    SHA1:F13D447CA3AC70B8426069BB4B90F006B1D49875
    SHA-256:AFE7CCAB41E259B886118A1D69F937B3FA365BB61046AE6BB3D5B46715047913
    SHA-512:204888B5654788F7CD39C72C785D8AD6F44D74743E2C6F5988E68EFA4B6A556150817BAE6B3FE02D0509BDA6355B12DE11916B0B57EA9306B367B98B756F6B5D
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.759 1e18 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/MANIFEST-000001.2024/09/18-06:10:28.760 1e18 Recovering log #3.2024/09/18-06:10:28.760 1e18 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):816
    Entropy (8bit):4.0647916882227655
    Encrypted:false
    SSDEEP:
    MD5:3BE72D8D40752B3A97028FDB2931FABA
    SHA1:A27EA4726857A948F0A4B074062B674469A9A371
    SHA-256:3C18553C8C3F7E801855F3579AC57F3C156D783BBA27FB35C6D2FB6CB89BD902
    SHA-512:8EBD4D6980BB7796615217E72BC65953C920B68B9259341CD52858C1E889EC90339E2A304FE0C971D6C6EF9AFC4A00CFB3E5CC89C7B2DF8737A0C7EC241BDADC
    Malicious:false
    Reputation:unknown
    Preview:.h.6.................__global... .t...................__global... .9..b.................33_..........................33_........v.................21_.....vuNX.................21_.....<...................20_.....X...................20_.....W.J+.................19_......qY.................18_.....'}2..................37_.......c..................38_......i...................39_.....Owa..................20_.....4.9..................20_.....B.I..................19_..........................18_.....2.1..................37_..........................38_......=.%.................39_.....p.j..................9_.....JJ...................9_.....|.&R.................__global... ./....................__global... ..T...................__global... ...G..................__global... ......................__global... .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):338
    Entropy (8bit):5.232644213542331
    Encrypted:false
    SSDEEP:
    MD5:2ECD78B6BE4F193D10E6B049DB512B80
    SHA1:AB146CFB7490F4530FF5A38D0166884E9EAD08A2
    SHA-256:1305900FC5801B8C315143895A7A091AA5B56D1CDE5293B2E9290BB2AA5CAC67
    SHA-512:24BD1A2E3495FFD0B1BF0D0051E8A5AD52EBBBFF98C13E62CEC60B1D5CF6B03B7B1DB9DA5D51E7C8E85989B33ACD26131677CCC0F32C7EAAF681D98F869A9D1C
    Malicious:false
    Reputation:unknown
    Preview:2024/09/18-06:10:28.753 1e18 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/MANIFEST-000001.2024/09/18-06:10:28.754 1e18 Recovering log #3.2024/09/18-06:10:28.755 1e18 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/000003.log .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):120
    Entropy (8bit):3.32524464792714
    Encrypted:false
    SSDEEP:
    MD5:A397E5983D4A1619E36143B4D804B870
    SHA1:AA135A8CC2469CFD1EF2D7955F027D95BE5DFBD4
    SHA-256:9C70F766D3B84FC2BB298EFA37CC9191F28BEC336329CC11468CFADBC3B137F4
    SHA-512:4159EA654152D2810C95648694DD71957C84EA825FCCA87B36F7E3282A72B30EF741805C610C5FA847CA186E34BDE9C289AAA7B6931C5B257F1D11255CD2A816
    Malicious:false
    Reputation:unknown
    Preview:C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s. .(.x.8.6.).\.M.i.c.r.o.s.o.f.t.\.E.d.g.e.\.A.p.p.l.i.c.a.t.i.o.n.\.m.s.e.d.g.e...e.x.e.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with no line terminators
    Category:dropped
    Size (bytes):13
    Entropy (8bit):2.7192945256669794
    Encrypted:false
    SSDEEP:
    MD5:BF16C04B916ACE92DB941EBB1AF3CB18
    SHA1:FA8DAEAE881F91F61EE0EE21BE5156255429AA8A
    SHA-256:7FC23C9028A316EC0AC25B09B5B0D61A1D21E58DFCF84C2A5F5B529129729098
    SHA-512:F0B7DF5517596B38D57C57B5777E008D6229AB5B1841BBE74602C77EEA2252BF644B8650C7642BD466213F62E15CC7AB5A95B28E26D3907260ED1B96A74B65FB
    Malicious:false
    Reputation:unknown
    Preview:117.0.2045.47
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:C2EF1CF0B0D5348530944C48CEA01B4E
    SHA1:33856417B58EA03E484CBB2B251CB160449B77E0
    SHA-256:71A8ED95CC51E1E2463F5DDB2A02F4477DD90F4D4FA47DB8C44E12EDAC207621
    SHA-512:783E1EA4AE97B86CFB77E0308B924127BE92F6D0E725C3B554EFAB6A1233C5F489F21E2063A4FCA457567D910D36FCEF25A52F098BE56EB8A66261757FB044A8
    Malicious:false
    Reputation:unknown
    Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"H4sIAAAAAAAAAL19a4/cNpboXzH60+4gRbvbrzj7aTbj2Ql2MhlkswhwF4MGRVISWxQp81FVqkH++z2HUrXbLkndh51dBHba1XX4PDzvxz+v+P76VjipxG2teExe3YpWie7W7ZX3Wqqr7/55xYfBaMGjdjZcffc/8wdK3g4OPh+vvrv6aYg/pXj1zZV0PdcWPrEq1kYfmXD91W/fUEBCTFK7MEH+45urDKHVNLPlvXoIHMcB//3H/fX3uIk/T3v4HrcwfweHgL0EWPzVd9e/fXMlZE/dnTXjx+Pggvq74ePPisvx4bqD0bbZ2Og99K8w415b9RA4usTivgSy50f4WTHYRQE0r0TxkvcMIVQpvOHvmY4lkMdaWx3H0okPPIoWVi/cFl5uDqEbWICCMbxrAKlKh6lMUiL5PY4UWn5ggpcM0yp8Ynv4jYve2dLVCA978oD/ouXWKlM6jo08toiSpffjDoNXQdkYBpOKD3ffHgufVJtMKp0Vvs4+JS06uJShdJA/6dD+0Y6HVnm1TQAXSdJMDfEjnz/CJVxAPJh4Brj/5JJYZtZAI5d/gW/+WP9F7UWmyTTSsQFstY3KSrd5MJfw8x4ffriwzR5P5lZboOXq2cwPcaHxvO+5N1vU6gKw18K74OqIVMGrwcGWi+B3/fhgiJ2sSYzY4W5ZcE8FcFZJr/eKGfyLMJOray0KIOCL4cFk21LCwm0jIsXbWhuge7fO3sKot+GggT0
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:C2EF1CF0B0D5348530944C48CEA01B4E
    SHA1:33856417B58EA03E484CBB2B251CB160449B77E0
    SHA-256:71A8ED95CC51E1E2463F5DDB2A02F4477DD90F4D4FA47DB8C44E12EDAC207621
    SHA-512:783E1EA4AE97B86CFB77E0308B924127BE92F6D0E725C3B554EFAB6A1233C5F489F21E2063A4FCA457567D910D36FCEF25A52F098BE56EB8A66261757FB044A8
    Malicious:false
    Reputation:unknown
    Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"H4sIAAAAAAAAAL19a4/cNpboXzH60+4gRbvbrzj7aTbj2Ql2MhlkswhwF4MGRVISWxQp81FVqkH++z2HUrXbLkndh51dBHba1XX4PDzvxz+v+P76VjipxG2teExe3YpWie7W7ZX3Wqqr7/55xYfBaMGjdjZcffc/8wdK3g4OPh+vvrv6aYg/pXj1zZV0PdcWPrEq1kYfmXD91W/fUEBCTFK7MEH+45urDKHVNLPlvXoIHMcB//3H/fX3uIk/T3v4HrcwfweHgL0EWPzVd9e/fXMlZE/dnTXjx+Pggvq74ePPisvx4bqD0bbZ2Og99K8w415b9RA4usTivgSy50f4WTHYRQE0r0TxkvcMIVQpvOHvmY4lkMdaWx3H0okPPIoWVi/cFl5uDqEbWICCMbxrAKlKh6lMUiL5PY4UWn5ggpcM0yp8Ynv4jYve2dLVCA978oD/ouXWKlM6jo08toiSpffjDoNXQdkYBpOKD3ffHgufVJtMKp0Vvs4+JS06uJShdJA/6dD+0Y6HVnm1TQAXSdJMDfEjnz/CJVxAPJh4Brj/5JJYZtZAI5d/gW/+WP9F7UWmyTTSsQFstY3KSrd5MJfw8x4ffriwzR5P5lZboOXq2cwPcaHxvO+5N1vU6gKw18K74OqIVMGrwcGWi+B3/fhgiJ2sSYzY4W5ZcE8FcFZJr/eKGfyLMJOray0KIOCL4cFk21LCwm0jIsXbWhuge7fO3sKot+GggT0
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):0
    Entropy (8bit):0.0
    Encrypted:false
    SSDEEP:
    MD5:C2EF1CF0B0D5348530944C48CEA01B4E
    SHA1:33856417B58EA03E484CBB2B251CB160449B77E0
    SHA-256:71A8ED95CC51E1E2463F5DDB2A02F4477DD90F4D4FA47DB8C44E12EDAC207621
    SHA-512:783E1EA4AE97B86CFB77E0308B924127BE92F6D0E725C3B554EFAB6A1233C5F489F21E2063A4FCA457567D910D36FCEF25A52F098BE56EB8A66261757FB044A8
    Malicious:false
    Reputation:unknown
    Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 8, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 8
    Category:dropped
    Size (bytes):20480
    Entropy (8bit):0.6776558889663267
    Encrypted:false
    SSDEEP:
    MD5:D8827DFCAFAEFFCC68F2C8C5581BECCA
    SHA1:AB8AFE220039BB64DAFD39CD1F013162D33A7467
    SHA-256:DB95E81B88A859341D32D822BBD1B535710095127C51A740EBD60157944B3DBE
    SHA-512:F3D1A4C48C9C979E2FB9F5B62F367C86FF57AE2340B9FDB206D776897595DBA2D015E218C4703E8D1D63A8E3E793F15D60F89322821ED3CE61B2A724B166D2B2
    Malicious:false
    Reputation:unknown
    Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with no line terminators
    Category:dropped
    Size (bytes):47
    Entropy (8bit):4.3818353308528755
    Encrypted:false
    SSDEEP:
    MD5:48324111147DECC23AC222A361873FC5
    SHA1:0DF8B2267ABBDBD11C422D23338262E3131A4223
    SHA-256:D8D672F953E823063955BD9981532FC3453800C2E74C0CC3653D091088ABD3B3
    SHA-512:E3B5DB7BA5E4E3DE3741F53D91B6B61D6EB9ECC8F4C07B6AE1C2293517F331B716114BAB41D7935888A266F7EBDA6FABA90023EFFEC850A929986053853F1E02
    Malicious:false
    Reputation:unknown
    Preview:customSettings_F95BA787499AB4FA9EFFF472CE383A14
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):35
    Entropy (8bit):4.014438730983427
    Encrypted:false
    SSDEEP:
    MD5:BB57A76019EADEDC27F04EB2FB1F1841
    SHA1:8B41A1B995D45B7A74A365B6B1F1F21F72F86760
    SHA-256:2BAE8302F9BD2D87AE26ACF692663DF1639B8E2068157451DA4773BD8BD30A2B
    SHA-512:A455D7F8E0BE9A27CFB7BE8FE0B0E722B35B4C8F206CAD99064473F15700023D5995CC2C4FAFDB8FBB50F0BAB3EC8B241E9A512C0766AAAE1A86C3472C589FFD
    Malicious:false
    Reputation:unknown
    Preview:{"forceServiceDetermination":false}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with no line terminators
    Category:dropped
    Size (bytes):81
    Entropy (8bit):4.3439888556902035
    Encrypted:false
    SSDEEP:
    MD5:177F4D75F4FEE84EF08C507C3476C0D2
    SHA1:08E17AEB4D4066AC034207420F1F73DD8BE3FAA0
    SHA-256:21EE7A30C2409E0041CDA6C04EEE72688EB92FE995DC94487FF93AD32BD8F849
    SHA-512:94FC142B3CC4844BF2C0A72BCE57363C554356C799F6E581AA3012E48375F02ABD820076A8C2902A3C6BE6AC4D8FA8D4F010D4FF261327E878AF5E5EE31038FB
    Malicious:false
    Reputation:unknown
    Preview:edgeSettings_2.0-48b11410dc937a1723bf4c5ad33ecdb286d8ec69544241bc373f753e64b396c1
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):130439
    Entropy (8bit):3.80180718117079
    Encrypted:false
    SSDEEP:
    MD5:EB75CEFFE37E6DF9C171EE8380439EDA
    SHA1:F00119BA869133D64E4F7F0181161BD47968FA23
    SHA-256:48B11410DC937A1723BF4C5AD33ECDB286D8EC69544241BC373F753E64B396C1
    SHA-512:044C5113D877CE2E3B42CF07670620937ED7BE2D8B3BF2BAB085C43EF4F64598A7AC56328DDBBE7F0F3CFB9EA49D38CA332BB4ECBFEDBE24AE53B14334A30C8E
    Malicious:false
    Reputation:unknown
    Preview:{.. "geoidMaps": {.. "au": "https://australia.smartscreen.microsoft.com/",.. "ch": "https://switzerland.smartscreen.microsoft.com/",.. "eu": "https://europe.smartscreen.microsoft.com/",.. "ffl4": "https://unitedstates1.ss.wd.microsoft.us/",.. "ffl4mod": "https://unitedstates4.ss.wd.microsoft.us/",.. "ffl5": "https://unitedstates2.ss.wd.microsoft.us/",.. "in": "https://india.smartscreen.microsoft.com/",.. "test": "https://eu-9.smartscreen.microsoft.com/",.. "uk": "https://unitedkingdom.smartscreen.microsoft.com/",.. "us": "https://unitedstates.smartscreen.microsoft.com/",.. "gw_au": "https://australia.smartscreen.microsoft.com/",.. "gw_ch": "https://switzerland.smartscreen.microsoft.com/",.. "gw_eu": "https://europe.smartscreen.microsoft.com/",.. "gw_ffl4": "https://unitedstates1.ss.wd.microsoft.us/",.. "gw_ffl4mod": "https://unitedstates4.ss.wd.microsoft.us/",.. "gw_ffl5": "https://unitedstates2.ss.wd.microsoft.us/",.. "gw_in": "https
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with no line terminators
    Category:dropped
    Size (bytes):40
    Entropy (8bit):4.346439344671015
    Encrypted:false
    SSDEEP:
    MD5:6A3A60A3F78299444AACAA89710A64B6
    SHA1:2A052BF5CF54F980475085EEF459D94C3CE5EF55
    SHA-256:61597278D681774EFD8EB92F5836EB6362975A74CEF807CE548E50A7EC38E11F
    SHA-512:C5D0419869A43D712B29A5A11DC590690B5876D1D95C1F1380C2F773CA0CB07B173474EE16FE66A6AF633B04CC84E58924A62F00DCC171B2656D554864BF57A4
    Malicious:false
    Reputation:unknown
    Preview:synchronousLookupUris_638343870221005468
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):57
    Entropy (8bit):4.556488479039065
    Encrypted:false
    SSDEEP:
    MD5:3A05EAEA94307F8C57BAC69C3DF64E59
    SHA1:9B852B902B72B9D5F7B9158E306E1A2C5F6112C8
    SHA-256:A8EF112DF7DAD4B09AAA48C3E53272A2EEC139E86590FD80E2B7CBD23D14C09E
    SHA-512:6080AEF2339031FAFDCFB00D3179285E09B707A846FD2EA03921467DF5930B3F9C629D37400D625A8571B900BC46021047770BAC238F6BAC544B48FB3D522FB0
    Malicious:false
    Reputation:unknown
    Preview:9.......murmur3.............,M.h...Z...8.\..<&Li.H..[.?m
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with no line terminators
    Category:dropped
    Size (bytes):29
    Entropy (8bit):4.030394788231021
    Encrypted:false
    SSDEEP:
    MD5:52E2839549E67CE774547C9F07740500
    SHA1:B172E16D7756483DF0CA0A8D4F7640DD5D557201
    SHA-256:F81B7B9CE24F5A2B94182E817037B5F1089DC764BC7E55A9B0A6227A7E121F32
    SHA-512:D80E7351E4D83463255C002D3FDCE7E5274177C24C4C728D7B7932D0BE3EBCFEB68E1E65697ED5E162E1B423BB8CDFA0864981C4B466D6AD8B5E724D84B4203B
    Malicious:false
    Reputation:unknown
    Preview:topTraffic_638004170464094982
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):575056
    Entropy (8bit):7.999649474060713
    Encrypted:true
    SSDEEP:
    MD5:BE5D1A12C1644421F877787F8E76642D
    SHA1:06C46A95B4BD5E145E015FA7E358A2D1AC52C809
    SHA-256:C1CE928FBEF4EF5A4207ABAFD9AB6382CC29D11DDECC215314B0522749EF6A5A
    SHA-512:FD5B100E2F192164B77F4140ADF6DE0322F34D7B6F0CF14AED91BACAB18BB8F195F161F7CF8FB10651122A598CE474AC4DC39EDF47B6A85C90C854C2A3170960
    Malicious:false
    Reputation:unknown
    Preview:...._+jE.`..}....S..1....G}s..E....y".Wh.^.W.H...-...#.A...KR...9b........>k......bU.IVo...D......Y..[l.yx.......'c=..I0.....E.d...-...1 ....m../C...OQ.........qW..<:N.....38.u..X-..s....<..U.,Mi..._.......`.Y/.........^..,.E..........j@..G8..N.... ..Ea...4.+.79k.!T.-5W..!..@+..!.P..LDG.....V."....L.... .(#..$..&......C.....%A.T}....K_.S..'Q.".d....s....(j.D!......Ov..)*d0)."(..%..-..G..L.}....i.....m9;.....t.w..0....f?..-..M.c.3.....N7K.T..D>.3.x...z..u$5!..4..T.....U.O^L{.5..=E..'..;.}(|.6.:..f!.>...?M.8......P.D.J.I4.<...*.y.E....>....i%.6..Y.@..n.....M..r..C.f.;..<..0.H...F....h.......HB1]1....u..:...H..k....B.Q..J...@}j~.#...'Y.J~....I...ub.&..L[z..1.W/.Ck....M.......[.......N.F..z*.{nZ~d.V.4.u.K.V.......X.<p..cz..>*....X...W..da3(..g..Z$.L4.j=~.p.l.\.[e.&&.Y ...U)..._.^r0.,.{_......`S..[....(.\..p.bt.g..%.$+....f.....d....Im..f...W ......G..i_8a..ae..7....pS.....z-H..A.s.4.3..O.r.....u.S......a.}..v.-/..... ...a.x#./:...sS&U.().xL...pg
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:raw G3 (Group 3) FAX, byte-padded
    Category:dropped
    Size (bytes):460992
    Entropy (8bit):7.999625908035124
    Encrypted:true
    SSDEEP:
    MD5:E9C502DB957CDB977E7F5745B34C32E6
    SHA1:DBD72B0D3F46FA35A9FE2527C25271AEC08E3933
    SHA-256:5A6B49358772DB0B5C682575F02E8630083568542B984D6D00727740506569D4
    SHA-512:B846E682427CF144A440619258F5AA5C94CAEE7612127A60E4BD3C712F8FF614DA232D9A488E27FC2B0D53FD6ACF05409958AEA3B21EA2C1127821BD8E87A5CA
    Malicious:false
    Reputation:unknown
    Preview:...2lI.5.<C.;.{....._+jE.`..}....-...#.A...KR...l.M0,s...).9..........x.......F.b......jU....y.h'....L<...*..Z..*%.*..._...g.4yu...........'c=..I0..........qW..<:N....<..U.,Mi..._......'(..U.9.!........u....7...4. ..Ea...4.+.79k.!T.-5W..!..@+..$..t|1.E..7F...+..xf....z&_Q...-.B...)8R.c....0.......B.M.Z...0....&v..<..H...3.....N7K.T..D>.8......P.D.J.I4.B.H.VHy...@.Wc.Cl..6aD..j.....E..*4..mI..X]2.GH.G.L...E.F.=.J...@}j~.#...'Y.L[z..1.W/.Ck....L..X........J.NYd........>...N.F..z*.{nZ~d.N..../..6.\L...Q...+.w..p...>.S.iG...0]..8....S..)`B#.v..^.*.T.?...Z.rz.D'.!.T.w....S..8....V.4.u.K.V.......W.6s...Y.).[.c.X.S..........5.X7F...tQ....z.L.X..(3#j...8...i.[..j$.Q....0...]"W.c.H..n..2Te.ak...c..-F(..W2.b....3.]......c.d|.../....._...f.....d....Im..g.b..R.q.<x*x...i2..r.I()Iat..b.j.r@K.+5..C.....nJ.>*P,.V@.....s.4.3..O.r.....smd7...L.....].u&1../t.*.......uXb...=@.....wv......]....#.{$.w......i.....|.....?....E7...}$+..t).E.U..Q..~.`.)..Y@.6.h.......%(
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with no line terminators
    Category:dropped
    Size (bytes):9
    Entropy (8bit):3.169925001442312
    Encrypted:false
    SSDEEP:
    MD5:B6F7A6B03164D4BF8E3531A5CF721D30
    SHA1:A2134120D4712C7C629CDCEEF9DE6D6E48CA13FA
    SHA-256:3D6F3F8F1456D7CE78DD9DFA8187318B38E731A658E513F561EE178766E74D39
    SHA-512:4B473F45A5D45D420483EA1D9E93047794884F26781BBFE5370A554D260E80AD462E7EEB74D16025774935C3A80CBB2FD1293941EE3D7B64045B791B365F2B63
    Malicious:false
    Reputation:unknown
    Preview:uriCache_
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):785
    Entropy (8bit):4.9984419722335645
    Encrypted:false
    SSDEEP:
    MD5:F79EF5191B932748D322751B8FD1C52A
    SHA1:03121C48ABCCD4C00BD302400B050DFAD98F8116
    SHA-256:DB740AE8D7BD594B250003B9BD423B5920B4AFA71AFCF4430EBA0B905BBEB2EE
    SHA-512:733D986BB2A5E4000D43BF6191B4BB4E3DA47090731F00D751CA963A324C184A0B4F2071D4AA6EE047D16C4765064FE188B5C0F2705840380BD959F33B8D1B2E
    Malicious:false
    Reputation:unknown
    Preview:{"version":1,"cache_data":[{"file_hash":"47ab352f2cdc43b3","server_context":"1;f94c025f-7523-6972-b613-ce2c246c55ce;unkn:100;0.01","result":1,"expiration_time":1726755043344178},{"file_hash":"83b5278dcbce8e96","server_context":"1;f94c025f-7523-6972-b613-ce2c246c55ce;unkn:100;0.01","result":1,"expiration_time":1726755042104655},{"file_hash":"ad4e7de1071c7021","server_context":"1;c5faad59-a2e3-31f2-b86e-aaf958e12824;phsh:005;7e-05","result":0,"expiration_time":1726755039345726},{"file_hash":"a2f7a245c81bd28b","server_context":"1;f94c025f-7523-6972-b613-ce2c246c55ce;unkn:100;0.01","result":1,"expiration_time":1726755040782152},{"file_hash":"5a9b47d3591a33ff","server_context":"1;c5faad59-a2e3-31f2-b86e-aaf958e12824;phsh:005;7e-05","result":0,"expiration_time":1726755039219171}]}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):86
    Entropy (8bit):4.3751917412896075
    Encrypted:false
    SSDEEP:
    MD5:E9E365607374115B92E4ABE4B9628101
    SHA1:D5054EA9B22317DCA83801EB3586017BFCC0E2A8
    SHA-256:5CD2C4D9F13524923046198C92213691539407E04FA520CDAE9EADE1BAD3D91D
    SHA-512:A84D65ED53E43883E5ECB7848FBD48F5305A63E6975E6AF480CF85532879720061106BE54F2A5888EBC3569F7123081A0E6EB48CCB8D7DBA3E1DA1C8A3C50401
    Malicious:false
    Reputation:unknown
    Preview:{"user_experience_metrics.stability.exited_cleanly":false,"variations_crash_streak":3}
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):48723
    Entropy (8bit):6.095594687107706
    Encrypted:false
    SSDEEP:
    MD5:AE0EA0DA090B9A595BE5CF176B1CB03F
    SHA1:B8E3B29736ADD49B94606E1736A6A317C9B9CC6A
    SHA-256:96DDF0527889FF458B6FA4974BD96F2DE08F264B0225EF3265EA988992EB9878
    SHA-512:F1BC21448B2A2EEE7535696F8299FF5AEEB65FF5BF860337C442A2B44DEE696534A538AD269CC64AABA3BA35EFE124034AEACC227D60D1D1DFFE88F43DBA0498
    Malicious:false
    Reputation:unknown
    Preview:{"abusive_adblocker_etag":"\"5E25271B8190D943537AD3FDB50874FC133E8B4A00380E2A6A888D63386F728B\"","browser":{"browser_build_version":"117.0.2045.47","browser_version_of_last_seen_whats_new":"117.0.2045.47","last_seen_whats_new_page_version":"117.0.2045.47"},"continuous_migration":{"local_guid":"70d26d50-c882-4228-ac03-527f3c3d2fe2"},"desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"desktop_session_duration_tracker":{"last_session_end_timestamp":"0"},"domain_actions_config":"H4sIAAAAAAAAAL1dWZPktpH+KxP9ZDtU6GMujfykHY9txVpHyHIoYh2ODhBEkWiCAAdHVbEc/u+bCVb1dE8RqEqOdh806mbzw8VEXshM/PuKb27vha2luF9LHqKT96KVoru3G+mcquXVN/++4sOgleBBWeOvvvnn4YGs7wcLz8erb65+HMKPMVx9dVXbnisDT4wMa612TNj+6j9fUSA+xFpZPyH/9dVVQig59Wx4L5+Cwzjg799ubt/jJP48zeE9TuHwDjYBc/Ew+Ktvbv/z1ZWoe+rsjB4/7Abr5U+ajz9LXo9Px+21Mk1hoo/oX6HHjTLyKTjYyMJmCbLnO/hZMpjFAjSvxOIhbxgi5FK85m+ZCkuQu7UyKoxLO97yIFoYvbAluiw2oRoYgIQ2nG2AqJY2U+koRXQbbMm3fMsEX9JMK3GL
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):58093
    Entropy (8bit):6.106214210362982
    Encrypted:false
    SSDEEP:
    MD5:C2EF1CF0B0D5348530944C48CEA01B4E
    SHA1:33856417B58EA03E484CBB2B251CB160449B77E0
    SHA-256:71A8ED95CC51E1E2463F5DDB2A02F4477DD90F4D4FA47DB8C44E12EDAC207621
    SHA-512:783E1EA4AE97B86CFB77E0308B924127BE92F6D0E725C3B554EFAB6A1233C5F489F21E2063A4FCA457567D910D36FCEF25A52F098BE56EB8A66261757FB044A8
    Malicious:false
    Reputation:unknown
    Preview:{"abusive_adblocker_etag":"\"8ABCE35666CBACA121128B98C75E78308AAC1CE803625FAFB4A7AFA722C77CA4\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"H4sIAAAAAAAAAL19a4/cNpboXzH60+4gRbvbrzj7aTbj2Ql2MhlkswhwF4MGRVISWxQp81FVqkH++z2HUrXbLkndh51dBHba1XX4PDzvxz+v+P76VjipxG2teExe3YpWie7W7ZX3Wqqr7/55xYfBaMGjdjZcffc/8wdK3g4OPh+vvrv6aYg/pXj1zZV0PdcWPrEq1kYfmXD91W/fUEBCTFK7MEH+45urDKHVNLPlvXoIHMcB//3H/fX3uIk/T3v4HrcwfweHgL0EWPzVd9e/fXMlZE/dnTXjx+Pggvq74ePPisvx4bqD0bbZ2Og99K8w415b9RA4usTivgSy50f4WTHYRQE0r0TxkvcMIVQpvOHvmY4lkMdaWx3H0okPPIoWVi/cFl5uDqEbWICCMbxrAKlKh6lMUiL5PY4UWn5ggpcM0yp8Ynv4jYve2dLVCA978oD/ouXWKlM6jo08toiSpffjDoNXQdkYBpOKD3ffHgufVJtMKp0Vvs4+JS06uJShdJA/6dD+0Y6HVnm1TQAXSdJMDfEjnz/CJVxAPJh4Brj/5JJYZtZAI5d/gW/+WP9F7UWmyTTSsQFstY3KSrd5MJfw8x4ffriwzR5P5lZboOXq2cwPcaHxvO+5N1vU6gKw18K74OqIVMGrwcGWi+B3/fhgiJ2sSYzY4W5ZcE8FcFZJr/eKGfyLMJOray0KIOCL4cFk21LCwm0jIsXbWhuge7fO3sKot+GggT0
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):48805
    Entropy (8bit):6.09514605135138
    Encrypted:false
    SSDEEP:
    MD5:9345EC8DE48B974E602BCC32A293BE50
    SHA1:69195B9E9884B682D495FAFCC4DA51818DFFE06D
    SHA-256:23694251638279A2E24AC94BC9F5EDEEB3CD412A1069B95EA6F41A8D52AEA983
    SHA-512:63B2D48F6B3BBE582B8A8B311EB77364D90FA8321861C9402FB81F01F6D3ECAF0C796C6A28EA00086AE7301D0567B3289AFC27ABFDCF8277B7D0202E732568B0
    Malicious:false
    Reputation:unknown
    Preview:{"abusive_adblocker_etag":"\"5E25271B8190D943537AD3FDB50874FC133E8B4A00380E2A6A888D63386F728B\"","browser":{"browser_build_version":"117.0.2045.47","browser_version_of_last_seen_whats_new":"117.0.2045.47","last_seen_whats_new_page_version":"117.0.2045.47"},"continuous_migration":{"local_guid":"70d26d50-c882-4228-ac03-527f3c3d2fe2"},"desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"desktop_session_duration_tracker":{"last_session_end_timestamp":"0"},"domain_actions_config":"H4sIAAAAAAAAAL1dWZPktpH+KxP9ZDtU6GMujfykHY9txVpHyHIoYh2ODhBEkWiCAAdHVbEc/u+bCVb1dE8RqEqOdh806mbzw8VEXshM/PuKb27vha2luF9LHqKT96KVoru3G+mcquXVN/++4sOgleBBWeOvvvnn4YGs7wcLz8erb65+HMKPMVx9dVXbnisDT4wMa612TNj+6j9fUSA+xFpZPyH/9dVVQig59Wx4L5+Cwzjg799ubt/jJP48zeE9TuHwDjYBc/Ew+Ktvbv/z1ZWoe+rsjB4/7Abr5U+ajz9LXo9Px+21Mk1hoo/oX6HHjTLyKTjYyMJmCbLnO/hZMpjFAjSvxOIhbxgi5FK85m+ZCkuQu7UyKoxLO97yIFoYvbAluiw2oRoYgIQ2nG2AqJY2U+koRXQbbMm3fMsEX9JMK3GL
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):2278
    Entropy (8bit):3.8511958564586948
    Encrypted:false
    SSDEEP:
    MD5:5FFFB500A17EAF9A0395C48CB93F5F11
    SHA1:E33D17FE042E8D63205B12BAFB2A39F820515E58
    SHA-256:4450DC544C63894E1527C6494B5D2084369B442A6F0878A0E1194D84BF7106D1
    SHA-512:F89C88F93C8B79875D47B867F4FB5A05C7CE1178C5955139D6E1590531340ED6FEC58785F5A46DAAD6F07FEDB9EAF1CD818B6ACC52FC481A6B29C8A348554561
    Malicious:false
    Reputation:unknown
    Preview:{.".T.B.D.a.t.a.S.t.o.r.e.O.b.j.e.c.t.".:.{.".H.e.a.d.e.r.".:.{.".O.b.j.e.c.t.T.y.p.e.".:.".T.o.k.e.n.R.e.s.p.o.n.s.e.".,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.a.j.o.r.".:.2.,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.i.n.o.r.".:.1.}.,.".O.b.j.e.c.t.D.a.t.a.".:.{.".S.y.s.t.e.m.D.e.f.i.n.e.d.P.r.o.p.e.r.t.i.e.s.".:.{.".R.e.q.u.e.s.t.I.n.d.e.x.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".W.i.p.w.W.M.+.N.H.l.b.C.D.m.s.Z.p.8.S.O.s.j.h.t.F.B.s.=.".}.,.".E.x.p.i.r.a.t.i.o.n.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.F.d.N.X.7.s.J.2.w.E.=.".}.,.".S.t.a.t.u.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.A.A.A.A.A.=.=.".}.,.".R.e.s.p.o.n.s.e.B.y.t.e.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.t.r.u.e.,.".V.a.l.u.e.".:.".A.Q.A.A.A.N.C.M.n.d.8.B.F.d.E.R.j.H.o.A.w.E./.C.l.+.s.B.A.A.A.A.m.L.7.Y.r.4.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:data
    Category:dropped
    Size (bytes):4622
    Entropy (8bit):4.004351234191791
    Encrypted:false
    SSDEEP:
    MD5:059E55EA8036EC63CBC9E903F7C7D629
    SHA1:DCD7D61573E7C8E433A636EF97825DE9F62150AE
    SHA-256:E2B36F8853E61250F5CF12FF1A297D6B5527A9B086BCB781668CB3985122461B
    SHA-512:EA0155C50BB4676306BC3301DE94B43A2247B7298DE40E5CE690FC882729BB0323DD5D9935457837829DD4C48AC42CF820E9B71565B84B8C44620C3B751AEEE2
    Malicious:false
    Reputation:unknown
    Preview:{.".T.B.D.a.t.a.S.t.o.r.e.O.b.j.e.c.t.".:.{.".H.e.a.d.e.r.".:.{.".O.b.j.e.c.t.T.y.p.e.".:.".T.o.k.e.n.R.e.s.p.o.n.s.e.".,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.a.j.o.r.".:.2.,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.i.n.o.r.".:.1.}.,.".O.b.j.e.c.t.D.a.t.a.".:.{.".S.y.s.t.e.m.D.e.f.i.n.e.d.P.r.o.p.e.r.t.i.e.s.".:.{.".R.e.q.u.e.s.t.I.n.d.e.x.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".z.3.U.T.q.T.b.3.7./.u.z.h.i.f.l.b.4.0.f.z.h.D.r.E.s.w.=.".}.,.".E.x.p.i.r.a.t.i.o.n.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".o.0./.J.R.L.M.J.2.w.E.=.".}.,.".S.t.a.t.u.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.w.A.A.A.A.=.=.".}.,.".R.e.s.p.o.n.s.e.B.y.t.e.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.t.r.u.e.,.".V.a.l.u.e.".:.".A.Q.A.A.A.N.C.M.n.d.8.B.F.d.E.R.j.H.o.A.w.E./.C.l.+.s.B.A.A.A.A.m.L.7.Y.r.4.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:PNG image data, 136 x 52, 8-bit/color RGBA, non-interlaced
    Category:dropped
    Size (bytes):9920
    Entropy (8bit):7.936904511462247
    Encrypted:false
    SSDEEP:
    MD5:405AC425408F8004D673C460BE877DEC
    SHA1:4EE18BF7F8AD8DDC42FDB6525819EFBFEC0D78CF
    SHA-256:A5E734E4C81D1768D026AEE29A682D07B3D8FC9A2B37490B1F568DC06F350A44
    SHA-512:8422EF749CD140DB52B69110BAC45A38A9B0D2948C2CF9E638BE83A5F02E523C97688072B6B4B360989AC8BCCFAE814DE28A1CCBB78C8C0D84CEA765211E18B3
    Malicious:false
    Reputation:unknown
    Preview:.PNG........IHDR.......4.....Q.p\....pHYs..........+......IDATx..ol............g..A.svpp..O..Jq.@D.!...J......M....D..U".$jS......D.~ ..D...... z9p ..MAv|.......{g.H..I#.ng..f.....H$..D".H$..D".H$..D".H$..D.-..B.-[..xFU.l6K.!.!..a@&..333.4M..f!........9..4....s..s`..!.(.\.4...g.B....8.}...===......Z.S..1..*......4.....!..B8..B..... ....v...0.v..?.B..k.>{....o...]....w....n9~.8\.|.&''......i.i...* ..s..!X.|...G...8q..1.gO..~..T.....ir....X.u....D4...4m..C.........}B..1......E...g.p...0....RU5.`....>......=.....U.....t,.{...!..b566~...o.uK.~.{.=<00.....RJ.d......`0..C.=........6m....:KQ..'.=V..R+...7n..f.....BO...R.C..WRJ..9`...m..).e...`.+.9/..A.x<.{...v...hhh.iZ..t....x<c...Q'.NLL.G.}t..i.\.-.+........V...7..).!A....Ju..b...].BBUU...kM..===..c..E.22,..?....U.'N...../+.bU.....yss...u......V.R......|..=..u........l........{..z...uh.vi..R`....t].|.5E....Hd.!.......'..pG.cw[.u.{.8.4Bh.!.1..../*..a..0.t.R:.&...|.s..p.....Cn..E.F)=..K(.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:PNG image data, 342 x 126, 8-bit colormap, non-interlaced
    Category:dropped
    Size (bytes):14088
    Entropy (8bit):7.963943019735658
    Encrypted:false
    SSDEEP:
    MD5:36F058CE1316F0D0CD04F0CC82F1EE1B
    SHA1:4C2D0AE7B68D1AA202261AE2CBE8551250E2C575
    SHA-256:2E211FE716CCB01D2B1D581AD6F6A41159A08F2C0E9DFA812BFE7EDD3B31D574
    SHA-512:DDF11240558FF990877F7BA7CC69933C006FCC1C337DFF3B5A229C4FBCFEB1E69A56E704914CE921366FADB61F25865391742712424FDE2632D0346E4C4F7D7E
    Malicious:false
    Reputation:unknown
    Preview:.PNG........IHDR...V...~.....H..^....PLTE....ZB.|S.........E.TE.E.TF........(L{.......E.+Fm.......................WL..................UI....Jh......\O...~.L<.OE.........[.k..o.\..f.V....eY.{...u.j......~.......\.bR^......{.`.T.b..r._T.ob.L;.V..w.y..N..z.}j..r._........WK.......{n.n..F...n.sb.lY.h..........b...........{...o.d.a.N3.....n....l....O..U..j..y....S.w.....y.?&..m..R..........s.n..{..^..V...y.-....D..........D...:f..S....Y..b..[{."h..S.....g.T..dx..x.;^.qR....Fs.!L.r...'....oo..0......i.0K......fF...o..0%.}..D....Wi..D.2,.CZ.s?p.2.Ud.c....4..@.b-.:~..#. .......K..y.dy..<:.%9...:Y.J'.$Eo.....>]..}Y.>.6<X>6.bW.d4.......cxTA......dI.OA..S-K.....tRNS... .vvv....p..l.....IDATx...;..0..a...[w..=;.`!>..X..FW...?..)tY..2......*d.*..&N.K.N.v....T..n.]U$.V+L.X.Fq..kV..fq'.X!...!}~..|...P0.........Y+feVf=....0...n.R."E(..H
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JPEG image data, JFIF standard 1.01, resolution (DPI), density 300x300, segment length 16, Exif Standard: [TIFF image data, big-endian, direntries=7, orientation=upper-left, xresolution=98, yresolution=106, resolutionunit=2, software=Adobe Photoshop CC 2017 (Macintosh), datetime=2019:01:23 13:24:18], baseline, precision 8, 401x402, components 3
    Category:dropped
    Size (bytes):142588
    Entropy (8bit):7.8694176297503535
    Encrypted:false
    SSDEEP:
    MD5:D5676DC398A2787645354D0644306C8B
    SHA1:DC03CB57139DCDF6DE430FAA03FFE4E633313322
    SHA-256:204F132E9E3C7DEA53ABDD6CF1CAEA071C78BC5291E438887828702884306148
    SHA-512:B5DE3E2DDEDDB1E1BA7FDAE1A94D00863A783448F348A7F32154022E5AE175D85D3C9578AE15854A23B11A1913FA95A536DF2440E8AED47C0B5B6B4802D52500
    Malicious:false
    Reputation:unknown
    Preview:......JFIF.....,.,......Exif..MM.*.............................b...........j.(...........1.....$...r.2...........i...............-....'..-....'.Adobe Photoshop CC 2017 (Macintosh).2019:01:23 13:24:18.....................................................................$...........,.(.....................4...................H.......H.........C................................... $.' ",#..(7),01444.'9=82<.342...C...........2!.!22222222222222222222222222222222222222222222222222......w.w..!............................................................}........!1A..Qa."q.2....#B...R..$3br........%&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz..............................................................................................................................w.......!1..AQ.aq."2...B.....#3R..br...$4.%.....&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz....................................................................................?..4..}Z...5uB. c v..?..........My4.....f..O.I.?....
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1420
    Entropy (8bit):5.40871113874392
    Encrypted:false
    SSDEEP:
    MD5:44D7FB424B7E8029D6C38A2950FABB04
    SHA1:D0A7BAF64E95A2FADAB3D07940B4B32507C3E4BD
    SHA-256:6DC158F409BF0234E5F6AB88EFF99A859CD7555D33C73AEE241611A9BB92AB5B
    SHA-512:CDF0064DD1BB361A8EBED66CBDA3EA8669332D0CA8AD30C46642EAC90EB0AEE53B9E885348A890F1272646EA244E6F40A8F8A75975415E1741AF3878387A2E76
    Malicious:false
    Reputation:unknown
    Preview:{"logTime": "1006/090722", "correlationVector":"rmkayOhJfEabcRCB2/Bp31","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/090722", "correlationVector":"jqHPV/yTVN5KYgOfDN/5Rr","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/090722", "correlationVector":"25C1A0EE3BD244A1BB83CF2641B12F1A","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1006/093120", "correlationVector":"a/GaihlkzouX6tpAQ3civy","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/093121", "correlationVector":"2831F27CA5B645488E2DF2452C16A59E","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1006/093243", "correlationVector":"7DhT8FK3VbHYWFgub0ZtsN","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/093243", "correlationVector":"83EFC8979E1A419495133BAFAFA5A23F","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1006/093745", "correlationVector":"Bxyvid0fodNJ7Wehc/BC7P","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1006/093746", "correlationVector":"B1516CBB
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1753
    Entropy (8bit):5.8889033066924155
    Encrypted:false
    SSDEEP:
    MD5:738E757B92939B24CDBBD0EFC2601315
    SHA1:77058CBAFA625AAFBEA867052136C11AD3332143
    SHA-256:D23B2BA94BA22BBB681E6362AE5870ACD8A3280FA9E7241B86A9E12982968947
    SHA-512:DCA3E12DD5A9F1802DB6D11B009FCE2B787E79B9F730094367C9F26D1D87AF1EA072FF5B10888648FB1231DD83475CF45594BB0C9915B655EE363A3127A5FFC2
    Malicious:false
    Reputation:unknown
    Preview:[.. {.. "description": "treehash per file",.. "signed_content": {.. "payload": "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",.. "signatures": [.. {.. "header": {.. "kid": "publisher".. },.. "protected": "eyJhbGciOiJSUzI1NiJ9",.. "signature": "UglEEilkOml5P1W0X6wc-_dB87PQB73uMir11923av57zPKujb4IUe_lbGpn7cRZsy6x-8i9eEKxAW7L2TSmYqrcp4XtiON6ppcf27FWACXOUJDax9wlMr-EOtyZhykCnB9vR
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:Unicode text, UTF-8 text, with very long lines (8031), with no line terminators
    Category:dropped
    Size (bytes):9815
    Entropy (8bit):6.1716321262973315
    Encrypted:false
    SSDEEP:
    MD5:3D20584F7F6C8EAC79E17CCA4207FB79
    SHA1:3C16DCC27AE52431C8CDD92FBAAB0341524D3092
    SHA-256:0D40A5153CB66B5BDE64906CA3AE750494098F68AD0B4D091256939EEA243643
    SHA-512:315D1B4CC2E70C72D7EB7D51E0F304F6E64AC13AE301FD2E46D585243A6C936B2AD35A0964745D291AE9B317C316A29760B9B9782C88CC6A68599DB531F87D59
    Malicious:false
    Reputation:unknown
    Preview:(()=>{"use strict";var e={1:(e,o)=>{Object.defineProperty(o,"__esModule",{value:!0}),o.newCwsPromotionalButtonCta=o.chromeToEdgeCwsButtonCtaMapping=void 0,o.chromeToEdgeCwsButtonCtaMapping={"...... ... Chrome":"...... ....","........ .. Chrome":".....",........:"..........",".......... .. Chrome":"..........","Chrome . .....":"...","Chrome .... ....":"....","Afegeix a Chrome":"Obt.n","Suprimeix de Chrome":"Suprimeix","P.idat do Chromu":"Z.skat","Odstranit z Chromu":"Odebrat","F.j til Chrome":"F.","Fjern fra Chrome":"Fjerne",Hinzuf.gen:"Abrufen","Aus Chrome entfernen":"Entfernen","Add to Chrome":"Get","Remove from Chrome":"Remove","A.adir a Chrome":"Obtener",Desinstalar:"Quitar","Agregar a Chrome":"Obtener","Eliminar de Chrome":"Quitar","Lisa Chrome'i":"Hangi","Chrome'ist eemaldamine":"Eemalda",.......H:"........","......... ... .. Chr
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:Unicode text, UTF-8 text, with very long lines (8604), with no line terminators
    Category:dropped
    Size (bytes):10388
    Entropy (8bit):6.174387413738973
    Encrypted:false
    SSDEEP:
    MD5:3DE1E7D989C232FC1B58F4E32DE15D64
    SHA1:42B152EA7E7F31A964914F344543B8BF14B5F558
    SHA-256:D4AA4602A1590A4B8A1BCE8B8D670264C9FB532ADC97A72BC10C43343650385A
    SHA-512:177E5BDF3A1149B0229B6297BAF7B122602F7BD753F96AA41CCF2D15B2BCF6AF368A39BB20336CCCE121645EC097F6BEDB94666C74ACB6174EB728FBFC43BC2A
    Malicious:false
    Reputation:unknown
    Preview:(()=>{"use strict";var e={1:(e,o)=>{Object.defineProperty(o,"__esModule",{value:!0}),o.newCwsPromotionalButtonCta=o.chromeToEdgeCwsButtonCtaMapping=void 0,o.chromeToEdgeCwsButtonCtaMapping={"...... ... Chrome":"...... ....","........ .. Chrome":".....",........:"..........",".......... .. Chrome":"..........","Chrome . .....":"...","Chrome .... ....":"....","Afegeix a Chrome":"Obt.n","Suprimeix de Chrome":"Suprimeix","P.idat do Chromu":"Z.skat","Odstranit z Chromu":"Odebrat","F.j til Chrome":"F.","Fjern fra Chrome":"Fjerne",Hinzuf.gen:"Abrufen","Aus Chrome entfernen":"Entfernen","Add to Chrome":"Get","Remove from Chrome":"Remove","A.adir a Chrome":"Obtener",Desinstalar:"Quitar","Agregar a Chrome":"Obtener","Eliminar de Chrome":"Quitar","Lisa Chrome'i":"Hangi","Chrome'ist eemaldamine":"Eemalda",.......H:"........","......... ... .. Chr
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):962
    Entropy (8bit):5.698567446030411
    Encrypted:false
    SSDEEP:
    MD5:E805E9E69FD6ECDCA65136957B1FB3BE
    SHA1:2356F60884130C86A45D4B232A26062C7830E622
    SHA-256:5694C91F7D165C6F25DAF0825C18B373B0A81EA122C89DA60438CD487455FD6A
    SHA-512:049662EF470D2B9E030A06006894041AE6F787449E4AB1FBF4959ADCB88C6BB87A957490212697815BB3627763C01B7B243CF4E3C4620173A95795884D998A75
    Malicious:false
    Reputation:unknown
    Preview:{.. "content_scripts": [ {.. "js": [ "content.js" ],.. "matches": [ "https://chrome.google.com/webstore/*" ].. }, {.. "js": [ "content_new.js" ],.. "matches": [ "https://chromewebstore.google.com/*" ].. } ],.. "description": "Edge relevant text changes on select websites to improve user experience and precisely surfaces the action they want to take.",.. "key": "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu06p2Mjoy6yJDUUjCe8Hnqvtmjll73XqcbylxFZZWe+MCEAEK+1D0Nxrp0+IuWJL02CU3jbuR5KrJYoezA36M1oSGY5lIF/9NhXWEx5GrosxcBjxqEsdWv/eDoOOEbIvIO0ziMv7T1SUnmAA07wwq8DXWYuwlkZU/PA0Mxx0aNZ5+QyMfYqRmMpwxkwPG8gyU7kmacxgCY1v7PmmZo1vSIEOBYrxl064w5Q6s/dpalSJM9qeRnvRMLsszGY/J2bjQ1F0O2JfIlBjCOUg/89+U8ZJ1mObOFrKO4um8QnenXtH0WGmsvb5qBNrvbWNPuFgr2+w5JYlpSQ+O8zUCb8QZwIDAQAB",.. "manifest_version": 3,.. "name": "Edge relevant text changes",.. "update_url": "https://edge.microsoft.com/extensionwebstorebase/v1/crx",.. "version": "1.2.1"..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:Google Chrome extension, version 3
    Category:dropped
    Size (bytes):11185
    Entropy (8bit):7.951995436832936
    Encrypted:false
    SSDEEP:
    MD5:78E47DDA17341BED7BE45DCCFD89AC87
    SHA1:1AFDE30E46997452D11E4A2ADBBF35CCE7A1404F
    SHA-256:67D161098BE68CD24FEBC0C7B48F515F199DDA72F20AE3BBB97FCF2542BB0550
    SHA-512:9574A66D3756540479DC955C4057144283E09CAE11CE11EBCE801053BB48E536E67DC823B91895A9E3EE8D3CB27C065D5E9030C39A26CBF3F201348385B418A5
    Malicious:false
    Reputation:unknown
    Preview:Cr24..............0.."0...*.H.............0.........N.......E#......9e.u.q...VYY..@.+.C..k.O..bK.`..6.G..%.....3Z...e _.6....F..1p..K.Z......./ .3...OT..`..0...Y...FT..43.th.y...}....p.L...2S.&i.`..o...f.oH.....N..:..ijT.3.F{.0.,.f?'f.CQt;b_"Pc.. ..~S.I.c.8Z.;.....{G.a......k...>.`.o..%.$>;.....g.............jg?.R..@.:..........&..{...x@.Py..;kT....%F".S..w...N....9...A..@X.t!i.@..1;......1E..X.....[.~$....J......;=T.;)k..Y...$......S......M.P..P..>..=..u.....2p...w.9..1qw.a\A..Vj .C.....A..Cf1.r6.A...L. _m...[..l.Wr_../.. .B..9!.!+..ZG.K.......0.."0...*.H.............0.........^SUd%Q.L].......Cl2o...\[.....'*...;R=....N.C5....d. .....J.C>u.kr..Y..syJC.XS.q..E.n?....(G.5..)2.G..!.M.SS.{..U....!.EE..M[.#qs.A.1...g)nQ.c..G....Bd..7... .O.BI..KXQ..4.d.K.0......g.....-p....Z.E{...M&.~n.TE7..{0....5.#.C+3.y)pd9.e.........@..3.9..B.....I....2nX........2.?.~..S....]G.N.....Lr.O.Ve....9..D1.G..W)...P.?=.#..7.R.lz..a.wX.e..h.h.~....v..RP.@X....d.G
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:Google Chrome extension, version 3
    Category:dropped
    Size (bytes):135751
    Entropy (8bit):7.804610863392373
    Encrypted:false
    SSDEEP:
    MD5:83EF25FBEE6866A64F09323BFE1536E0
    SHA1:24E8BD033CD15E3CF4F4FF4C8123E1868544AC65
    SHA-256:F421D74829F2923FD9E5A06153E4E42DB011824C33475E564B17091598996E6F
    SHA-512:C699D1C9649977731EEA0CB4740C4BEAACEEC82AECC43F9F2B1E5625C487C0BC45FA08A1152A35EFBDB3DB73B8AF3625206315D1F9645A24E1969316F9F5B38C
    Malicious:false
    Reputation:unknown
    Preview:Cr24..............0.."0...*.H.............0.........^...1"...w.g..t..2J.G1.)X4..=&.?[j,Lz..j.u.e[I.q*Ba/X...P.h..L.....2%3_o.......H.)'.=.e...?.......j..3UH.|.X.M..u..s[.*..?$....F%....I....)..,-./.e5).f..O.q.^........9..(.._.ph2..^.YBPXf_8....h[.v...S.*1`.#..5.SF.:f-.#.65.i..b.]9...y2.'....k[..........1...c@e.J.~..A...(9=...I.N.e..T......6.7..*.Kk?....]<.S(.....9}........$..6...:...9..b|B..8..I..7.8K\.KIn7.:.!^;.H........8.....,.\....b..uC...e?..E.U.........P..G..u!+......C.)Kw...............4..Qye..=$..Q.......?Oi.,O.RW6.k.+.&. .wu..tf....[0Y0...*.H.=....*.H.=....B..............r...2..+Y.I...k..bR.j5Sl..8.......H"i.-l..`.Q.{...G0E. ..r.....p..~..3.1.vD.i.]...~...!...<..4KV.~y.).`........>E.NT.%1".%............o.....J._.H.B..w..C......UU.&C..fB&..|..i..J......I.??^.Z.....Y....0^......?...o.....O.~......W.....~.......R..z.Ma...u]..*..-.n....2s<....E..6.<..W.H.qh....:j.y...N.D.]Nj....../..a...{....g.....f).~._....1q..L..#.G...Q.w...J."
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
    Category:dropped
    Size (bytes):4982
    Entropy (8bit):7.929761711048726
    Encrypted:false
    SSDEEP:
    MD5:913064ADAAA4C4FA2A9D011B66B33183
    SHA1:99EA751AC2597A080706C690612AEEEE43161FC1
    SHA-256:AFB4CE8882EF7AE80976EBA7D87F6E07FCDDC8E9E84747E8D747D1E996DEA8EB
    SHA-512:162BF69B1AD5122C6154C111816E4B87A8222E6994A72743ED5382D571D293E1467A2ED2FC6CC27789B644943CF617A56DA530B6A6142680C5B2497579A632B5
    Malicious:false
    Reputation:unknown
    Preview:.PNG........IHDR..............>a....=IDATx..]}...U..;...O.Q..QH.I(....v..E....GUb*..R[.4@%..hK..B..(.B..". ....&)U#.%...jZ...JC.8.....{.cfvgf.3;.....}ow.....{...P.B...*T.P.B...*Tx...=.Q..wv.w.....|.e.1.$.P.?..l_\.n.}...~.g.....Q...A.f....m.....{,...C2 %..X.......FE.1.N..f...Q..D.K87.....:g..Q.{............3@$.8.....{.....q....G.. .....5..y......)XK..F...D.......... ."8...J#.eM.i....H.E.....a.RIP.`......)..T.....! .[p`X.`..L.a....e. .T..2.....H..p$..02...j....\..........s{...Ymm~.a........f.$./.[.{..C.2:.0..6..]....`....NW.....0..o.T..$;k.2......_...k..{,.+........{..6...L..... .dw...l$..}...K...EV....0......P...e....k....+Go....qw.9.1...X2\..qfw0v.....N...{...l.."....f.A..I..+#.v....'..~E.N-k.........{...l.$..ga..1...$......x$X=}.N..S..B$p..`..`.ZG:c..RA.(.0......Gg.A.I..>...3u.u........_..KO.m.........C...,..c.......0...@_..m...-..7.......4LZ......j@.......\..'....u. QJ.:G..I`.w'B0..w.H..'b.0- ......|..}./.....e..,.K.1........W.u.v. ...\.o
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):908
    Entropy (8bit):4.512512697156616
    Encrypted:false
    SSDEEP:
    MD5:12403EBCCE3AE8287A9E823C0256D205
    SHA1:C82D43C501FAE24BFE05DB8B8F95ED1C9AC54037
    SHA-256:B40BDE5B612CFFF936370B32FB0C58CC205FC89937729504C6C0B527B60E2CBA
    SHA-512:153401ECDB13086D2F65F9B9F20ACB3CEFE5E2AEFF1C31BA021BE35BF08AB0634812C33D1D34DA270E5693A8048FC5E2085E30974F6A703F75EA1622A0CA0FFD
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "SKEP NUWE".. },.. "explanationofflinedisabled": {.. "message": "Jy is vanlyn. As jy Google Dokumente sonder 'n internetverbinding wil gebruik, moet jy die volgende keer as jy aan die internet gekoppel is na instellings op die Google Dokumente-tuisblad gaan en vanlynsinkronisering aanskakel.".. },.. "explanationofflineenabled": {.. "message": "Jy is vanlyn, maar jy kan nog steeds beskikbare l.ers redigeer of nuwes skep.".. },.. "extdesc": {.. "message": "Skep, wysig en bekyk jou dokumente, sigblaaie en aanbiedings . alles sonder toegang tot die internet.".. },.. "extname": {.. "message": "Google Vanlyn Dokumente".. },.. "learnmore": {.. "message": "Kom meer te wete".. },.. "popuphelptext": {.. "message": "Skryf, redigeer en werk saam, waar jy ook al is, met of sonder 'n internetverbinding.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1285
    Entropy (8bit):4.702209356847184
    Encrypted:false
    SSDEEP:
    MD5:9721EBCE89EC51EB2BAEB4159E2E4D8C
    SHA1:58979859B28513608626B563138097DC19236F1F
    SHA-256:3D0361A85ADFCD35D0DE74135723A75B646965E775188F7DCDD35E3E42DB788E
    SHA-512:FA3689E8663565D3C1C923C81A620B006EA69C99FB1EB15D07F8F45192ED9175A6A92315FA424159C1163382A3707B25B5FC23E590300C62CBE2DACE79D84871
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "... ...".. },.. "explanationofflinedisabled": {.. "message": "..... .. .... Google ..... ........ ..... ..... .Google .... ... .. .. .. ..... .... ....... .. ....... ... .. .. ..... .. ..... ....".. },.. "explanationofflineenabled": {.. "message": "..... .. .... ... .. .... .... ..... .... ... ..... .... .....".. },.. "extdesc": {.. "message": "...... ..... .... ... .. ..... ...... ..... .... .. ..... . .... .. ...... .....".. },.. "extname": {.. "message": "..... .. Goog
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1244
    Entropy (8bit):4.5533961615623735
    Encrypted:false
    SSDEEP:
    MD5:3EC93EA8F8422FDA079F8E5B3F386A73
    SHA1:24640131CCFB21D9BC3373C0661DA02D50350C15
    SHA-256:ABD0919121956AB535E6A235DE67764F46CFC944071FCF2302148F5FB0E8C65A
    SHA-512:F40E879F85BC9B8120A9B7357ED44C22C075BF065F45BEA42BD5316AF929CBD035D5D6C35734E454AEF5B79D378E51A77A71FA23F9EBD0B3754159718FCEB95C
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "..... ....".. },.. "explanationofflinedisabled": {.. "message": "... ... ...... ........ ....... Google ... ..... .......... ..... ... ......... .. ...... ........ ........ Google ..... ........ ... ..... .. ..... ....... .... .... .... ..........".. },.. "explanationofflineenabled": {.. "message": "... ... ...... .... .. .... ....... ..... ....... ....... .. ..... ..... ......".. },.. "extdesc": {.. "message": "..... ......... ...... ........ ....... ......... ........ ....... .. ... ... ..... .........".. },.. "extname": {.. "message": "....... Google ... ......".. },.. "learnmore": {.. "messa
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):977
    Entropy (8bit):4.867640976960053
    Encrypted:false
    SSDEEP:
    MD5:9A798FD298008074E59ECC253E2F2933
    SHA1:1E93DA985E880F3D3350FC94F5CCC498EFC8C813
    SHA-256:628145F4281FA825D75F1E332998904466ABD050E8B0DC8BB9B6A20488D78A66
    SHA-512:9094480379F5AB711B3C32C55FD162290CB0031644EA09A145E2EF315DA12F2E55369D824AF218C3A7C37DD9A276AEEC127D8B3627D3AB45A14B0191ED2BBE70
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "YEN.S.N. YARADIN".. },.. "explanationofflinedisabled": {.. "message": "Oflayns.n.z. Google S.n.di internet ba.lant.s. olmadan istifad. etm.k ist.yirsinizs., Google S.n.din .sas s.hif.sind. ayarlara gedin v. n.vb.ti d.f. internet. qo.ulanda oflayn sinxronizasiyan. aktiv edin.".. },.. "explanationofflineenabled": {.. "message": "Oflayns.n.z, amma m.vcud fayllar. redakt. ed. v. yenil.rini yarada bil.rsiniz.".. },.. "extdesc": {.. "message": "S.n.d, c.dv.l v. t.qdimatlar.n ham.s.n. internet olmadan redakt. edin, yarad.n v. bax.n.".. },.. "extname": {.. "message": "Google S.n.d Oflayn".. },.. "learnmore": {.. "message": ".trafl. M.lumat".. },.. "popuphelptext": {.. "message": "Harda olma..n.zdan v. internet. qo.ulu olub-olmad...n.zdan as.l. olmayaraq, yaz.n, redakt. edin v. .m.kda.l.q edin.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):3107
    Entropy (8bit):3.535189746470889
    Encrypted:false
    SSDEEP:
    MD5:68884DFDA320B85F9FC5244C2DD00568
    SHA1:FD9C01E03320560CBBB91DC3D1917C96D792A549
    SHA-256:DDF16859A15F3EB3334D6241975CA3988AC3EAFC3D96452AC3A4AFD3644C8550
    SHA-512:7FF0FBD555B1F9A9A4E36B745CBFCAD47B33024664F0D99E8C080BE541420D1955D35D04B5E973C07725573E592CD0DD84FDBB867C63482BAFF6929ADA27CCDE
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u0421\u0422\u0412\u0410\u0420\u042b\u0426\u042c \u041d\u041e\u0412\u042b"},"explanationofflinedisabled":{"message":"\u0412\u044b \u045e \u043f\u0430\u0437\u0430\u0441\u0435\u0442\u043a\u0430\u0432\u044b\u043c \u0440\u044d\u0436\u044b\u043c\u0435. \u041a\u0430\u0431 \u043a\u0430\u0440\u044b\u0441\u0442\u0430\u0446\u0446\u0430 \u0414\u0430\u043a\u0443\u043c\u0435\u043d\u0442\u0430\u043c\u0456 Google \u0431\u0435\u0437 \u043f\u0430\u0434\u043a\u043b\u044e\u0447\u044d\u043d\u043d\u044f \u0434\u0430 \u0456\u043d\u0442\u044d\u0440\u043d\u044d\u0442\u0443, \u043f\u0435\u0440\u0430\u0439\u0434\u0437\u0456\u0446\u0435 \u0434\u0430 \u043d\u0430\u043b\u0430\u0434 \u043d\u0430 \u0433\u0430\u043b\u043e\u045e\u043d\u0430\u0439 \u0441\u0442\u0430\u0440\u043e\u043d\u0446\u044b \u0414\u0430\u043a\u0443\u043c\u0435\u043d\u0442\u0430\u045e Google \u0456 \u045e\u043a\u043b\u044e\u0447\u044b\u0446\u0435 \u0441\u0456\u043d\u0445\u0440\u0430\u043d\u0456\u0437\u0430\u0446\u044b\u044e
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1389
    Entropy (8bit):4.561317517930672
    Encrypted:false
    SSDEEP:
    MD5:2E6423F38E148AC5A5A041B1D5989CC0
    SHA1:88966FFE39510C06CD9F710DFAC8545672FFDCEB
    SHA-256:AC4A8B5B7C0B0DD1C07910F30DCFBDF1BCB701CFCFD182B6153FD3911D566C0E
    SHA-512:891FCDC6F07337970518322C69C6026896DD3588F41F1E6C8A1D91204412CAE01808F87F9F2DEA1754458D70F51C3CEF5F12A9E3FC011165A42B0844C75EC683
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".........".. },.. "explanationofflinedisabled": {.. "message": "...... .... .. .. .......... Google ......... ... ........ ......, ........ ........... . ......... ........ .. Google ......... . ........ ...... .............. ......... ..., ...... ..... ...... . .........".. },.. "explanationofflineenabled": {.. "message": "...... ..., .. ... ...... .. ........... ......... ....... ... .. ......... .....".. },.. "extdesc": {.. "message": "............, .......... . ............ ...... ........., .......... ....... . ........... . ...... .... ... ...... .. .........".. },..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1763
    Entropy (8bit):4.25392954144533
    Encrypted:false
    SSDEEP:
    MD5:651375C6AF22E2BCD228347A45E3C2C9
    SHA1:109AC3A912326171D77869854D7300385F6E628C
    SHA-256:1DBF38E425C5C7FC39E8077A837DF0443692463BA1FBE94E288AB5A93242C46E
    SHA-512:958AA7CF645FAB991F2ECA0937BA734861B373FB1C8BCC001599BE57C65E0917F7833A971D93A7A6423C5F54A4839D3A4D5F100C26EFA0D2A068516953989F9D
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".... .... ....".. },.. "explanationofflinedisabled": {.. "message": ".... ....... ....... .... ......... ..... ..... Google ........ ....... ...., Google .......... ........ ....... ... ... .... ... .... ... ........... .... ....... .... ... ...... ..... .... .....".. },.. "explanationofflineenabled": {.. "message": ".... ....... ......, ...... .... .... ...... .......... ........ .... .. .... .... .... .... .......".. },.. "extdesc":
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):930
    Entropy (8bit):4.569672473374877
    Encrypted:false
    SSDEEP:
    MD5:D177261FFE5F8AB4B3796D26835F8331
    SHA1:4BE708E2FFE0F018AC183003B74353AD646C1657
    SHA-256:D6E65238187A430FF29D4C10CF1C46B3F0FA4B91A5900A17C5DFD16E67FFC9BD
    SHA-512:E7D730304AED78C0F4A78DADBF835A22B3D8114FB41D67B2B26F4FE938B572763D3E127B7C1C81EBE7D538DA976A7A1E7ADC40F918F88AFADEA2201AE8AB47D0
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREA'N UN DE NOU".. },.. "explanationofflinedisabled": {.. "message": "No tens connexi.. Per utilitzar Documents de Google sense connexi. a Internet, ves a la configuraci. de la p.gina d'inici d'aquest servei i activa l'opci. per sincronitzar-se sense connexi. la propera vegada que estiguis connectat a la xarxa.".. },.. "explanationofflineenabled": {.. "message": "Tot i que no tens connexi., pots editar o crear fitxers.".. },.. "extdesc": {.. "message": "Edita, crea i consulta documents, fulls de c.lcul i presentacions, tot sense acc.s a Internet.".. },.. "extname": {.. "message": "Documents de Google sense connexi.".. },.. "learnmore": {.. "message": "M.s informaci.".. },.. "popuphelptext": {.. "message": "Escriu text, edita fitxers i col.labora-hi siguis on siguis, amb o sense connexi. a Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):913
    Entropy (8bit):4.947221919047
    Encrypted:false
    SSDEEP:
    MD5:CCB00C63E4814F7C46B06E4A142F2DE9
    SHA1:860936B2A500CE09498B07A457E0CCA6B69C5C23
    SHA-256:21AE66CE537095408D21670585AD12599B0F575FF2CB3EE34E3A48F8CC71CFAB
    SHA-512:35839DAC6C985A6CA11C1BFF5B8B5E59DB501FCB91298E2C41CB0816B6101BF322445B249EAEA0CEF38F76D73A4E198F2B6E25EEA8D8A94EA6007D386D4F1055
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "VYTVO.IT".. },.. "explanationofflinedisabled": {.. "message": "Jste offline. Pokud chcete Dokumenty Google pou..vat bez p.ipojen. k.internetu, a. budete p...t. online, p.ejd.te do nastaven. na domovsk. str.nce Dokument. Google a.zapn.te offline synchronizaci.".. },.. "explanationofflineenabled": {.. "message": "Jste offline, ale st.le m..ete upravovat dostupn. soubory nebo vytv..et nov..".. },.. "extdesc": {.. "message": "Upravujte, vytv..ejte a.zobrazujte sv. dokumenty, tabulky a.prezentace . v.e bez p..stupu k.internetu.".. },.. "extname": {.. "message": "Dokumenty Google offline".. },.. "learnmore": {.. "message": "Dal.. informace".. },.. "popuphelptext": {.. "message": "Pi.te, upravujte a.spolupracujte kdekoli, s.p.ipojen.m k.internetu i.bez n.j.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):806
    Entropy (8bit):4.815663786215102
    Encrypted:false
    SSDEEP:
    MD5:A86407C6F20818972B80B9384ACFBBED
    SHA1:D1531CD0701371E95D2A6BB5EDCB79B949D65E7C
    SHA-256:A482663292A913B02A9CDE4635C7C92270BF3C8726FD274475DC2C490019A7C9
    SHA-512:D9FBF675514A890E9656F83572208830C6D977E34D5744C298A012515BC7EB5A17726ADD0D9078501393BABD65387C4F4D3AC0CC0F7C60C72E09F336DCA88DE7
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"CREU NEWYDD"},"explanationofflinedisabled":{"message":"Rydych chi all-lein. I ddefnyddio Dogfennau Google heb gysylltiad \u00e2'r rhyngrwyd, ewch i'r gosodiadau ar dudalen hafan Dogfennau Google a throi 'offine sync' ymlaen y tro nesaf y byddwch wedi'ch cysylltu \u00e2'r rhyngrwyd."},"explanationofflineenabled":{"message":"Rydych chi all-lein, ond gallwch barhau i olygu'r ffeiliau sydd ar gael neu greu rhai newydd."},"extdesc":{"message":"Gallwch olygu, creu a gweld eich dogfennau, taenlenni a chyflwyniadau \u2013 i gyd heb fynediad i'r rhyngrwyd."},"extname":{"message":"Dogfennau Google All-lein"},"learnmore":{"message":"DYSGU MWY"},"popuphelptext":{"message":"Ysgrifennwch, golygwch a chydweithiwch lle bynnag yr ydych, gyda chysylltiad \u00e2'r rhyngrwyd neu hebddo."}}.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):883
    Entropy (8bit):4.5096240460083905
    Encrypted:false
    SSDEEP:
    MD5:B922F7FD0E8CCAC31B411FC26542C5BA
    SHA1:2D25E153983E311E44A3A348B7D97AF9AAD21A30
    SHA-256:48847D57C75AF51A44CBF8F7EF1A4496C2007E58ED56D340724FDA1604FF9195
    SHA-512:AD0954DEEB17AF04858DD5EC3D3B3DA12DFF7A666AF4061DEB6FD492992D95DB3BAF751AB6A59BEC7AB22117103A93496E07632C2FC724623BB3ACF2CA6093F3
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "OPRET NYT".. },.. "explanationofflinedisabled": {.. "message": "Du er offline. Hvis du vil bruge Google Docs uden en internetforbindelse, kan du g. til indstillinger p. startsiden for Google Docs og aktivere offlinesynkronisering, n.ste gang du har internetforbindelse.".. },.. "explanationofflineenabled": {.. "message": "Du er offline, men du kan stadig redigere tilg.ngelige filer eller oprette nye.".. },.. "extdesc": {.. "message": "Rediger, opret og se dine dokumenter, regneark og pr.sentationer helt uden internetadgang.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "F. flere oplysninger".. },.. "popuphelptext": {.. "message": "Skriv, rediger og samarbejd, uanset hvor du er, og uanset om du har internetforbindelse.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1031
    Entropy (8bit):4.621865814402898
    Encrypted:false
    SSDEEP:
    MD5:D116453277CC860D196887CEC6432FFE
    SHA1:0AE00288FDE696795CC62FD36EABC507AB6F4EA4
    SHA-256:36AC525FA6E28F18572D71D75293970E0E1EAD68F358C20DA4FDC643EEA2C1C5
    SHA-512:C788C3202A27EC220E3232AE25E3C855F3FDB8F124848F46A3D89510C564641A2DFEA86D5014CEA20D3D2D3C1405C96DBEB7CCAD910D65C55A32FDCA8A33FDD4
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "NEU ERSTELLEN".. },.. "explanationofflinedisabled": {.. "message": "Sie sind offline. Um Google Docs ohne Internetverbindung zu verwenden, gehen Sie auf der Google Docs-Startseite auf \"Einstellungen\" und schalten die Offlinesynchronisierung ein, wenn Sie das n.chste Mal mit dem Internet verbunden sind.".. },.. "explanationofflineenabled": {.. "message": "Sie sind offline, aber k.nnen weiterhin verf.gbare Dateien bearbeiten oder neue Dateien erstellen.".. },.. "extdesc": {.. "message": "Mit der Erweiterung k.nnen Sie Dokumente, Tabellen und Pr.sentationen bearbeiten, erstellen und aufrufen.. ganz ohne Internetverbindung.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Weitere Informationen".. },.. "popuphelptext": {.. "message": "Mit oder ohne Internetverbindung: Sie k.nnen von .berall Dokumente erstellen, .ndern und zusammen mit anderen
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1613
    Entropy (8bit):4.618182455684241
    Encrypted:false
    SSDEEP:
    MD5:9ABA4337C670C6349BA38FDDC27C2106
    SHA1:1FC33BE9AB4AD99216629BC89FBB30E7AA42B812
    SHA-256:37CA6AB271D6E7C9B00B846FDB969811C9CE7864A85B5714027050795EA24F00
    SHA-512:8564F93AD8485C06034A89421CE74A4E719BBAC865E33A7ED0B87BAA80B7F7E54B240266F2EDB595DF4E6816144428DB8BE18A4252CBDCC1E37B9ECC9F9D7897
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".......... ....".. },.. "explanationofflinedisabled": {.. "message": "..... ..... ......... ... .. ............... .. ....... Google ..... ....... ... ........., ......... .... ......... .... ...... ...... ... ........ Google ... ............. ... ........... ..... ........ ... ....... .... ... .. ..... ............ ... ..........".. },.. "explanationofflineenabled": {.. "message": "..... ..... ........ .... ........ .. .............. .. ......... ...... . .. ............. ... .......".. },.. "extdesc": {.. "message": ".............., ............ ... ..... .. ......., .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):851
    Entropy (8bit):4.4858053753176526
    Encrypted:false
    SSDEEP:
    MD5:07FFBE5F24CA348723FF8C6C488ABFB8
    SHA1:6DC2851E39B2EE38F88CF5C35A90171DBEA5B690
    SHA-256:6895648577286002F1DC9C3366F558484EB7020D52BBF64A296406E61D09599C
    SHA-512:7ED2C8DB851A84F614D5DAF1D5FE633BD70301FD7FF8A6723430F05F642CEB3B1AD0A40DE65B224661C782FFCEC69D996EBE3E5BB6B2F478181E9A07D8CD41F6
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREATE NEW".. },.. "explanationofflinedisabled": {.. "message": "You're offline. To use Google Docs without an internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the internet.".. },.. "explanationofflineenabled": {.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extdesc": {.. "message": "Edit, create, and view your documents, spreadsheets, and presentations . all without internet access.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Learn More".. },.. "popuphelptext": {.. "message": "Write, edit, and collaborate wherever you are, with or without an internet connection.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):848
    Entropy (8bit):4.494568170878587
    Encrypted:false
    SSDEEP:
    MD5:3734D498FB377CF5E4E2508B8131C0FA
    SHA1:AA23E39BFE526B5E3379DE04E00EACBA89C55ADE
    SHA-256:AB5CDA04013DCE0195E80AF714FBF3A67675283768FFD062CF3CF16EDB49F5D4
    SHA-512:56D9C792954214B0DE56558983F7EB7805AC330AF00E944E734340BE41C68E5DD03EDDB17A63BC2AB99BDD9BE1F2E2DA5BE8BA7C43D938A67151082A9041C7BA
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREATE NEW".. },.. "explanationofflinedisabled": {.. "message": "You're offline. To use Google Docs without an Internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the Internet.".. },.. "explanationofflineenabled": {.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extdesc": {.. "message": "Edit, create and view your documents, spreadsheets and presentations . all without Internet access.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Learn more".. },.. "popuphelptext": {.. "message": "Write, edit and collaborate wherever you are, with or without an Internet connection.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1425
    Entropy (8bit):4.461560329690825
    Encrypted:false
    SSDEEP:
    MD5:578215FBB8C12CB7E6CD73FBD16EC994
    SHA1:9471D71FA6D82CE1863B74E24237AD4FD9477187
    SHA-256:102B586B197EA7D6EDFEB874B97F95B05D229EA6A92780EA8544C4FF1E6BC5B1
    SHA-512:E698B1A6A6ED6963182F7D25AC12C6DE06C45D14499DDC91E81BDB35474E7EC9071CFEBD869B7D129CB2CD127BC1442C75E408E21EB8E5E6906A607A3982B212
    Malicious:false
    Reputation:unknown
    Preview:{.. "createNew": {.. "description": "Text shown in the extension pop up for creating a new document",.. "message": "CREATE NEW".. },.. "explanationOfflineDisabled": {.. "description": "Text shown in the extension popup when the user is offline and offline is disabled.",.. "message": "You're offline. To use Google Docs without an internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the internet.".. },.. "explanationOfflineEnabled": {.. "description": "Text shown in the extension popup when the user is offline and offline is enabled.",.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extDesc": {.. "description": "Extension description",.. "message": "Edit, create, and view your documents, spreadsheets, and presentations . all without internet access.".. },.. "extName": {.. "description": "Extension name",..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):961
    Entropy (8bit):4.537633413451255
    Encrypted:false
    SSDEEP:
    MD5:F61916A206AC0E971CDCB63B29E580E3
    SHA1:994B8C985DC1E161655D6E553146FB84D0030619
    SHA-256:2008F4FAAB71AB8C76A5D8811AD40102C380B6B929CE0BCE9C378A7CADFC05EB
    SHA-512:D9C63B2F99015355ACA04D74A27FD6B81170750C4B4BE7293390DC81EF4CD920EE9184B05C61DC8979B6C2783528949A4AE7180DBF460A2620DBB0D3FD7A05CF
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREAR".. },.. "explanationofflinedisabled": {.. "message": "No tienes conexi.n. Para usar Documentos de Google sin conexi.n a Internet, ve a Configuraci.n en la p.gina principal de Documentos de Google y activa la sincronizaci.n sin conexi.n la pr.xima vez que te conectes a Internet.".. },.. "explanationofflineenabled": {.. "message": "No tienes conexi.n. Aun as., puedes crear archivos o editar los que est.n disponibles.".. },.. "extdesc": {.. "message": "Edita, crea y consulta tus documentos, hojas de c.lculo y presentaciones; todo ello, sin acceso a Internet.".. },.. "extname": {.. "message": "Documentos de Google sin conexi.n".. },.. "learnmore": {.. "message": "M.s informaci.n".. },.. "popuphelptext": {.. "message": "Escribe o edita contenido y colabora con otras personas desde cualquier lugar, con o sin conexi.n a Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):959
    Entropy (8bit):4.570019855018913
    Encrypted:false
    SSDEEP:
    MD5:535331F8FB98894877811B14994FEA9D
    SHA1:42475E6AFB6A8AE41E2FC2B9949189EF9BBE09FB
    SHA-256:90A560FF82605DB7EDA26C90331650FF9E42C0B596CEDB79B23598DEC1B4988F
    SHA-512:2CE9C69E901AB5F766E6CFC1E592E1AF5A07AA78D154CCBB7898519A12E6B42A21C5052A86783ABE3E7A05043D4BD41B28960FEDDB30169FF7F7FE7208C8CFE9
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREAR NUEVO".. },.. "explanationofflinedisabled": {.. "message": "No tienes conexi.n. Para usar Documentos de Google sin conexi.n a Internet, ve a la configuraci.n de la p.gina principal de Documentos de Google y activa la sincronizaci.n sin conexi.n la pr.xima vez que est.s conectado a Internet.".. },.. "explanationofflineenabled": {.. "message": "No tienes conexi.n, pero a.n puedes modificar los archivos disponibles o crear otros nuevos.".. },.. "extdesc": {.. "message": "Edita, crea y consulta tus documentos, hojas de c.lculo y presentaciones aunque no tengas acceso a Internet".. },.. "extname": {.. "message": "Documentos de Google sin conexi.n".. },.. "learnmore": {.. "message": "M.s informaci.n".. },.. "popuphelptext": {.. "message": "Escribe, modifica y colabora dondequiera que est.s, con conexi.n a Internet o sin ella.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):968
    Entropy (8bit):4.633956349931516
    Encrypted:false
    SSDEEP:
    MD5:64204786E7A7C1ED9C241F1C59B81007
    SHA1:586528E87CD670249A44FB9C54B1796E40CDB794
    SHA-256:CC31B877238DA6C1D51D9A6155FDE565727A1956572F466C387B7E41C4923A29
    SHA-512:44FCF93F3FB10A3DB68D74F9453995995AB2D16863EC89779DB451A4D90F19743B8F51095EEC3ECEF5BD0C5C60D1BF3DFB0D64DF288DCCFBE70C129AE350B2C6
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "LOO UUS".. },.. "explanationofflinedisabled": {.. "message": "Teil ei ole v.rgu.hendust. Teenuse Google.i dokumendid kasutamiseks ilma Interneti-.henduseta avage j.rgmine kord, kui olete Internetiga .hendatud, teenuse Google.i dokumendid avalehel seaded ja l.litage sisse v.rgu.henduseta s.nkroonimine.".. },.. "explanationofflineenabled": {.. "message": "Teil ei ole v.rgu.hendust, kuid saate endiselt saadaolevaid faile muuta v.i uusi luua.".. },.. "extdesc": {.. "message": "Saate luua, muuta ja vaadata oma dokumente, arvustustabeleid ning esitlusi ilma Interneti-.henduseta.".. },.. "extname": {.. "message": "V.rgu.henduseta Google.i dokumendid".. },.. "learnmore": {.. "message": "Lisateave".. },.. "popuphelptext": {.. "message": "Kirjutage, muutke ja tehke koost..d .ksk.ik kus olenemata sellest, kas teil on Interneti-.hendus.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):838
    Entropy (8bit):4.4975520913636595
    Encrypted:false
    SSDEEP:
    MD5:29A1DA4ACB4C9D04F080BB101E204E93
    SHA1:2D0E4587DDD4BAC1C90E79A88AF3BD2C140B53B1
    SHA-256:A41670D52423BA69C7A65E7E153E7B9994E8DD0370C584BDA0714BD61C49C578
    SHA-512:B7B7A5A0AA8F6724B0FA15D65F25286D9C66873F03080CBABA037BDEEA6AADC678AC4F083BC52C2DB01BEB1B41A755ED67BBDDB9C0FE4E35A004537A3F7FC458
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"SORTU"},"explanationofflinedisabled":{"message":"Ez zaude konektatuta Internetera. Google Dokumentuak konexiorik gabe erabiltzeko, joan Google Dokumentuak zerbitzuaren orri nagusiko ezarpenetara eta aktibatu konexiorik gabeko sinkronizazioa Internetera konektatzen zaren hurrengoan."},"explanationofflineenabled":{"message":"Ez zaude konektatuta Internetera, baina erabilgarri dauden fitxategiak edita ditzakezu, baita beste batzuk sortu ere."},"extdesc":{"message":"Editatu, sortu eta ikusi dokumentuak, kalkulu-orriak eta aurkezpenak Interneteko konexiorik gabe."},"extname":{"message":"Google Dokumentuak konexiorik gabe"},"learnmore":{"message":"Lortu informazio gehiago"},"popuphelptext":{"message":"Edonon zaudela ere, ez duzu zertan konektatuta egon idatzi, editatu eta lankidetzan jardun ahal izateko."}}.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1305
    Entropy (8bit):4.673517697192589
    Encrypted:false
    SSDEEP:
    MD5:097F3BA8DE41A0AAF436C783DCFE7EF3
    SHA1:986B8CABD794E08C7AD41F0F35C93E4824AC84DF
    SHA-256:7C4C09D19AC4DA30CC0F7F521825F44C4DFBC19482A127FBFB2B74B3468F48F1
    SHA-512:8114EA7422E3B20AE3F08A3A64A6FFE1517A7579A3243919B8F789EB52C68D6F5A591F7B4D16CEE4BD337FF4DAF4057D81695732E5F7D9E761D04F859359FADB
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "..... ... ....".. },.. "explanationofflinedisabled": {.. "message": "...... ...... .... ....... .. ....... Google .... ..... ........ .... ... .. .. ....... ... ..... .. ....... .. .... .... ....... Google ..... . .......... ...... .. .... .....".. },.. "explanationofflineenabled": {.. "message": "...... ..... ... ...... ......... ......... .. .. .. ..... ..... ...... .... .. ........ ..... ..... .....".. },.. "extdesc": {.. "message": "...... ............ . ........ .. ....... ..... . ...... .... . ... ... ..... .... ...... .. ........".. },.. "extname": {.. "message": "....... Google .
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):911
    Entropy (8bit):4.6294343834070935
    Encrypted:false
    SSDEEP:
    MD5:B38CBD6C2C5BFAA6EE252D573A0B12A1
    SHA1:2E490D5A4942D2455C3E751F96BD9960F93C4B60
    SHA-256:2D752A5DBE80E34EA9A18C958B4C754F3BC10D63279484E4DF5880B8FD1894D2
    SHA-512:6E65207F4D8212736059CC802C6A7104E71A9CC0935E07BD13D17EC46EA26D10BC87AD923CD84D78781E4F93231A11CB9ED8D3558877B6B0D52C07CB005F1C0C
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "LUO UUSI".. },.. "explanationofflinedisabled": {.. "message": "Olet offline-tilassa. Jos haluat k.ytt.. Google Docsia ilman internetyhteytt., siirry Google Docsin etusivulle ja ota asetuksissa k.ytt..n offline-synkronointi, kun seuraavan kerran olet yhteydess. internetiin.".. },.. "explanationofflineenabled": {.. "message": "Olet offline-tilassa. Voit kuitenkin muokata k.ytett.viss. olevia tiedostoja tai luoda uusia.".. },.. "extdesc": {.. "message": "Muokkaa, luo ja katso dokumentteja, laskentataulukoita ja esityksi. ilman internetyhteytt..".. },.. "extname": {.. "message": "Google Docsin offline-tila".. },.. "learnmore": {.. "message": "Lis.tietoja".. },.. "popuphelptext": {.. "message": "Kirjoita, muokkaa ja tee yhteisty.t. paikasta riippumatta, my.s ilman internetyhteytt..".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):939
    Entropy (8bit):4.451724169062555
    Encrypted:false
    SSDEEP:
    MD5:FCEA43D62605860FFF41BE26BAD80169
    SHA1:F25C2CE893D65666CC46EA267E3D1AA080A25F5B
    SHA-256:F51EEB7AAF5F2103C1043D520E5A4DE0FA75E4DC375E23A2C2C4AFD4D9293A72
    SHA-512:F66F113A26E5BCF54B9AAFA69DAE3C02C9C59BD5B9A05F829C92AF208C06DC8CCC7A1875CBB7B7CE425899E4BA27BFE8CE2CDAF43A00A1B9F95149E855989EE0
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "GUMAWA NG BAGO".. },.. "explanationofflinedisabled": {.. "message": "Naka-offline ka. Upang magamit ang Google Docs nang walang koneksyon sa internet, pumunta sa mga setting sa homepage ng Google Docs at i-on ang offline na pag-sync sa susunod na nakakonekta ka sa internet.".. },.. "explanationofflineenabled": {.. "message": "Naka-offline ka, ngunit maaari mo pa ring i-edit ang mga available na file o gumawa ng mga bago.".. },.. "extdesc": {.. "message": "I-edit, gawin, at tingnan ang iyong mga dokumento, spreadsheet, at presentation . lahat ng ito nang walang access sa internet.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Matuto Pa".. },.. "popuphelptext": {.. "message": "Magsulat, mag-edit at makipag-collaborate nasaan ka man, nang mayroon o walang koneksyon sa internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):977
    Entropy (8bit):4.622066056638277
    Encrypted:false
    SSDEEP:
    MD5:A58C0EEBD5DC6BB5D91DAF923BD3A2AA
    SHA1:F169870EEED333363950D0BCD5A46D712231E2AE
    SHA-256:0518287950A8B010FFC8D52554EB82E5D93B6C3571823B7CECA898906C11ABCC
    SHA-512:B04AFD61DE490BC838354E8DC6C22BE5C7AC6E55386FFF78489031ACBE2DBF1EAA2652366F7A1E62CE87CFCCB75576DA3B2645FEA1645B0ECEB38B1FA3A409E8
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CR.ER".. },.. "explanationofflinedisabled": {.. "message": "Vous .tes hors connexion. Pour pouvoir utiliser Google.Docs sans connexion Internet, acc.dez aux param.tres de la page d'accueil de Google.Docs et activez la synchronisation hors connexion lors de votre prochaine connexion . Internet.".. },.. "explanationofflineenabled": {.. "message": "Vous .tes hors connexion, mais vous pouvez quand m.me modifier les fichiers disponibles ou cr.er des fichiers.".. },.. "extdesc": {.. "message": "Modifiez, cr.ez et consultez des documents, feuilles de calcul et pr.sentations, sans acc.s . Internet.".. },.. "extname": {.. "message": "Google.Docs hors connexion".. },.. "learnmore": {.. "message": "En savoir plus".. },.. "popuphelptext": {.. "message": "R.digez des documents, modifiez-les et collaborez o. que vous soyez, avec ou sans connexion Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):972
    Entropy (8bit):4.621319511196614
    Encrypted:false
    SSDEEP:
    MD5:6CAC04BDCC09034981B4AB567B00C296
    SHA1:84F4D0E89E30ED7B7ACD7644E4867FFDB346D2A5
    SHA-256:4CAA46656ECC46A420AA98D3307731E84F5AC1A89111D2E808A228C436D83834
    SHA-512:160590B6EC3DCF48F3EA7A5BAA11A8F6FA4131059469623E00AD273606B468B3A6E56D199E97DAA0ECB6C526260EBAE008570223F2822811F441D1C900DC33D6
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CR.ER".. },.. "explanationofflinedisabled": {.. "message": "Vous .tes hors connexion. Pour utiliser Google.Documents sans connexion Internet, acc.dez aux param.tres sur la page d'accueil Google.Documents et activez la synchronisation hors ligne la prochaine fois que vous .tes connect. . Internet.".. },.. "explanationofflineenabled": {.. "message": "Vous .tes hors connexion, mais vous pouvez toujours modifier les fichiers disponibles ou en cr.er.".. },.. "extdesc": {.. "message": "Modifiez, cr.ez et consultez vos documents, vos feuilles de calcul et vos pr.sentations, le tout sans acc.s . Internet.".. },.. "extname": {.. "message": "Google.Documents hors connexion".. },.. "learnmore": {.. "message": "En savoir plus".. },.. "popuphelptext": {.. "message": ".crivez, modifiez et collaborez o. que vous soyez, avec ou sans connexion Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):990
    Entropy (8bit):4.497202347098541
    Encrypted:false
    SSDEEP:
    MD5:6BAAFEE2F718BEFBC7CD58A04CCC6C92
    SHA1:CE0BDDDA2FA1F0AD222B604C13FF116CBB6D02CF
    SHA-256:0CF098DFE5BBB46FC0132B3CF0C54B06B4D2C8390D847EE2A65D20F9B7480F4C
    SHA-512:3DA23E74CD6CF9C0E2A0C4DBA60301281D362FB0A2A908F39A55ABDCA4CC69AD55638C63CC3BEFD44DC032F9CBB9E2FDC1B4C4ABE292917DF8272BA25B82AF20
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Est.s sen conexi.n. Para utilizar Documentos de Google sen conexi.n a Internet, accede .s opci.ns de configuraci.n na p.xina de inicio de Documentos de Google e activa a sincronizaci.n sen conexi.n a pr.xima vez que esteas conectado a Internet.".. },.. "explanationofflineenabled": {.. "message": "Est.s sen conexi.n. A.nda podes editar os ficheiros dispo.ibles ou crear outros novos.".. },.. "extdesc": {.. "message": "Modifica, crea e consulta os teus documentos, follas de c.lculo e presentaci.ns sen necesidade de acceder a Internet.".. },.. "extname": {.. "message": "Documentos de Google sen conexi.n".. },.. "learnmore": {.. "message": "M.is informaci.n".. },.. "popuphelptext": {.. "message": "Escribe, edita e colabora esteas onde esteas, tanto se tes conexi.n a Internet como se non a tes.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1658
    Entropy (8bit):4.294833932445159
    Encrypted:false
    SSDEEP:
    MD5:BC7E1D09028B085B74CB4E04D8A90814
    SHA1:E28B2919F000B41B41209E56B7BF3A4448456CFE
    SHA-256:FE8218DF25DB54E633927C4A1640B1A41B8E6CB3360FA386B5382F833B0B237C
    SHA-512:040A8267D67DB05BBAA52F1FAC3460F58D35C5B73AA76BBF17FA78ACC6D3BFB796A870DD44638F9AC3967E35217578A20D6F0B975CEEEEDBADFC9F65BE7E72C9
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".... .....".. },.. "explanationofflinedisabled": {.. "message": "... ...... ... ........ ....... ... Google .......... ..... .... ...., ... .... .... ...... ........ .... ...... ... ...... Google ........ ...... .. ........ .. ... ... ...... ....... .... ....".. },.. "explanationofflineenabled": {.. "message": "... ...... .., ..... ... ... .. ...... ..... ....... ... ... .. .... ... ..... ... ...".. },.. "extdesc": {.. "message": "..... ........., ..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1672
    Entropy (8bit):4.314484457325167
    Encrypted:false
    SSDEEP:
    MD5:98A7FC3E2E05AFFFC1CFE4A029F47476
    SHA1:A17E077D6E6BA1D8A90C1F3FAF25D37B0FF5A6AD
    SHA-256:D2D1AFA224CDA388FF1DC8FAC24CDA228D7CE09DE5D375947D7207FA4A6C4F8D
    SHA-512:457E295C760ABFD29FC6BBBB7FC7D4959287BCA7FB0E3E99EB834087D17EED331DEF18138838D35C48C6DDC8A0134AFFFF1A5A24033F9B5607B355D3D48FDF88
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "... .....".. },.. "explanationofflinedisabled": {.. "message": ".. ...... .... ....... ....... .. .... Google ........ .. ..... .... .. ..., .... ... ....... .. ...... .... .. Google ........ .. ........ .. ...... ... .... .. ...... ....... .... .....".. },.. "explanationofflineenabled": {.. "message": ".. ...... ..., ..... .. .. .. ...... ...... ..... .. .... ... .. .. ...... ... .... ....".. },.. "extdesc": {.. "message": ".... .... ....... ...... ..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):935
    Entropy (8bit):4.6369398601609735
    Encrypted:false
    SSDEEP:
    MD5:25CDFF9D60C5FC4740A48EF9804BF5C7
    SHA1:4FADECC52FB43AEC084DF9FF86D2D465FBEBCDC0
    SHA-256:73E6E246CEEAB9875625CD4889FBF931F93B7B9DEAA11288AE1A0F8A6E311E76
    SHA-512:EF00B08496427FEB5A6B9FB3FE2E5404525BE7C329D9DD2A417480637FD91885837D134A26980DCF9F61E463E6CB68F09A24402805807E656AF16B116A75E02C
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "IZRADI NOVI".. },.. "explanationofflinedisabled": {.. "message": "Vi ste izvan mre.e. Da biste koristili Google dokumente bez internetske veze, idite na postavke na po.etnoj stranici Google dokumenata i uklju.ite izvanmre.nu sinkronizaciju sljede.i put kada se pove.ete s internetom.".. },.. "explanationofflineenabled": {.. "message": "Vi ste izvan mre.e, no i dalje mo.ete ure.ivati dostupne datoteke i izra.ivati nove.".. },.. "extdesc": {.. "message": "Uredite, izradite i pregledajte dokumente, prora.unske tablice i prezentacije . sve bez pristupa internetu.".. },.. "extname": {.. "message": "Google dokumenti izvanmre.no".. },.. "learnmore": {.. "message": "Saznajte vi.e".. },.. "popuphelptext": {.. "message": "Pi.ite, ure.ujte i sura.ujte gdje god se nalazili, povezani s internetom ili izvanmre.no.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1065
    Entropy (8bit):4.816501737523951
    Encrypted:false
    SSDEEP:
    MD5:8930A51E3ACE3DD897C9E61A2AEA1D02
    SHA1:4108506500C68C054BA03310C49FA5B8EE246EA4
    SHA-256:958C0F664FCA20855FA84293566B2DDB7F297185619143457D6479E6AC81D240
    SHA-512:126B80CD3428C0BC459EEAAFCBE4B9FDE2541A57F19F3EC7346BAF449F36DC073A9CF015594A57203255941551B25F6FAA6D2C73C57C44725F563883FF902606
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".J L.TREHOZ.SA".. },.. "explanationofflinedisabled": {.. "message": "Jelenleg offline .llapotban van. Ha a Google Dokumentumokat internetkapcsolat n.lk.l szeretn. haszn.lni, a legk.zelebbi internethaszn.lata sor.n nyissa meg a Google Dokumentumok kezd.oldal.n tal.lhat. be.ll.t.sokat, .s tiltsa le az offline szinkroniz.l.s be.ll.t.st.".. },.. "explanationofflineenabled": {.. "message": "Offline .llapotban van, de az el.rhet. f.jlokat .gy is szerkesztheti, valamint l.trehozhat .jakat.".. },.. "extdesc": {.. "message": "Szerkesszen, hozzon l.tre .s tekintsen meg dokumentumokat, t.bl.zatokat .s prezent.ci.kat . ak.r internetkapcsolat n.lk.l is.".. },.. "extname": {.. "message": "Google Dokumentumok Offline".. },.. "learnmore": {.. "message": "Tov.bbi inform.ci.".. },.. "popuphelptext": {.. "message": ".rjon, szerkesszen .s dolgozzon egy.tt m.sokkal
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2771
    Entropy (8bit):3.7629875118570055
    Encrypted:false
    SSDEEP:
    MD5:55DE859AD778E0AA9D950EF505B29DA9
    SHA1:4479BE637A50C9EE8A2F7690AD362A6A8FFC59B2
    SHA-256:0B16E3F8BD904A767284345AE86A0A9927C47AFE89E05EA2B13AD80009BDF9E4
    SHA-512:EDAB2FCC14CABB6D116E9C2907B42CFBC34F1D9035F43E454F1F4D1F3774C100CBADF6B4C81B025810ED90FA91C22F1AEFE83056E4543D92527E4FE81C7889A8
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u054d\u054f\u0535\u0542\u053e\u0535\u053c \u0546\u0548\u0550"},"explanationofflinedisabled":{"message":"Google \u0553\u0561\u057d\u057f\u0561\u0569\u0572\u0569\u0565\u0580\u0568 \u0576\u0561\u0587 \u0561\u0576\u0581\u0561\u0576\u0581 \u057c\u0565\u056a\u056b\u0574\u0578\u0582\u0574 \u0585\u0563\u057f\u0561\u0563\u0578\u0580\u056e\u0565\u056c\u0578\u0582 \u0570\u0561\u0574\u0561\u0580 \u0574\u056b\u0561\u0581\u0565\u0584 \u0570\u0561\u0574\u0561\u0581\u0561\u0576\u0581\u056b\u0576, \u0562\u0561\u0581\u0565\u0584 \u056e\u0561\u057c\u0561\u0575\u0578\u0582\u0569\u0575\u0561\u0576 \u0563\u056c\u056d\u0561\u057e\u0578\u0580 \u0567\u057b\u0568, \u0561\u0576\u0581\u0565\u0584 \u056f\u0561\u0580\u0563\u0561\u057e\u0578\u0580\u0578\u0582\u0574\u0576\u0565\u0580 \u0587 \u0574\u056b\u0561\u0581\u0580\u0565\u0584 \u0561\u0576\u0581\u0561\u0576\u0581 \u0570\u0561\u0574\u0561\u056a\u0561\u0574\u0561\u0581\u0578\u0582\u0574\u0568:"},"explanationofflineenabled":{"message":"\u
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):858
    Entropy (8bit):4.474411340525479
    Encrypted:false
    SSDEEP:
    MD5:34D6EE258AF9429465AE6A078C2FB1F5
    SHA1:612CAE151984449A4346A66C0A0DF4235D64D932
    SHA-256:E3C86DDD2EFEBE88EED8484765A9868202546149753E03A61EB7C28FD62CFCA1
    SHA-512:20427807B64A0F79A6349F8A923152D9647DA95C05DE19AD3A4BF7DB817E25227F3B99307C8745DD323A6591B515221BD2F1E92B6F1A1783BDFA7142E84601B1
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "BUAT BARU".. },.. "explanationofflinedisabled": {.. "message": "Anda sedang offline. Untuk menggunakan Google Dokumen tanpa koneksi internet, buka setelan di beranda Google Dokumen dan aktifkan sinkronisasi offline saat terhubung ke internet.".. },.. "explanationofflineenabled": {.. "message": "Anda sedang offline, namun Anda masih dapat mengedit file yang tersedia atau membuat file baru.".. },.. "extdesc": {.. "message": "Edit, buat, dan lihat dokumen, spreadsheet, dan presentasi . tanpa perlu akses internet.".. },.. "extname": {.. "message": "Google Dokumen Offline".. },.. "learnmore": {.. "message": "Pelajari Lebih Lanjut".. },.. "popuphelptext": {.. "message": "Tulis, edit, dan gabungkan di mana saja, dengan atau tanpa koneksi internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):954
    Entropy (8bit):4.631887382471946
    Encrypted:false
    SSDEEP:
    MD5:1F565FB1C549B18AF8BBFED8DECD5D94
    SHA1:B57F4BDAE06FF3DFC1EB3E56B6F2F204D6F63638
    SHA-256:E16325D1A641EF7421F2BAFCD6433D53543C89D498DD96419B03CBA60B9C7D60
    SHA-512:A60B8E042A9BCDCC136B87948E9924A0B24D67C6CA9803904B876F162A0AD82B9619F1316BE9FF107DD143B44F7E6F5DF604ABFE00818DEB40A7D62917CDA69F
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"B\u00daA TIL N\u00ddTT"},"explanationofflinedisabled":{"message":"\u00de\u00fa ert \u00e1n nettengingar. Til a\u00f0 nota Google skj\u00f6l \u00e1n nettengingar skaltu opna stillingarnar \u00e1 heimas\u00ed\u00f0u Google skjala og virkja samstillingu \u00e1n nettengingar n\u00e6st \u00feegar \u00fe\u00fa tengist netinu."},"explanationofflineenabled":{"message":"Engin nettenging. \u00de\u00fa getur samt sem \u00e1\u00f0ur breytt tilt\u00e6kum skr\u00e1m e\u00f0a b\u00fai\u00f0 til n\u00fdjar."},"extdesc":{"message":"Breyttu, b\u00fa\u00f0u til og sko\u00f0a\u00f0u skj\u00f6lin \u00fe\u00edn, t\u00f6flureikna og kynningar \u2014 allt \u00e1n nettengingar."},"extname":{"message":"Google skj\u00f6l \u00e1n nettengingar"},"learnmore":{"message":"Frekari uppl\u00fdsingar"},"popuphelptext":{"message":"Skrifa\u00f0u, breyttu og starfa\u00f0u me\u00f0 \u00f6\u00f0rum hvort sem nettenging er til sta\u00f0ar e\u00f0a ekki."}}.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):899
    Entropy (8bit):4.474743599345443
    Encrypted:false
    SSDEEP:
    MD5:0D82B734EF045D5FE7AA680B6A12E711
    SHA1:BD04F181E4EE09F02CD53161DCABCEF902423092
    SHA-256:F41862665B13C0B4C4F562EF1743684CCE29D4BCF7FE3EA494208DF253E33885
    SHA-512:01F305A280112482884485085494E871C66D40C0B03DE710B4E5F49C6A478D541C2C1FDA2CEAF4307900485946DEE9D905851E98A2EB237642C80D464D1B3ADA
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREA NUOVO".. },.. "explanationofflinedisabled": {.. "message": "Sei offline. Per utilizzare Documenti Google senza una connessione Internet, apri le impostazioni nella home page di Documenti Google e attiva la sincronizzazione offline la prossima volta che ti colleghi a Internet.".. },.. "explanationofflineenabled": {.. "message": "Sei offline, ma puoi comunque modificare i file disponibili o crearne di nuovi.".. },.. "extdesc": {.. "message": "Modifica, crea e visualizza documenti, fogli di lavoro e presentazioni, senza accesso a Internet.".. },.. "extname": {.. "message": "Documenti Google offline".. },.. "learnmore": {.. "message": "Ulteriori informazioni".. },.. "popuphelptext": {.. "message": "Scrivi, modifica e collabora ovunque ti trovi, con o senza una connessione Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2230
    Entropy (8bit):3.8239097369647634
    Encrypted:false
    SSDEEP:
    MD5:26B1533C0852EE4661EC1A27BD87D6BF
    SHA1:18234E3ABAF702DF9330552780C2F33B83A1188A
    SHA-256:BBB81C32F482BA3216C9B1189C70CEF39CA8C2181AF3538FFA07B4C6AD52F06A
    SHA-512:450BFAF0E8159A4FAE309737EA69CA8DD91CAAFD27EF662087C4E7716B2DCAD3172555898E75814D6F11487F4F254DE8625EF0CFEA8DF0133FC49E18EC7FD5D2
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u05d9\u05e6\u05d9\u05e8\u05ea \u05d7\u05d3\u05e9"},"explanationofflinedisabled":{"message":"\u05d0\u05d9\u05df \u05dc\u05da \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8. \u05db\u05d3\u05d9 \u05dc\u05d4\u05e9\u05ea\u05de\u05e9 \u05d1-Google Docs \u05dc\u05dc\u05d0 \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8, \u05d1\u05d4\u05ea\u05d7\u05d1\u05e8\u05d5\u05ea \u05d4\u05d1\u05d0\u05d4 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8, \u05d9\u05e9 \u05dc\u05e2\u05d1\u05d5\u05e8 \u05dc\u05e7\u05d8\u05e2 \u05d4\u05d4\u05d2\u05d3\u05e8\u05d5\u05ea \u05d1\u05d3\u05e3 \u05d4\u05d1\u05d9\u05ea \u05e9\u05dc Google Docs \u05d5\u05dc\u05d4\u05e4\u05e2\u05d9\u05dc \u05e1\u05e0\u05db\u05e8\u05d5\u05df \u05d1\u05de\u05e6\u05d1 \u05d0\u05d5\u05e4\u05dc\u05d9\u05d9\u05df."},"explanationofflineenabled":{"message":"\u05d0\u05d9\u05df \u05dc\u05da \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1160
    Entropy (8bit):5.292894989863142
    Encrypted:false
    SSDEEP:
    MD5:15EC1963FC113D4AD6E7E59AE5DE7C0A
    SHA1:4017FC6D8B302335469091B91D063B07C9E12109
    SHA-256:34AC08F3C4F2D42962A3395508818B48CA323D22F498738CC9F09E78CB197D73
    SHA-512:427251F471FA3B759CA1555E9600C10F755BC023701D058FF661BEC605B6AB94CFB3456C1FEA68D12B4D815FFBAFABCEB6C12311DD1199FC783ED6863AF97C0F
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "....".. },.. "explanationofflinedisabled": {.. "message": "....................... Google ............................... Google .............. [..] .......[.......] ...........".. },.. "explanationofflineenabled": {.. "message": ".............................................".. },.. "extdesc": {.. "message": ".........................................................".. },.. "extname": {.. "message": "Google ..... ......".. },.. "learnmore": {.. "message": "..".. },.. "popuphelp
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):3264
    Entropy (8bit):3.586016059431306
    Encrypted:false
    SSDEEP:
    MD5:83F81D30913DC4344573D7A58BD20D85
    SHA1:5AD0E91EA18045232A8F9DF1627007FE506A70E0
    SHA-256:30898BBF51BDD58DB397FF780F061E33431A38EF5CFC288B5177ECF76B399F26
    SHA-512:85F97F12AD4482B5D9A6166BB2AE3C4458A582CF575190C71C1D8E0FB87C58482F8C0EFEAD56E3A70EDD42BED945816DB5E07732AD27B8FFC93F4093710DD58F
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u10d0\u10ee\u10da\u10d8\u10e1 \u10e8\u10d4\u10e5\u10db\u10dc\u10d0"},"explanationofflinedisabled":{"message":"\u10d7\u10e5\u10d5\u10d4\u10dc \u10ee\u10d0\u10d6\u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10ee\u10d0\u10e0\u10d7. Google Docs-\u10d8\u10e1 \u10d8\u10dc\u10e2\u10d4\u10e0\u10dc\u10d4\u10e2\u10d7\u10d0\u10dc \u10d9\u10d0\u10d5\u10e8\u10d8\u10e0\u10d8\u10e1 \u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10d2\u10d0\u10db\u10dd\u10e1\u10d0\u10e7\u10d4\u10dc\u10d4\u10d1\u10da\u10d0\u10d3 \u10d2\u10d0\u10d3\u10d0\u10d3\u10d8\u10d7 \u10de\u10d0\u10e0\u10d0\u10db\u10d4\u10e2\u10e0\u10d4\u10d1\u10d6\u10d4 Google Docs-\u10d8\u10e1 \u10db\u10d7\u10d0\u10d5\u10d0\u10e0 \u10d2\u10d5\u10d4\u10e0\u10d3\u10d6\u10d4 \u10d3\u10d0 \u10e9\u10d0\u10e0\u10d7\u10d4\u10d7 \u10ee\u10d0\u10d6\u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10e1\u10d8\u10dc\u10e5\u10e0\u10dd\u10dc\u10d8\u10d6\u10d0\u10ea\u10d8\u10d0, \u10e0\u10dd\u10d3\u10d4\u10e1\u10d0\u10ea \u10e8\u10d4\u10db\u10d3\u10d2\u10dd\u10
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):3235
    Entropy (8bit):3.6081439490236464
    Encrypted:false
    SSDEEP:
    MD5:2D94A58795F7B1E6E43C9656A147AD3C
    SHA1:E377DB505C6924B6BFC9D73DC7C02610062F674E
    SHA-256:548DC6C96E31A16CE355DC55C64833B08EF3FBA8BF33149031B4A685959E3AF4
    SHA-512:F51CC857E4CF2D4545C76A2DCE7D837381CE59016E250319BF8D39718BE79F9F6EE74EA5A56DE0E8759E4E586D93430D51651FC902376D8A5698628E54A0F2D8
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u0416\u0410\u04a2\u0410\u0421\u042b\u041d \u0416\u0410\u0421\u0410\u0423"},"explanationofflinedisabled":{"message":"\u0421\u0456\u0437 \u043e\u0444\u043b\u0430\u0439\u043d \u0440\u0435\u0436\u0438\u043c\u0456\u043d\u0434\u0435\u0441\u0456\u0437. Google Docs \u049b\u043e\u043b\u0434\u0430\u043d\u0431\u0430\u0441\u044b\u043d \u0436\u0435\u043b\u0456 \u0431\u0430\u0439\u043b\u0430\u043d\u044b\u0441\u044b\u043d\u0441\u044b\u0437 \u049b\u043e\u043b\u0434\u0430\u043d\u0443 \u04af\u0448\u0456\u043d, \u043a\u0435\u043b\u0435\u0441\u0456 \u0436\u043e\u043b\u044b \u0436\u0435\u043b\u0456\u0433\u0435 \u049b\u043e\u0441\u044b\u043b\u0493\u0430\u043d\u0434\u0430, Google Docs \u043d\u0435\u0433\u0456\u0437\u0433\u0456 \u0431\u0435\u0442\u0456\u043d\u0435\u043d \u043f\u0430\u0440\u0430\u043c\u0435\u0442\u0440\u043b\u0435\u0440 \u0431\u04e9\u043b\u0456\u043c\u0456\u043d \u043a\u0456\u0440\u0456\u043f, \u043e\u0444\u043b\u0430\u0439\u043d \u0440\u0435\u0436\u0438\u043c\u0456\u
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):3122
    Entropy (8bit):3.891443295908904
    Encrypted:false
    SSDEEP:
    MD5:B3699C20A94776A5C2F90AEF6EB0DAD9
    SHA1:1F9B968B0679A20FA097624C9ABFA2B96C8C0BEA
    SHA-256:A6118F0A0DE329E07C01F53CD6FB4FED43E54C5F53DB4CD1C7F5B2B4D9FB10E6
    SHA-512:1E8D15B8BFF1D289434A244172F9ED42B4BB6BCB6372C1F300B01ACEA5A88167E97FEDABA0A7AE3BEB5E24763D1B09046AE8E30745B80E2E2FE785C94DF362F6
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u1794\u1784\u17d2\u1780\u17be\u178f\u200b\u1790\u17d2\u1798\u17b8"},"explanationofflinedisabled":{"message":"\u17a2\u17d2\u1793\u1780\u200b\u1782\u17d2\u1798\u17b6\u1793\u200b\u17a2\u17ca\u17b8\u1793\u1792\u17ba\u178e\u17b7\u178f\u17d4 \u178a\u17be\u1798\u17d2\u1794\u17b8\u200b\u1794\u17d2\u179a\u17be Google \u17af\u1780\u179f\u17b6\u179a\u200b\u1794\u17b6\u1793\u200b\u200b\u178a\u17c4\u1799\u200b\u200b\u1798\u17b7\u1793\u1798\u17b6\u1793\u200b\u200b\u200b\u17a2\u17ca\u17b8\u1793\u1792\u17ba\u178e\u17b7\u178f \u179f\u17bc\u1798\u200b\u200b\u1791\u17c5\u200b\u1780\u17b6\u1793\u17cb\u200b\u1780\u17b6\u179a\u200b\u1780\u17c6\u178e\u178f\u17cb\u200b\u1793\u17c5\u200b\u179b\u17be\u200b\u1782\u17c1\u17a0\u1791\u17c6\u1796\u17d0\u179a Google \u17af\u1780\u179f\u17b6\u179a \u1793\u17b7\u1784\u200b\u1794\u17be\u1780\u200b\u1780\u17b6\u179a\u1792\u17d2\u179c\u17be\u200b\u179f\u1798\u1780\u17b6\u179b\u1780\u1798\u17d2\u1798\u200b\u200b\u200b\u1782\u17d2\u1798\u17b6\u1793
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1880
    Entropy (8bit):4.295185867329351
    Encrypted:false
    SSDEEP:
    MD5:8E16966E815C3C274EEB8492B1EA6648
    SHA1:7482ED9F1C9FD9F6F9BA91AB15921B19F64C9687
    SHA-256:418FF53FCA505D54268413C796E4DF80E947A09F399AB222A90B81E93113D5B5
    SHA-512:85B28202E874B1CF45B37BA05B87B3D8D6FE38E89C6011C4240CF6B563EA6DA60181D712CCE20D07C364F4A266A4EC90C4934CC8B7BB2013CB3B22D755796E38
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "........ .....".. },.. "explanationofflinedisabled": {.. "message": ".... ..................... ......... ............. Google ...... ....., Google ...... ............ ............... .... ..... ...... .... .... ............ ............. ........ ..... ... .....".. },.. "explanationofflineenabled": {.. "message": ".... ...................., .... .... .... ......... ........... ............ .... ........ .........."..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1042
    Entropy (8bit):5.3945675025513955
    Encrypted:false
    SSDEEP:
    MD5:F3E59EEEB007144EA26306C20E04C292
    SHA1:83E7BDFA1F18F4C7534208493C3FF6B1F2F57D90
    SHA-256:C52D9B955D229373725A6E713334BBB31EA72EFA9B5CF4FBD76A566417B12CAC
    SHA-512:7808CB5FF041B002CBD78171EC5A0B4DBA3E017E21F7E8039084C2790F395B839BEE04AD6C942EED47CCB53E90F6DE818A725D1450BF81BA2990154AFD3763AF
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".. ...".. },.. "explanationofflinedisabled": {.. "message": ".... ...... ... .. .. Google Docs. ..... Google Docs .... .... .... .... .... ..... . .... .... ..... ......".. },.. "explanationofflineenabled": {.. "message": ".... ...... ... .. ... ... ..... ... ... .. . .....".. },.. "extdesc": {.. "message": ".... .... ... .., ...... . ....... .., .., ......".. },.. "extname": {.. "message": "Google Docs ....".. },.. "learnmore": {.. "message": "... ....".. },.. "popuphelptext": {.. "message": "... .. ... .... ..... .... .... .....
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2535
    Entropy (8bit):3.8479764584971368
    Encrypted:false
    SSDEEP:
    MD5:E20D6C27840B406555E2F5091B118FC5
    SHA1:0DCECC1A58CEB4936E255A64A2830956BFA6EC14
    SHA-256:89082FB05229826BC222F5D22C158235F025F0E6DF67FF135A18BD899E13BB8F
    SHA-512:AD53FC0B153005F47F9F4344DF6C4804049FAC94932D895FD02EEBE75222CFE77EEDD9CD3FDC4C88376D18C5972055B00190507AA896488499D64E884F84F093
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u0eaa\u0ec9\u0eb2\u0e87\u0ec3\u0edd\u0ec8"},"explanationofflinedisabled":{"message":"\u0e97\u0ec8\u0eb2\u0e99\u0ead\u0ead\u0e9a\u0ea5\u0eb2\u0e8d\u0ea2\u0eb9\u0ec8. \u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0ec3\u0e8a\u0ec9 Google Docs \u0ec2\u0e94\u0e8d\u0e9a\u0ecd\u0ec8\u0ec0\u0e8a\u0eb7\u0ec8\u0ead\u0ea1\u0e95\u0ecd\u0ec8\u0ead\u0eb4\u0e99\u0ec0\u0e95\u0eb5\u0ec0\u0e99\u0eb1\u0e94, \u0ec3\u0eab\u0ec9\u0ec4\u0e9b\u0e97\u0eb5\u0ec8\u0e81\u0eb2\u0e99\u0e95\u0eb1\u0ec9\u0e87\u0e84\u0ec8\u0eb2\u0ec3\u0e99\u0edc\u0ec9\u0eb2 Google Docs \u0ec1\u0ea5\u0ec9\u0ea7\u0ec0\u0e9b\u0eb5\u0e94\u0ec3\u0e8a\u0ec9\u0e81\u0eb2\u0e99\u0e8a\u0eb4\u0ec9\u0e87\u0ec1\u0e9a\u0e9a\u0ead\u0ead\u0e9a\u0ea5\u0eb2\u0e8d\u0ec3\u0e99\u0ec0\u0e97\u0eb7\u0ec8\u0ead\u0e95\u0ecd\u0ec8\u0ec4\u0e9b\u0e97\u0eb5\u0ec8\u0e97\u0ec8\u0eb2\u0e99\u0ec0\u0e8a\u0eb7\u0ec8\u0ead\u0ea1\u0e95\u0ecd\u0ec8\u0ead\u0eb4\u0e99\u0ec0\u0e95\u0eb5\u0ec0\u0e99\u0eb1\u0e94."},"explanationofflineenabled":{"message":"\u0e97\u0ec
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1028
    Entropy (8bit):4.797571191712988
    Encrypted:false
    SSDEEP:
    MD5:970544AB4622701FFDF66DC556847652
    SHA1:14BEE2B77EE74C5E38EBD1DB09E8D8104CF75317
    SHA-256:5DFCBD4DFEAEC3ABE973A78277D3BD02CD77AE635D5C8CD1F816446C61808F59
    SHA-512:CC12D00C10B970189E90D47390EEB142359A8D6F3A9174C2EF3AE0118F09C88AB9B689D9773028834839A7DFAF3AAC6747BC1DCB23794A9F067281E20B8DC6EA
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "SUKURTI NAUJ.".. },.. "explanationofflinedisabled": {.. "message": "Esate neprisijung.. Jei norite naudoti .Google. dokumentus be interneto ry.io, pagrindiniame .Google. dokument. puslapyje eikite . nustatym. skilt. ir .junkite sinchronizavim. neprisijungus, kai kit. kart. b.site prisijung. prie interneto.".. },.. "explanationofflineenabled": {.. "message": "Esate neprisijung., bet vis tiek galite redaguoti pasiekiamus failus arba sukurti nauj..".. },.. "extdesc": {.. "message": "Redaguokite, kurkite ir per.i.r.kite savo dokumentus, skai.iuokles ir pristatymus . visk. darykite be prieigos prie interneto.".. },.. "extname": {.. "message": ".Google. dokumentai neprisijungus".. },.. "learnmore": {.. "message": "Su.inoti daugiau".. },.. "popuphelptext": {.. "message": "Ra.ykite, redaguokite ir bendradarbiaukite bet kurioje vietoje naudodami interneto ry.. arba
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):994
    Entropy (8bit):4.700308832360794
    Encrypted:false
    SSDEEP:
    MD5:A568A58817375590007D1B8ABCAEBF82
    SHA1:B0F51FE6927BB4975FC6EDA7D8A631BF0C1AB597
    SHA-256:0621DE9161748F45D53052ED8A430962139D7F19074C7FFE7223ECB06B0B87DB
    SHA-512:FCFBADEC9F73975301AB404DB6B09D31457FAC7CCAD2FA5BE348E1CAD6800F87CB5B56DE50880C55BBADB3C40423351A6B5C2D03F6A327D898E35F517B1C628C
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "IZVEIDOT JAUNU".. },.. "explanationofflinedisabled": {.. "message": "J.s esat bezsaist.. Lai lietotu pakalpojumu Google dokumenti bez interneta savienojuma, n.kamaj. reiz., kad ir izveidots savienojums ar internetu, atveriet Google dokumentu s.kumlapas iestat.jumu izv.lni un iesl.dziet sinhroniz.ciju bezsaist..".. },.. "explanationofflineenabled": {.. "message": "J.s esat bezsaist., ta.u varat redi..t pieejamos failus un izveidot jaunus.".. },.. "extdesc": {.. "message": "Redi..jiet, veidojiet un skatiet savus dokumentus, izkl.jlapas un prezent.cijas, neizmantojot savienojumu ar internetu.".. },.. "extname": {.. "message": "Google dokumenti bezsaist.".. },.. "learnmore": {.. "message": "Uzziniet vair.k".. },.. "popuphelptext": {.. "message": "Rakstiet, redi..jiet un sadarbojieties ar interneta savienojumu vai bez t. neatkar.gi no t., kur atrodaties.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2091
    Entropy (8bit):4.358252286391144
    Encrypted:false
    SSDEEP:
    MD5:4717EFE4651F94EFF6ACB6653E868D1A
    SHA1:B8A7703152767FBE1819808876D09D9CC1C44450
    SHA-256:22CA9415E294D9C3EC3384B9D08CDAF5164AF73B4E4C251559E09E529C843EA6
    SHA-512:487EAB4938F6BC47B1D77DD47A5E2A389B94E01D29849E38E96C95CABC7BD98679451F0E22D3FEA25C045558CD69FDDB6C4FEF7C581141F1C53C4AA17578D7F7
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "....... ............".. },.. "explanationofflinedisabled": {.. "message": "...... ........... ........... ............. ..... Google ....... ..........., Google ....... .......... ............. .... ...... ...... ... ............... .................... '.......... ................' .........".. },.. "explanationofflineenabled": {.. "message": "................., .......... ......... ....... ...... ..............
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2778
    Entropy (8bit):3.595196082412897
    Encrypted:false
    SSDEEP:
    MD5:83E7A14B7FC60D4C66BF313C8A2BEF0B
    SHA1:1CCF1D79CDED5D65439266DB58480089CC110B18
    SHA-256:613D8751F6CC9D3FA319F4B7EA8B2BD3BED37FD077482CA825929DD7C12A69A8
    SHA-512:3742E24FFC4B5283E6EE496813C1BDC6835630D006E8647D427C3DE8B8E7BF814201ADF9A27BFAB3ABD130B6FEC64EBB102AC0EB8DEDFE7B63D82D3E1233305D
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u0428\u0418\u041d\u0418\u0419\u0413 \u04ae\u04ae\u0421\u0413\u042d\u0425"},"explanationofflinedisabled":{"message":"\u0422\u0430 \u043e\u0444\u043b\u0430\u0439\u043d \u0431\u0430\u0439\u043d\u0430. Google \u0414\u043e\u043a\u044b\u0433 \u0438\u043d\u0442\u0435\u0440\u043d\u044d\u0442\u0433\u04af\u0439\u0433\u044d\u044d\u0440 \u0430\u0448\u0438\u0433\u043b\u0430\u0445\u044b\u043d \u0442\u0443\u043b\u0434 \u0434\u0430\u0440\u0430\u0430\u0433\u0438\u0439\u043d \u0443\u0434\u0430\u0430 \u0438\u043d\u0442\u0435\u0440\u043d\u044d\u0442\u044d\u0434 \u0445\u043e\u043b\u0431\u043e\u0433\u0434\u043e\u0445\u0434\u043e\u043e Google \u0414\u043e\u043a\u044b\u043d \u043d\u04af\u04af\u0440 \u0445\u0443\u0443\u0434\u0430\u0441\u043d\u0430\u0430\u0441 \u0442\u043e\u0445\u0438\u0440\u0433\u043e\u043e \u0434\u043e\u0442\u043e\u0440\u0445 \u043e\u0444\u043b\u0430\u0439\u043d \u0441\u0438\u043d\u043a\u0438\u0439\u0433 \u0438\u0434\u044d\u0432\u0445\u0436\u04af\u04af\u043b\u043d\u0
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1719
    Entropy (8bit):4.287702203591075
    Encrypted:false
    SSDEEP:
    MD5:3B98C4ED8874A160C3789FEAD5553CFA
    SHA1:5550D0EC548335293D962AAA96B6443DD8ABB9F6
    SHA-256:ADEB082A9C754DFD5A9D47340A3DDCC19BF9C7EFA6E629A2F1796305F1C9A66F
    SHA-512:5139B6C6DF9459C7B5CDC08A98348891499408CD75B46519BA3AC29E99AAAFCC5911A1DEE6C3A57E3413DBD0FAE72D7CBC676027248DCE6364377982B5CE4151
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".... .... ...".. },.. "explanationofflinedisabled": {.. "message": "...... ...... ..... ......... ....... ....... ..... Google ....... ............, Google ....... .............. .......... .. ... ..... .... ...... ......... ...... ...... ...... .... .... ....".. },.. "explanationofflineenabled": {.. "message": "...... ...... ...., ..... ...... ...... ...... .... ....... ... ..... .... .... ... .....".. },.. "extdesc": {.. "message": "..... ..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):936
    Entropy (8bit):4.457879437756106
    Encrypted:false
    SSDEEP:
    MD5:7D273824B1E22426C033FF5D8D7162B7
    SHA1:EADBE9DBE5519BD60458B3551BDFC36A10049DD1
    SHA-256:2824CF97513DC3ECC261F378BFD595AE95A5997E9D1C63F5731A58B1F8CD54F9
    SHA-512:E5B611BBFAB24C9924D1D5E1774925433C65C322769E1F3B116254B1E9C69B6DF1BE7828141EEBBF7524DD179875D40C1D8F29C4FB86D663B8A365C6C60421A7
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "BUAT BAHARU".. },.. "explanationofflinedisabled": {.. "message": "Anda berada di luar talian. Untuk menggunakan Google Docs tanpa sambungan Internet, pergi ke tetapan di halaman utama Google Docs dan hidupkan penyegerakan luar talian apabila anda disambungkan ke Internet selepas ini.".. },.. "explanationofflineenabled": {.. "message": "Anda berada di luar talian, tetapi anda masih boleh mengedit fail yang tersedia atau buat fail baharu.".. },.. "extdesc": {.. "message": "Edit, buat dan lihat dokumen, hamparan dan pembentangan anda . kesemuanya tanpa akses Internet.".. },.. "extname": {.. "message": "Google Docs Luar Talian".. },.. "learnmore": {.. "message": "Ketahui Lebih Lanjut".. },.. "popuphelptext": {.. "message": "Tulis, edit dan bekerjasama di mana-mana sahaja anda berada, dengan atau tanpa sambungan Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):3830
    Entropy (8bit):3.5483353063347587
    Encrypted:false
    SSDEEP:
    MD5:342335A22F1886B8BC92008597326B24
    SHA1:2CB04F892E430DCD7705C02BF0A8619354515513
    SHA-256:243BEFBD6B67A21433DCC97DC1A728896D3A070DC20055EB04D644E1BB955FE7
    SHA-512:CD344D060E30242E5A4705547E807CE3CE2231EE983BB9A8AD22B3E7598A7EC87399094B04A80245AD51D039370F09D74FE54C0B0738583884A73F0C7E888AD8
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u1021\u101e\u1005\u103a \u1015\u103c\u102f\u101c\u102f\u1015\u103a\u101b\u1014\u103a"},"explanationofflinedisabled":{"message":"\u101e\u1004\u103a \u1021\u1031\u102c\u1037\u1016\u103a\u101c\u102d\u102f\u1004\u103a\u1038\u1016\u103c\u1005\u103a\u1014\u1031\u1015\u102b\u101e\u100a\u103a\u104b \u1021\u1004\u103a\u1010\u102c\u1014\u1000\u103a\u1001\u103b\u102d\u1010\u103a\u1006\u1000\u103a\u1019\u103e\u102f \u1019\u101b\u103e\u102d\u1018\u1032 Google Docs \u1000\u102d\u102f \u1021\u101e\u102f\u1036\u1038\u1015\u103c\u102f\u101b\u1014\u103a \u1014\u1031\u102c\u1000\u103a\u1010\u1005\u103a\u1000\u103c\u102d\u1019\u103a \u101e\u1004\u103a\u1021\u1004\u103a\u1010\u102c\u1014\u1000\u103a\u1001\u103b\u102d\u1010\u103a\u1006\u1000\u103a\u101e\u100a\u1037\u103a\u1021\u1001\u102b Google Docs \u1015\u1004\u103a\u1019\u1005\u102c\u1019\u103b\u1000\u103a\u1014\u103e\u102c\u101b\u103e\u102d \u1006\u1000\u103a\u1010\u1004\u103a\u1019\u103b\u102c\u1038\u101e\u102d\u102f\u1037\u1
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1898
    Entropy (8bit):4.187050294267571
    Encrypted:false
    SSDEEP:
    MD5:B1083DA5EC718D1F2F093BD3D1FB4F37
    SHA1:74B6F050D918448396642765DEF1AD5390AB5282
    SHA-256:E6ED0A023EF31705CCCBAF1E07F2B4B2279059296B5CA973D2070417BA16F790
    SHA-512:7102B90ABBE2C811E8EE2F1886A73B1298D4F3D5D05F0FFDB57CF78B9A49A25023A290B255BAA4895BB150B388BAFD9F8432650B8C70A1A9A75083FFFCD74F1A
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".... ....... .........".. },.. "explanationofflinedisabled": {.. "message": "..... ...... .......... .... ........ .... .... Google ........ ...... .... ..... ..... ... .......... ....... .... Google ........ .......... ..... .......... .. ...... ..... .... ..... ......... .. ..........".. },.. "explanationofflineenabled": {.. "message": "..... ...... ........., .. ..... ... ... ...... ....... ....... .. .... ....... ....
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):914
    Entropy (8bit):4.513485418448461
    Encrypted:false
    SSDEEP:
    MD5:32DF72F14BE59A9BC9777113A8B21DE6
    SHA1:2A8D9B9A998453144307DD0B700A76E783062AD0
    SHA-256:F3FE1FFCB182183B76E1B46C4463168C746A38E461FD25CA91FF2A40846F1D61
    SHA-512:E0966F5CCA5A8A6D91C58D716E662E892D1C3441DAA5D632E5E843839BB989F620D8AC33ED3EDBAFE18D7306B40CD0C4639E5A4E04DA2C598331DACEC2112AAD
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "NIEUW MAKEN".. },.. "explanationofflinedisabled": {.. "message": "Je bent offline. Wil je Google Documenten zonder internetverbinding gebruiken, ga dan de volgende keer dat je verbinding met internet hebt naar 'Instellingen' op de homepage van Google Documenten en zet 'Offline synchronisatie' aan.".. },.. "explanationofflineenabled": {.. "message": "Je bent offline, maar je kunt nog wel beschikbare bestanden bewerken of nieuwe bestanden maken.".. },.. "extdesc": {.. "message": "Bewerk, maak en bekijk je documenten, spreadsheets en presentaties. Allemaal zonder internettoegang.".. },.. "extname": {.. "message": "Offline Documenten".. },.. "learnmore": {.. "message": "Meer informatie".. },.. "popuphelptext": {.. "message": "Overal schrijven, bewerken en samenwerken, met of zonder internetverbinding.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):878
    Entropy (8bit):4.4541485835627475
    Encrypted:false
    SSDEEP:
    MD5:A1744B0F53CCF889955B95108367F9C8
    SHA1:6A5A6771DFF13DCB4FD425ED839BA100B7123DE0
    SHA-256:21CEFF02B45A4BFD60D144879DFA9F427949A027DD49A3EB0E9E345BD0B7C9A8
    SHA-512:F55E43F14514EECB89F6727A0D3C234149609020A516B193542B5964D2536D192F40CC12D377E70C683C269A1BDCDE1C6A0E634AA84A164775CFFE776536A961
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "OPPRETT NYTT".. },.. "explanationofflinedisabled": {.. "message": "Du er uten nett. For . bruke Google Dokumenter uten internettilkobling, g. til innstillingene p. Google Dokumenter-nettsiden og sl. p. synkronisering uten nett neste gang du er koblet til Internett.".. },.. "explanationofflineenabled": {.. "message": "Du er uten nett, men du kan likevel endre tilgjengelige filer eller opprette nye.".. },.. "extdesc": {.. "message": "Rediger, opprett og se dokumentene, regnearkene og presentasjonene dine . uten nettilgang.".. },.. "extname": {.. "message": "Google Dokumenter uten nett".. },.. "learnmore": {.. "message": "Finn ut mer".. },.. "popuphelptext": {.. "message": "Skriv, rediger eller samarbeid uansett hvor du er, med eller uten internettilkobling.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2766
    Entropy (8bit):3.839730779948262
    Encrypted:false
    SSDEEP:
    MD5:97F769F51B83D35C260D1F8CFD7990AF
    SHA1:0D59A76564B0AEE31D0A074305905472F740CECA
    SHA-256:BBD37D41B7DE6F93948FA2437A7699D4C30A3C39E736179702F212CB36A3133C
    SHA-512:D91F5E2D22FC2D7F73C1F1C4AF79DB98FCFD1C7804069AE9B2348CBC729A6D2DFF7FB6F44D152B0BDABA6E0D05DFF54987E8472C081C4D39315CEC2CBC593816
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u0a28\u0a35\u0a3e\u0a02 \u0a2c\u0a23\u0a3e\u0a13"},"explanationofflinedisabled":{"message":"\u0a24\u0a41\u0a38\u0a40\u0a02 \u0a06\u0a2b\u0a3c\u0a32\u0a3e\u0a08\u0a28 \u0a39\u0a4b\u0964 \u0a07\u0a70\u0a1f\u0a30\u0a28\u0a48\u0a71\u0a1f \u0a15\u0a28\u0a48\u0a15\u0a36\u0a28 \u0a26\u0a47 \u0a2c\u0a3f\u0a28\u0a3e\u0a02 Google Docs \u0a28\u0a42\u0a70 \u0a35\u0a30\u0a24\u0a23 \u0a32\u0a08, \u0a05\u0a17\u0a32\u0a40 \u0a35\u0a3e\u0a30 \u0a1c\u0a26\u0a4b\u0a02 \u0a24\u0a41\u0a38\u0a40\u0a02 \u0a07\u0a70\u0a1f\u0a30\u0a28\u0a48\u0a71\u0a1f \u0a26\u0a47 \u0a28\u0a3e\u0a32 \u0a15\u0a28\u0a48\u0a15\u0a1f \u0a39\u0a4b\u0a35\u0a4b \u0a24\u0a3e\u0a02 Google Docs \u0a2e\u0a41\u0a71\u0a16 \u0a2a\u0a70\u0a28\u0a47 '\u0a24\u0a47 \u0a38\u0a48\u0a1f\u0a3f\u0a70\u0a17\u0a3e\u0a02 \u0a35\u0a3f\u0a71\u0a1a \u0a1c\u0a3e\u0a13 \u0a05\u0a24\u0a47 \u0a06\u0a2b\u0a3c\u0a32\u0a3e\u0a08\u0a28 \u0a38\u0a3f\u0a70\u0a15 \u0a28\u0a42\u0a70 \u0a1a\u0a3e\u0a32\u0a42 \u0a15\u0a30\u0a4b\u0964"},"expla
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):978
    Entropy (8bit):4.879137540019932
    Encrypted:false
    SSDEEP:
    MD5:B8D55E4E3B9619784AECA61BA15C9C0F
    SHA1:B4A9C9885FBEB78635957296FDDD12579FEFA033
    SHA-256:E00FF20437599A5C184CA0C79546CB6500171A95E5F24B9B5535E89A89D3EC3D
    SHA-512:266589116EEE223056391C65808255EDAE10EB6DC5C26655D96F8178A41E283B06360AB8E08AC3857D172023C4F616EF073D0BEA770A3B3DD3EE74F5FFB2296B
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "UTW.RZ NOWY".. },.. "explanationofflinedisabled": {.. "message": "Jeste. offline. Aby korzysta. z Dokument.w Google bez po..czenia internetowego, otw.rz ustawienia na stronie g..wnej Dokument.w Google i w..cz synchronizacj. offline nast.pnym razem, gdy b.dziesz mie. dost.p do internetu.".. },.. "explanationofflineenabled": {.. "message": "Jeste. offline, ale nadal mo.esz edytowa. dost.pne pliki i tworzy. nowe.".. },.. "extdesc": {.. "message": "Edytuj, tw.rz i wy.wietlaj swoje dokumenty, arkusze kalkulacyjne oraz prezentacje bez konieczno.ci ..czenia si. z internetem.".. },.. "extname": {.. "message": "Dokumenty Google offline".. },.. "learnmore": {.. "message": "Wi.cej informacji".. },.. "popuphelptext": {.. "message": "Pisz, edytuj i wsp..pracuj, gdziekolwiek jeste. . niezale.nie od tego, czy masz po..czenie z internetem.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):907
    Entropy (8bit):4.599411354657937
    Encrypted:false
    SSDEEP:
    MD5:608551F7026E6BA8C0CF85D9AC11F8E3
    SHA1:87B017B2D4DA17E322AF6384F82B57B807628617
    SHA-256:A73EEA087164620FA2260D3910D3FBE302ED85F454EDB1493A4F287D42FC882F
    SHA-512:82F52F8591DB3C0469CC16D7CBFDBF9116F6D5B5D2AD02A3D8FA39CE1378C64C0EA80AB8509519027F71A89EB8BBF38A8702D9AD26C8E6E0F499BF7DA18BF747
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CRIAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Voc. est. off-line. Para usar o Documentos Google sem conex.o com a Internet, na pr.xima vez que se conectar, acesse as configura..es na p.gina inicial do Documentos Google e ative a sincroniza..o off-line.".. },.. "explanationofflineenabled": {.. "message": "Voc. est. off-line, mas mesmo assim pode editar os arquivos dispon.veis ou criar novos arquivos.".. },.. "extdesc": {.. "message": "Edite, crie e veja seus documentos, planilhas e apresenta..es sem precisar de acesso . Internet.".. },.. "extname": {.. "message": "Documentos Google off-line".. },.. "learnmore": {.. "message": "Saiba mais".. },.. "popuphelptext": {.. "message": "Escreva, edite e colabore onde voc. estiver, com ou sem conex.o com a Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):914
    Entropy (8bit):4.604761241355716
    Encrypted:false
    SSDEEP:
    MD5:0963F2F3641A62A78B02825F6FA3941C
    SHA1:7E6972BEAB3D18E49857079A24FB9336BC4D2D48
    SHA-256:E93B8E7FB86D2F7DFAE57416BB1FB6EE0EEA25629B972A5922940F0023C85F90
    SHA-512:22DD42D967124DA5A2209DD05FB6AD3F5D0D2687EA956A22BA1E31C56EC09DEB53F0711CD5B24D672405358502E9D1C502659BB36CED66CAF83923B021CA0286
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CRIAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Est. offline. Para utilizar o Google Docs sem uma liga..o . Internet, aceda .s defini..es na p.gina inicial do Google Docs e ative a sincroniza..o offline da pr.xima vez que estiver ligado . Internet.".. },.. "explanationofflineenabled": {.. "message": "Est. offline, mas continua a poder editar os ficheiros dispon.veis ou criar novos ficheiros.".. },.. "extdesc": {.. "message": "Edite, crie e veja os documentos, as folhas de c.lculo e as apresenta..es, tudo sem precisar de aceder . Internet.".. },.. "extname": {.. "message": "Google Docs offline".. },.. "learnmore": {.. "message": "Saber mais".. },.. "popuphelptext": {.. "message": "Escreva edite e colabore onde quer que esteja, com ou sem uma liga..o . Internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):937
    Entropy (8bit):4.686555713975264
    Encrypted:false
    SSDEEP:
    MD5:BED8332AB788098D276B448EC2B33351
    SHA1:6084124A2B32F386967DA980CBE79DD86742859E
    SHA-256:085787999D78FADFF9600C9DC5E3FF4FB4EB9BE06D6BB19DF2EEF8C284BE7B20
    SHA-512:22596584D10707CC1C8179ED3ABE46EF2C314CF9C3D0685921475944B8855AAB660590F8FA1CFDCE7976B4BB3BD9ABBBF053F61F1249A325FD0094E1C95692ED
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "CREEAZ. UN DOCUMENT".. },.. "explanationofflinedisabled": {.. "message": "E.ti offline. Pentru a utiliza Documente Google f.r. conexiune la internet, intr. .n set.rile din pagina principal. Documente Google .i activeaz. sincronizarea offline data viitoare c.nd e.ti conectat(.) la internet.".. },.. "explanationofflineenabled": {.. "message": "E.ti offline, dar po.i .nc. s. editezi fi.ierele disponibile sau s. creezi altele.".. },.. "extdesc": {.. "message": "Editeaz., creeaz. .i acceseaz. documente, foi de calcul .i prezent.ri - totul f.r. acces la internet.".. },.. "extname": {.. "message": "Documente Google Offline".. },.. "learnmore": {.. "message": "Afl. mai multe".. },.. "popuphelptext": {.. "message": "Scrie, editeaz. .i colaboreaz. oriunde ai fi, cu sau f.r. conexiune la internet.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1337
    Entropy (8bit):4.69531415794894
    Encrypted:false
    SSDEEP:
    MD5:51D34FE303D0C90EE409A2397FCA437D
    SHA1:B4B9A7B19C62D0AA95D1F10640A5FBA628CCCA12
    SHA-256:BE733625ACD03158103D62BC0EEF272CA3F265AC30C87A6A03467481A177DAE3
    SHA-512:E8670DED44DC6EE30E5F41C8B2040CF8A463CD9A60FC31FA70EB1D4C9AC1A3558369792B5B86FA761A21F5266D5A35E5C2C39297F367DAA84159585C19EC492A
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".......".. },.. "explanationofflinedisabled": {.. "message": "..... ............ Google ......... ... ........., ............ . .... . ......... ............. . ......-...... . .......... .. ......... .........".. },.. "explanationofflineenabled": {.. "message": "... ........... . .......... .. ...... ......... ..... ..... . ............. .., . ....... ........ ......-.......".. },.. "extdesc": {.. "message": ".........., .............. . ............ ........., ....... . ........... ... ....... . ..........".. },.. "extname": {.. "message": "Google.......... ......".. },.. "learnmore": {.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2846
    Entropy (8bit):3.7416822879702547
    Encrypted:false
    SSDEEP:
    MD5:B8A4FD612534A171A9A03C1984BB4BDD
    SHA1:F513F7300827FE352E8ECB5BD4BB1729F3A0E22A
    SHA-256:54241EBE651A8344235CC47AFD274C080ABAEBC8C3A25AFB95D8373B6A5670A2
    SHA-512:C03E35BFDE546AEB3245024EF721E7E606327581EFE9EAF8C5B11989D9033BDB58437041A5CB6D567BAA05466B6AAF054C47F976FD940EEEDF69FDF80D79095B
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u0db1\u0dc0 \u0dbd\u0dda\u0d9b\u0db1\u0dba\u0d9a\u0dca \u0dc3\u0dcf\u0daf\u0db1\u0dca\u0db1"},"explanationofflinedisabled":{"message":"\u0d94\u0db6 \u0db1\u0ddc\u0db6\u0dd0\u0db3\u0dd2\u0dba. \u0d85\u0db1\u0dca\u0dad\u0dbb\u0dca\u0da2\u0dcf\u0dbd \u0dc3\u0db8\u0dca\u0db6\u0db1\u0dca\u0db0\u0dad\u0dcf\u0dc0\u0d9a\u0dca \u0db1\u0ddc\u0db8\u0dd0\u0dad\u0dd2\u0dc0 Google Docs \u0db7\u0dcf\u0dc0\u0dd2\u0dad \u0d9a\u0dd2\u0dbb\u0dd3\u0db8\u0da7, Google Docs \u0db8\u0dd4\u0dbd\u0dca \u0db4\u0dd2\u0da7\u0dd4\u0dc0 \u0db8\u0dad \u0dc3\u0dd0\u0d9a\u0dc3\u0dd3\u0db8\u0dca \u0dc0\u0dd9\u0dad \u0d9c\u0ddc\u0dc3\u0dca \u0d94\u0db6 \u0d8a\u0dc5\u0d9f \u0d85\u0dc0\u0dc3\u0dca\u0dae\u0dcf\u0dc0\u0dda \u0d85\u0db1\u0dca\u0dad\u0dbb\u0dca\u0da2\u0dcf\u0dbd\u0dba\u0da7 \u0dc3\u0db6\u0dd0\u0db3\u0dd2 \u0dc0\u0dd2\u0da7 \u0db1\u0ddc\u0db6\u0dd0\u0db3\u0dd2 \u0dc3\u0db8\u0db8\u0dd4\u0dc4\u0dd4\u0dbb\u0dca\u0dad \u0d9a\u0dd2\u0dbb\u0dd3\u0db8 \u0d9a\u0dca\u200d\u0dbb\u0dd2\u0dba\u0dc
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):934
    Entropy (8bit):4.882122893545996
    Encrypted:false
    SSDEEP:
    MD5:8E55817BF7A87052F11FE554A61C52D5
    SHA1:9ABDC0725FE27967F6F6BE0DF5D6C46E2957F455
    SHA-256:903060EC9E76040B46DEB47BBB041D0B28A6816CB9B892D7342FC7DC6782F87C
    SHA-512:EFF9EC7E72B272DDE5F29123653BC056A4BC2C3C662AE3C448F8CB6A4D1865A0679B7E74C1B3189F3E262109ED6BC8F8D2BDE14AEFC8E87E0F785AE4837D01C7
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "VYTVORI. NOV.".. },.. "explanationofflinedisabled": {.. "message": "Ste offline. Ak chcete pou.i. Dokumenty Google bez pripojenia na internet, po najbli..om pripojen. na internet prejdite do nastaven. na domovskej str.nke Dokumentov Google a.zapnite offline synchroniz.ciu.".. },.. "explanationofflineenabled": {.. "message": "Ste offline, no st.le m..ete upravova. dostupn. s.bory a.vytv.ra. nov..".. },.. "extdesc": {.. "message": ".prava, tvorba a.zobrazenie dokumentov, tabuliek a.prezent.ci.. To v.etko bez pr.stupu na internet.".. },.. "extname": {.. "message": "Dokumenty Google v re.ime offline".. },.. "learnmore": {.. "message": ".al.ie inform.cie".. },.. "popuphelptext": {.. "message": "P..te, upravujte a.spolupracuje, kdeko.vek ste, a.to s.pripojen.m na internet aj bez neho.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):963
    Entropy (8bit):4.6041913416245
    Encrypted:false
    SSDEEP:
    MD5:BFAEFEFF32813DF91C56B71B79EC2AF4
    SHA1:F8EDA2B632610972B581724D6B2F9782AC37377B
    SHA-256:AAB9CF9098294A46DC0F2FA468AFFF7CA7C323A1A0EFA70C9DB1E3A4DA05D1D4
    SHA-512:971F2BBF5E9C84DE3D31E5F2A4D1A00D891A2504F8AF6D3F75FC19056BFD059A270C4C9836AF35258ABA586A1888133FB22B484F260C1CBC2D1D17BC3B4451AA
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "USTVARI NOVO".. },.. "explanationofflinedisabled": {.. "message": "Nimate vzpostavljene povezave. .e .elite uporabljati Google Dokumente brez internetne povezave, odprite nastavitve na doma.i strani Google Dokumentov in vklopite sinhronizacijo brez povezave, ko naslednji. vzpostavite internetno povezavo.".. },.. "explanationofflineenabled": {.. "message": "Nimate vzpostavljene povezave, vendar lahko .e vedno urejate razpolo.ljive datoteke ali ustvarjate nove.".. },.. "extdesc": {.. "message": "Urejajte, ustvarjajte in si ogledujte dokumente, preglednice in predstavitve . vse to brez internetnega dostopa.".. },.. "extname": {.. "message": "Google Dokumenti brez povezave".. },.. "learnmore": {.. "message": "Ve. o tem".. },.. "popuphelptext": {.. "message": "Pi.ite, urejajte in sodelujte, kjer koli ste, z internetno povezavo ali brez nje.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1320
    Entropy (8bit):4.569671329405572
    Encrypted:false
    SSDEEP:
    MD5:7F5F8933D2D078618496C67526A2B066
    SHA1:B7050E3EFA4D39548577CF47CB119FA0E246B7A4
    SHA-256:4E8B69E864F57CDDD4DC4E4FAF2C28D496874D06016BC22E8D39E0CB69552769
    SHA-512:0FBAB56629368EEF87DEEF2977CA51831BEB7DEAE98E02504E564218425C751853C4FDEAA40F51ECFE75C633128B56AE105A6EB308FD5B4A2E983013197F5DBA
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "....... ....".. },.. "explanationofflinedisabled": {.. "message": "...... .... .. ..... ......... Google ......... ... ........ ...., ..... . .......... .. ........ ........ Google .......... . ........ ...... .............. ... ....... ... ...... ........ .. ...........".. },.. "explanationofflineenabled": {.. "message": "...... ..., ... . .... ...... .. ....... ...... . ........ ........ ... .. ....... .....".. },.. "extdesc": {.. "message": "....... . ........... ........., ...... . ............ . ....... ...... . ... . ... .. ... ........ .........".. },.. "extname": {.. "message
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):884
    Entropy (8bit):4.627108704340797
    Encrypted:false
    SSDEEP:
    MD5:90D8FB448CE9C0B9BA3D07FB8DE6D7EE
    SHA1:D8688CAC0245FD7B886D0DEB51394F5DF8AE7E84
    SHA-256:64B1E422B346AB77C5D1C77142685B3FF7661D498767D104B0C24CB36D0EB859
    SHA-512:6D58F49EE3EF0D3186EA036B868B2203FE936CE30DC8E246C32E90B58D9B18C624825419346B62AF8F7D61767DBE9721957280AA3C524D3A5DFB1A3A76C00742
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "SKAPA NYTT".. },.. "explanationofflinedisabled": {.. "message": "Du .r offline. Om du vill anv.nda Google Dokument utan internetuppkoppling, .ppna inst.llningarna p. Google Dokuments startsida och aktivera offlinesynkronisering n.sta g.ng du .r ansluten till internet.".. },.. "explanationofflineenabled": {.. "message": "Du .r offline, men det g.r fortfarande att redigera tillg.ngliga filer eller skapa nya.".. },.. "extdesc": {.. "message": "Redigera, skapa och visa dina dokument, kalkylark och presentationer . helt utan internet.tkomst.".. },.. "extname": {.. "message": "Google Dokument Offline".. },.. "learnmore": {.. "message": "L.s mer".. },.. "popuphelptext": {.. "message": "Skriv, redigera och samarbeta .verallt, med eller utan internetanslutning.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):980
    Entropy (8bit):4.50673686618174
    Encrypted:false
    SSDEEP:
    MD5:D0579209686889E079D87C23817EDDD5
    SHA1:C4F99E66A5891973315D7F2BC9C1DAA524CB30DC
    SHA-256:0D20680B74AF10EF8C754FCDE259124A438DCE3848305B0CAF994D98E787D263
    SHA-512:D59911F91ED6C8FF78FD158389B4D326DAF4C031B940C399569FE210F6985E23897E7F404B7014FC7B0ACEC086C01CC5F76354F7E5D3A1E0DEDEF788C23C2978
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "FUNGUA MPYA".. },.. "explanationofflinedisabled": {.. "message": "Haupo mtandaoni. Ili uweze kutumia Hati za Google bila muunganisho wa intaneti, wakati utakuwa umeunganishwa kwenye intaneti, nenda kwenye sehemu ya mipangilio kwenye ukurasa wa kwanza wa Hati za Google kisha uwashe kipengele cha usawazishaji nje ya mtandao.".. },.. "explanationofflineenabled": {.. "message": "Haupo mtandaoni, lakini bado unaweza kubadilisha faili zilizopo au uunde mpya.".. },.. "extdesc": {.. "message": "Badilisha, unda na uangalie hati, malahajedwali na mawasilisho yako . yote bila kutumia muunganisho wa intaneti.".. },.. "extname": {.. "message": "Hati za Google Nje ya Mtandao".. },.. "learnmore": {.. "message": "Pata Maelezo Zaidi".. },.. "popuphelptext": {.. "message": "Andika hati, zibadilishe na ushirikiane na wengine popote ulipo, iwe una muunganisho wa intaneti au huna.".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1941
    Entropy (8bit):4.132139619026436
    Encrypted:false
    SSDEEP:
    MD5:DCC0D1725AEAEAAF1690EF8053529601
    SHA1:BB9D31859469760AC93E84B70B57909DCC02EA65
    SHA-256:6282BF9DF12AD453858B0B531C8999D5FD6251EB855234546A1B30858462231A
    SHA-512:6243982D764026D342B3C47C706D822BB2B0CAFFA51F0591D8C878F981EEF2A7FC68B76D012630B1C1EB394AF90EB782E2B49329EB6538DD5608A7F0791FDCF5
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "..... ....... .........".. },.. "explanationofflinedisabled": {.. "message": ".......... ........... .... ....... ..... Google ......... .........., ...... .... ........... ......... ...., Google ... ................... ................ ......, ........ ......... ..........".. },.. "explanationofflineenabled": {.. "message": ".......... ..........., .......... .......... .......... ......... ........... ...... .....
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1969
    Entropy (8bit):4.327258153043599
    Encrypted:false
    SSDEEP:
    MD5:385E65EF723F1C4018EEE6E4E56BC03F
    SHA1:0CEA195638A403FD99BAEF88A360BD746C21DF42
    SHA-256:026C164BAE27DBB36A564888A796AA3F188AAD9E0C37176D48910395CF772CEA
    SHA-512:E55167CB5638E04DF3543D57C8027B86B9483BFCAFA8E7C148EDED66454AEBF554B4C1CF3C33E93EC63D73E43800D6A6E7B9B1A1B0798B6BDB2F699D3989B052
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "..... ...... ........ ......".. },.. "explanationofflinedisabled": {.. "message": ".... ........... ........ ......... ........ ....... Google Docs... .............., .... ............ ....... ..... ...... .... Google Docs .... ...... ............. ......, ........ ........ ... .......".. },.. "explanationofflineenabled": {.. "message": ".... ........... ......., .... .... ........ .......... .... ....... ..... ....... .... ..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1674
    Entropy (8bit):4.343724179386811
    Encrypted:false
    SSDEEP:
    MD5:64077E3D186E585A8BEA86FF415AA19D
    SHA1:73A861AC810DABB4CE63AD052E6E1834F8CA0E65
    SHA-256:D147631B2334A25B8AA4519E4A30FB3A1A85B6A0396BC688C68DC124EC387D58
    SHA-512:56DD389EB9DD335A6214E206B3BF5D63562584394D1DE1928B67D369E548477004146E6CB2AD19D291CB06564676E2B2AC078162356F6BC9278B04D29825EF0C
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".........".. },.. "explanationofflinedisabled": {.. "message": ".............. ............. Google .................................... ............................... Google ...... .................................................................".. },.. "explanationofflineenabled": {.. "message": "................................................................".. },.. "extdesc": {.. "message": "..... ..... ........
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1063
    Entropy (8bit):4.853399816115876
    Encrypted:false
    SSDEEP:
    MD5:76B59AAACC7B469792694CF3855D3F4C
    SHA1:7C04A2C1C808FA57057A4CCEEE66855251A3C231
    SHA-256:B9066A162BEE00FD50DC48C71B32B69DFFA362A01F84B45698B017A624F46824
    SHA-512:2E507CA6874DE8028DC769F3D9DFD9E5494C268432BA41B51568D56F7426F8A5F2E5B111DDD04259EB8D9A036BB4E3333863A8FC65AAB793BCEF39EDFE41403B
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "YEN. OLU.TUR".. },.. "explanationofflinedisabled": {.. "message": ".nternet'e ba.l. de.ilsiniz. Google Dok.manlar'. .nternet ba.lant.s. olmadan kullanmak i.in, .nternet'e ba.lanabildi.inizde Google Dok.manlar ana sayfas.nda Ayarlar'a gidin ve .evrimd... senkronizasyonu etkinle.tirin.".. },.. "explanationofflineenabled": {.. "message": ".nternet'e ba.l. de.ilsiniz. Ancak, yine de mevcut dosyalar. d.zenleyebilir veya yeni dosyalar olu.turabilirsiniz.".. },.. "extdesc": {.. "message": "Dok.man, e-tablo ve sunu olu.turun, bunlar. d.zenleyin ve g.r.nt.leyin. T.m bu i.lemleri internet eri.imi olmadan yapabilirsiniz.".. },.. "extname": {.. "message": "Google Dok.manlar .evrimd...".. },.. "learnmore": {.. "message": "Daha Fazla Bilgi".. },.. "popuphelptext": {.. "message": ".nternet ba.lant.n.z olsun veya olmas.n, nerede olursan.z olun yaz.n, d.zenl
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1333
    Entropy (8bit):4.686760246306605
    Encrypted:false
    SSDEEP:
    MD5:970963C25C2CEF16BB6F60952E103105
    SHA1:BBDDACFEEE60E22FB1C130E1EE8EFDA75EA600AA
    SHA-256:9FA26FF09F6ACDE2457ED366C0C4124B6CAC1435D0C4FD8A870A0C090417DA19
    SHA-512:1BED9FE4D4ADEED3D0BC8258D9F2FD72C6A177C713C3B03FC6F5452B6D6C2CB2236C54EA972ECE7DBFD756733805EB2352CAE44BAB93AA8EA73BB80460349504
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "........".. },.. "explanationofflinedisabled": {.. "message": ".. . ...... ....... ... ............. Google ........... ... ......... . .........., ......... . ............ .. ........ ........ Google .......... . ......... ......-............., .... ...... . .......".. },.. "explanationofflineenabled": {.. "message": ".. . ...... ......, ..... ... .... ...... .......... ........ ..... ... .......... .....".. },.. "extdesc": {.. "message": "........., ......... . ............ ........., .......... ....... .. ........... ... ....... .. ..........".. },.. "extname": {.. "message": "Goo
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1263
    Entropy (8bit):4.861856182762435
    Encrypted:false
    SSDEEP:
    MD5:8B4DF6A9281333341C939C244DDB7648
    SHA1:382C80CAD29BCF8AAF52D9A24CA5A6ECF1941C6B
    SHA-256:5DA836224D0F3A96F1C5EB5063061AAD837CA9FC6FED15D19C66DA25CF56F8AC
    SHA-512:FA1C015D4EA349F73468C78FDB798D462EEF0F73C1A762298798E19F825E968383B0A133E0A2CE3B3DF95F24C71992235BFC872C69DC98166B44D3183BF8A9E5
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "... ......".. },.. "explanationofflinedisabled": {.. "message": ".. .. .... .... Google Docs .. .... ....... ..... ....... .... ..... .... ... .. .. ....... .. ..... ... .. Google Docs ... ... .. ....... .. ..... ... .. .... ...... ..... .. .. .....".. },.. "explanationofflineenabled": {.. "message": ".. .. .... ... .... .. ... ... ...... ..... ... ..... .. .... ... .. ... ..... ... .... ....".. },.. "extdesc": {.. "message": ".......... .......... ... ....... . .... ... ....... .. ..... .. .... ...... ..... .... ... ..... .......".. },.. "extname": {.. "message": "Google Docs .. ....".. },.. "learnmore": {..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1074
    Entropy (8bit):5.062722522759407
    Encrypted:false
    SSDEEP:
    MD5:773A3B9E708D052D6CBAA6D55C8A5438
    SHA1:5617235844595D5C73961A2C0A4AC66D8EA5F90F
    SHA-256:597C5F32BC999746BC5C2ED1E5115C523B7EB1D33F81B042203E1C1DF4BBCAFE
    SHA-512:E5F906729E38B23F64D7F146FA48F3ABF6BAED9AAFC0E5F6FA59F369DC47829DBB4BFA94448580BD61A34E844241F590B8D7AEC7091861105D8EBB2590A3BEE9
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "T.O M.I".. },.. "explanationofflinedisabled": {.. "message": "B.n .ang ngo.i tuy.n. .. s. d.ng Google T.i li.u m. kh.ng c.n k.t n.i Internet, .i ..n c.i ..t tr.n trang ch. c.a Google T.i li.u v. b.t ..ng b. h.a ngo.i tuy.n v.o l.n ti.p theo b.n ...c k.t n.i v.i m.ng Internet.".. },.. "explanationofflineenabled": {.. "message": "B.n .ang ngo.i tuy.n, tuy nhi.n b.n v.n c. th. ch.nh s.a c.c t.p c. s.n ho.c t.o c.c t.p m.i.".. },.. "extdesc": {.. "message": "Ch.nh s.a, t.o v. xem t.i li.u, b.ng t.nh v. b.n tr.nh b.y . t.t c. m. kh.ng c.n truy c.p Internet.".. },.. "extname": {.. "message": "Google T.i li.u ngo.i tuy.n".. },.. "learnmore": {.. "message": "Ti.m hi..u th.m".. },.. "popuphelptext": {.. "message": "Vi.t, ch.nh s.a v. c.ng t.c
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):879
    Entropy (8bit):5.7905809868505544
    Encrypted:false
    SSDEEP:
    MD5:3E76788E17E62FB49FB5ED5F4E7A3DCE
    SHA1:6904FFA0D13D45496F126E58C886C35366EFCC11
    SHA-256:E72D0BB08CC3005556E95A498BD737E7783BB0E56DCC202E7D27A536616F5EE0
    SHA-512:F431E570AB5973C54275C9EEF05E49E6FE2D6C17000F98D672DD31F9A1FAD98E0D50B5B0B9CF85D5BBD3B655B93FD69768C194C8C1688CB962AA75FF1AF9BDB6
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": "..".. },.. "explanationofflinedisabled": {.. "message": "....................... Google ................ Google ....................".. },.. "explanationofflineenabled": {.. "message": ".............................".. },.. "extdesc": {.. "message": "...................... - ........".. },.. "extname": {.. "message": "Google .......".. },.. "learnmore": {.. "message": "....".. },.. "popuphelptext": {.. "message": "...............................".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):1205
    Entropy (8bit):4.50367724745418
    Encrypted:false
    SSDEEP:
    MD5:524E1B2A370D0E71342D05DDE3D3E774
    SHA1:60D1F59714F9E8F90EF34138D33FBFF6DD39E85A
    SHA-256:30F44CFAD052D73D86D12FA20CFC111563A3B2E4523B43F7D66D934BA8DACE91
    SHA-512:D2225CF2FA94B01A7B0F70A933E1FDCF69CDF92F76C424CE4F9FCC86510C481C9A87A7B71F907C836CBB1CA41A8BEBBD08F68DBC90710984CA738D293F905272
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"\u5efa\u7acb\u65b0\u9805\u76ee"},"explanationofflinedisabled":{"message":"\u60a8\u8655\u65bc\u96e2\u7dda\u72c0\u614b\u3002\u5982\u8981\u5728\u6c92\u6709\u4e92\u806f\u7db2\u9023\u7dda\u7684\u60c5\u6cc1\u4e0b\u4f7f\u7528\u300cGoogle \u6587\u4ef6\u300d\uff0c\u8acb\u524d\u5f80\u300cGoogle \u6587\u4ef6\u300d\u9996\u9801\u7684\u8a2d\u5b9a\uff0c\u4e26\u5728\u4e0b\u6b21\u9023\u63a5\u4e92\u806f\u7db2\u6642\u958b\u555f\u96e2\u7dda\u540c\u6b65\u529f\u80fd\u3002"},"explanationofflineenabled":{"message":"\u60a8\u8655\u65bc\u96e2\u7dda\u72c0\u614b\uff0c\u4f46\u60a8\u4ecd\u53ef\u4ee5\u7de8\u8f2f\u53ef\u7528\u6a94\u6848\u6216\u5efa\u7acb\u65b0\u6a94\u6848\u3002"},"extdesc":{"message":"\u7de8\u8f2f\u3001\u5efa\u7acb\u53ca\u67e5\u770b\u60a8\u7684\u6587\u4ef6\u3001\u8a66\u7b97\u8868\u548c\u7c21\u5831\uff0c\u5b8c\u5168\u4e0d\u9700\u4f7f\u7528\u4e92\u806f\u7db2\u3002"},"extname":{"message":"\u300cGoogle \u6587\u4ef6\u300d\u96e2\u7dda\u7248"},"learnmore":{"message":"\u77ad\u89e3\u8a
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):843
    Entropy (8bit):5.76581227215314
    Encrypted:false
    SSDEEP:
    MD5:0E60627ACFD18F44D4DF469D8DCE6D30
    SHA1:2BFCB0C3CA6B50D69AD5745FA692BAF0708DB4B5
    SHA-256:F94C6DDEDF067642A1AF18D629778EC65E02B6097A8532B7E794502747AEB008
    SHA-512:6FF517EED4381A61075AC7C8E80C73FAFAE7C0583BA4FA7F4951DD7DBE183C253702DEE44B3276EFC566F295DAC1592271BE5E0AC0C7D2C9F6062054418C7C27
    Malicious:false
    Reputation:unknown
    Preview:{.. "createnew": {.. "message": ".....".. },.. "explanationofflinedisabled": {.. "message": ".................. Google ................ Google .................".. },.. "explanationofflineenabled": {.. "message": ".........................".. },.. "extdesc": {.. "message": ".............................".. },.. "extname": {.. "message": "Google .....".. },.. "learnmore": {.. "message": "....".. },.. "popuphelptext": {.. "message": "................................".. }..}..
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):912
    Entropy (8bit):4.65963951143349
    Encrypted:false
    SSDEEP:
    MD5:71F916A64F98B6D1B5D1F62D297FDEC1
    SHA1:9386E8F723C3F42DA5B3F7E0B9970D2664EA0BAA
    SHA-256:EC78DDD4CCF32B5D76EC701A20167C3FBD146D79A505E4FB0421FC1E5CF4AA63
    SHA-512:30FA4E02120AF1BE6E7CC7DBB15FAE5D50825BD6B3CF28EF21D2F2E217B14AF5B76CFCC165685C3EDC1D09536BFCB10CA07E1E2CC0DA891CEC05E19394AD7144
    Malicious:false
    Reputation:unknown
    Preview:{"createnew":{"message":"DALA ENTSHA"},"explanationofflinedisabled":{"message":"Awuxhunyiwe ku-inthanethi. Ukuze usebenzise i-Google Amadokhumenti ngaphandle koxhumano lwe-inthanethi, iya kokuthi izilungiselelo ekhasini lasekhaya le-Google Amadokhumenti bese uvula ukuvumelanisa okungaxhunyiwe ku-inthanethi ngesikhathi esilandelayo lapho uxhunywe ku-inthanethi."},"explanationofflineenabled":{"message":"Awuxhunyiwe ku-inthanethi, kodwa usangakwazi ukuhlela amafayela atholakalayo noma udale amasha."},"extdesc":{"message":"Hlela, dala, futhi ubuke amadokhumenti akho, amaspredishithi, namaphrezentheshini \u2014 konke ngaphandle kokufinyelela kwe-inthanethi."},"extname":{"message":"I-Google Amadokhumenti engaxhumekile ku-intanethi"},"learnmore":{"message":"Funda kabanzi"},"popuphelptext":{"message":"Bhala, hlela, futhi hlanganyela noma yikuphi lapho okhona, unalo noma ungenalo uxhumano lwe-inthanethi."}}.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):11280
    Entropy (8bit):5.754230909218899
    Encrypted:false
    SSDEEP:
    MD5:BE5DB35513DDEF454CE3502B6418B9B4
    SHA1:C82B23A82F745705AA6BCBBEFEB6CE3DBCC71CB1
    SHA-256:C6F623BE1112C2FDE6BE8941848A82B2292FCD2B475FBD363CC2FD4DF25049B5
    SHA-512:38C48E67631FAF0594D44525423C6EDC08F5A65F04288F0569B7CF8C71C359924069212462B0A2BFA38356F93708143EE1CBD42295D7317E8670D0A0CD10BAFD
    Malicious:false
    Reputation:unknown
    Preview:[{"description":"treehash per file","signed_content":{"payload":"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
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):854
    Entropy (8bit):4.284628987131403
    Encrypted:false
    SSDEEP:
    MD5:4EC1DF2DA46182103D2FFC3B92D20CA5
    SHA1:FB9D1BA3710CF31A87165317C6EDC110E98994CE
    SHA-256:6C69CE0FE6FAB14F1990A320D704FEE362C175C00EB6C9224AA6F41108918CA6
    SHA-512:939D81E6A82B10FF73A35C931052D8D53D42D915E526665079EEB4820DF4D70F1C6AEBAB70B59519A0014A48514833FEFD687D5A3ED1B06482223A168292105D
    Malicious:false
    Reputation:unknown
    Preview:{. "type": "object",. "properties": {. "allowedDocsOfflineDomains": {. "type": "array",. "items": {. "type": "string". },. "title": "Allow users to enable Docs offline for the specified managed domains.",. "description": "Users on managed devices will be able to enable docs offline if they are part of the specified managed domains.". },. "autoEnabledDocsOfflineDomains": {. "type": "array",. "items": {. "type": "string". },. "title": "Auto enable Docs offline for the specified managed domains in certain eligible situations.",. "description": "Users on managed devices, in certain eligible situations, will be able to automatically access and edit recent files offline for the managed domains set in this property. They can still disable it from Drive settings.". }. }.}.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:JSON data
    Category:dropped
    Size (bytes):2525
    Entropy (8bit):5.417689528134667
    Encrypted:false
    SSDEEP:
    MD5:10FF8E5B674311683D27CE1879384954
    SHA1:9C269C14E067BB86642EB9F4816D75CF1B9B9158
    SHA-256:17363162A321625358255EE939F447E9363FF2284BD35AE15470FD5318132CA9
    SHA-512:4D3EB89D398A595FEA8B59AC6269A57CC96C4A0E5A5DB8C5FE70AB762E8144A5DF9AFC8756CA2E798E50778CD817CC9B0826FC2942DE31397E858DBFA1B06830
    Malicious:false
    Reputation:unknown
    Preview:{.. "author": {.. "email": "docs-hosted-app-own@google.com".. },.. "background": {.. "service_worker": "service_worker_bin_prod.js".. },.. "content_capabilities": {.. "matches": [ "https://docs.google.com/*", "https://drive.google.com/*", "https://drive-autopush.corp.google.com/*", "https://drive-daily-0.corp.google.com/*", "https://drive-daily-1.corp.google.com/*", "https://drive-daily-2.corp.google.com/*", "https://drive-daily-3.corp.google.com/*", "https://drive-daily-4.corp.google.com/*", "https://drive-daily-5.corp.google.com/*", "https://drive-daily-6.corp.google.com/*", "https://drive-preprod.corp.google.com/*", "https://drive-staging.corp.google.com/*" ],.. "permissions": [ "clipboardRead", "clipboardWrite", "unlimitedStorage" ].. },.. "content_security_policy": {.. "extension_pages": "script-src 'self'; object-src 'self'".. },.. "default_locale": "en_US",.. "description": "__MSG_extDesc__",.. "externally_connectable": {.. "ma
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:HTML document, ASCII text
    Category:dropped
    Size (bytes):97
    Entropy (8bit):4.862433271815736
    Encrypted:false
    SSDEEP:
    MD5:B747B5922A0BC74BBF0A9BC59DF7685F
    SHA1:7BF124B0BE8EE2CFCD2506C1C6FFC74D1650108C
    SHA-256:B9FA2D52A4FFABB438B56184131B893B04655B01F336066415D4FE839EFE64E7
    SHA-512:7567761BE4054FCB31885E16D119CD4E419A423FFB83C3B3ED80BFBF64E78A73C2E97AAE4E24AB25486CD1E43877842DB0836DB58FBFBCEF495BC53F9B2A20EC
    Malicious:false
    Reputation:unknown
    Preview:<!DOCTYPE html>.<html>.<body>. <script src="offscreendocument_main.js"></script>.</body>.</html>
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with very long lines (4369)
    Category:dropped
    Size (bytes):95567
    Entropy (8bit):5.4016395763198135
    Encrypted:false
    SSDEEP:
    MD5:09AF2D8CFA8BF1078101DA78D09C4174
    SHA1:F2369551E2CDD86258062BEB0729EE4D93FCA050
    SHA-256:39D113C44D45AE3609B9509ED099680CC5FCEF182FD9745B303A76E164D8BCEC
    SHA-512:F791434B053FA2A5B731C60F22A4579F19FE741134EF0146E8BAC7DECAC78DE65915B3188093DBBE00F389A7F15B80172053FABB64E636DD4A945DBE3C2CF2E6
    Malicious:false
    Reputation:unknown
    Preview:'use strict';function aa(){return function(){}}function l(a){return function(){return this[a]}}var n;function ba(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var ca="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function da(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var q=da(this);function r(a,b){if(b)a:{var c=q;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&ca(c,a,{configurable:!0,writable:!0,value:b})}}.r("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}function c(f,
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text
    Category:dropped
    Size (bytes):291
    Entropy (8bit):4.65176400421739
    Encrypted:false
    SSDEEP:
    MD5:3AB0CD0F493B1B185B42AD38AE2DD572
    SHA1:079B79C2ED6F67B5A5BD9BC8C85801F96B1B0F4B
    SHA-256:73E3888CCBC8E0425C3D2F8D1E6A7211F7910800EEDE7B1E23AD43D3B21173F7
    SHA-512:32F9DB54654F29F39D49F7A24A1FC800DBC0D4A8A1BAB2369C6F9799BC6ADE54962EFF6010EF6D6419AE51D5B53EC4B26B6E2CDD98DEF7CC0D2ADC3A865F37D3
    Malicious:false
    Reputation:unknown
    Preview:(function(){window._docs_chrome_extension_exists=!0;window._docs_chrome_extension_features_version=2;window._docs_chrome_extension_permissions="alarms clipboardRead clipboardWrite storage unlimitedStorage offscreen".split(" ");window._docs_chrome_extension_manifest_version=3;}).call(this);.
    Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
    File Type:ASCII text, with very long lines (4369)
    Category:dropped
    Size (bytes):103988
    Entropy (8bit):5.389407461078688
    Encrypted:false
    SSDEEP:
    MD5:EA946F110850F17E637B15CF22B82837
    SHA1:8D27C963E76E3D2F5B8634EE66706F95F000FCAF
    SHA-256:029DFE87536E8907A612900B26EEAA72C63EDF28458A7227B295AE6D4E2BD94C
    SHA-512:5E8E61E648740FEF2E89A035A4349B2E4E5E4E88150EE1BDA9D4AD8D75827DC67C1C95A2CA41DF5B89DE8F575714E1A4D23BDE2DC3CF21D55DB3A39907B8F820
    Malicious:false
    Reputation:unknown
    Preview:'use strict';function k(){return function(){}}function n(a){return function(){return this[a]}}var q;function aa(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var ba="function"==typeof Object.defineProperties?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function da(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var r=da(this);function t(a,b){if(b)a:{var c=r;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&null!=b&&ba(c,a,{configurable:!0,writable:!0,value:b})}}.t("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");return new c(d+(f||"")+"_"+e++,f)}function c(f,g
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Sep 18 09:10:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
    Category:dropped
    Size (bytes):2673
    Entropy (8bit):3.9886338189402935
    Encrypted:false
    SSDEEP:
    MD5:4141851B949F647E7FCBD5E3972D5984
    SHA1:C8292587647B44A6F8E88ABDF58CF4BFCC31CA75
    SHA-256:8A66A17D5EABBDA20DB08F13A178F3C0DCCEBA31FD73E8DDBFCF42BAD7A97270
    SHA-512:7994798240FCF020725715A6C21D4D444E942B646C756889D3E15201E5264A090EF6D171032165634F9078E858634EB0A2105BC4D72B346B162FA643355E5E7F
    Malicious:false
    Reputation:unknown
    Preview:L..................F.@.. ...$+.,............N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I2YAQ....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V2YJQ....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V2YJQ....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V2YJQ..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V2YKQ...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i.............>......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Sep 18 09:10:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
    Category:dropped
    Size (bytes):2675
    Entropy (8bit):4.004663007971778
    Encrypted:false
    SSDEEP:
    MD5:38C17DCE0C7723D465E31583D814F14E
    SHA1:D024A1F5543640BC739C7BCBBD272E71D524B45D
    SHA-256:8ECEFE341075923A20D7E99955642603ABB48DA4E239129C7AA59FC1D0CCE497
    SHA-512:9ED2238E39102BC36CE4C78408E83A5D1552A237FE66F431E8729B36575440E11CF8BE2BD427BFD24B89F9ECE95DF62D2E0BEC6DF86C2DDA3B970972A2758195
    Malicious:false
    Reputation:unknown
    Preview:L..................F.@.. ...$+.,...........N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I2YAQ....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V2YJQ....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V2YJQ....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V2YJQ..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V2YKQ...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i.............>......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
    Category:dropped
    Size (bytes):2689
    Entropy (8bit):4.011826596905618
    Encrypted:false
    SSDEEP:
    MD5:4346C3A8746D405327AC76CBAEFB9C14
    SHA1:D8114672D7C4DC918B599B3D04B943666B6FBE5D
    SHA-256:DA8E9CDB4D67F20C4D833DCA4B5046F74C6F51E07721F70F9D3D619AA953BE9D
    SHA-512:A53EF03D2B4729E1F0B0754F58D9B6B777AA068A8CE510565577B08A5162A4AFAD33BE35BB4B7B806BF4BC6C2D487F68128952BAA4FE653D43526CBC255FFF48
    Malicious:false
    Reputation:unknown
    Preview:L..................F.@.. ...$+.,.....Y.04...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I2YAQ....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V2YJQ....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V2YJQ....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V2YJQ..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VFW.E...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i.............>......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Sep 18 09:10:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
    Category:dropped
    Size (bytes):2677
    Entropy (8bit):4.00024576714224
    Encrypted:false
    SSDEEP:
    MD5:B10226717EE8D3BAE1C315A03A69771F
    SHA1:7E1229096808A7F72864105FCD88321931DED399
    SHA-256:F0BC90EA9B132437E7A20A026C44C0C7CC4DAB422C9E855D67A920C3D5174916
    SHA-512:C1241A58E6A097846A603FB13FC11A78E98D5BA171F61BD9A78498CE499D71352C38CC51A3E6A188D1661B9635852B24923A2DC07A9C38D9BC6F72405246A893
    Malicious:false
    Reputation:unknown
    Preview:L..................F.@.. ...$+.,.....h......N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I2YAQ....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V2YJQ....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V2YJQ....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V2YJQ..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V2YKQ...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i.............>......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Sep 18 09:10:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
    Category:dropped
    Size (bytes):2677
    Entropy (8bit):3.9906782057904424
    Encrypted:false
    SSDEEP:
    MD5:16288B77C3AFF3E7EF55E3598C4B5406
    SHA1:EAF9E6398DF7BFEBACC07C8A87E0F2DC758F503D
    SHA-256:528C4695223ED979771E92403ECA57ED3ED92D4B1501C28517406350AFF47C6E
    SHA-512:990AFBDC9B24AE13966D2E41C8D4D126128F8D4083D2C73705E5DF684E1F4C4D715BAD6B148D7DB3E0543020FF3B8115EDF1D649A5C654CDC991BCA5D02375DD
    Malicious:false
    Reputation:unknown
    Preview:L..................F.@.. ...$+.,.....O......N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I2YAQ....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V2YJQ....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V2YJQ....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V2YJQ..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V2YKQ...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i.............>......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Sep 18 09:10:21 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
    Category:dropped
    Size (bytes):2679
    Entropy (8bit):3.999723978112839
    Encrypted:false
    SSDEEP:
    MD5:31DDDCF60A8275AFDAD5B63020436CD3
    SHA1:6B00AED2FAF85F345213288123799FE4E03A71D4
    SHA-256:DB2184F06225B072C12E8C54B490C2743A3A8BDD84FA3316DDC10BC950982502
    SHA-512:AAD5830BE74E3A3EF437C16D2A2E176AEFF0554C7544178E5234647A970C47F106B237474D2F2ADC782FC1455A4CE1ABAC00929C8A8F84219505A099E7C3B8B0
    Malicious:false
    Reputation:unknown
    Preview:L..................F.@.. ...$+.,............N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.I2YAQ....B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.V2YJQ....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V2YJQ....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V2YJQ..........................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V2YKQ...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i.............>......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:HTML document, ASCII text
    Category:downloaded
    Size (bytes):315
    Entropy (8bit):5.0572271090563765
    Encrypted:false
    SSDEEP:
    MD5:A34AC19F4AFAE63ADC5D2F7BC970C07F
    SHA1:A82190FC530C265AA40A045C21770D967F4767B8
    SHA-256:D5A89E26BEAE0BC03AD18A0B0D1D3D75F87C32047879D25DA11970CB5C4662A3
    SHA-512:42E53D96E5961E95B7A984D9C9778A1D3BD8EE0C87B8B3B515FA31F67C2D073C8565AFC2F4B962C43668C4EFA1E478DA9BB0ECFFA79479C7E880731BC4C55765
    Malicious:false
    Reputation:unknown
    URL:http://decentafrica.com/favicon.ico
    Preview:<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">.<html><head>.<title>404 Not Found</title>.</head><body>.<h1>Not Found</h1>.<p>The requested URL was not found on this server.</p>.<p>Additionally, a 404 Not Found.error was encountered while trying to use an ErrorDocument to handle the request.</p>.</body></html>.
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (21296)
    Category:downloaded
    Size (bytes):244029
    Entropy (8bit):4.868070220084839
    Encrypted:false
    SSDEEP:
    MD5:9A846F0E502D285D3D56E6729570452D
    SHA1:B3E5715D50DE158492B24F647384619C6005862F
    SHA-256:AF9245C45A288F101B16A4D7E2E62869405BBBE57E9F997345B82814BF30FF7C
    SHA-512:0A8E7AB53A72D274F5DA28A01807CA53961EAD96D669B99DAADA1311C3AED4365F82C855DDFB63704F524A941F579D2E1A2A689207B3412B20F31E4227053320
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/plugins/ultimate-addons-for-gutenberg/dist/style-blocks.css?ver=2.13.6
    Preview:.uagb-popup-builder{display:none;opacity:0;position:fixed;top:0;left:0;width:100vw;height:100vh;max-width:100vw;max-height:100vh;z-index:999999999;overflow:hidden;transition-property:opacity;transition-duration:250ms}.uagb-popup-builder__banner--pusher{position:relative}.uagb-popup-builder__wrapper{position:relative;box-sizing:border-box}.uagb-popup-builder__wrapper--banner{width:100%}.uagb-popup-builder__container{display:flex;box-sizing:border-box;width:100%;height:100%;flex-direction:column;overflow-x:hidden;overflow-y:auto;transition-property:box-shadow,border-color;transition-duration:250ms}.uagb-popup-builder__container .uagb-is-root-container{width:100%}.uagb-popup-builder__close{position:absolute;top:0;z-index:999999999}.uagb-popup-builder button.uagb-popup-builder__close{border:none;background:transparent;background-color:transparent;padding:0}.uagb-popup-builder button.uagb-popup-builder__close svg{transition-property:fill;transition-duration:250ms}.uagb-popup-builder__body--
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (40957)
    Category:downloaded
    Size (bytes):43139
    Entropy (8bit):4.970898995681109
    Encrypted:false
    SSDEEP:
    MD5:DFE6C91B3C5F1F370907A188E004063E
    SHA1:E05061BC026F11B61B0C2E01E6C58C1AFB0DB48F
    SHA-256:659D78E86E4EEAF329BC6CE7D9023A5DF5212584288EEEF25DDC03DB94074A5A
    SHA-512:D4674BB3CE9339175FDAF00EBA14D483993E65F734AAD5F869452DB66D0FBB49BE639D9FDC9D331E20D2557ABE11B7F4F3CAF12DC5F722282E76401703657FA1
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/themes/astra/assets/css/minified/main.min.css?ver=4.7.0
    Preview:@charset "UTF-8";address,blockquote,body,dd,dl,dt,fieldset,figure,h1,h2,h3,h4,h5,h6,hr,html,iframe,legend,li,ol,p,pre,textarea,ul{border:0;font-size:100%;font-style:inherit;font-weight:inherit;margin:0;outline:0;padding:0;vertical-align:baseline}html{-webkit-text-size-adjust:100%;-ms-text-size-adjust:100%}body{margin:0}main,nav{display:block}progress{display:inline-block;vertical-align:baseline}a{background-color:transparent}a:active{outline:0}a,a:focus,a:hover,a:visited{text-decoration:none}abbr[title]{border-bottom:1px dotted}b,strong{font-weight:700}dfn{font-style:italic}mark{background:#ff0;color:#000}small{font-size:80%}sub,sup{font-size:75%;line-height:0;position:relative;vertical-align:baseline}sup{top:-.5em}sub{bottom:-.25em}img{border:0}svg:not(:root){overflow:hidden}figure{margin:0}hr{box-sizing:content-box;height:0}pre{overflow:auto}code,kbd,pre,samp{font-size:1em}button,input,optgroup,select,textarea{color:inherit;font:inherit;margin:0}button{overflow:visible}button,select{
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text
    Category:downloaded
    Size (bytes):1546
    Entropy (8bit):5.354803948781991
    Encrypted:false
    SSDEEP:
    MD5:453E5FDCE775E28E0E945C676DE4A8BA
    SHA1:4712A1A83EDF53CFF2E054EDC4D36E8C062F57E1
    SHA-256:53AAD678C581BFDE84308D14CC2E7891717852A51B91A29A46A5B77C1E374266
    SHA-512:BAB15E8455A44C1275A724517D56566005380FB25FDCAD812BD1F9CE30D095628545B3BFED1D731418AEC03DC537860486653B43AD34AF0C43DCA41944C8DB50
    Malicious:false
    Reputation:unknown
    URL:https://fonts.googleapis.com/css?family=Lato%3A400%2C700&display=fallback&ver=4.7.0
    Preview:/* latin-ext */.@font-face {. font-family: 'Lato';. font-style: normal;. font-weight: 400;. font-display: fallback;. src: url(https://fonts.gstatic.com/s/lato/v24/S6uyw4BMUTPHjxAwXjeu.woff2) format('woff2');. unicode-range: U+0100-02AF, U+0304, U+0308, U+0329, U+1E00-1E9F, U+1EF2-1EFF, U+2020, U+20A0-20AB, U+20AD-20C0, U+2113, U+2C60-2C7F, U+A720-A7FF;.}./* latin */.@font-face {. font-family: 'Lato';. font-style: normal;. font-weight: 400;. font-display: fallback;. src: url(https://fonts.gstatic.com/s/lato/v24/S6uyw4BMUTPHjx4wXg.woff2) format('woff2');. unicode-range: U+0000-00FF, U+0131, U+0152-0153, U+02BB-02BC, U+02C6, U+02DA, U+02DC, U+0304, U+0308, U+0329, U+2000-206F, U+2074, U+20AC, U+2122, U+2191, U+2193, U+2212, U+2215, U+FEFF, U+FFFD;.}./* latin-ext */.@font-face {. font-family: 'Lato';. font-style: normal;. font-weight: 700;. font-display: fallback;. src: url(https://fonts.gstatic.com/s/lato/v24/S6u9w4BMUTPHh6UVSwaPGR_p.woff2) format('woff2');. unicode-rang
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (6581), with no line terminators
    Category:downloaded
    Size (bytes):6581
    Entropy (8bit):5.1570179767880475
    Encrypted:false
    SSDEEP:
    MD5:60D72450A6829BB918B07075E6273D16
    SHA1:FAD4E52C06B86B8DF6A4220707AAD9C01FF74F7E
    SHA-256:4A8BD33BFE771E0BD46FADE45435A9FA2D0C3A8AF2409B1F5A74A6B96B03FAA9
    SHA-512:77307CED72814F611FFE6786FA16A3D81356476CD60581C08441EEB3C365C4937CF4A8B781411F129443306A6CA39ADE298AF0762EDC34AC34EE001D27E9D28B
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/plugins/astra-sites/inc/lib/onboarding/assets/dist/template-preview/main.js?ver=06758d4d807d9d22c6ea
    Preview:(()=>{var e={n:t=>{var a=t&&t.__esModule?()=>t.default:()=>t;return e.d(a,{a}),a},d:(t,a)=>{for(var o in a)e.o(a,o)&&!e.o(t,o)&&Object.defineProperty(t,o,{enumerable:!0,get:a[o]})},o:(e,t)=>Object.prototype.hasOwnProperty.call(e,t)};(()=>{"use strict";const t=window.wp.domReady;var a=e.n(t);const o=()=>window.location.href!==window.parent.location.href,n="starter-templates-iframe-preview-data",r=()=>{let e="";const t=document.querySelector(".site-logo-img img");return t&&(e=t.src),e};let s=r();const l=(e,t)=>{if(!e)return"";if(e){const a=e.match(/'([^']+)'/);return a?a[1]:"inherit"===e?t:e}return t||void 0},i=e=>{switch(e.value.param){case"siteLogo":const t=document.querySelectorAll(".site-logo-img img");""===s&&(s=r());let a=e.value.data.url||s;if(a=e.value.data.dataUri||a,0===t.length&&""!==a){const t=document.createElement("span");t.classList.add("site-logo-img");const o=document.createElement("a");o.setAttribute("class","custom-logo-link"),o.setAttribute("href","#"),o.setAttribute(
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (52276)
    Category:downloaded
    Size (bytes):102217
    Entropy (8bit):4.7821044831117785
    Encrypted:false
    SSDEEP:
    MD5:5222E06B77A1692FA2520A219840E6BE
    SHA1:8B4236206A8B86AF3761A244277663046D7FF7EE
    SHA-256:0934B1FC0D3A766D41D3ADF5E7A115875E66E98EBBA408D965A41CF3D2CB4AB5
    SHA-512:CF780BA5DEF29277F562835B0B3A9129CE2ACA8AFC81A294D6A9A7F824A1C5BB81BAC00D23D42946884606B7821642B12E17A2E92F424171446DB2AEA8B8340C
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/plugins/the-post-grid/assets/vendor/font-awesome/css/font-awesome.min.css?ver=7.7.3
    Preview:/*!. * Font Awesome Free 6.4.2 by @fontawesome - https://fontawesome.com. * License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License). * Copyright 2023 Fonticons, Inc.. */..fa{font-family:var(--fa-style-family,"Font Awesome 6 Free");font-weight:var(--fa-style,900)}.fa,.fa-brands,.fa-classic,.fa-regular,.fa-sharp,.fa-solid,.fab,.far,.fas{-moz-osx-font-smoothing:grayscale;-webkit-font-smoothing:antialiased;display:var(--fa-display,inline-block);font-style:normal;font-variant:normal;line-height:1;text-rendering:auto}.fa-classic,.fa-regular,.fa-solid,.far,.fas{font-family:"Font Awesome 6 Free"}.fa-brands,.fab{font-family:"Font Awesome 6 Brands"}.fa-1x{font-size:1em}.fa-2x{font-size:2em}.fa-3x{font-size:3em}.fa-4x{font-size:4em}.fa-5x{font-size:5em}.fa-6x{font-size:6em}.fa-7x{font-size:7em}.fa-8x{font-size:8em}.fa-9x{font-size:9em}.fa-10x{font-size:10em}.fa-2xs{font-size:.625em;line-height:.1em;vertical-align:.225em}.fa-xs{font-size:.75em;line-
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (13479)
    Category:dropped
    Size (bytes):13577
    Entropy (8bit):5.272065782731947
    Encrypted:false
    SSDEEP:
    MD5:9FFEB32E2D9EFBF8F70CAABDED242267
    SHA1:3AD0C10E501AC2A9BFA18F9CD7E700219B378738
    SHA-256:5274F11E6FB32AE0CF2DFB9F8043272865C397A7C4223B4CFA7D50EA52FBDE89
    SHA-512:8D6BE545508A1C38278B8AD780C3758AE48A25E4E12EEE443375AA56031D9B356F8C90F22D4F251140FA3F65603AF40523165E33CAE2E2D62FC78EC106E3D731
    Malicious:false
    Reputation:unknown
    Preview:/*! jQuery Migrate v3.4.1 | (c) OpenJS Foundation and other contributors | jquery.org/license */."undefined"==typeof jQuery.migrateMute&&(jQuery.migrateMute=!0),function(t){"use strict";"function"==typeof define&&define.amd?define(["jquery"],function(e){return t(e,window)}):"object"==typeof module&&module.exports?module.exports=t(require("jquery"),window):t(jQuery,window)}(function(s,n){"use strict";function e(e){return 0<=function(e,t){for(var r=/^(\d+)\.(\d+)\.(\d+)/,n=r.exec(e)||[],o=r.exec(t)||[],a=1;a<=3;a++){if(+o[a]<+n[a])return 1;if(+n[a]<+o[a])return-1}return 0}(s.fn.jquery,e)}s.migrateVersion="3.4.1";var t=Object.create(null);s.migrateDisablePatches=function(){for(var e=0;e<arguments.length;e++)t[arguments[e]]=!0},s.migrateEnablePatches=function(){for(var e=0;e<arguments.length;e++)delete t[arguments[e]]},s.migrateIsPatchEnabled=function(e){return!t[e]},n.console&&n.console.log&&(s&&e("3.0.0")&&!e("5.0.0")||n.console.log("JQMIGRATE: jQuery 3.x-4.x REQUIRED"),s.migrateWarnings
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (65447)
    Category:downloaded
    Size (bytes):87553
    Entropy (8bit):5.262620498676155
    Encrypted:false
    SSDEEP:
    MD5:826EB77E86B02AB7724FE3D0141FF87C
    SHA1:79CD3587D565AFE290076A8D36C31C305A573D18
    SHA-256:CB6F2D32C49D1C2B25E9FFC9AAAFA3F83075346C01BCD4AE6EB187392A4292CF
    SHA-512:FC79FDB76763025DC39FAC045A215FF155EF2F492A0E9640079D6F089FA6218AF2B3AB7C6EAF636827DEE9294E6939A95AB24554E870C976679C25567AD6374C
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-includes/js/jquery/jquery.min.js?ver=3.7.1
    Preview:/*! jQuery v3.7.1 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(ie,e){"use strict";var oe=[],r=Object.getPrototypeOf,ae=oe.slice,g=oe.flat?function(e){return oe.flat.call(e)}:function(e){return oe.concat.apply([],e)},s=oe.push,se=oe.indexOf,n={},i=n.toString,ue=n.hasOwnProperty,o=ue.toString,a=o.call(Object),le={},v=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},y=function(e){return null!=e&&e===e.window},C=ie.document,u={type:!0,src:!0,nonce:!0,noModule:!0};function m(e,t,n){var r,i,o=(n=n||C).createElement("script");if(o.text=e,t)for(r in u)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.remove
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (6639), with no line terminators
    Category:dropped
    Size (bytes):6639
    Entropy (8bit):5.276142480721086
    Encrypted:false
    SSDEEP:
    MD5:EEC000F343E627FDD5B2167CCE2631AB
    SHA1:82B5296D3F315B8075CD897805D944AC5B237E6E
    SHA-256:7945EE963C014A6AD71E078661E2D30F84D098186508E6EC29464DBB951ED046
    SHA-512:3070C3E210F7ED326FB7E21A355E055C5424ABEDAA032F14547B0DEDC5F9245232D86F58ABD54D132C35F4D641B66593B84CAA24DF511E77B2C880AD965FF222
    Malicious:false
    Reputation:unknown
    Preview:UAGBForms={getElement:e=>{const t=document.querySelector(e+":not(.uagb-activated-script)");return t?(t.classList.add("uagb-activated-script"),t):null},init(r,a,d){const p=UAGBForms.getElement(a);if(p){const o=p.querySelector(".uagb-forms-main-form"),t=o.querySelectorAll(".uagb-forms-phone-input");if(0!==t.length)for(let e=0;e<t.length;e++)t[e].addEventListener("keypress",function(e){e=e.which||e.keyCode;return 45===e||!(31<e&&(e<48||57<e))});const n=o.querySelectorAll(".uagb-forms-toggle-input");if(0!==n.length)for(let t=0;t<n.length;t++)n[t].addEventListener("change",function(){var e;n[t].checked?(e=n[t].getAttribute("data-truestate"),n[t].setAttribute("value",e)):(e=n[t].getAttribute("data-falsestate"),n[t].setAttribute("value",e))});const s=p.querySelectorAll(".uagb-forms-checkbox-wrap");if(0!==s.length)for(let e=0;e<s.length;e++){const i=s[e].querySelectorAll("input[type=checkbox]");if(0<i.length)for(let c=0;c<i.length;c++)i[c].addEventListener("change",function(){var t=i[c].checke
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with no line terminators
    Category:downloaded
    Size (bytes):32
    Entropy (8bit):4.288909765557392
    Encrypted:false
    SSDEEP:
    MD5:C8D201FB6A6E5733925FB23E51B4D1FC
    SHA1:07B013ACF506A673F012F0BCC8E3E7335176F4F9
    SHA-256:49B5CE866DBF2467AA52C7241597C9AEAC38D66109DE20B54C755201D4E5B0F9
    SHA-512:20990D9D76D02212D26070A817368BB65B71320F06CEDEC48D168C21F1D2141D38F55763B5E19AD282A255AB46F9289C716F2C0778499989D2A3678E0619891B
    Malicious:false
    Reputation:unknown
    URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAn1dL6vT8zc3xIFDRM0Cs4SEAlGgoPXNV6hLBIFDQCXi04=?alt=proto
    Preview:CgkKBw0TNArOGgAKCQoHDQCXi04aAA==
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (3501), with no line terminators
    Category:downloaded
    Size (bytes):3501
    Entropy (8bit):4.504750637042164
    Encrypted:false
    SSDEEP:
    MD5:F9FE7D6ABDF0B467614FD13D77FB9C9C
    SHA1:507858C11804E060004CF34F84F8305595BD23BB
    SHA-256:5615CA8A377672F9A922F76BC7D979E3ABE1312657BB27AB620833F1AFD50F94
    SHA-512:AD3F5D15A253975E93D7F310EAEC41B07C7FF9E41AA6FFCE7D3984CAB3D12140AEF47B87DF84BC0D2013E9085EC43EABB9ED955BED82DCCD640A6CCE1AC1B317
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/themes/astra/assets/css/minified/menu-animation.min.css?ver=4.7.0
    Preview:.ast-desktop .astra-menu-animation-slide-up>.menu-item>.astra-full-megamenu-wrapper,.ast-desktop .astra-menu-animation-slide-up>.menu-item>.sub-menu,.ast-desktop .astra-menu-animation-slide-up>.menu-item>.sub-menu .sub-menu{opacity:0;visibility:hidden;transform:translateY(.5em);transition:visibility .2s ease,transform .2s ease}.ast-desktop .astra-menu-animation-slide-up>.menu-item .menu-item.focus>.sub-menu,.ast-desktop .astra-menu-animation-slide-up>.menu-item .menu-item:hover>.sub-menu,.ast-desktop .astra-menu-animation-slide-up>.menu-item.focus>.astra-full-megamenu-wrapper,.ast-desktop .astra-menu-animation-slide-up>.menu-item.focus>.sub-menu,.ast-desktop .astra-menu-animation-slide-up>.menu-item:hover>.astra-full-megamenu-wrapper,.ast-desktop .astra-menu-animation-slide-up>.menu-item:hover>.sub-menu{opacity:1;visibility:visible;transform:translateY(0);transition:opacity .2s ease,visibility .2s ease,transform .2s ease}.ast-desktop .astra-menu-animation-slide-up>.full-width-mega.menu
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:PNG image data, 136 x 52, 8-bit/color RGBA, non-interlaced
    Category:downloaded
    Size (bytes):2667
    Entropy (8bit):7.854044491431145
    Encrypted:false
    SSDEEP:
    MD5:A747DF0D07C54B964092D32FDA60C03D
    SHA1:B69A39581AE3DC3FC7064F13678532EDB5587888
    SHA-256:2304E63BF8167637BE703120F66B2FB037D359FF73CBF8C57D154DC247D97C22
    SHA-512:85A521434EFE5AA1D2FC9E2C992966777E0334336BC76D2CCBB23BD5172884DDFF8C7D837D13833A5DAC30F58BD9596E3E0CA50FAE967DF771159A656D064664
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/uploads/2024/06/cropped-cropped-file-1-136x52.png
    Preview:.PNG........IHDR.......4.....Q.p\....pHYs..........+......IDATx..ol............g..A.svpp..O..Jq.@D.!...J......M....D..U".$jS......D.~ ..D...... z9p ..MAv|.......{g.H..I#.ng..f.....H$..D".H$..D".H$..D".H$..D.-..B.-[..xFU.l6K.!.!..a@&..333.4M..f!........9..4....s..s`..!.(.\.4...g.B....8.}...===......Z.S..1..*......4.....!..B8..B..... ....v...0.v..?.B..k.>{....o...]....w....n9~.8\.|.&''......i.i...* ..s..!X.|...G...8q..1.gO..~..T.....ir....X.u....D4...4m..C.........}B..1......E...g.p...0....RU5.`....>......=.....U.....t,.{...!..b566~...o.uK.~.{.=<00.....RJ.d......`0..C.=........6m....:KQ..'.=V..R+...7n..f.....BO...R.C..WRJ..9`...m..).e...`.+.9/..A.x<.{...v...hhh.iZ..t....x<c...Q'.NLL.G.}t..i.\.-.+........V...7..).!A....Ju..b...].BBUU...kM..===..c..E.22,..?....U.'N...../+.bU.....yss...u......V.R......|..=..u........l........{..z...uh.vi..R`....t].|.5E....Hd.!.......'..pG.cw[.u.{.8.4Bh.!.1..../*..a..0.t.R:.&...|.s..p.....Cn..E.F)=..K(.
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:HTML document, ASCII text, with very long lines (3058), with no line terminators
    Category:downloaded
    Size (bytes):3058
    Entropy (8bit):5.029044898781863
    Encrypted:false
    SSDEEP:
    MD5:E56BC891D47A0687C80DBE086A5B1E90
    SHA1:A9E643E186E62CBB3F0E518F473B8702C2945802
    SHA-256:4F0A4E5FF7378B48F06C23A8FF4E52633C828FEE56F2495085EEEA5C1A7F8ABA
    SHA-512:869CC24F825E325C494D3B81FD7A8803F1C4B417F7DB3B9AAA9AAD41CCA90A910A898F9136AD5468828CF9C0A78416B3A599FB32B1FDF15A0BEE55BC62651698
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/plugins/woocommerce/assets/js/frontend/add-to-cart.min.js?ver=8.9.3
    Preview:jQuery(function(t){if("undefined"==typeof wc_add_to_cart_params)return!1;var a=function(){this.requests=[],this.addRequest=this.addRequest.bind(this),this.run=this.run.bind(this),t(document.body).on("click",".add_to_cart_button:not(.wc-interactive)",{addToCartHandler:this},this.onAddToCart).on("click",".remove_from_cart_button",{addToCartHandler:this},this.onRemoveFromCart).on("added_to_cart",this.updateButton).on("ajax_request_not_sent.adding_to_cart",this.updateButton).on("added_to_cart removed_from_cart",{addToCartHandler:this},this.updateFragments)};a.prototype.addRequest=function(t){this.requests.push(t),1===this.requests.length&&this.run()},a.prototype.run=function(){var a=this,e=a.requests[0].complete;a.requests[0].complete=function(){"function"==typeof e&&e(),a.requests.shift(),a.requests.length>0&&a.run()},t.ajax(this.requests[0])},a.prototype.onAddToCart=function(a){var e=t(this);if(e.is(".ajax_add_to_cart")){if(!e.attr("data-product_id"))return!0;if(a.preventDefault(),e.remo
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced
    Category:downloaded
    Size (bytes):1255
    Entropy (8bit):7.793294524840503
    Encrypted:false
    SSDEEP:
    MD5:DA5B59805DFCEDA558AD40DE1ACD6F67
    SHA1:BAE55874E37DADD5FED24D682D9811D0BE9FD874
    SHA-256:7B7FA2E98C0EF3FC84A8528F864FD26A474759A98B7B1345C2E7658D8AD045DC
    SHA-512:812C8D02DC4CF206D358EEDACD7CB1264F9F2D35AC90F94597640C0EB0F8CF33B2B0A4200967EC286278F4BE39EFF23F44B5B1E7691F89B8C3431C1ED1ACD48F
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/uploads/2020/09/cropped-globe-free-img-32x32.png
    Preview:.PNG........IHDR... ... .....szz.....pHYs..........+......IDATX...k.Te....9.....K....!DEl1..>H.EE..!DD.F.Y....ba!.....fbe7.ZDJh.v.....V...2..=.......y..>......@l..............z/DOv.k...bj.e..<o.J.r.Z....x......@'..<.......$...p.f".....f...[q.;.s[.......h........Z.,.a!JIv.......g..6...ho..6l..ay.q9...\).....K|..../...K.....^.F.c.;G8...LH.O....^....R..f0..p..X....~.p...;..x..'k`w"<.#.A.F.Wc.}\..,..;....<....eYg.....K..+...~..,,b...$y.1"...p|./T..k.e..y...-.s...<....t`.h<...!C.*.I..,..."i7%....6.).9.....TW./..N........Z#. ..^.....SD.....*..8....../^._....>O...$).g .|!r.G....n.....H.....'.r..<..E.=1...t1X.4 P.....^.]x,..)..i....<..---..D .T*?..?...).7)8......tp..~.o`U.e...+...6`_..".sk.j.=xD.....$.u.v...'+....l.#.U....q.<Y....*...I<.H..r.Z.q...J..K.AT.U..V..O....E.=..:.L..7...].VOW...`c.T`.p.^.4...]...%Q1w..\TG=.....w......P.......QIpo"Z.3[.,[Z0..D..jpPI_...@.WD)...Y..im..\.V_.%.O......b.b...:..D`.....PGt....1.'.,.Q#[ fD......L.=.JL.m
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (3488)
    Category:downloaded
    Size (bytes):3493
    Entropy (8bit):5.848352250540524
    Encrypted:false
    SSDEEP:
    MD5:8852F723EC9BD4750C5133C1BF292EA0
    SHA1:DFC1C8846E84733D07841F8419A8B06794C0D1F3
    SHA-256:9188C7EF06121284196B77F59402410CADCC2D007B00F6E6147A182F8CE49F90
    SHA-512:F0CCA605F4B19DD7046E023AA5A9C5550FB8091CBE5475D6D7898519B4507AA5F705596AAED33ABC0664B4F17E5E5AA54299378B9F29BC7311EC1F154F03F442
    Malicious:false
    Reputation:unknown
    URL:https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw
    Preview:)]}'.["",["reo speedwagon kevin cronin","23andme lawsuit settlement","morgan wallen neyland parking","apple iphone ios 18","full moon lunar eclipse tonight","marine sergeant major gerardo trevino","shxtsngigs podcast","amazon employees office"],["","","","","","","",""],[],{"google:clientdata":{"bpc":false,"tlw":false},"google:groupsinfo":"ChgIkk4SEwoRVHJlbmRpbmcgc2VhcmNoZXM\u003d","google:suggestdetail":[{"google:entityinfo":"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
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (2467), with no line terminators
    Category:dropped
    Size (bytes):2467
    Entropy (8bit):4.974360727439103
    Encrypted:false
    SSDEEP:
    MD5:76F82678DDA92158B4432A5DB3292105
    SHA1:3B50F16D3FC03CE62FE2F004F214D3B14EDB6866
    SHA-256:C689EFADB6D2747806D2FB3D2E365F6EB549C4F17419C932855B350F4FA2AC94
    SHA-512:049BD893177FBA2750A0BE9E2FAA6104B7BB186FA381C5D657FB816B289AC10E714595BDB019A8C4EFF0F4B2AA227220B644E92E7B59F11BB5010BC412DF0723
    Malicious:false
    Reputation:unknown
    Preview:jQuery(function(o){o(".woocommerce-ordering").on("change","select.orderby",function(){o(this).closest("form").trigger("submit")}),o("input.qty:not(.product-quantity input.qty)").each(function(){var e=parseFloat(o(this).attr("min"));e>=0&&parseFloat(o(this).val())<e&&o(this).val(e)});var e="store_notice"+(o(".woocommerce-store-notice").data("noticeId")||"");"hidden"===Cookies.get(e)?o(".woocommerce-store-notice").hide():o(".woocommerce-store-notice").show(),o(".woocommerce-store-notice__dismiss-link").on("click",function(s){Cookies.set(e,"hidden",{path:"/"}),o(".woocommerce-store-notice").hide(),s.preventDefault()}),o(".woocommerce-input-wrapper span.description").length&&o(document.body).on("click",function(){o(".woocommerce-input-wrapper span.description:visible").prop("aria-hidden",!0).slideUp(250)}),o(".woocommerce-input-wrapper").on("click",function(o){o.stopPropagation()}),o(".woocommerce-input-wrapper :input").on("keydown",function(e){var s=o(this).parent().find("span.description
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (65536), with no line terminators
    Category:downloaded
    Size (bytes):117622
    Entropy (8bit):4.8756027562200766
    Encrypted:false
    SSDEEP:
    MD5:EDE41F9EF7FFE1E698692C92B61F458F
    SHA1:22E7CAF998B90CF8409097566D11158626F88605
    SHA-256:E4AE787CAD4E0977482E48DB08936222B4D7B185F613C64E884320E3B65A9740
    SHA-512:0839324724891612C24C94F86291F1B439CA4FCC463883E6C2D7F961E64172B0BBAE534C6D5DA650BC082DD33EF5AC3632256224871FD8D6FF1D59D32C516B41
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/plugins/the-post-grid/assets/css/tpg-block.min.css?ver=7.7.3
    Preview:#tpg-MyAccount-wrap{background-color:#eff3f4;border-radius:10px;display:flex;margin:50px auto;max-width:1400px;overflow:hidden;width:96%}@media (max-width:767px){#tpg-MyAccount-wrap{display:block}#tpg-MyAccount-wrap .myaccount-title-wrapper{margin-top:45px}}#tpg-MyAccount-wrap .myaccount-title-wrapper .title{margin-bottom:0}#tpg-MyAccount-wrap .rtcl-MyAccount-navigation{flex:0 0 300px}#tpg-MyAccount-wrap .rtcl-MyAccount-navigation .myaccount-navbar{background:#fff;border-radius:10px;height:100%;padding:20px}#tpg-MyAccount-wrap .rtcl-MyAccount-navigation ul{list-style:none;margin:0;padding:0}#tpg-MyAccount-wrap .rtcl-MyAccount-navigation ul li{border-radius:6px;margin-bottom:10px;overflow:hidden;position:relative}#tpg-MyAccount-wrap .rtcl-MyAccount-navigation ul li:before{background:transparent;border-radius:30px;content:"";height:35px;left:-6px;position:absolute;top:50%;transform:translateY(-50%);transition:.4s;width:5px}#tpg-MyAccount-wrap .rtcl-MyAccount-navigation ul li.is-active:be
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (6005), with no line terminators
    Category:downloaded
    Size (bytes):6005
    Entropy (8bit):4.529969046151223
    Encrypted:false
    SSDEEP:
    MD5:C2D207510C5633F57DCD4C31128227B9
    SHA1:DBBF10A9297E3F4B6300A01BC88FE517A3024D22
    SHA-256:2CEF1C0962160F3BE4C3207528D2993A37BE6B7916119DEFE7BA7EA255C81B2C
    SHA-512:B9A6608FDDD2C504B7908F78027CADB126CD8252103D136E0AD9BB9D65CBC4F781B967E6194AD5E8E9FFB9B20BDB4BDDBA22C023083D73B72F5F2CFC6639EE07
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/themes/astra/assets/css/minified/compatibility/woocommerce/woocommerce-smallscreen-grid.min.css?ver=4.7.0
    Preview:.woocommerce table.shop_table_responsive thead,.woocommerce-page table.shop_table_responsive thead{display:none}.woocommerce table.shop_table_responsive tbody tr:first-child td:first-child,.woocommerce-page table.shop_table_responsive tbody tr:first-child td:first-child{border-top:0}.woocommerce table.shop_table_responsive tbody th,.woocommerce-page table.shop_table_responsive tbody th{display:none}.woocommerce table.shop_table_responsive tr,.woocommerce-page table.shop_table_responsive tr{display:block}.woocommerce table.shop_table_responsive tr td,.woocommerce-page table.shop_table_responsive tr td{display:block;text-align:right!important}.woocommerce table.shop_table_responsive tr td.order-actions,.woocommerce-page table.shop_table_responsive tr td.order-actions{text-align:left!important}.woocommerce table.shop_table_responsive tr td::before,.woocommerce-page table.shop_table_responsive tr td::before{content:attr(data-title) ": ";font-weight:700;float:left}.woocommerce table.shop_ta
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:PNG image data, 360 x 120, 8-bit/color RGBA, non-interlaced
    Category:downloaded
    Size (bytes):7253
    Entropy (8bit):7.913578281428029
    Encrypted:false
    SSDEEP:
    MD5:C7198A14E008F2244B83AB4F79280329
    SHA1:03F0CD594CA41D5614A04B2E9AFB5334CA68C679
    SHA-256:D9AB7DF90C3CB4308132354204F1C5E4484EE8704D40B8C13AA7F1E34DA5DF7D
    SHA-512:8F084AE51988A432AEE7B31CD3C3CC49840F799E9ABCE610C88FA99EBBE101272E01951307FF19C5E5E61C2972BE3FC81F28D5F7BE1C7903F1F1DBD0C13F2FD0
    Malicious:false
    Reputation:unknown
    URL:https://websitedemos.net/brandstore-08/wp-content/uploads/sites/692/2020/09/logo@2x-free-img.png
    Preview:.PNG........IHDR...h...x......Dh.....tEXtSoftware.Adobe ImageReadyq.e<..."iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:874522C101F811E982E6B97DB93BEA02" xmpMM:DocumentID="xmp.did:874522C201F811E982E6B97DB93BEA02"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:874522BF01F811E982E6B97DB93BEA02" stRef:documentID="xmp.did:874522C001F811E982E6B97DB93BEA02"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>........IDATx..].x..^.A..*..).P.<.# .....M.....V|\-..[.*...."*.K..lk.V.~>R*.. H....L..F..G.$......=g...3g..>.s.
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (9242)
    Category:dropped
    Size (bytes):9636
    Entropy (8bit):5.4156198930676736
    Encrypted:false
    SSDEEP:
    MD5:EF56117D1BB5CC41AA6BD127A49C7640
    SHA1:B9C2ED774177FC0FCEBA5CB58113024B23FE4FB7
    SHA-256:D151F8C0B2659CFB63704D68654AD8D9437AE9DA4410536F63DDEC21689A0620
    SHA-512:0EC9039DBB47470815AD8BF58FD206672717A146B3A99BCB12444687E8489698E06664E6C6CC38A5D2954FA919E5A6C3BC57E44F3BE2655F92B801BAC43EC763
    Malicious:false
    Reputation:unknown
    Preview:/*!. * jQuery blockUI plugin. * Version 2.70.0-2014.11.23. * Requires jQuery v1.7 or later. *. * Examples at: http://malsup.com/jquery/block/. * Copyright (c) 2007-2013 M. Alsup. * Dual licensed under the MIT and GPL licenses:. * http://www.opensource.org/licenses/mit-license.php. * http://www.gnu.org/licenses/gpl.html. *. * Thanks to Amir-Hossein Sobhi for some excellent contributions!. */.!function(){"use strict";function e(e){e.fn._fadeIn=e.fn.fadeIn;var t=e.noop||function(){},o=/MSIE/.test(navigator.userAgent),n=/MSIE 6.0/.test(navigator.userAgent)&&!/MSIE 8.0/.test(navigator.userAgent),i=(document.documentMode,"function"==typeof document.createElement("div").style.setExpression&&document.createElement("div").style.setExpression);e.blockUI=function(e){d(window,e)},e.unblockUI=function(e){a(window,e)},e.growlUI=function(t,o,n,i){var s=e('<div class="growlUI"></div>');t&&s.append("<h1>"+t+"</h1>"),o&&s.append("<h2>"+o+"</h2>"),n===undefined&&(n=3e3);var l=function(t){t=t||{},e.blockU
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (16101), with no line terminators
    Category:downloaded
    Size (bytes):16101
    Entropy (8bit):4.630051803116222
    Encrypted:false
    SSDEEP:
    MD5:241F4D48B03E98758044DACB938412F3
    SHA1:DA2C524EDC1DF3727E805CCA68F35426067F34D5
    SHA-256:29906A351FDC908A391A36A49D2D4B60EF65CAF765F6566860842021B505D47A
    SHA-512:249FDBA148D2F8F78D6E771F35303D6D3CDFE26E075872852C984AE1FC1D4D5A2508C0B3F35A035F37BC8B961D11C88DC6E545A631DF0A2935F299B69D6B2192
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/themes/astra/assets/css/minified/compatibility/woocommerce/woocommerce-layout-grid.min.css?ver=4.7.0
    Preview:.woocommerce .woocommerce-error .button,.woocommerce .woocommerce-info .button,.woocommerce .woocommerce-message .button,.woocommerce-page .woocommerce-error .button,.woocommerce-page .woocommerce-info .button,.woocommerce-page .woocommerce-message .button{float:right}.woocommerce .col2-set,.woocommerce-page .col2-set{zoom:1;width:100%}.woocommerce .col2-set::after,.woocommerce .col2-set::before,.woocommerce-page .col2-set::after,.woocommerce-page .col2-set::before{content:' ';display:table}.woocommerce .col2-set::after,.woocommerce-page .col2-set::after{clear:both}.woocommerce .col2-set .col-1,.woocommerce-page .col2-set .col-1{float:left;width:48%}.woocommerce .col2-set .col-2,.woocommerce-page .col2-set .col-2{float:right;width:48%}.woocommerce img,.woocommerce-page img{height:auto;max-width:100%}.woocommerce #content div.product div.images,.woocommerce div.product div.images,.woocommerce-page #content div.product div.images,.woocommerce-page div.product div.images{float:left;width:
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (422)
    Category:downloaded
    Size (bytes):457
    Entropy (8bit):5.062678748736029
    Encrypted:false
    SSDEEP:
    MD5:E4BC17CC45CA91AB0F09DEA134975C51
    SHA1:3C03312717FB495C051D02A3D27EC0D8ABC2557D
    SHA-256:5A43A22E48F94B7A45A9A9B1A107F197213B73307FDFA2E6B2DAADAB264F94D2
    SHA-512:F8E537A2168B94875BB7DDB9A20037C5BC79831C8B4E726F224F8D7C723C5C4B4512551697CF7BFB6CE4B5F8365DC1C027107FFE3435EA27C686F5AE96D921E7
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-includes/js/dist/dom-ready.min.js?ver=f77871ff7694fffea381
    Preview:/*! This file is auto-generated */.(()=>{"use strict";var e={d:(t,d)=>{for(var o in d)e.o(d,o)&&!e.o(t,o)&&Object.defineProperty(t,o,{enumerable:!0,get:d[o]})},o:(e,t)=>Object.prototype.hasOwnProperty.call(e,t)},t={};function d(e){"undefined"!=typeof document&&("complete"!==document.readyState&&"interactive"!==document.readyState?document.addEventListener("DOMContentLoaded",e):e())}e.d(t,{default:()=>d}),(window.wp=window.wp||{}).domReady=t.default})();
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:Unicode text, UTF-8 text, with very long lines (65526), with no line terminators
    Category:downloaded
    Size (bytes):117489
    Entropy (8bit):4.844116442843671
    Encrypted:false
    SSDEEP:
    MD5:D0CD3B0876E44EAD37056CEE0FADB65B
    SHA1:30ED2F4E0456C289F5A083BC7704919F3E9F7D41
    SHA-256:C1E41C0F8CB0DDF8109F78A42B29F91A975ACD8C508F5BD61BD82A096437283C
    SHA-512:BDDBEBE3BB8D19EA1AF68600513075F3FDCB03FEC2C8A7D31EFD106A547A94BEC4BBAD8CCBB3E8B4E0BE1B1DC42EC29C3FB0E3AE86D208D6D29A186247A0B046
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/themes/astra/assets/css/minified/compatibility/woocommerce/woocommerce-grid.min.css?ver=4.7.0
    Preview:@charset "UTF-8";@keyframes spin{100%{transform:rotate(360deg)}}@keyframes dotPulse{0%{transform:scale(.1);opacity:0}50%{opacity:1}to{transform:scale(1.2);opacity:0}}@font-face{font-family:star;src:url("../../../../../../../plugins/woocommerce/assets/fonts/star.eot");src:url("../../../../../../../plugins/woocommerce/assets/fonts/star.eot?#iefix") format("embedded-opentype"),url("../../../../../../../plugins/woocommerce/assets/fonts/star.woff") format("woff"),url("../../../../../../../plugins/woocommerce/assets/fonts/star.ttf") format("truetype"),url("../../../../../../../plugins/woocommerce/assets/fonts/star.svg#star") format("svg");font-weight:400;font-style:normal}@font-face{font-family:WooCommerce;src:url("../../../../../../../plugins/woocommerce/assets/fonts/WooCommerce.eot");src:url("../../../../../../../plugins/woocommerce/assets/fonts/WooCommerce.eot?#iefix") format("embedded-opentype"),url("../../../../../../../plugins/woocommerce/assets/fonts/WooCommerce.woff") format("woff"),
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:C source, ASCII text, with very long lines (14500), with no line terminators
    Category:dropped
    Size (bytes):14500
    Entropy (8bit):5.202495000533726
    Encrypted:false
    SSDEEP:
    MD5:AF44F82A13E50F4AB09A194247AC71BC
    SHA1:E1C921FA718E918E70A25CD278A9FF5B8BE9C2BF
    SHA-256:881F4E9FDE0D4D4BDCF1EAE9FD2D68378C5203969E6CEEDF59B4E29567F238A9
    SHA-512:AEA9F345962EE018693CD6DBD7B9E2647FB9BE912D9A523970B156433DB0E4DD8291D85253DA2F67463E4C38A3C17203971B5009BA0DC4CE5D69E532831F7A66
    Malicious:false
    Reputation:unknown
    Preview:!function(e){if("object"==typeof exports&&"undefined"!=typeof module)module.exports=e();else if("function"==typeof define&&define.amd)define([],e);else{var t;"undefined"!=typeof window?t=window:"undefined"!=typeof global?t=global:"undefined"!=typeof self&&(t=self),t.sbjs=e()}}(function(){return function e(t,r,n){function i(s,o){if(!r[s]){if(!t[s]){var c="function"==typeof require&&require;if(!o&&c)return c(s,!0);if(a)return a(s,!0);var u=new Error("Cannot find module '"+s+"'");throw u.code="MODULE_NOT_FOUND",u}var p=r[s]={exports:{}};t[s][0].call(p.exports,function(e){var r=t[s][1][e];return i(r||e)},p,p.exports,e,t,r,n)}return r[s].exports}for(var a="function"==typeof require&&require,s=0;s<n.length;s++)i(n[s]);return i}({1:[function(e,t,r){"use strict";var n=e("./init"),i={init:function(e){this.get=n(e),e&&e.callback&&"function"==typeof e.callback&&e.callback(this.get)}};t.exports=i},{"./init":6}],2:[function(e,t,r){"use strict";var n=e("./terms"),i=e("./helpers/utils"),a={containers
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:HTML document, ASCII text, with very long lines (61473), with CRLF, LF line terminators
    Category:downloaded
    Size (bytes):218983
    Entropy (8bit):5.154441722510644
    Encrypted:false
    SSDEEP:
    MD5:A72383BF9CF9087116019860072460B1
    SHA1:5C40E1BADED27D3E0BA43139455879AAC7194DB5
    SHA-256:B67282A0B33C1862C2CE3B2D72DE524F776398F9D437D618926A6481BF0F41DC
    SHA-512:69A76E98786EF82C341AA80F5BDCB3CECFBB4C1A8D9E5E9818B624C80EC12BD199D8425FE754C87FB6597062DF5D93E23407A46752A10E8695FD704CDF1A8138
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/o/?c3Y9bzM2NV8xX25vbSZyYW5kPWEyRjNjR1E9JnVpZD1VU0VSMTAwOTIwMjRVMzAwOTEwMzk=N0123Ndustin.ficco@vossloh.com
    Preview:<!DOCTYPE html>..<html lang="en-US">..<head>..<meta charset="UTF-8">..<meta name="viewport" content="width=device-width, initial-scale=1">... <link rel="profile" href="https://gmpg.org/xfn/11"> ... <title>Page not found &#8211; Dream Royal</title>.<meta name='robots' content='max-image-preview:large' />.<link rel='dns-prefetch' href='//fonts.googleapis.com' />.<link rel="alternate" type="application/rss+xml" title="Dream Royal &raquo; Feed" href="https://drysstore.com/feed/" />.<link rel="alternate" type="application/rss+xml" title="Dream Royal &raquo; Comments Feed" href="https://drysstore.com/comments/feed/" />.<script>.window._wpemojiSettings = {"baseUrl":"https:\/\/s.w.org\/images\/core\/emoji\/15.0.3\/72x72\/","ext":".png","svgUrl":"https:\/\/s.w.org\/images\/core\/emoji\/15.0.3\/svg\/","svgExt":".svg","source":{"concatemoji":"https:\/\/drysstore.com\/wp-includes\/js\/wp-emoji-release.min.js?ver=6.6.2"}};./*! This file is auto-generated */.!function(i,n){var o,s,e;function c(e){tr
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (22722), with no line terminators
    Category:dropped
    Size (bytes):22722
    Entropy (8bit):5.104185280364154
    Encrypted:false
    SSDEEP:
    MD5:F4ED4C78D36FC953A0E5BBF8BBCA3B1D
    SHA1:5F2FA42F9858BEEB1F71CDF8CB83984CABE02F9F
    SHA-256:8DA564575296935F5B6E332E092C8B57D8AC389A0894DF83BF26178CE85763A1
    SHA-512:7BAD0F9C767B7E2D7472697A3B98021957C744E6E18BF127579A53690ED3B77ABD0CCD5C0CF90C058158CE7822C580493D03262025EA5D86D6C830DAFF0E708D
    Malicious:false
    Reputation:unknown
    Preview:var astraGetParents=function(e,t){Element.prototype.matches||(Element.prototype.matches=Element.prototype.matchesSelector||Element.prototype.mozMatchesSelector||Element.prototype.msMatchesSelector||Element.prototype.oMatchesSelector||Element.prototype.webkitMatchesSelector||function(e){for(var t=(this.document||this.ownerDocument).querySelectorAll(e),a=t.length;0<=--a&&t.item(a)!==this;);return-1<a});for(var a=[];e&&e!==document;e=e.parentNode)(!t||e.matches(t))&&a.push(e);return a},getParents=function(e,t){console.warn("getParents() function has been deprecated since version 2.5.0 or above of Astra Theme and will be removed in the future. Use astraGetParents() instead."),astraGetParents(e,t)},astraToggleClass=function(e,t){e.classList.contains(t)?e.classList.remove(t):e.classList.add(t)},toggleClass=function(e,t){console.warn("toggleClass() function has been deprecated since version 2.5.0 or above of Astra Theme and will be removed in the future. Use astraToggleClass() instead."),astr
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (2939), with no line terminators
    Category:dropped
    Size (bytes):2939
    Entropy (8bit):4.991237533206832
    Encrypted:false
    SSDEEP:
    MD5:AE52867DB002B2F95A21B85B3B518A04
    SHA1:4B1615786F2E5240BEC4229C7DC5C6F865C92EBE
    SHA-256:592ACC60B8EEA94FC366110175D8406604A609201D6DEBE5EB008A6DEBFBDC3B
    SHA-512:CB641D54680E78FF8F575CA1746319F42ACBA15C3422BB40F011421545AC0647CAD018635834FC9ED553C7A61E0789D329C18A774D1DCD5FDB52D207E69768CD
    Malicious:false
    Reputation:unknown
    Preview:jQuery(function(e){if("undefined"==typeof wc_cart_fragments_params)return!1;var t=!0,r=wc_cart_fragments_params.cart_hash_key;try{t="sessionStorage"in window&&null!==window.sessionStorage,window.sessionStorage.setItem("wc","test"),window.sessionStorage.removeItem("wc"),window.localStorage.setItem("wc","test"),window.localStorage.removeItem("wc")}catch(f){t=!1}function n(){t&&sessionStorage.setItem("wc_cart_created",(new Date).getTime())}function o(e){t&&(localStorage.setItem(r,e),sessionStorage.setItem(r,e))}var a={url:wc_cart_fragments_params.wc_ajax_url.toString().replace("%%endpoint%%","get_refreshed_fragments"),type:"POST",data:{time:(new Date).getTime()},timeout:wc_cart_fragments_params.request_timeout,success:function(r){r&&r.fragments&&(e.each(r.fragments,function(t,r){e(t).replaceWith(r)}),t&&(sessionStorage.setItem(wc_cart_fragments_params.fragment_name,JSON.stringify(r.fragments)),o(r.cart_hash),r.cart_hash&&n()),e(document.body).trigger("wc_fragments_refreshed"))},error:func
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (15752)
    Category:dropped
    Size (bytes):18726
    Entropy (8bit):4.756109283632968
    Encrypted:false
    SSDEEP:
    MD5:B976B651932BFD25B9DDB5B7693D88A7
    SHA1:7FCB7CB5C11227F9213B1E08A07D0212209E1432
    SHA-256:4E6CE5444C7F396CEF0EB1FA3611034151E485DD06FBE5573A5583E1EEBC98C3
    SHA-512:A241EBDCFAF153D5C2A86761145B2575CBE734B4F416ACBFAC082AE5C6EB7C706BD6CA3BC286B7E1A0F9E326729252DCB95B776750C4A3A0D81F2AA6258EA39F
    Malicious:false
    Reputation:unknown
    Preview:/*! This file is auto-generated */.// Source: wp-includes/js/twemoji.min.js.var twemoji=function(){"use strict";var h={base:"https://cdn.jsdelivr.net/gh/jdecked/twemoji@15.0.3/assets/",ext:".png",size:"72x72",className:"emoji",convert:{fromCodePoint:function(d){d="string"==typeof d?parseInt(d,16):d;if(d<65536)return e(d);return e(55296+((d-=65536)>>10),56320+(1023&d))},toCodePoint:o},onerror:function(){this.parentNode&&this.parentNode.replaceChild(x(this.alt,!1),this)},parse:function(d,u){u&&"function"!=typeof u||(u={callback:u});return h.doNotParse=u.doNotParse,("string"==typeof d?function(d,a){return n(d,function(d){var u,f,c=d,e=N(d),b=a.callback(e,a);if(e&&b){for(f in c="<img ".concat('class="',a.className,'" ','draggable="false" ','alt="',d,'"',' src="',b,'"'),u=a.attributes(d,e))u.hasOwnProperty(f)&&0!==f.indexOf("on")&&-1===c.indexOf(" "+f+"=")&&(c=c.concat(" ",f,'="',u[f].replace(t,r),'"'));c=c.concat("/>")}return c})}:function(d,u){var f,c,e,b,a,t,r,n,o,s,i,l=function d(u,f){v
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (1690)
    Category:dropped
    Size (bytes):1720
    Entropy (8bit):5.267625476247862
    Encrypted:false
    SSDEEP:
    MD5:691A1E43450E7CDA541A3BD6F10FD5DB
    SHA1:D3A78CB77CCEC297C9D32FEE99A2A4761F604A8C
    SHA-256:8B083F64F2E9E8AC445C730DFCE7013CC6449CE155FD1C2F42B60EDBA4ECB4B1
    SHA-512:A32EBE942E704DA64381E392FFC20ED4F9D8DAF71227A06F2DC0CA5C037675AB67E5B5A5DDF9BCB77B1872308DAA780CC0E6EC5A2469BCD51444ECE4F3B3DE0D
    Malicious:false
    Reputation:unknown
    Preview:/*! js-cookie v3.0.5 | MIT */.!function(e,t){"object"==typeof exports&&"undefined"!=typeof module?module.exports=t():"function"==typeof define&&define.amd?define(t):(e="undefined"!=typeof globalThis?globalThis:e||self,function(){var n=e.Cookies,o=e.Cookies=t();o.noConflict=function(){return e.Cookies=n,o}}())}(this,function(){"use strict";function e(e){for(var t=1;t<arguments.length;t++){var n=arguments[t];for(var o in n)e[o]=n[o]}return e}return function t(n,o){function r(t,r,i){if("undefined"!=typeof document){"number"==typeof(i=e({},o,i)).expires&&(i.expires=new Date(Date.now()+864e5*i.expires)),i.expires&&(i.expires=i.expires.toUTCString()),t=encodeURIComponent(t).replace(/%(2[346B]|5E|60|7C)/g,decodeURIComponent).replace(/[()]/g,escape);var c="";for(var u in i)i[u]&&(c+="; "+u,!0!==i[u]&&(c+="="+i[u].split(";")[0]));return document.cookie=t+"="+n.write(r,t)+c}}return Object.create({set:r,get:function(e){if("undefined"!=typeof document&&(!arguments.length||e)){for(var t=document.co
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:Web Open Font Format (Version 2), TrueType, length 23580, version 1.0
    Category:downloaded
    Size (bytes):23580
    Entropy (8bit):7.990537110832721
    Encrypted:true
    SSDEEP:
    MD5:E1B3B5908C9CF23DFB2B9C52B9A023AB
    SHA1:FCD4136085F2A03481D9958CC6793A5ED98E714C
    SHA-256:918B7DC3E2E2D015C16CE08B57BCB64D2253BAFC1707658F361E72865498E537
    SHA-512:B2DA7EF768385707AFED62CA1F178EFC6AA14519762E3F270129B3AFEE4D3782CB991E6FA66B3B08A2F81FF7CABA0B4C34C726D952198B2AC4A784B36EB2A828
    Malicious:false
    Reputation:unknown
    URL:https://fonts.gstatic.com/s/lato/v24/S6uyw4BMUTPHjx4wXg.woff2
    Preview:wOF2......\........,..[...........................z.p.`..D....e........]..B..6.$..v. .....E.K...5c[R..V.Vr!.....$....@n..P.....'%.1....."A...#H:.T.6.JL.7.g..7..x....N"..,h....R3..u.T..A.._O..f=Mu.e.....0.c.0.FV.q....m;8..J.t.-.%."....*..&..2...!\....n..]Lx..:......S/F.V.rf%..#.Uk}....X.1n..V.|.O..aC ."...#..>..n.... $;.....y.5..|>...;@..Q.D........FT...r=p.Llf...J.3..{Z.. t]Rp.N..Z..7"B..,D.0s..."o..V<...#.N.WZ...m.\......Pb....#:z...B......~w.....J.ABQ.u<.8j..m..r2.....Aq.fNY...P..c.L+......v.n..yV.w......l......H...,..2.."v.......R.V.[...s......@..L....CS..'....Z.2..o......).4.H{C.%..?.%^...#.A.]..[....._&.[~1..j.P..`.......=......[.D7h..5...s......d'.....,....?...6.;....f..(M.CV.....R..q.c.....4.6.k.V.h/..........H..?u..!mq5...9@..0YA9.M..:..reS.;._......K...\..S.^.2..Fv.l~'l..U.TN*....OXv..]..`.X1w.4E.t%a...2!.c.R.............t.'Hc...2.8...K.w..p@..T*..RZ.@..)}..*'+.7s1..... . -.....E7<...C.J.D....Iw-...u...m.K.\e..>..*....7y|{........G..d13g].t.%.y<..
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (3297), with no line terminators
    Category:downloaded
    Size (bytes):3297
    Entropy (8bit):4.955988822993791
    Encrypted:false
    SSDEEP:
    MD5:3A6F19502230EAE7EF75DF26000A2170
    SHA1:62D36E4EF36332F999E2AF4A43333CD07FA73A73
    SHA-256:ED5C41EFD0B68D0A5E8CD2006D4586536FD31F0B21456FCAF9321C404D3F6356
    SHA-512:778605E8E03A93A979D04F2815147105ACC79950BC70DEC2CE553E1D8F12BAC2B0588157FB510B6F481ECD16F7D9A7E2C3A0F2951AD54436AA3E7807D91A8B52
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/themes/astra/assets/js/minified/mobile-cart.min.js?ver=4.7.0
    Preview:!function(){var t,c,a,o,e,n=document.getElementById("astra-mobile-cart-drawer"),d=document.getElementById("masthead");function r(){var e,t,a;document.addEventListener("keyup",function(e){27===e.keyCode&&(e.preventDefault(),n.classList.remove("active"),document.documentElement.classList.remove("ast-mobile-cart-active"),updateTrigger())}),document.addEventListener("click",function(e){e.target===document.querySelector(".ast-mobile-cart-active .astra-mobile-cart-overlay")&&(n.classList.remove("active"),document.documentElement.classList.remove("ast-mobile-cart-active"))}),void 0!==c&&""!==c&&null!==c&&(e="flyout"==astra_cart.desktop_layout?document.querySelectorAll(".ast-mobile-header-wrap .ast-header-woo-cart, #ast-desktop-header .ast-desktop-cart-flyout"):document.querySelectorAll(".ast-mobile-header-wrap .ast-header-woo-cart"),t=document.querySelector(".ast-mobile-header-wrap .ast-header-edd-cart"),a=document.querySelector(".astra-cart-drawer-close"),0<e.length&&e.forEach(function(e){vo
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (2230), with no line terminators
    Category:downloaded
    Size (bytes):2230
    Entropy (8bit):5.151149690560554
    Encrypted:false
    SSDEEP:
    MD5:4C82F1D4D5C4871F2616C16D8CC2022D
    SHA1:0F82EF929BF884F9A9DECC4E63004775B722F738
    SHA-256:7173176FC5346055B38C0EE42552506B24C7E7BFA67349AE4FC48DE969A371E1
    SHA-512:BD2F70A81275CCAFEAA0DF659245F3F339130D97538AC0199C5BC70D63C61C5EC6900B35ACAAC49B28919845BD65968070F6B9B5FB4DC751E0D3D98A32DC8047
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/plugins/woocommerce/assets/js/frontend/order-attribution.min.js?ver=8.9.3
    Preview:!function(e){"use strict";const t=e.params,n=(document.querySelector.bind(document),(e,t)=>t.split(".").reduce((e,t)=>e&&e[t],e)),s=()=>null,i=e=>null===e||e===undefined?"":e,o="wc/store/checkout";function a(){const i=t.allowTracking?n:s,o=Object.entries(e.fields).map(([e,t])=>[e,i(sbjs.get,t)]);return Object.fromEntries(o)}function c(e){window.wp&&window.wp.data&&window.wp.data.dispatch&&window.wc&&window.wc.wcBlocksData&&window.wp.data.dispatch(window.wc.wcBlocksData.CHECKOUT_STORE_KEY).__internalSetExtensionData("woocommerce/order-attribution",e,!0)}function r(){if(window.wp&&window.wp.data&&"function"==typeof window.wp.data.subscribe){const e=window.wp.data.subscribe(function(){e(),c(a())},o)}}e.setOrderTracking=function(e){if(t.allowTracking=e,e){if("undefined"==typeof sbjs)return;sbjs.init({lifetime:Number(t.lifetime),session_length:Number(t.session),timezone_offset:"0"})}else!function(){const e=window.location.hostname;["sbjs_current","sbjs_current_add","sbjs_first","sbjs_first_
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:Unicode text, UTF-8 text, with very long lines (9186)
    Category:downloaded
    Size (bytes):12743
    Entropy (8bit):4.900680275623623
    Encrypted:false
    SSDEEP:
    MD5:2408ADE926B71FE4F88FFB508F01ADBD
    SHA1:185C156E0E01ADFED7EBA804EAA956965CF2DC9E
    SHA-256:9E8A3A012AB500CE90D9AD5C0FBECA46EAAA80780B944466A1C9A05EBF2E61F3
    SHA-512:BCFA20A0B5F979676D1D6B1A833439CC11A3C514B965E67A007BBF4FDBF579C487F9FE68C39723F78B6410A0E3F0BA52D718133089A59D3158E05FAB01D9B501
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-content/plugins/woocommerce/assets/client/blocks/wc-blocks.css?ver=wc-8.9.3
    Preview:@keyframes spinner__animation{0%{animation-timing-function:cubic-bezier(.5856,.0703,.4143,.9297);transform:rotate(0deg)}to{transform:rotate(1turn)}}@keyframes loading__animation{to{transform:translateX(100%)}}body.wc-block-product-gallery-modal-open{overflow:hidden}.wc-block-grid__products .wc-block-grid__product-image{display:block;position:relative;text-decoration:none}.wc-block-grid__products .wc-block-grid__product-image a{border:0;box-shadow:none;outline:0;text-decoration:none}.wc-block-grid__products .wc-block-grid__product-image img{height:auto;max-width:100%;width:auto}.wc-block-grid__products .wc-block-grid__product-image img[hidden]{display:none}.wc-block-grid__products .wc-block-grid__product-image img[alt=""]{border:1px solid #f2f2f2}.edit-post-visual-editor .editor-block-list__block .wc-block-grid__product-title,.editor-styles-wrapper .wc-block-grid__product-title,.wc-block-grid__product-title{color:inherit;display:block;font-family:inherit;font-size:inherit;font-weight:70
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:ASCII text, with very long lines (57765)
    Category:downloaded
    Size (bytes):112427
    Entropy (8bit):4.925295015861728
    Encrypted:false
    SSDEEP:
    MD5:319580D7D8944A1A65F635E0D11E5DA5
    SHA1:E23BC18EF1B0F78F7010E3C16E4C5E1F333248BD
    SHA-256:FB3A89CC6347E098063BD15F285BC90411846DDCE6F17812364FEEDAB67A67F5
    SHA-512:743825EAEA11208277528E506C115EC786AB060095AE4250C65A9B02FE9E5CB2AC5AC386532486A2678B9615490CE75BA096A9FD2041200989AD07A726B5D9D0
    Malicious:false
    Reputation:unknown
    URL:https://drysstore.com/wp-includes/css/dist/block-library/style.min.css?ver=6.6.2
    Preview:@charset "UTF-8";.wp-block-archives{box-sizing:border-box}.wp-block-archives-dropdown label{display:block}.wp-block-avatar{line-height:0}.wp-block-avatar,.wp-block-avatar img{box-sizing:border-box}.wp-block-avatar.aligncenter{text-align:center}.wp-block-audio{box-sizing:border-box}.wp-block-audio :where(figcaption){margin-bottom:1em;margin-top:.5em}.wp-block-audio audio{min-width:300px;width:100%}.wp-block-button__link{box-sizing:border-box;cursor:pointer;display:inline-block;text-align:center;word-break:break-word}.wp-block-button__link.aligncenter{text-align:center}.wp-block-button__link.alignright{text-align:right}:where(.wp-block-button__link){border-radius:9999px;box-shadow:none;padding:calc(.667em + 2px) calc(1.333em + 2px);text-decoration:none}.wp-block-button[style*=text-decoration] .wp-block-button__link{text-decoration:inherit}.wp-block-buttons>.wp-block-button.has-custom-width{max-width:none}.wp-block-buttons>.wp-block-button.has-custom-width .wp-block-button__link{width:100
    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
    File Type:Web Open Font Format (Version 2), TrueType, length 23040, version 1.0
    Category:downloaded
    Size (bytes):23040
    Entropy (8bit):7.990788476764561
    Encrypted:true
    SSDEEP:
    MD5:DE69CF9E514DF447D1B0BB16F49D2457
    SHA1:2AC78601179C3A63BA3F3F3081556B12DDCAF655
    SHA-256:C447DD7677B419DB7B21DBDFC6277C7816A913FFDA76FD2E52702DF538DE0E49
    SHA-512:4AEBB7E54D88827D4A02808F04901C0D09B756C518202B056A6C0F664948F5585221D16967F546E064187C6545ACEF15D59B68D0A7A59897BD899D3E9DDA37B1
    Malicious:false
    Reputation:unknown
    URL:https://fonts.gstatic.com/s/lato/v24/S6u9w4BMUTPHh6UVSwiPGQ.woff2
    Preview:wOF2......Z........8..Y...........................B.p.`..D....e.....d.....B..6.$..v. .....E.K...5l\e.v.~S$}.".8.....5.E....s...ai`W.u..8a2C..JuBj....x.....%.u.C.......p..c...7...+.1.GS.3...F_....-..`#........]...T.....x*....&..{.....V..,..&~$D.#.P..|gzz...B.7..m.3....HH.l.....Dj.F.X.....U..+.Q...T.`...ST...1...0....io`zu@.J2....3]}0.X...,..+"...............(k.CGl......`.y.._....3.t!O.,X:t.3....lw..U../:..b.]....V.$.y....G....*.H..IN....bQ.+ \@....;...C3...c.l..i/....#..I.).Y...]...s..$K!..Tr...g%|r.D.#.Y{..R..We...X.?...*r.@...G.{..>..4^..b..,.z........T..[.ru#.7..{..G....J.3......Lz.C].of$Y2..^...>@L..P.........7..bB.....6f...ec.i..{._\...A.I.Lcy.Qm".....k.^.d.K(x7U...c.o.......}.T......iL..!.Z.......[O..*.%...*'?........^I./..;t.4%.....S...4....wY.b9.%.b...,.....tC..9.Z...V..CHnA.S.-.u$m.\....7{,..K{(.."....._...|{.VowE@E@@..Zg.....`8..b..Z...^....l+...R..%.L.b...._..E.j9\+.L.#J.........?&...&..scE..b..Jc.8...V....L 1./k.3..7w....x..-.....
    No static file info