Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
ArenaWarsSetup.exe

Overview

General Information

Sample name:ArenaWarsSetup.exe
Analysis ID:1556375
MD5:140cfcf356cc2da4d739c1cababbe7b4
SHA1:d40acf2d6ec434aea3f9a5cc510efa093b793180
SHA256:1c2eb5275c7212c7e578deef9f8b305a6623ef2d92f49f2eb9d517801bff0c02
Tags:exeuser-likeastar20
Infos:

Detection

Score:56
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Attempt to bypass Chrome Application-Bound Encryption
Drops large PE files
Tries to harvest and steal browser information (history, passwords, etc)
Creates a process in suspended mode (likely to inject code)
Drops PE files
Drops files with a non-matching file extension (content does not match file extension)
Enables debug privileges
Enables security privileges
Found dropped PE file which has not been started or loaded
IP address seen in connection with other malware
Installs a raw input device (often for capturing keystrokes)
JA3 SSL client fingerprint seen in connection with other malware
PE file contains more sections than normal
PE file contains sections with non-standard names
Queries keyboard layouts
Queries sensitive Operating System Information (via WMI, Win32_ComputerSystem, often done to detect virtual machines)
Queries the volume information (name, serial number etc) of a device
Sample execution stops while process was sleeping (likely an evasion)
Sample file is different than original file name gathered from version info
Sigma detected: Browser Started with Remote Debugging
Stores files to the Windows start menu directory
Uses 32bit PE files
Uses taskkill to terminate processes
Very long cmdline option found, this is very uncommon (may be encrypted or packed)

Classification

  • System is w10x64
  • ArenaWarsSetup.exe (PID: 6916 cmdline: "C:\Users\user\Desktop\ArenaWarsSetup.exe" MD5: 140CFCF356CC2DA4D739C1CABABBE7B4)
    • cmd.exe (PID: 3552 cmdline: cmd /c tasklist /FI "USERNAME eq %USERNAME%" /FI "IMAGENAME eq WarsArena.exe" | %SYSTEMROOT%\System32\find.exe "WarsArena.exe" MD5: D0FCE3AFA6AA1D58CE9FA336CC2B675B)
      • conhost.exe (PID: 3600 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • tasklist.exe (PID: 2092 cmdline: tasklist /FI "USERNAME eq user" /FI "IMAGENAME eq WarsArena.exe" MD5: 0A4448B31CE7F83CB7691A2657F330F1)
      • find.exe (PID: 3100 cmdline: C:\Windows\System32\find.exe "WarsArena.exe" MD5: 15B158BC998EEF74CFDD27C44978AEA0)
  • WarsArena.exe (PID: 4860 cmdline: "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" MD5: CE6BE7DBF1189F24B294ABDFA9C10CB7)
    • cmd.exe (PID: 5256 cmdline: C:\Windows\system32\cmd.exe /d /s /c "wmic csproduct get uuid" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 3564 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • WMIC.exe (PID: 1364 cmdline: wmic csproduct get uuid MD5: C37F2F4F4B3CD128BDABCAEB2266A785)
    • WarsArena.exe (PID: 2284 cmdline: "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1816 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2 MD5: CE6BE7DBF1189F24B294ABDFA9C10CB7)
    • WarsArena.exe (PID: 7008 cmdline: "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --mojo-platform-channel-handle=2300 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8 MD5: CE6BE7DBF1189F24B294ABDFA9C10CB7)
    • chrome.exe (PID: 4196 cmdline: "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
      • chrome.exe (PID: 5644 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2140 --field-trial-handle=1720,i,2144963780533695318,1306686769971395901,262144 /prefetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
    • msedge.exe (PID: 7796 cmdline: "C:/Program Files (x86)/Microsoft/Edge/Application/msedge.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400 MD5: 69222B8101B0601CC6663F8381E7E00F)
      • msedge.exe (PID: 8028 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2212 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:3 MD5: 69222B8101B0601CC6663F8381E7E00F)
      • msedge.exe (PID: 9164 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=5288 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8 MD5: 69222B8101B0601CC6663F8381E7E00F)
      • msedge.exe (PID: 9172 cmdline: "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6576 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8 MD5: 69222B8101B0601CC6663F8381E7E00F)
    • cmd.exe (PID: 8792 cmdline: C:\Windows\system32\cmd.exe /d /s /c "tasklist" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 7548 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • tasklist.exe (PID: 7284 cmdline: tasklist MD5: D0A49A170E13D7F6AEBBEFED9DF88AAA)
    • cmd.exe (PID: 7540 cmdline: C:\Windows\system32\cmd.exe /d /s /c "tasklist" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 7564 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • tasklist.exe (PID: 7232 cmdline: tasklist MD5: D0A49A170E13D7F6AEBBEFED9DF88AAA)
    • cmd.exe (PID: 7560 cmdline: C:\Windows\system32\cmd.exe /d /s /c "tasklist" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 8832 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • tasklist.exe (PID: 7256 cmdline: tasklist MD5: D0A49A170E13D7F6AEBBEFED9DF88AAA)
    • cmd.exe (PID: 7348 cmdline: C:\Windows\system32\cmd.exe /d /s /c "tasklist" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 7428 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • tasklist.exe (PID: 7416 cmdline: tasklist MD5: D0A49A170E13D7F6AEBBEFED9DF88AAA)
    • cmd.exe (PID: 7620 cmdline: C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM EpicGamesLauncher.exe /F" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 7632 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • taskkill.exe (PID: 7212 cmdline: taskkill /IM EpicGamesLauncher.exe /F MD5: A599D3B2FAFBDE4C1A6D7D0F839451C7)
    • cmd.exe (PID: 7492 cmdline: C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM javaw.exe /F" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 7596 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • taskkill.exe (PID: 7512 cmdline: taskkill /IM javaw.exe /F MD5: A599D3B2FAFBDE4C1A6D7D0F839451C7)
    • cmd.exe (PID: 7436 cmdline: C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 6952 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • taskkill.exe (PID: 6736 cmdline: taskkill /f /im msedge.exe MD5: A599D3B2FAFBDE4C1A6D7D0F839451C7)
    • cmd.exe (PID: 3356 cmdline: C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 8284 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • taskkill.exe (PID: 1304 cmdline: taskkill /f /im msedge.exe MD5: A599D3B2FAFBDE4C1A6D7D0F839451C7)
    • cmd.exe (PID: 4104 cmdline: C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 5984 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • taskkill.exe (PID: 6884 cmdline: taskkill /f /im msedge.exe MD5: A599D3B2FAFBDE4C1A6D7D0F839451C7)
    • cmd.exe (PID: 7876 cmdline: C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM Steam.exe /F" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 7164 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • taskkill.exe (PID: 5568 cmdline: taskkill /IM Steam.exe /F MD5: A599D3B2FAFBDE4C1A6D7D0F839451C7)
    • cmd.exe (PID: 5880 cmdline: C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe" MD5: 8A2122E8162DBEF04694B9C3E0B6CDEE)
      • conhost.exe (PID: 6168 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
      • taskkill.exe (PID: 4724 cmdline: taskkill /f /im msedge.exe MD5: A599D3B2FAFBDE4C1A6D7D0F839451C7)
    • WarsArena.exe (PID: 1464 cmdline: "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --disable-gpu-sandbox --use-gl=disabled --gpu-vendor-id=5140 --gpu-device-id=140 --gpu-sub-system-id=0 --gpu-revision=0 --gpu-driver-version=10.0.19041.546 --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADoAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAACQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2604 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2 MD5: CE6BE7DBF1189F24B294ABDFA9C10CB7)
  • cleanup
No configs have been found
No yara matches

System Summary

barindex
Source: Process startedAuthor: pH-T (Nextron Systems), Nasreddine Bencherchali (Nextron Systems): Data: Command: "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400, CommandLine: "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400, CommandLine|base64offset|contains: ^", Image: C:\Program Files\Google\Chrome\Application\chrome.exe, NewProcessName: C:\Program Files\Google\Chrome\Application\chrome.exe, OriginalFileName: C:\Program Files\Google\Chrome\Application\chrome.exe, ParentCommandLine: "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" , ParentImage: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe, ParentProcessId: 4860, ParentProcessName: WarsArena.exe, ProcessCommandLine: "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400, ProcessId: 4196, ProcessName: chrome.exe
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results
Source: ArenaWarsSetup.exeStatic PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeRegistry value created: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2dd41eeb-b697-51ce-bf35-97d7e100aa39Jump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\LICENSE.electron.txtJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\LICENSE.electron.txtJump to behavior
Source: unknownHTTPS traffic detected: 20.109.210.53:443 -> 192.168.2.9:49711 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.31.73:443 -> 192.168.2.9:49737 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.31.73:443 -> 192.168.2.9:49742 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.109.210.53:443 -> 192.168.2.9:49797 version: TLS 1.2
Source: ArenaWarsSetup.exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: Binary string: BCC = $(NCC) -nologo -W3 -Fd$*.pdb $(CCOPTS) $(BCCOPTS) source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** is constructed during statement parsing and is held on Vdbe.pDblStr. source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\Dev\elevate\bin\x86\Release\Elevate.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1714868912.0000000002B34000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: del /Q *.exp *.lo *.ilk *.lib *.obj *.ncb *.pdb *.sdf *.suo 2>NUL source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: LTCOMPILE = $(TCC) -Fo$@ -Fd$*.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\STATEMENT.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\STATEMENT.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: CLEANFILES="$CLEANFILES *.lib *.dll *.pdb *.exp" source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\Release\sqlite3.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\ffmpeg.dll.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1657504103.000000000517A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\PROGRAM FILES\NODEJS\NODE_MODULES\NPM\NODE_MODULES\NODE-GYP\SRC\WIN_DELAY_LOAD_HOOK.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: *.$ac_ext | *.xcoff | *.tds | *.d | *.pdb | *.xSYM | *.bb | *.bbg | *.map | *.inf | *.dSYM ) ;; source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: -typedil-fC:\Program Files\nodejs\node_modules\npm\node_modules\node-gyp\src\win_delay_load_hook.cc-dos-Zi-Z7-W3-pdbrpc-Og-Ob2-Ot-EHs-MT-GS-Gy-FitObjFunc-FitObjData-NoRTTI-FoC:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\deps\Release\obj\sqlite3\win_delay_load_hook.obj-FdC:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\Release\sqlite3.pdb-errorreport:queue source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\libGLESv2.dll.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\BACKUP.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\BACKUP.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: SQLITE3EXEPDB = /pdb:sqlite3sh.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\PROGRAM FILES\MICROSOFT VISUAL STUDIO\2022\PROFESSIONAL\VC\TOOLS\MSVC\14.42.34433\LIB\X64\LIBCMT.AMD64.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** rbu_file.pDb!=0, then it is assumed to already be present on the source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1656198864.000000000517A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\NODE_SQLITE3.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdbGCTL source: ArenaWarsSetup.exe, 00000000.00000003.1656198864.000000000517A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\electron.exe.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: BCC = $(NCC) -nologo -W4 -Fd$*.pdb $(CCOPTS) $(BCCOPTS) source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\vk_swiftshader.dll.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1669012719.0000000005174000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /OUT:"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\NODE_SQLITE3.NODE" /INCREMENTAL:NO /NOLOGO KERNEL32.LIB USER32.LIB GDI32.LIB WINSPOOL.LIB COMDLG32.LIB ADVAPI32.LIB SHELL32.LIB OLE32.LIB OLEAUT32.LIB UUID.LIB ODBC32.LIB DELAYIMP.LIB "C:\\USERS\\HEXON\\.ELECTRON-GYP\\24.8.8\\X64\\NODE.LIB" DELAYIMP.LIB /DELAYLOAD:NODE.EXE /MANIFEST /MANIFESTUAC:"level='asInvoker' uiAccess='false'" /manifest:embed /DEBUG /PDB:"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\NODE_SQLITE3.PDB" /OPT:REF /OPT:ICF /TLBID:1 /DYNAMICBASE /NXCOMPAT /MACHINE:X64 /LTCG:INCREMENTAL /ignore:4199 /DLL RELEASE\OBJ\NODE_SQLITE3\WIN_DELAY_LOAD_HOOK.OBJ source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: *.$ac_ext | *.xcoff | *.tds | *.d | *.pdb | *.xSYM | *.bb | *.bbg | *.map | *.inf | *.dSYM | *.o | *.obj ) ;; source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: *.$ac_ext | *.xcoff | *.tds | *.d | *.pdb | *.xSYM | *.bb | *.bbg | *.map | *.inf | *.dSYM | *.o | *.obj ) source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\DATABASE.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\DATABASE.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\NODE_SQLITE3.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\NODE_SQLITE3.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\PROGRAM FILES\MICROSOFT VISUAL STUDIO\2022\PROFESSIONAL\VC\TOOLS\MSVC\14.42.34433\LIB\X64\LIBVCRUNTIME.AMD64.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** for all file descriptors with rbu_file.pDb!=0. If the argument has source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: -FdC:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\Release\sqlite3.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\PROGRAM FILES\MICROSOFT VISUAL STUDIO\2022\PROFESSIONAL\VC\TOOLS\MSVC\14.42.34433\LIB\X64\LIBCPMT.AMD64.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** rbu_file.pDb!=0. source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\LocalJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppDataJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\Local\ProgramsJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\Local\Programs\unrealgameJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\userJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeJump to behavior
Source: chrome.exeMemory has grown: Private usage: 1MB later: 29MB
Source: Joe Sandbox ViewIP Address: 20.25.227.174 20.25.227.174
Source: Joe Sandbox ViewIP Address: 108.181.20.35 108.181.20.35
Source: Joe Sandbox ViewIP Address: 152.195.19.97 152.195.19.97
Source: Joe Sandbox ViewJA3 fingerprint: 28a2c9bd18a11de089ef85a160da29e4
Source: unknownTCP traffic detected without corresponding DNS query: 23.206.229.209
Source: unknownTCP traffic detected without corresponding DNS query: 23.206.229.209
Source: unknownTCP traffic detected without corresponding DNS query: 23.206.229.209
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.11
Source: unknownTCP traffic detected without corresponding DNS query: 23.206.229.209
Source: unknownTCP traffic detected without corresponding DNS query: 23.206.229.209
Source: unknownTCP traffic detected without corresponding DNS query: 23.206.229.209
Source: unknownTCP traffic detected without corresponding DNS query: 23.206.229.209
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 72.145.3.21
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: unknownTCP traffic detected without corresponding DNS query: 40.126.31.73
Source: global trafficHTTP traffic detected: GET /SLS/%7B522D76A4-93E1-47F8-B8CE-07C937AD1A1E%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=dMoBLy5pWN3hCbl&MD=pk6F5hZM HTTP/1.1Connection: Keep-AliveAccept: */*User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33Host: slscr.update.microsoft.com
Source: global trafficHTTP traffic detected: GET /complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=20&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw HTTP/1.1Host: www.google.comConnection: keep-aliveX-Client-Data: CIu2yQEIo7bJAQipncoBCNT9ygEIlKHLAQiFoM0BCNy9zQEIucrNAQip0c0BCInTzQEIqdXNAQjJ1s0BCPTWzQEIqNjNAQj5wNQVGOmYzQEY642lFw==Sec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /async/ddljson?async=ntp:2 HTTP/1.1Host: www.google.comConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /async/newtab_ogb?hl=en-US&async=fixed:0 HTTP/1.1Host: www.google.comConnection: keep-aliveX-Client-Data: CIu2yQEIo7bJAQipncoBCNT9ygEIlKHLAQiFoM0BCNy9zQEIucrNAQip0c0BCInTzQEIqdXNAQjJ1s0BCPTWzQEIqNjNAQj5wNQVGOmYzQEY642lFw==Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /async/newtab_promos HTTP/1.1Host: www.google.comConnection: keep-aliveSec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /edgeoffer/pb/experiments?appId=edge-extensions&country=CH HTTP/1.1Host: api.edgeoffer.microsoft.comConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /bundles/v1/edgeChromium/latest/vendors.7e27cca6027b8d6697cb.js HTTP/1.1Host: assets.msn.comConnection: keep-alivesec-ch-ua: "Microsoft Edge";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://ntp.msn.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://ntp.msn.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /bundles/v1/edgeChromium/latest/microsoft.48132e5427deb971ee28.js HTTP/1.1Host: assets.msn.comConnection: keep-alivesec-ch-ua: "Microsoft Edge";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://ntp.msn.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://ntp.msn.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /bundles/v1/edgeChromium/latest/common.c694729adaeead0f8ae0.js HTTP/1.1Host: assets.msn.comConnection: keep-alivesec-ch-ua: "Microsoft Edge";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://ntp.msn.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: scriptReferer: https://ntp.msn.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /filestreamingservice/files/bdc392b9-6b81-4aaa-b3ee-2fffd9562edb?P1=1732268736&P2=404&P3=2&P4=l0WNFg%2fORbVyHUvDJDy2D9I7r9BIf7WmK%2fgyCQxPkXuGW6EnxkTtuDbbymPmSFhOMtHITQCeip9AykKsI1SxAw%3d%3d HTTP/1.1Host: msedgeextensions.sf.tlu.dl.delivery.mp.microsoft.comConnection: keep-aliveMS-CV: r5dl83tnQZmPWtOnUFvCA1Sec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /crx/blobs/AW50ZFuKxXfmS97pgdN117JdnzteDOW0nOxXPbIMSOJi_zMXlj_Y84pRZgGX1_WSw7i6yKhrqpdS319KewJbpE_4ZxBd62lsUferdiEuq7Yg9JR92C5gtrLldrMl4JgnY0IAxlKa5RR9kAwB758lMbnQOIDqR06lx1aH/GHBMNNJOOEKPMOECNNNILNNBDLOLHKHI_1_83_1_0.crx HTTP/1.1Host: clients2.googleusercontent.comConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/domains_config_gz/2.8.76/asset?assetgroup=EntityExtractionDomainsConfig HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveEdge-Asset-Group: EntityExtractionDomainsConfigSec-Mesh-Client-Edge-Version: 117.0.2045.47Sec-Mesh-Client-Edge-Channel: stableSec-Mesh-Client-OS: WindowsSec-Mesh-Client-OS-Version: 10.0.19045Sec-Mesh-Client-Arch: x86_64Sec-Mesh-Client-WebView: 0Sec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_manifest_gz/4.7.107/asset?assetgroup=Shoreline HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveEdge-Asset-Group: ShorelineSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_action_center_maximal_light.png/1.2.1/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_search_maximal_light.png/1.3.6/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_shopping_maximal_light.png/1.4.0/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_toolbox_maximal_light.png/1.5.13/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_games_maximal_light.png/1.7.1/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_M365_light.png/1.7.32/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /SLS/%7BE7A50285-D08D-499D-9FF8-180FDC2332BC%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=dMoBLy5pWN3hCbl&MD=pk6F5hZM HTTP/1.1Connection: Keep-AliveAccept: */*User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33Host: slscr.update.microsoft.com
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_outlook_light.png/1.9.10/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: global trafficHTTP traffic detected: GET /assets/edge_hub_apps_edrop_maximal_light.png/1.1.12/asset HTTP/1.1Host: edgeassetservice.azureedge.netConnection: keep-aliveSec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47Accept-Encoding: gzip, deflate, brAccept-Language: en-GB,en;q=0.9,en-US;q=0.8
Source: ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: * **Google Hangouts Video**: http://www.youtube.com/watch?v=I9nDOSGfwZg equals www.youtube.com (Youtube)
Source: global trafficDNS traffic detected: DNS query: catbox.moe
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: chrome.cloudflare-dns.com
Source: global trafficDNS traffic detected: DNS query: ntp.msn.com
Source: global trafficDNS traffic detected: DNS query: bzib.nelreports.net
Source: global trafficDNS traffic detected: DNS query: sb.scorecardresearch.com
Source: global trafficDNS traffic detected: DNS query: api.msn.com
Source: global trafficDNS traffic detected: DNS query: assets.msn.com
Source: global trafficDNS traffic detected: DNS query: c.msn.com
Source: unknownHTTP traffic detected: POST /dns-query HTTP/1.1Host: chrome.cloudflare-dns.comConnection: keep-aliveContent-Length: 128Accept: application/dns-messageAccept-Language: *User-Agent: ChromeAccept-Encoding: identityContent-Type: application/dns-message
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://.css
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://.jpg
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/1085
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/1452
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/1452expandIntegerPowExpressionsThe
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/1512
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/1637
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/1936
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2046
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2152
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2152skipVSConstantRegisterZeroIn
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2162
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2273
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2517
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2894
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2970
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/2978
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3027
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3045
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3078
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3205
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3206
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3246
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3246allowClearForRobustResourceInitSome
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3452
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3498
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3502
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3577
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3584
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3586
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3623
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3624
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3625
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3682
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3682allowES3OnFL100Allow
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3729
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3832
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3862
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3965
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3970
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/3997
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4214
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4267
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4324
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4384
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4405
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4428
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4551
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4633
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4646
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4722
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/482
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4836
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4901
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/4937
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5007
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5007disableDrawBuffersIndexedDisable
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5055
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5061
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5281
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5371
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5375
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5421
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5430
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5469
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5535
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5577
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5658
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5658forceGlErrorCheckingForce
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5750
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5750forceRobustResourceInitForce-enable
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5881
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5901
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/5906
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6041
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6041forceInitShaderVariablesForce-enable
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6048
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6141
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6248
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6439
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6651
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6692
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6755
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6860
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6876
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6878
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6929
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/6953
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7036
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7036dumpShaderSourceWrite
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7047
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7172
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7279
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7279cacheCompiledShaderEnable
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7370
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7406
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7488
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7527
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7553
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7556
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7724
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7724disableAnisotropicFilteringDisable
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7760
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7760enableShaderSubstitutionCheck
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7761
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://anglebug.com/7761Frontend
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://austingroupbugs.net/view.php?id=542
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://blog.izs.me/)
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://certificates.godaddy.com/repository/gd_intermediate.crt0
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://certificates.godaddy.com/repository100.
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://cgit.freedesktop.org/xorg/xserver/tree/COPYING
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://cldr.unicode.org/index/downloads
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://code.google.com/p/closure-compiler/wiki/SourceMaps
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://code.google.com/p/smhasher/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://code.google.com/p/v8
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/1094869
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/110263
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/1144207
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/1165751
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/1165751disableProgramBinaryDisable
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/1171371
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/1181068
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/1181193
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/308366
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/403957
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/550292
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/565179
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/642227
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/642605
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/644669
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/650547
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/672380
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/709351
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/797243
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/809422
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/830046
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/849576
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/883276
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/927470
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/941620
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crbug.com/941620allowTranslateUniformBlockToStructuredBufferThere
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crl.comodoca.com/AAACertificateServices.crl06
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crl.comodoca.com/COMODOCertificationAuthority.crl0
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crl.globalsign.net/root-r2.crl0
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://crl.godaddy.com/gds1-20
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://devel.freebsoft.org/speechd
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://developer.android.com/tools/extras/support-library.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://exslt.org/common
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://exslt.org/commonnode-set..
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://fedorahosted.org/lohit>
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://freedesktop.org
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://git.linuxtv.org/v4l-utils.git
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://google.github.io/snappy/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://html4/loose.dtd
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://icl.com/saxon
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://icl.com/saxonorg.apache.xalan.xslt.extensions.RedirectxsltDocumentElem:
Source: ArenaWarsSetup.exe, 00000000.00000003.1714868912.0000000002B34000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://int3.de/
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://issuetracker.google.com/200067929
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://labs.creativecommons.org/licenses/zero-waive/1.0/us/legalcode>
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://lists.gnu.org/archive/html/automake/2012-07/msg00001.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://lists.gnu.org/archive/html/automake/2012-07/msg00014.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://mxr.mozilla.org/comm-central/source/mozilla/netwerk/base/src/nsURLParsers.cpp
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://nfs.sourceforge.net/#faq_a8
Source: ArenaWarsSetup.exe, 00000000.00000000.1462175627.000000000040A000.00000008.00000001.01000000.00000003.sdmpString found in binary or memory: http://nsis.sf.net/NSIS_ErrorError
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://ocsp.godaddy.com/0J
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://pages.citebite.com/v2o5n8l2f5reb))
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://s..
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://scripts.sil.org/OFL
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://source.android.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://source.android.com/compatibility)
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://sqlite.org/lockingv3.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1652714355.0000000007480000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://src.chromium.org/viewvc/blink/trunk/Source/devtools/front_end/SourceMap.js
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://src.chromium.org/viewvc/chrome/trunk/deps/third_party/xz/COPYING
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://stackoverflow.com/a/62888/10333
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://tukaani.org/xz/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://valgrind.org
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://webkit.org/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://wpad/wpad.dat
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://wpad/wpad.dat..
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.apache.org/licenses/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1652714355.0000000007480000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.chromium.org
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.freedesktop.org/wiki/Software/xdg-user-dirs
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.gnu.org/licenses/
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.gnu.org/software/coreutils/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.gutenberg.org/ebooks/53).
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.ibm.com/data/dtd/v11/ibmxhtml1-transitional.dtd
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.ibm.com/data/dtd/v11/ibmxhtml1-transitional.dtd-//W3C//DTD
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.jclark.com/xt
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.linux-usb.org/usb-ids.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.mozilla.org/MPL/
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.nabble.com/SQLite-on-NFS-cache-coherency-td15655701.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.nongnu.org/freebangfont/downloads.html#mukti
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.ploscompbiol.org/static/license
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://www.sqlite.org/compile.html).
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.strongtalk.org/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.suitable.com
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.suitable.com/tools/smslib.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.suitable.com/tools/smslib.html>
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://www.webrtc.org
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://xmlsoft.org/XSLT/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://xmlsoft.org/XSLT/namespace
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://xmlsoft.org/XSLT/namespacehttp://www.jclark.com/xtxsl:key
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: http://xmlsoft.org/XSLT/xsltNewExtDef
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://zlib.net/
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://android-review.googlesource.com/#/c/115351/3/dist/sqlite3.c)
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://android.com/pay
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/4674
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/4830
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/4849
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/4966
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/5140
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/5536
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/5845
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/6574
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7161
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7162
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7246
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7246enableCaptureLimitsSet
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7308
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7319
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7320
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7369
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7382
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7405
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7489
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7604
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7714
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7847
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://anglebug.com/7899
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons.gcp.gvt2.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons.gcp.gvt2.com/domainreliability/uploadhttps://beacons.gvt2.com/domainreliability/uplo
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons.gvt2.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons2.gvt2.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons3.gvt2.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons4.gvt2.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons5.gvt2.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://beacons5.gvt3.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://bit.ly/3rpDuEX.
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://bit.ly/3rpDuEX.WebBundleURLLoaderFactory::OnResponseParsedInvalid
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://bit.ly/audio-worklet)
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://bit.ly/audio-worklet)ScriptProcessorHandler::ProcessScriptProcessorHandler::Process
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://blog.chromium.org/2019/10/no-more-mixed-messages-about-https.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://blog.chromium.org/2019/10/no-more-mixed-messages-about-https.htmlMixed
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://bugs.fuchsia.dev/p/fuchsia/issues/detail?id=107106
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://bugzilla.mozilla.org/show_bug.cgi?id=1072773
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.android.clients.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.bigcache.googleapis.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.doc-0-0-sj.sj.googleusercontent.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.docs.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.drive.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.googlesyndication.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.pack.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.play.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://c.youtube.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1712376081.000000000609C000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://chrome.google.com/webstore?hl=et&category=theme81https://myactivity.google.com/myactivity/?u
Source: ArenaWarsSetup.exe, 00000000.00000003.1714868912.0000000002B34000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://chrome.google.com/webstore?hl=ur&category=theme81https://myactivity.google.com/myactivity/?u
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://chromestatus.com/feature/5105856067141632.
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://chromium.googlesource.com/angle/angle/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://chromium.googlesource.com/chromium/src/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://chromium.googlesource.com/vulkan-deps/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://chromium.googlesource.com/webm/libwebm
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://chromium.googlesource.com/webm/libwebp
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://clients2.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://clients2.google.com/domainreliability/upload
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1038223.
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1042393
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1046462
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1060012
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1091824
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1137851
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1144908
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1144908.
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1144908.The
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1144908Changing
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1154140
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1300575
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1356053
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1393662).
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/1412729
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/593024
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/593024selectViewInGeometryShaderThe
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/619103.
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/619103.Subsequence
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/650547
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/650547callClearTwiceUsing
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/655534
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/655534useSystemMemoryForConstantBuffersCopying
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/705865
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/710443
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/811661
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/848952
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/927119
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/927119..
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://crbug.com/981419
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://creativecommons.org/licenses/by/3.0/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://datatracker.ietf.org/doc/draft-ietf-rtcweb-ip-handling.
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://dejavu-fonts.github.io/Download.html
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://developer.chrome.com/blog/enabling-shared-array-buffer/
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://developer.chrome.com/blog/immutable-document-domain/
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://developer.chrome.com/docs/extensions/mv3/cross-origin-isolation/.
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://developer.mozilla.org/en-US/docs/SpiderMonkey/Parser_API
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/JSON/stringify#The_
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://developers.google.com/android/guides/setup
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://docs.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://example.org
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://example.orgExpired
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://gcp.gvt2.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://gcp.gvt6.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/Cyan4973/xxHash
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/GPUOpen-LibrariesAndSDKs/VulkanMemoryAllocator
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/GoogleChromeLabs/text-fragments-polyfill
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/KhronosGroup/SPIRV-Cross
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/KhronosGroup/SPIRV-Headers.git
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/KhronosGroup/SPIRV-Tools.git
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/KhronosGroup/Vulkan-Headers
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/KhronosGroup/Vulkan-Loader
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/Qix-/color-convert/blob/3f0e0d4e92e235796ccb17f6e85c72094a651f49/conversions.js
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/RyanZim/universalify#readme
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/RyanZim/universalify.git
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/Squirrel/Squirrel.Mac
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/WICG/construct-stylesheets/issues/119#issuecomment-588352418.
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/WICG/construct-stylesheets/issues/119#issuecomment-588352418.border-boxcontent-bo
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/WICG/shared-element-transitions/blob/main/debugging_overflow_on_images.md.
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/WICG/view-transitions/blob/main/debugging_overflow_on_images.md
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/WebBluetoothCG/web-bluetooth/blob/main/implementation-status.md
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/aawc/unrar.git
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/acornjs/acorn/blob/master/acorn/src/identifier.js#L23
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/acornjs/acorn/issues/575
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/andrewrk/node-mv/blob/master/package.json
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/chalk/ansi-styles?sponsor=1
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/estree/estree/blob/a27003adf4fd7bfad44de9cef372a2eacd527b1c/es5.md#regexpliteral
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/diff-match-patch/tree/master/javascript
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/distributed_point_functions
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/google-api-cpp-client/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/ruy
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/ukey2
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/woff2
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/wuffs-mirror-release-c
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/google/xnnpack
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/isaacs/node-glob/issues/167
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/isaacs/node-glob/issues/205
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/jprichardson/node-fs-extra
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/jprichardson/node-fs-extra/issues/269
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/jprichardson/node-fs-extra/issues/323)).
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/jprichardson/node-fs-extra/pull/141
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/jprichardson/node-jsonfile#readfilefilename-options-callback).
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/jprichardson/node-jsonfile#readfilesyncfilename-options).
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/mathiasbynens/emoji-regex.git
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/nodejs
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/nodejs/node-addon-api
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/nodejs/node-addon-api#collaborators
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/nodejs/node-addon-api/issues
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/nodejs/node/pull/27791
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/normalize/mz
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/sponsors/isaacs
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/sponsors/sindresorhus
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/tensorflow/models
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/tensorflow/tensorflow
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/tensorflow/text.git
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/tensorflow/tflite-support
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/w3c/ServiceWorker/issues/1356.
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/w3c/ServiceWorker/issues/1356.WindowPostMessageOptionstargetOriginhgMH
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/w3c/gamepad/pull/120
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/w3c/gamepad/pull/120Access
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/w3c/webappsec-permissions-policy/blob/master/features.md#sensor-features
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://github.com/w3c/webappsec-permissions-policy/blob/master/features.md#sensor-featuresDeviceOri
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/wasdk/wasmparser
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://github.com/web-animations/web-animations-js
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://gitlab.freedesktop.org/wayland/weston
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://gitlab.freedesktop.org/xdg/xdgmime
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://gitlab.freedesktop.org/xorg/proto/xproto/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/4NeimX
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/7K7WLu
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/7K7WLuThe
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/7K7WLuWebAudio.AutoplayWebAudio.Autoplay.CrossOriginWebAudio.Autoplay.UnlockType..
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/EuHzyv
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/HxfxSQ
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/J6ASzs
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/LdLk22
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/LdLk22Media
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/rStTGz
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/xX8pDD
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/xX8pDDplay()
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/ximf56
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gl/ximf56Iframe
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://goo.gle/chrome-insecure-origins
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://google-analytics.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://google.com/pay
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://google.com/payhttps://android.com/paysecure-payment-confirmationAppStoreBillingPlaceHolderZZ
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://googlevideo.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://gvt1.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://gvt2.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://gvt6.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://html.spec.whatwg.org/multipage/canvas.html#concept-canvas-will-read-frequently
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://html.spec.whatwg.org/multipage/canvas.html#concept-canvas-will-read-frequentlyOut
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/161903006
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/166809097
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/184850002
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/187425444
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/220069903
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/220069903emulatePixelLocalStorageEmulate
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/229267970
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/250706693
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/253522366
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://issuetracker.google.com/issues/166475273
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://jimmy.warting.se/opensource
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://mathiasbynens.be/
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://mths.be/emoji
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://mths.be/emoji-regex
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_exists_path_callback)
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_existssync_path)
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_read_fd_buffer_offset_length_position_callback)
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_write_fd_buffer_offset_length_position_callback)
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_writefile_file_data_options_callback)
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_writefile_file_data_options_callback).
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_writefilesync_file_data_options)
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/fs.html#fs_fs_writefilesync_file_data_options).
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/api/util.html#util_util_promisify_original)
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/download/release/v18.14.0/node-v18.14.0-headers.tar.gz
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/download/release/v18.14.0/node-v18.14.0.tar.gz
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/download/release/v18.14.0/node-v18.14.0.tar.gzhttps://nodejs.org/download/release
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/download/release/v18.14.0/win-x64/node.lib
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/en/docs/inspector
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/en/docs/inspectorFor
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/static/images/favicons/favicon.ico
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://nodejs.org/static/images/favicons/favicon.icofaviconUrldevtoolsFrontendUrldevtoolsFrontendUr
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://openjsf.org/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://pagure.io/lohit
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://play.google.com/billing
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://play.google.com/billingQuota
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://sindresorhus.com
Source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://sindresorhus.com)
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://sites.google.com/site/gaviotachessengine/Home/endgame-tablebases-1
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://sourceforge.net/projects/wtl/files/WTL%2010/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://sqlite.org/
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://sqlite.org/src/info/ff5be73dee
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://ssl.gstatic.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1712376081.000000000609C000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714868912.0000000002B34000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1712926204.0000000002B34000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1712512419.000000000609D000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://support.google.com/chrome/a/answer/9122284
Source: ArenaWarsSetup.exe, 00000000.00000003.1712376081.000000000609C000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1712926204.0000000002B34000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1712512419.000000000609D000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://support.google.com/chrome/answer/6098869
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://swiftshader.googlesource.com/SwiftShader
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://w3c.github.io/manifest/#installability-signals
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://webrtc.googlesource.com/src/
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.bluetooth.com/specifications/gatt/characteristics
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.bluetooth.com/specifications/gatt/descriptors
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.bluetooth.com/specifications/gatt/services
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/4664843055398912
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/5093566007214080
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/5636954674692096
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/5644273861001216.
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/5682658461876224.
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/5718547946799104
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/5738264052891648
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/6662647093133312
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.chromestatus.com/feature/6662647093133312InputDeviceCapabilities
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-Alternative
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-Atom
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-CharacterClass
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-CharacterClassEscape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-ClassAtom
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-ClassAtomNoDash
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-ClassRanges
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-ControlEscape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-ControlLetter
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-DecimalDigits
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-DecimalEscape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-Disjunction
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-Hex4Digits
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-HexDigit
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-HexDigits
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-HexEscapeSequence
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-NonemptyClassRanges
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-NonemptyClassRangesNoDash
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-OctalDigit
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-Pattern
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-PatternCharacter
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-Quantifier
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-QuantifierPrefix
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-RegExpUnicodeEscapeSequence
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-SyntaxCharacter
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-Assertion
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-AtomEscape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-CharacterEscape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-ClassControlLetter
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-ClassEscape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-ExtendedAtom
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-ExtendedPatternCharacter
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-IdentityEscape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-InvalidBracedQuantifier
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-LegacyOctalEscapeSequence
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-Term
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#sec-atomescape
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.ecma-international.org/ecma-262/8.0/#sec-term
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.google.com/
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.sqlite.org/src/info/343634942dd54ab
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.sqlite.org/src/info/908f001483982c43
Source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://www.sqlite.org/src/info/bba7b69f9849b5bf
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://www.swift.org/download/
Source: ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://www.unicode.org/copyright.html.
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpString found in binary or memory: https://xhr.spec.whatwg.org/.
Source: unknownNetwork traffic detected: HTTP traffic on port 49708 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49800 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49766 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49781 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49769 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49803 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49795 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 49772 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49784 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49763 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 49752 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 49777 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49798 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 49674 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49748 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 49715 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49715
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 49782 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49799
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49798
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49797
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49796
Source: unknownNetwork traffic detected: HTTP traffic on port 49677 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49795
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49791
Source: unknownNetwork traffic detected: HTTP traffic on port 49765 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49796 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49771 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49785
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 49676 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49783
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49782
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49781
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49780
Source: unknownNetwork traffic detected: HTTP traffic on port 49704 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49785 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49762 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49799 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49791 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49777
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49772
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49771
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49770
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49767 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49780 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49802 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49804
Source: unknownNetwork traffic detected: HTTP traffic on port 49773 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49803
Source: unknownNetwork traffic detected: HTTP traffic on port 49718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49769
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49802
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49801
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49800
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49766
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49765
Source: unknownNetwork traffic detected: HTTP traffic on port 49783 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49764
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49763
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49762
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49764 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49770 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49797 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49801 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49752
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49804 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 49792 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: unknownHTTPS traffic detected: 20.109.210.53:443 -> 192.168.2.9:49711 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.31.73:443 -> 192.168.2.9:49737 version: TLS 1.2
Source: unknownHTTPS traffic detected: 40.126.31.73:443 -> 192.168.2.9:49742 version: TLS 1.2
Source: unknownHTTPS traffic detected: 20.109.210.53:443 -> 192.168.2.9:49797 version: TLS 1.2
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: RegisterRawInputDevices() failed for RIDEV_REMOVE memstr_acc6c2f2-6

System Summary

barindex
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile dump: WarsArena.exe.0.dr 162117120Jump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile dump: WarsArena.exe0.0.dr 162117120Jump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess token adjusted: SecurityJump to behavior
Source: vulkan-1.dll0.0.drStatic PE information: Number of sections : 11 > 10
Source: libEGL.dll.0.drStatic PE information: Number of sections : 11 > 10
Source: libGLESv2.dll.0.drStatic PE information: Number of sections : 11 > 10
Source: vk_swiftshader.dll0.0.drStatic PE information: Number of sections : 11 > 10
Source: vk_swiftshader.dll.0.drStatic PE information: Number of sections : 11 > 10
Source: libGLESv2.dll0.0.drStatic PE information: Number of sections : 11 > 10
Source: WarsArena.exe.0.drStatic PE information: Number of sections : 15 > 10
Source: vulkan-1.dll.0.drStatic PE information: Number of sections : 11 > 10
Source: WarsArena.exe0.0.drStatic PE information: Number of sections : 15 > 10
Source: libEGL.dll0.0.drStatic PE information: Number of sections : 11 > 10
Source: ArenaWarsSetup.exe, 00000000.00000003.1669012719.0000000005174000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: OriginalFilenamevk_swiftshader.dll, vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1662023173.0000000006086000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: OriginalFilenamelibEGL.dllb! vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1656198864.000000000517A000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: OriginalFilenamed3dcompiler_47.dllj% vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1672617884.000000000517E000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: OriginalFilename4 vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1662615132.0000000005175000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: OriginalFilenamelibGLESv2.dllb! vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1714868912.0000000002B34000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: OriginalFilenameElevate.exeH vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: OriginalFilenamevk_swiftshader.dll, vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: OriginalFilenamelibGLESv2.dllb! vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exe, 00000000.00000003.1652421716.0000000006F80000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: OriginalFilename4 vs ArenaWarsSetup.exe
Source: ArenaWarsSetup.exeStatic PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
Source: classification engineClassification label: mal56.troj.spyw.winEXE@127/328@23/15
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\ProgramsJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeMutant created: NULL
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:7596:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:6952:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:3600:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:7548:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:7164:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:5984:120:WilError_03
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeMutant created: \Sessions\1\BaseNamedObjects\2dd41eeb-b697-51ce-bf35-97d7e100aa39
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:3564:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:8832:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:8284:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:6168:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:7632:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:7564:120:WilError_03
Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:7428:120:WilError_03
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsh476D.tmpJump to behavior
Source: ArenaWarsSetup.exeStatic PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
Source: C:\Windows\SysWOW64\tasklist.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime FROM Win32_Process WHERE Caption = 'WARSARENA.EXE'
Source: C:\Windows\System32\tasklist.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime FROM Win32_Process
Source: C:\Windows\System32\tasklist.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime FROM Win32_Process
Source: C:\Windows\System32\tasklist.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime FROM Win32_Process
Source: C:\Windows\System32\tasklist.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime FROM Win32_Process
Source: C:\Windows\System32\taskkill.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime, ParentProcessId FROM Win32_Process WHERE ( Caption = "EpicGamesLauncher.exe")
Source: C:\Windows\System32\taskkill.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime, ParentProcessId FROM Win32_Process WHERE ( Caption = "javaw.exe")
Source: C:\Windows\System32\taskkill.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime, ParentProcessId FROM Win32_Process WHERE ( Caption = "msedge.exe")
Source: C:\Windows\System32\taskkill.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime, ParentProcessId FROM Win32_Process WHERE ( Caption = "msedge.exe")
Source: C:\Windows\System32\taskkill.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime, ParentProcessId FROM Win32_Process WHERE ( Caption = "msedge.exe")
Source: C:\Windows\System32\taskkill.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime, ParentProcessId FROM Win32_Process WHERE ( Caption = "Steam.exe")
Source: C:\Windows\System32\taskkill.exeWMI Queries: IWbemServices::ExecQuery - root\cimv2 : SELECT __PATH, ProcessId, CSName, Caption, SessionId, ThreadCount, WorkingSetSize, KernelModeTime, UserModeTime, ParentProcessId FROM Win32_Process WHERE ( Caption = "msedge.exe")
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile read: C:\Users\desktop.iniJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeKey opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiersJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile read: C:\Windows\System32\drivers\etc\hostsJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile read: C:\Windows\System32\drivers\etc\hostsJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile read: C:\Windows\System32\drivers\etc\hostsJump to behavior
Source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: SELECT name FROM sqlite_master WHERE type='table';
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile read: C:\Users\user\Desktop\ArenaWarsSetup.exeJump to behavior
Source: unknownProcess created: C:\Users\user\Desktop\ArenaWarsSetup.exe "C:\Users\user\Desktop\ArenaWarsSetup.exe"
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess created: C:\Windows\SysWOW64\cmd.exe cmd /c tasklist /FI "USERNAME eq %USERNAME%" /FI "IMAGENAME eq WarsArena.exe" | %SYSTEMROOT%\System32\find.exe "WarsArena.exe"
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\SysWOW64\tasklist.exe tasklist /FI "USERNAME eq user" /FI "IMAGENAME eq WarsArena.exe"
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\SysWOW64\find.exe C:\Windows\System32\find.exe "WarsArena.exe"
Source: unknownProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe"
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "wmic csproduct get uuid"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\wbem\WMIC.exe wmic csproduct get uuid
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1816 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --mojo-platform-channel-handle=2300 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2140 --field-trial-handle=1720,i,2144963780533695318,1306686769971395901,262144 /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:/Program Files (x86)/Microsoft/Edge/Application/msedge.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2212 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:3
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=5288 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6576 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM EpicGamesLauncher.exe /F"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM EpicGamesLauncher.exe /F
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM javaw.exe /F"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM javaw.exe /F
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM Steam.exe /F"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM Steam.exe /F
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --disable-gpu-sandbox --use-gl=disabled --gpu-vendor-id=5140 --gpu-device-id=140 --gpu-sub-system-id=0 --gpu-revision=0 --gpu-driver-version=10.0.19041.546 --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADoAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAACQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2604 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess created: C:\Windows\SysWOW64\cmd.exe cmd /c tasklist /FI "USERNAME eq %USERNAME%" /FI "IMAGENAME eq WarsArena.exe" | %SYSTEMROOT%\System32\find.exe "WarsArena.exe"Jump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\SysWOW64\tasklist.exe tasklist /FI "USERNAME eq user" /FI "IMAGENAME eq WarsArena.exe" Jump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\SysWOW64\find.exe C:\Windows\System32\find.exe "WarsArena.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "wmic csproduct get uuid"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1816 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --mojo-platform-channel-handle=2300 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:/Program Files (x86)/Microsoft/Edge/Application/msedge.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM EpicGamesLauncher.exe /F"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM javaw.exe /F"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM Steam.exe /F"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --disable-gpu-sandbox --use-gl=disabled --gpu-vendor-id=5140 --gpu-device-id=140 --gpu-sub-system-id=0 --gpu-revision=0 --gpu-driver-version=10.0.19041.546 --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADoAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAACQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2604 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2Jump to behavior
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\wbem\WMIC.exe wmic csproduct get uuidJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2140 --field-trial-handle=1720,i,2144963780533695318,1306686769971395901,262144 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2212 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:3
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=5288 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6576 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: unknown unknown
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM EpicGamesLauncher.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM javaw.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM Steam.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: uxtheme.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: userenv.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: apphelp.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: propsys.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: dwmapi.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: cryptbase.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: oleacc.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: ntmarta.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: version.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: shfolder.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: kernel.appcore.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: windows.storage.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: wldp.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: profapi.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: riched20.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: usp10.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: msls31.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: textshaping.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: textinputframework.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: coreuicomponents.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: coremessaging.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: wintypes.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: wintypes.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: wintypes.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: windows.staterepositoryps.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: windows.fileexplorer.common.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: iertutil.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: ntshrui.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: sspicli.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: linkinfo.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: srvcli.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: cscapi.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: sxs.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: onecorecommonproxystub.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: onecoreuapcommonproxystub.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: msasn1.dllJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeSection loaded: netutils.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: version.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: mpr.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: framedynos.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: dbghelp.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: sspicli.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: srvcli.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: netutils.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: sspicli.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: kernel.appcore.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: wbemcomn.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: winsta.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: amsi.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: userenv.dllJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeSection loaded: profapi.dllJump to behavior
Source: C:\Windows\SysWOW64\find.exeSection loaded: ulib.dllJump to behavior
Source: C:\Windows\SysWOW64\find.exeSection loaded: fsutilext.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: ffmpeg.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uiautomationcore.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dbghelp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winmm.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: iphlpapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: userenv.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: version.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dwrite.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: secur32.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winhttp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dhcpcsvc.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: propsys.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: sspicli.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: cryptbase.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: powrprof.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: umpdc.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uxtheme.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mswsock.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: ntmarta.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: kbdus.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: kernel.appcore.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: napinsp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: pnrpnsp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: wshbth.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: nlaapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dnsapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winrnr.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: profapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: windows.storage.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: wldp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dpapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dhcpcsvc6.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: textinputframework.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: coreuicomponents.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: coremessaging.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: coremessaging.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: wintypes.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: wintypes.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: wintypes.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: windows.ui.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: windowmanagementapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: inputhost.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: twinapi.appcore.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: twinapi.appcore.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: wtsapi32.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winsta.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mscms.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: coloradapterclient.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mmdevapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: devobj.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: msasn1.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: cryptsp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: rsaenh.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: gpapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: rasadhlp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: fwpuclnt.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: iphlpapi.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: framedynos.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: sspicli.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: kernel.appcore.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: wbemcomn.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: msxml6.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: urlmon.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: iertutil.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: srvcli.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: netutils.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: uxtheme.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: vcruntime140.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: vcruntime140_1.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: amsi.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: userenv.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: profapi.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: vbscript.dllJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeSection loaded: sxs.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: ffmpeg.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uiautomationcore.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dbghelp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winmm.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: iphlpapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: userenv.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: version.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dwrite.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: secur32.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winhttp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dhcpcsvc.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: propsys.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: sspicli.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: cryptbase.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: powrprof.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: umpdc.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uxtheme.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mswsock.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: kernel.appcore.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dxgi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: resourcepolicyclient.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mf.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mfplat.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: rtworkq.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: msmpeg2vdec.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mfperfhelper.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: cryptsp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dxva2.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: msvproc.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dwmapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: ffmpeg.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uiautomationcore.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dbghelp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winmm.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: iphlpapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: userenv.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: version.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dwrite.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: secur32.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winhttp.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dhcpcsvc.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: propsys.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: sspicli.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: cryptbase.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: powrprof.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: umpdc.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uxtheme.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mswsock.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: ntmarta.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: kbdus.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: nlaapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dhcpcsvc6.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dnsapi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: rasadhlp.dllJump to behavior
Source: C:\Windows\System32\tasklist.exeSection loaded: version.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: mpr.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: netutils.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: winsta.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: amsi.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: userenv.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: profapi.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: version.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: mpr.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: netutils.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: winsta.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: amsi.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: userenv.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: profapi.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: version.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: mpr.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: netutils.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: winsta.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: amsi.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: userenv.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: profapi.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: version.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: mpr.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: netutils.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: winsta.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: amsi.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: userenv.dll
Source: C:\Windows\System32\tasklist.exeSection loaded: profapi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: version.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: mpr.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: netutils.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: winsta.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: amsi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: userenv.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: profapi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: version.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: mpr.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: netutils.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: winsta.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: amsi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: userenv.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: profapi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: version.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: mpr.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: netutils.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: winsta.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: amsi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: userenv.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: profapi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: version.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: mpr.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: netutils.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: winsta.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: amsi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: userenv.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: profapi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: version.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: mpr.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: netutils.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: winsta.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: amsi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: userenv.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: profapi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: version.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: mpr.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: netutils.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: winsta.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: amsi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: userenv.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: profapi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: version.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: mpr.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: framedynos.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: dbghelp.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: srvcli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: netutils.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: sspicli.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: kernel.appcore.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: wbemcomn.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: winsta.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: amsi.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: userenv.dll
Source: C:\Windows\System32\taskkill.exeSection loaded: profapi.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: ffmpeg.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uiautomationcore.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dbghelp.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winmm.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: iphlpapi.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: userenv.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: version.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dwrite.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: secur32.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: winhttp.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dhcpcsvc.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: propsys.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: sspicli.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: cryptbase.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: powrprof.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: umpdc.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: uxtheme.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mswsock.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: ntmarta.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: kbdus.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: kernel.appcore.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: windows.storage.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: wldp.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: profapi.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dxgi.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: resourcepolicyclient.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: d3d11.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: d3d11.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dxcore.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mf.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mfplat.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: rtworkq.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: msmpeg2vdec.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: mfperfhelper.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: cryptsp.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dxva2.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: msvproc.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: d3d12.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: d3d12.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: d3d12core.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: d3d10warp.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: dxilconv.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: d3dscache.dll
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeSection loaded: twinapi.appcore.dll
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1f486a52-3cb1-48fd-8f50-b8dc300d9f9d}\InProcServer32Jump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\SysWOW64\tasklist.exe tasklist /FI "USERNAME eq user" /FI "IMAGENAME eq WarsArena.exe"
Source: Google Drive.lnk.16.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: YouTube.lnk.16.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Sheets.lnk.16.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Gmail.lnk.16.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Slides.lnk.16.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Docs.lnk.16.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeRegistry value created: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2dd41eeb-b697-51ce-bf35-97d7e100aa39Jump to behavior
Source: ArenaWarsSetup.exeStatic file information: File size 86431523 > 1048576
Source: ArenaWarsSetup.exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: Binary string: BCC = $(NCC) -nologo -W3 -Fd$*.pdb $(CCOPTS) $(BCCOPTS) source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** is constructed during statement parsing and is held on Vdbe.pDblStr. source: ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\Dev\elevate\bin\x86\Release\Elevate.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1714868912.0000000002B34000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: del /Q *.exp *.lo *.ilk *.lib *.obj *.ncb *.pdb *.sdf *.suo 2>NUL source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: LTCOMPILE = $(TCC) -Fo$@ -Fd$*.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\STATEMENT.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\STATEMENT.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: CLEANFILES="$CLEANFILES *.lib *.dll *.pdb *.exp" source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\Release\sqlite3.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\ffmpeg.dll.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1657504103.000000000517A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\PROGRAM FILES\NODEJS\NODE_MODULES\NPM\NODE_MODULES\NODE-GYP\SRC\WIN_DELAY_LOAD_HOOK.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: *.$ac_ext | *.xcoff | *.tds | *.d | *.pdb | *.xSYM | *.bb | *.bbg | *.map | *.inf | *.dSYM ) ;; source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: -typedil-fC:\Program Files\nodejs\node_modules\npm\node_modules\node-gyp\src\win_delay_load_hook.cc-dos-Zi-Z7-W3-pdbrpc-Og-Ob2-Ot-EHs-MT-GS-Gy-FitObjFunc-FitObjData-NoRTTI-FoC:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\deps\Release\obj\sqlite3\win_delay_load_hook.obj-FdC:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\Release\sqlite3.pdb-errorreport:queue source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\libGLESv2.dll.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\BACKUP.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\BACKUP.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: SQLITE3EXEPDB = /pdb:sqlite3sh.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\PROGRAM FILES\MICROSOFT VISUAL STUDIO\2022\PROFESSIONAL\VC\TOOLS\MSVC\14.42.34433\LIB\X64\LIBCMT.AMD64.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** rbu_file.pDb!=0, then it is assumed to already be present on the source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1656198864.000000000517A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\NODE_SQLITE3.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: D3DCompiler_47.pdbGCTL source: ArenaWarsSetup.exe, 00000000.00000003.1656198864.000000000517A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\electron.exe.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: BCC = $(NCC) -nologo -W4 -Fd$*.pdb $(CCOPTS) $(BCCOPTS) source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\projects\src\out\Default\vk_swiftshader.dll.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1669012719.0000000005174000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /OUT:"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\NODE_SQLITE3.NODE" /INCREMENTAL:NO /NOLOGO KERNEL32.LIB USER32.LIB GDI32.LIB WINSPOOL.LIB COMDLG32.LIB ADVAPI32.LIB SHELL32.LIB OLE32.LIB OLEAUT32.LIB UUID.LIB ODBC32.LIB DELAYIMP.LIB "C:\\USERS\\HEXON\\.ELECTRON-GYP\\24.8.8\\X64\\NODE.LIB" DELAYIMP.LIB /DELAYLOAD:NODE.EXE /MANIFEST /MANIFESTUAC:"level='asInvoker' uiAccess='false'" /manifest:embed /DEBUG /PDB:"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\NODE_SQLITE3.PDB" /OPT:REF /OPT:ICF /TLBID:1 /DYNAMICBASE /NXCOMPAT /MACHINE:X64 /LTCG:INCREMENTAL /ignore:4199 /DLL RELEASE\OBJ\NODE_SQLITE3\WIN_DELAY_LOAD_HOOK.OBJ source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: *.$ac_ext | *.xcoff | *.tds | *.d | *.pdb | *.xSYM | *.bb | *.bbg | *.map | *.inf | *.dSYM | *.o | *.obj ) ;; source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: *.$ac_ext | *.xcoff | *.tds | *.d | *.pdb | *.xSYM | *.bb | *.bbg | *.map | *.inf | *.dSYM | *.o | *.obj ) source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\DATABASE.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\DATABASE.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: /c /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\INCLUDE\NODE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\SRC" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\CONFIG" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\OPENSSL\OPENSSL\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\UV\INCLUDE" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\ZLIB" /I"C:\USERS\HEXON\.ELECTRON-GYP\24.8.8\DEPS\V8\INCLUDE" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\NODE_MODULES\NODE-ADDON-API" /I"C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\BUILD\RELEASE\OBJ\GLOBAL_INTERMEDIATE\SQLITE-AUTOCONF-3320300" /Z7 /nologo /W3 /WX- /diagnostics:column /Ox /Ob2 /Oi /Ot /Oy /GL /D NODE_GYP_MODULE_NAME=node_sqlite3 /D USING_UV_SHARED=1 /D USING_V8_SHARED=1 /D V8_DEPRECATION_WARNINGS=1 /D V8_DEPRECATION_WARNINGS /D V8_IMMINENT_DEPRECATION_WARNINGS /D _GLIBCXX_USE_CXX11_ABI=1 /D ELECTRON_ENSURE_CONFIG_GYPI /D USING_ELECTRON_CONFIG_GYPI /D V8_COMPRESS_POINTERS /D V8_COMPRESS_POINTERS_IN_SHARED_CAGE /D V8_ENABLE_SANDBOX /D V8_31BIT_SMIS_ON_64BIT_ARCH /D WIN32 /D _CRT_SECURE_NO_DEPRECATE /D _CRT_NONSTDC_NO_DEPRECATE /D _HAS_EXCEPTIONS=0 /D OPENSSL_NO_PINSHARED /D OPENSSL_THREADS /D OPENSSL_NO_ASM /D NAPI_VERSION=6 /D NAPI_DISABLE_CPP_EXCEPTIONS=1 /D SQLITE_THREADSAFE=1 /D HAVE_USLEEP=1 /D SQLITE_ENABLE_FTS3 /D SQLITE_ENABLE_FTS4 /D SQLITE_ENABLE_FTS5 /D SQLITE_ENABLE_JSON1 /D SQLITE_ENABLE_RTREE /D SQLITE_ENABLE_DBSTAT_VTAB=1 /D BUILDING_NODE_EXTENSION /D "HOST_BINARY=\"node.exe\"" /D NDEBUG /D _WINDLL /GF /Gm- /EHsc /MT /GS /Gy /fp:precise /Zc:wchar_t /Zc:forScope /Zc:inline /GR- /Fo"RELEASE\OBJ\NODE_SQLITE3\\SRC\NODE_SQLITE3.OBJ" /Fd"RELEASE\OBJ\NODE_SQLITE3\VC143.PDB" /external:W3 /Gd /TP /wd4351 /wd4355 /wd4800 /wd4251 /wd4275 /wd4244 /wd4267 /FC /Zc:__cplusplus -std:c++17 C:\USERS\HEXON\DESKTOP\HEXON\API\CRYPTER\SCRIPT\NODE_MODULES\SQLITE3\SRC\NODE_SQLITE3.CC source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\PROGRAM FILES\MICROSOFT VISUAL STUDIO\2022\PROFESSIONAL\VC\TOOLS\MSVC\14.42.34433\LIB\X64\LIBVCRUNTIME.AMD64.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** for all file descriptors with rbu_file.pDb!=0. If the argument has source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: -FdC:\Users\hexon\Desktop\hexon\Api\crypter\script\node_modules\sqlite3\build\Release\sqlite3.pdb source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: C:\PROGRAM FILES\MICROSOFT VISUAL STUDIO\2022\PROFESSIONAL\VC\TOOLS\MSVC\14.42.34433\LIB\X64\LIBCPMT.AMD64.PDB source: ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp
Source: Binary string: ** rbu_file.pDb!=0. source: ArenaWarsSetup.exe, 00000000.00000003.1565299065.0000000006780000.00000004.00001000.00020000.00000000.sdmp
Source: WarsArena.exe.0.drStatic PE information: section name: .00cfg
Source: WarsArena.exe.0.drStatic PE information: section name: .gxfg
Source: WarsArena.exe.0.drStatic PE information: section name: .retplne
Source: WarsArena.exe.0.drStatic PE information: section name: .rodata
Source: WarsArena.exe.0.drStatic PE information: section name: CPADinfo
Source: WarsArena.exe.0.drStatic PE information: section name: LZMADEC
Source: WarsArena.exe.0.drStatic PE information: section name: _RDATA
Source: WarsArena.exe.0.drStatic PE information: section name: malloc_h
Source: ffmpeg.dll.0.drStatic PE information: section name: .00cfg
Source: ffmpeg.dll.0.drStatic PE information: section name: .gxfg
Source: ffmpeg.dll.0.drStatic PE information: section name: .retplne
Source: ffmpeg.dll.0.drStatic PE information: section name: _RDATA
Source: libEGL.dll.0.drStatic PE information: section name: .00cfg
Source: libEGL.dll.0.drStatic PE information: section name: .gxfg
Source: libEGL.dll.0.drStatic PE information: section name: .retplne
Source: libEGL.dll.0.drStatic PE information: section name: _RDATA
Source: libGLESv2.dll.0.drStatic PE information: section name: .00cfg
Source: libGLESv2.dll.0.drStatic PE information: section name: .gxfg
Source: libGLESv2.dll.0.drStatic PE information: section name: .retplne
Source: libGLESv2.dll.0.drStatic PE information: section name: _RDATA
Source: vk_swiftshader.dll.0.drStatic PE information: section name: .00cfg
Source: vk_swiftshader.dll.0.drStatic PE information: section name: .gxfg
Source: vk_swiftshader.dll.0.drStatic PE information: section name: .retplne
Source: vk_swiftshader.dll.0.drStatic PE information: section name: _RDATA
Source: vulkan-1.dll.0.drStatic PE information: section name: .00cfg
Source: vulkan-1.dll.0.drStatic PE information: section name: .gxfg
Source: vulkan-1.dll.0.drStatic PE information: section name: .retplne
Source: vulkan-1.dll.0.drStatic PE information: section name: _RDATA
Source: WarsArena.exe0.0.drStatic PE information: section name: .00cfg
Source: WarsArena.exe0.0.drStatic PE information: section name: .gxfg
Source: WarsArena.exe0.0.drStatic PE information: section name: .retplne
Source: WarsArena.exe0.0.drStatic PE information: section name: .rodata
Source: WarsArena.exe0.0.drStatic PE information: section name: CPADinfo
Source: WarsArena.exe0.0.drStatic PE information: section name: LZMADEC
Source: WarsArena.exe0.0.drStatic PE information: section name: _RDATA
Source: WarsArena.exe0.0.drStatic PE information: section name: malloc_h
Source: ffmpeg.dll0.0.drStatic PE information: section name: .00cfg
Source: ffmpeg.dll0.0.drStatic PE information: section name: .gxfg
Source: ffmpeg.dll0.0.drStatic PE information: section name: .retplne
Source: ffmpeg.dll0.0.drStatic PE information: section name: _RDATA
Source: libEGL.dll0.0.drStatic PE information: section name: .00cfg
Source: libEGL.dll0.0.drStatic PE information: section name: .gxfg
Source: libEGL.dll0.0.drStatic PE information: section name: .retplne
Source: libEGL.dll0.0.drStatic PE information: section name: _RDATA
Source: libGLESv2.dll0.0.drStatic PE information: section name: .00cfg
Source: libGLESv2.dll0.0.drStatic PE information: section name: .gxfg
Source: libGLESv2.dll0.0.drStatic PE information: section name: .retplne
Source: libGLESv2.dll0.0.drStatic PE information: section name: _RDATA
Source: vk_swiftshader.dll0.0.drStatic PE information: section name: .00cfg
Source: vk_swiftshader.dll0.0.drStatic PE information: section name: .gxfg
Source: vk_swiftshader.dll0.0.drStatic PE information: section name: .retplne
Source: vk_swiftshader.dll0.0.drStatic PE information: section name: _RDATA
Source: vulkan-1.dll0.0.drStatic PE information: section name: .00cfg
Source: vulkan-1.dll0.0.drStatic PE information: section name: .gxfg
Source: vulkan-1.dll0.0.drStatic PE information: section name: .retplne
Source: vulkan-1.dll0.0.drStatic PE information: section name: _RDATA
Source: 59771852-3ee7-40a8-9131-cde20a2f173b.tmp.node.7.drStatic PE information: section name: _RDATA
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\d3dcompiler_47.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\libEGL.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\ffmpeg.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\nsExec.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\System.dllJump to dropped file
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile created: C:\Users\user\AppData\Local\Temp\59771852-3ee7-40a8-9131-cde20a2f173b.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\vk_swiftshader.dllJump to dropped file
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile created: C:\Users\user\AppData\Local\Temp\6d6fc5d8-dfab-4714-a1de-1d7cc7399eb2.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\nsis7z.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\vulkan-1.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\vulkan-1.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\libGLESv2.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\StdUtils.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\d3dcompiler_47.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\libEGL.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\libGLESv2.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\ffmpeg.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\SpiderBanner.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\vk_swiftshader.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\resources\elevate.exeJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\WarsArena.exeJump to dropped file
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile created: C:\Users\user\AppData\Local\Temp\59771852-3ee7-40a8-9131-cde20a2f173b.tmp.nodeJump to dropped file
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile created: C:\Users\user\AppData\Local\Temp\6d6fc5d8-dfab-4714-a1de-1d7cc7399eb2.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\LICENSE.electron.txtJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Local\Programs\unrealgame\LICENSE.electron.txtJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarsArena.lnkJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\System32\wbem\WMIC.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\tasklist.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\cmd.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\conhost.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Windows\System32\taskkill.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Programs\unrealgame\d3dcompiler_47.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Programs\unrealgame\libEGL.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\nsExec.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\System.dllJump to dropped file
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\59771852-3ee7-40a8-9131-cde20a2f173b.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Programs\unrealgame\vk_swiftshader.dllJump to dropped file
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\6d6fc5d8-dfab-4714-a1de-1d7cc7399eb2.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\nsis7z.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Programs\unrealgame\vulkan-1.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\vulkan-1.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\libGLESv2.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Programs\unrealgame\libGLESv2.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\StdUtils.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\libEGL.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\d3dcompiler_47.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\SpiderBanner.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\vk_swiftshader.dllJump to dropped file
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\resources\elevate.exeJump to dropped file
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeKey opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeKey opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeKey opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\d0010809
Source: C:\Windows\System32\wbem\WMIC.exeWMI Queries: IWbemServices::ExecQuery - ROOT\CIMV2 : SELECT UUID FROM Win32_ComputerSystemProduct
Source: C:\Windows\System32\conhost.exeLast function: Thread delayed
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile Volume queried: C:\ FullSizeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile Volume queried: C:\Users\user\AppData\Local\Programs\unrealgame FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile Volume queried: C:\Users\user\AppData\Local\Programs\unrealgame FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile Volume queried: C:\Users\user\AppData\Local\Temp FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile Volume queried: C:\Users\user\AppData\Local\Temp FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile Volume queried: C:\Users\user FullSizeInformation
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile Volume queried: C:\Users\user FullSizeInformation
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\LocalJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppDataJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\Local\ProgramsJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\Local\Programs\unrealgameJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\userJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeFile opened: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeJump to behavior
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: VMware
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: IIAMDARMAppleBroadcomGoogleIntelMesaMicrosoftNVIDIAImagination TechnologiesQualcommSamsung Electronics Co., Ltd.VivanteVMwareVirtIOTestX
Source: ArenaWarsSetup.exe, 00000000.00000003.1657504103.000000000517A000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: vmncVMware Screen Codec / VMware Videovp5On2 VP5vp6On2 VP6vp6fOn2 VP6 (Flash version)targaTruevision Targa imageimage/x-targaimage/x-tga
Source: ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: (IsLinux() && isVMWare) || (IsAndroid() && isNvidia) || (IsAndroid() && GetAndroidSdkLevel() < 27 && IsAdreno5xxOrOlder(functions)) || (IsAndroid() && IsMaliT8xxOrOlder(functions)) || (IsAndroid() && IsMaliG31OrOlder(functions))
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: lgnW2/4/PEZB31jiVg88O8EckzXZOFKs7sjsLjBOlDW0JB9LeGna8gI4zJVSk/BwJVmcIGfE
Source: ArenaWarsSetup.exe, 00000000.00000003.1657504103.000000000517A000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: VMware Screen Codec / VMware Video
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess information queried: ProcessInformationJump to behavior
Source: C:\Windows\SysWOW64\tasklist.exeProcess token adjusted: DebugJump to behavior
Source: C:\Users\user\Desktop\ArenaWarsSetup.exeProcess created: C:\Windows\SysWOW64\cmd.exe cmd /c tasklist /FI "USERNAME eq %USERNAME%" /FI "IMAGENAME eq WarsArena.exe" | %SYSTEMROOT%\System32\find.exe "WarsArena.exe"Jump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\SysWOW64\tasklist.exe tasklist /FI "USERNAME eq user" /FI "IMAGENAME eq WarsArena.exe" Jump to behavior
Source: C:\Windows\SysWOW64\cmd.exeProcess created: C:\Windows\SysWOW64\find.exe C:\Windows\System32\find.exe "WarsArena.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "wmic csproduct get uuid"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1816 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --mojo-platform-channel-handle=2300 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe "C:/Program Files (x86)/Microsoft/Edge/Application/msedge.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "tasklist"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM EpicGamesLauncher.exe /F"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM javaw.exe /F"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM Steam.exe /F"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Windows\System32\cmd.exe C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --disable-gpu-sandbox --use-gl=disabled --gpu-vendor-id=5140 --gpu-device-id=140 --gpu-sub-system-id=0 --gpu-revision=0 --gpu-driver-version=10.0.19041.546 --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADoAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAACQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2604 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2Jump to behavior
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\wbem\WMIC.exe wmic csproduct get uuidJump to behavior
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\tasklist.exe tasklist
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM EpicGamesLauncher.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM javaw.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM Steam.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM EpicGamesLauncher.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM javaw.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /IM Steam.exe /F
Source: C:\Windows\System32\cmd.exeProcess created: C:\Windows\System32\taskkill.exe taskkill /f /im msedge.exe
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "c:\users\user\appdata\local\programs\unrealgame\warsarena.exe" --type=gpu-process --user-data-dir="c:\users\user\appdata\roaming\unrealgame" --gpu-preferences=uaaaaaaaaadgaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaaaqaaaaaaaaaaaaaaaaaaaaaaaaabgaaaaaaaaagaaaaaaaaaaiaaaaaaaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=1816 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "c:\users\user\appdata\local\programs\unrealgame\warsarena.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --user-data-dir="c:\users\user\appdata\roaming\unrealgame" --mojo-platform-channel-handle=2300 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:8
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "c:\users\user\appdata\local\programs\unrealgame\warsarena.exe" --type=gpu-process --disable-gpu-sandbox --use-gl=disabled --gpu-vendor-id=5140 --gpu-device-id=140 --gpu-sub-system-id=0 --gpu-revision=0 --gpu-driver-version=10.0.19041.546 --user-data-dir="c:\users\user\appdata\roaming\unrealgame" --gpu-preferences=uaaaaaaaaadoaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaacqaaaaaaaaaaaaaaaaaaaaaaaaabgaaaaaaaaagaaaaaaaaaaiaaaaaaaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=2604 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "c:\users\user\appdata\local\programs\unrealgame\warsarena.exe" --type=gpu-process --user-data-dir="c:\users\user\appdata\roaming\unrealgame" --gpu-preferences=uaaaaaaaaadgaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaaaqaaaaaaaaaaaaaaaaaaaaaaaaabgaaaaaaaaagaaaaaaaaaaiaaaaaaaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=1816 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "c:\users\user\appdata\local\programs\unrealgame\warsarena.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-gb --service-sandbox-type=none --user-data-dir="c:\users\user\appdata\roaming\unrealgame" --mojo-platform-channel-handle=2300 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:8Jump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe "c:\users\user\appdata\local\programs\unrealgame\warsarena.exe" --type=gpu-process --disable-gpu-sandbox --use-gl=disabled --gpu-vendor-id=5140 --gpu-device-id=140 --gpu-sub-system-id=0 --gpu-revision=0 --gpu-driver-version=10.0.19041.546 --user-data-dir="c:\users\user\appdata\roaming\unrealgame" --gpu-preferences=uaaaaaaaaadoaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaacqaaaaaaaaaaaaaaaaaaaaaaaaabgaaaaaaaaagaaaaaaaaaaiaaaaaaaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=2604 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2Jump to behavior
Source: ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: ..\..\third_party\webrtc\modules\desktop_capture\win\window_capture_utils.ccFail to create instance of VirtualDesktopManagerChrome_WidgetWin_Progman..\..\third_party\webrtc\modules\desktop_capture\cropping_window_capturer.ccWindow no longer on top when ScreenCapturer finishesScreenCapturer failed to capture a frameWindow rect is emptyWindow is outside of the captured displaySysShadowWebRTC.DesktopCapture.Win.WindowGdiCapturerFrameTimeWindowCapturerWinGdi::CaptureFrame..\..\third_party\webrtc\modules\desktop_capture\win\window_capturer_win_gdi.ccWindow hasn't been selected: Target window has been closed.Failed to get drawable window area: Failed to get window DC: Failed to create frame.Both PrintWindow() and BitBlt() failed.Capturing owned window failed (previous error/warning pertained to that)WebRTC.DesktopCapture.BlankFrameDetectedWebRTC.DesktopCapture.PrimaryCapturerSelectSourceErrorWebRTC.DesktopCapture.PrimaryCapturerErrorWebRTC.DesktopCapture.PrimaryCapturerPermanentErrordwmapi.dllDwmEnableCompositionScreenCapturerWinGdi::CaptureFrame..\..\third_party\webrtc\modules\desktop_capture\win\screen_capturer_win_gdi.ccFailed to capture screen by GDI.WebRTC.DesktopCapture.Win.ScreenGdiCapturerFrameTimedesktop_dc_memory_dc_Failed to get screen rect.Failed to create frame buffer.Failed to select current bitmap into memery dc.BitBlt failed..\..\third_party\webrtc\modules\desktop_capture\win\screen_capturer_win_magnifier.ccMagnifier initialization failed.Magnifier capturer failed to capture a frame.WebRTC.DesktopCapture.Win.MagnifierCapturerFrameTimeCaptureImageFailed to call SetWindowPos: . Rect = {Failed to call MagSetWindowSource: InitializeMagnifierMagnifier capturer cannot work on multi-screen system.Magnification.dllMagInitializeMagUninitializeMagSetWindowSourceMagSetWindowFilterListMagSetImageScalingCallbackFailed to initialize ScreenCapturerWinMagnifier: library functions missing.Failed to initialize ScreenCapturerWinMagnifier: error from MagInitialize Failed to initialize ScreenCapturerWinMagnifier: error from GetModulehandleExA Failed to initialize ScreenCapturerWinMagnifier: error from creating host window Failed to initialize ScreenCapturerWinMagnifier: error from creating magnifier window Failed to initialize ScreenCapturerWinMagnifier: error from MagSetImageScalingCallback Failed to initialize ScreenCapturerWinMagnifier: error from MagSetWindowFilterList OnCapturedOutput format does not match the captured format: width = , height = , stride = , bpp = , pixel format RGBA ? ..\..\third_party\webrtc\modules\desktop_capture\win\cursor.ccCreateMouseCursorFromHCursorUnable to get cursor icon info. Error = Unable to get bitmap info. Error = Unable to get bitmap bits. Error = `
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\ VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Programs VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Programs\unrealgame VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Programs\unrealgame\resources VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Programs\unrealgame\resources\app.asar VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\hbmxntqzkji0 VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\hbmxntqzkji0\Autofill VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\hbmxntqzkji0\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\hbmxntqzkji0\Autofill VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\hbmxntqzkji0\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\hbmxntqzkji0\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\hbmxntqzkji0.zip VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\passwords_0.db VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Temp\passwords_36.db VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Program Files\Google\Chrome\Application\chrome.exe VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\AutofillStates VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\BrowserMetrics VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\CertificateRevocation VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Crowd Deny VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\FileTypePolicies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\first_party_sets.db-journal VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\GraphiteDawnCache VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\GrShaderCache VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\hyphen-data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Last Version VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\OnDeviceHeadSuggestModel VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\OptimizationHints VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\OriginTrials VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\RecoveryImproved VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Safe Browsing VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Variations VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\WidevineCdm VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Ad Blocking VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb\000003.log VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb\000003.log VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\AppData\Roaming\All_Wallets.zip VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\Downloads VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Users\user\Documents VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuidJump to behavior

Stealing of Sensitive Information

barindex
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Login DataJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.logJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network\Local Storage\leveldbJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\DefaultJump to behavior
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeFile opened: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Login DataJump to behavior

Remote Access Functionality

barindex
Source: C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid Accounts11
Windows Management Instrumentation
1
Windows Service
1
Windows Service
11
Masquerading
1
OS Credential Dumping
11
Security Software Discovery
Remote Services11
Input Capture
1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault Accounts1
Command and Scripting Interpreter
1
Registry Run Keys / Startup Folder
12
Process Injection
1
Disable or Modify Tools
11
Input Capture
1
Virtualization/Sandbox Evasion
Remote Desktop Protocol1
Data from Local System
1
Remote Access Software
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAt1
DLL Side-Loading
1
Registry Run Keys / Startup Folder
1
Virtualization/Sandbox Evasion
Security Account Manager3
Process Discovery
SMB/Windows Admin SharesData from Network Shared Drive1
Ingress Tool Transfer
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin Hook1
DLL Side-Loading
12
Process Injection
NTDS1
Remote System Discovery
Distributed Component Object ModelInput Capture3
Non-Application Layer Protocol
Traffic DuplicationData Destruction
Gather Victim Network InformationServerCloud AccountsLaunchdNetwork Logon Script1
Extra Window Memory Injection
1
DLL Side-Loading
LSA Secrets2
File and Directory Discovery
SSHKeylogging4
Application Layer Protocol
Scheduled TransferData Encrypted for Impact
Domain PropertiesBotnetReplication Through Removable MediaScheduled TaskRC ScriptsRC Scripts1
Extra Window Memory Injection
Cached Domain Credentials34
System Information Discovery
VNCGUI Input CaptureMultiband CommunicationData Transfer Size LimitsService Stop
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1556375 Sample: ArenaWarsSetup.exe Startdate: 15/11/2024 Architecture: WINDOWS Score: 56 62 catbox.moe 2->62 7 WarsArena.exe 15 2->7         started        12 ArenaWarsSetup.exe 12 196 2->12         started        process3 dnsIp4 64 72.145.3.21, 443, 49715, 49716 MICROSOFT-CORP-MSN-AS-BLOCKUS United States 7->64 66 catbox.moe 108.181.20.35, 443, 49718 ASN852CA Canada 7->66 68 127.0.0.1 unknown unknown 7->68 44 6d6fc5d8-dfab-4714...7cc7399eb2.tmp.node, PE32+ 7->44 dropped 46 59771852-3ee7-40a8...e20a2f173b.tmp.node, PE32+ 7->46 dropped 78 Attempt to bypass Chrome Application-Bound Encryption 7->78 80 Tries to harvest and steal browser information (history, passwords, etc) 7->80 14 msedge.exe 7->14         started        16 chrome.exe 7->16         started        19 WarsArena.exe 1 7->19         started        23 14 other processes 7->23 48 C:\Users\user\AppData\Local\...\WarsArena.exe, PE32+ 12->48 dropped 50 C:\Users\user\AppData\Local\...\nsis7z.dll, PE32 12->50 dropped 52 C:\Users\user\AppData\Local\...\nsExec.dll, PE32 12->52 dropped 54 17 other files (none is malicious) 12->54 dropped 82 Drops large PE files 12->82 21 cmd.exe 1 12->21         started        file5 signatures6 process7 dnsIp8 25 msedge.exe 14->25         started        40 2 other processes 14->40 56 192.168.2.9, 138, 443, 49704 unknown unknown 16->56 58 239.255.255.250 unknown Reserved 16->58 28 chrome.exe 16->28         started        60 chrome.cloudflare-dns.com 162.159.61.3, 443, 49728, 49736 CLOUDFLARENETUS United States 19->60 30 conhost.exe 21->30         started        32 tasklist.exe 1 21->32         started        34 find.exe 1 21->34         started        36 WMIC.exe 1 23->36         started        38 conhost.exe 23->38         started        42 22 other processes 23->42 process9 dnsIp10 70 13.107.246.57, 443, 49783, 49784 MICROSOFT-CORP-MSN-AS-BLOCKUS United States 25->70 72 20.25.227.174, 443, 49782, 49789 MICROSOFT-CORP-MSN-AS-BLOCKUS United States 25->72 76 15 other IPs or domains 25->76 74 www.google.com 142.250.186.132, 443, 49721, 49723 GOOGLEUS United States 28->74

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
ArenaWarsSetup.exe0%ReversingLabs
SourceDetectionScannerLabelLink
C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe3%ReversingLabs
C:\Users\user\AppData\Local\Programs\unrealgame\d3dcompiler_47.dll0%ReversingLabs
C:\Users\user\AppData\Local\Programs\unrealgame\ffmpeg.dll0%ReversingLabs
C:\Users\user\AppData\Local\Programs\unrealgame\libEGL.dll0%ReversingLabs
C:\Users\user\AppData\Local\Programs\unrealgame\libGLESv2.dll0%ReversingLabs
C:\Users\user\AppData\Local\Programs\unrealgame\vk_swiftshader.dll0%ReversingLabs
C:\Users\user\AppData\Local\Programs\unrealgame\vulkan-1.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\59771852-3ee7-40a8-9131-cde20a2f173b.tmp.node0%ReversingLabs
C:\Users\user\AppData\Local\Temp\6d6fc5d8-dfab-4714-a1de-1d7cc7399eb2.tmp.node0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\WarsArena.exe3%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\d3dcompiler_47.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\ffmpeg.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\libEGL.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\libGLESv2.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\resources\elevate.exe0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\vk_swiftshader.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\7z-out\vulkan-1.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\SpiderBanner.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\StdUtils.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\System.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\nsExec.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsd4888.tmp\nsis7z.dll0%ReversingLabs
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
catbox.moe
108.181.20.35
truefalse
    high
    chrome.cloudflare-dns.com
    162.159.61.3
    truefalse
      high
      ssl.bingadsedgeextension-prod-europe.azurewebsites.net
      94.245.104.56
      truefalse
        high
        sb.scorecardresearch.com
        18.244.18.38
        truefalse
          high
          www.google.com
          142.250.186.132
          truefalse
            high
            sni1gl.wpc.nucdn.net
            152.199.21.175
            truefalse
              high
              bzib.nelreports.net
              unknown
              unknownfalse
                high
                assets.msn.com
                unknown
                unknownfalse
                  high
                  c.msn.com
                  unknown
                  unknownfalse
                    high
                    ntp.msn.com
                    unknown
                    unknownfalse
                      high
                      api.msn.com
                      unknown
                      unknownfalse
                        high
                        NameMaliciousAntivirus DetectionReputation
                        https://assets.msn.com/bundles/v1/edgeChromium/latest/microsoft.48132e5427deb971ee28.jsfalse
                          high
                          https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=20&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgwfalse
                            high
                            NameSourceMaliciousAntivirus DetectionReputation
                            https://www.ecma-international.org/ecma-262/8.0/#sec-atomescapeArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                              high
                              https://github.com/isaacs/node-glob/issues/205ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                high
                                https://support.google.com/chrome/answer/6098869ArenaWarsSetup.exe, 00000000.00000003.1712376081.000000000609C000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1712926204.0000000002B34000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1712512419.000000000609D000.00000004.00000020.00020000.00000000.sdmpfalse
                                  high
                                  https://www.bluetooth.com/specifications/gatt/servicesArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                    high
                                    http://anglebug.com/4633ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                      high
                                      https://anglebug.com/7382ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                        high
                                        https://github.com/mathiasbynens/emoji-regex.gitArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                          high
                                          https://github.com/WebBluetoothCG/web-bluetooth/blob/main/implementation-status.mdArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                            high
                                            https://www.ecma-international.org/ecma-262/8.0/#prod-AtomArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                              high
                                              http://www.gnu.org/software/coreutils/ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmpfalse
                                                high
                                                https://www.chromestatus.com/feature/5093566007214080ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                  high
                                                  https://goo.gl/7K7WLuTheArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                    high
                                                    https://docs.google.com/ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                      high
                                                      https://crbug.com/1356053ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                        high
                                                        https://goo.gl/7K7WLuArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                          high
                                                          http://www.ibm.com/data/dtd/v11/ibmxhtml1-transitional.dtd-//W3C//DTDArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                            high
                                                            http://crbug.com/110263ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                              high
                                                              https://github.com/jprichardson/node-jsonfile#readfilesyncfilename-options).ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                high
                                                                https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-AssertionArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                  high
                                                                  http://anglebug.com/6929ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                    high
                                                                    https://openjsf.org/ArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                      high
                                                                      https://chromium.googlesource.com/chromium/src/ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                        high
                                                                        http://sqlite.org/lockingv3.htmlArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                          high
                                                                          https://anglebug.com/7246ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                            high
                                                                            https://anglebug.com/7369ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                              high
                                                                              https://anglebug.com/7489ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                high
                                                                                https://bit.ly/3rpDuEX.ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                  high
                                                                                  https://crbug.com/593024ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                    high
                                                                                    https://www.ecma-international.org/ecma-262/8.0/#prod-NonemptyClassRangesArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                      high
                                                                                      https://w3c.github.io/manifest/#installability-signalsArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                        high
                                                                                        http://exslt.org/commonArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                          high
                                                                                          https://github.com/tensorflow/modelsArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                            high
                                                                                            https://www.ecma-international.org/ecma-262/8.0/#prod-Hex4DigitsArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                              high
                                                                                              https://www.ecma-international.org/ecma-262/8.0/#prod-DecimalEscapeArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                high
                                                                                                https://c.docs.google.com/ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                  high
                                                                                                  https://github.com/KhronosGroup/SPIRV-Headers.gitArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                    high
                                                                                                    https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-ClassControlLetterArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                      high
                                                                                                      https://www.sqlite.org/src/info/908f001483982c43ArenaWarsSetup.exe, 00000000.00000003.1564979656.0000000005870000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                        high
                                                                                                        https://issuetracker.google.com/161903006ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                          high
                                                                                                          https://crbug.com/1300575ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                            high
                                                                                                            http://www.nongnu.org/freebangfont/downloads.html#muktiArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                              high
                                                                                                              https://crbug.com/710443ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                high
                                                                                                                https://github.com/tensorflow/tflite-supportArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                  high
                                                                                                                  https://sqlite.org/ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                    high
                                                                                                                    https://crbug.com/1060012ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                      high
                                                                                                                      http://anglebug.com/3997ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                        high
                                                                                                                        http://anglebug.com/4722ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                          high
                                                                                                                          http://crbug.com/642605ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                            high
                                                                                                                            http://anglebug.com/1452ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                              high
                                                                                                                              https://crbug.com/650547callClearTwiceUsingArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                high
                                                                                                                                http://html4/loose.dtdArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                  high
                                                                                                                                  http://anglebug.com/3502ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                    high
                                                                                                                                    http://anglebug.com/3623ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                      high
                                                                                                                                      https://gitlab.freedesktop.org/xdg/xdgmimeArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                                        high
                                                                                                                                        http://anglebug.com/3625ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                          high
                                                                                                                                          http://anglebug.com/3624ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                            high
                                                                                                                                            https://beacons.gcp.gvt2.com/domainreliability/uploadArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                              high
                                                                                                                                              http://anglebug.com/2894ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                high
                                                                                                                                                http://anglebug.com/3862ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                  high
                                                                                                                                                  https://github.com/RyanZim/universalify.gitArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                    high
                                                                                                                                                    http://anglebug.com/4836ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                      high
                                                                                                                                                      https://issuetracker.google.com/issues/166475273ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                        high
                                                                                                                                                        https://developer.chrome.com/docs/extensions/mv3/cross-origin-isolation/.ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                          high
                                                                                                                                                          https://github.com/WICG/construct-stylesheets/issues/119#issuecomment-588352418.ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                            high
                                                                                                                                                            https://www.ecma-international.org/ecma-262/8.0/#prod-annexB-ExtendedAtomArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                              high
                                                                                                                                                              https://github.com/wasdk/wasmparserArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                                                                high
                                                                                                                                                                https://www.ecma-international.org/ecma-262/8.0/#prod-HexDigitsArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                  high
                                                                                                                                                                  https://github.com/sponsors/isaacsArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                    high
                                                                                                                                                                    http://anglebug.com/3970ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                      high
                                                                                                                                                                      https://dejavu-fonts.github.io/Download.htmlArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                                                                        high
                                                                                                                                                                        https://pagure.io/lohitArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                                                                          high
                                                                                                                                                                          https://nodejs.org/download/release/v18.14.0/node-v18.14.0.tar.gzArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006780000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                            high
                                                                                                                                                                            http://.jpgArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                              high
                                                                                                                                                                              https://android.com/payArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                high
                                                                                                                                                                                https://nodejs.org/static/images/favicons/favicon.icofaviconUrldevtoolsFrontendUrldevtoolsFrontendUrArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                  high
                                                                                                                                                                                  http://anglebug.com/5901ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                    high
                                                                                                                                                                                    https://nodejs.org/en/docs/inspectorForArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                      high
                                                                                                                                                                                      https://xhr.spec.whatwg.org/.ArenaWarsSetup.exe, 00000000.00000003.1650449988.0000000006A02000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                        high
                                                                                                                                                                                        http://anglebug.com/3965ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                          high
                                                                                                                                                                                          https://anglebug.com/7161ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                            high
                                                                                                                                                                                            https://github.com/web-animations/web-animations-jsArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                                                                                              high
                                                                                                                                                                                              https://www.chromestatus.com/feature/6662647093133312ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                high
                                                                                                                                                                                                http://labs.creativecommons.org/licenses/zero-waive/1.0/us/legalcode&gt;ArenaWarsSetup.exe, 00000000.00000003.1664454922.0000000005172000.00000004.00000020.00020000.00000000.sdmpfalse
                                                                                                                                                                                                  high
                                                                                                                                                                                                  https://anglebug.com/7162ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                    high
                                                                                                                                                                                                    http://anglebug.com/3729ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                      high
                                                                                                                                                                                                      https://sindresorhus.comArenaWarsSetup.exe, 00000000.00000003.1564271771.00000000050C1000.00000004.00001000.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1714718816.0000000005173000.00000004.00000020.00020000.00000000.sdmp, ArenaWarsSetup.exe, 00000000.00000003.1565706034.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                        high
                                                                                                                                                                                                        http://anglebug.com/5906ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                          high
                                                                                                                                                                                                          http://crbug.com/830046ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                            high
                                                                                                                                                                                                            http://anglebug.com/2517ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                              high
                                                                                                                                                                                                              http://anglebug.com/4937ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                high
                                                                                                                                                                                                                https://crbug.com/1144908ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                  high
                                                                                                                                                                                                                  https://datatracker.ietf.org/doc/draft-ietf-rtcweb-ip-handling.ArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                    high
                                                                                                                                                                                                                    https://issuetracker.google.com/166809097ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                      high
                                                                                                                                                                                                                      http://crbug.com/672380ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                        high
                                                                                                                                                                                                                        https://goo.gl/EuHzyvArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                          high
                                                                                                                                                                                                                          http://crbug.com/941620allowTranslateUniformBlockToStructuredBufferThereArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                            high
                                                                                                                                                                                                                            http://anglebug.com/3832ArenaWarsSetup.exe, 00000000.00000003.1575121546.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                              high
                                                                                                                                                                                                                              https://beacons4.gvt2.com/domainreliability/uploadArenaWarsSetup.exe, 00000000.00000003.1651275862.0000000006B80000.00000004.00001000.00020000.00000000.sdmpfalse
                                                                                                                                                                                                                                high
                                                                                                                                                                                                                                • No. of IPs < 25%
                                                                                                                                                                                                                                • 25% < No. of IPs < 50%
                                                                                                                                                                                                                                • 50% < No. of IPs < 75%
                                                                                                                                                                                                                                • 75% < No. of IPs
                                                                                                                                                                                                                                IPDomainCountryFlagASNASN NameMalicious
                                                                                                                                                                                                                                20.25.227.174
                                                                                                                                                                                                                                unknownUnited States
                                                                                                                                                                                                                                8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                108.181.20.35
                                                                                                                                                                                                                                catbox.moeCanada
                                                                                                                                                                                                                                852ASN852CAfalse
                                                                                                                                                                                                                                152.195.19.97
                                                                                                                                                                                                                                unknownUnited States
                                                                                                                                                                                                                                15133EDGECASTUSfalse
                                                                                                                                                                                                                                162.159.61.3
                                                                                                                                                                                                                                chrome.cloudflare-dns.comUnited States
                                                                                                                                                                                                                                13335CLOUDFLARENETUSfalse
                                                                                                                                                                                                                                142.250.186.132
                                                                                                                                                                                                                                www.google.comUnited States
                                                                                                                                                                                                                                15169GOOGLEUSfalse
                                                                                                                                                                                                                                23.221.22.207
                                                                                                                                                                                                                                unknownUnited States
                                                                                                                                                                                                                                20940AKAMAI-ASN1EUfalse
                                                                                                                                                                                                                                172.64.41.3
                                                                                                                                                                                                                                unknownUnited States
                                                                                                                                                                                                                                13335CLOUDFLARENETUSfalse
                                                                                                                                                                                                                                13.107.246.57
                                                                                                                                                                                                                                unknownUnited States
                                                                                                                                                                                                                                8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                94.245.104.56
                                                                                                                                                                                                                                ssl.bingadsedgeextension-prod-europe.azurewebsites.netUnited Kingdom
                                                                                                                                                                                                                                8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                18.244.18.38
                                                                                                                                                                                                                                sb.scorecardresearch.comUnited States
                                                                                                                                                                                                                                16509AMAZON-02USfalse
                                                                                                                                                                                                                                239.255.255.250
                                                                                                                                                                                                                                unknownReserved
                                                                                                                                                                                                                                unknownunknownfalse
                                                                                                                                                                                                                                72.145.3.21
                                                                                                                                                                                                                                unknownUnited States
                                                                                                                                                                                                                                8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                                                                                                                                                                                                                                142.250.115.132
                                                                                                                                                                                                                                unknownUnited States
                                                                                                                                                                                                                                15169GOOGLEUSfalse
                                                                                                                                                                                                                                IP
                                                                                                                                                                                                                                192.168.2.9
                                                                                                                                                                                                                                127.0.0.1
                                                                                                                                                                                                                                Joe Sandbox version:41.0.0 Charoite
                                                                                                                                                                                                                                Analysis ID:1556375
                                                                                                                                                                                                                                Start date and time:2024-11-15 10:43:46 +01:00
                                                                                                                                                                                                                                Joe Sandbox product:CloudBasic
                                                                                                                                                                                                                                Overall analysis duration:0h 11m 4s
                                                                                                                                                                                                                                Hypervisor based Inspection enabled:false
                                                                                                                                                                                                                                Report type:full
                                                                                                                                                                                                                                Cookbook file name:default.jbs
                                                                                                                                                                                                                                Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                                                                                                                                                                                                                Run name:Run with higher sleep bypass
                                                                                                                                                                                                                                Number of analysed new started processes analysed:64
                                                                                                                                                                                                                                Number of new started drivers analysed:0
                                                                                                                                                                                                                                Number of existing processes analysed:0
                                                                                                                                                                                                                                Number of existing drivers analysed:0
                                                                                                                                                                                                                                Number of injected processes analysed:0
                                                                                                                                                                                                                                Technologies:
                                                                                                                                                                                                                                • HCA enabled
                                                                                                                                                                                                                                • EGA enabled
                                                                                                                                                                                                                                • AMSI enabled
                                                                                                                                                                                                                                Analysis Mode:default
                                                                                                                                                                                                                                Analysis stop reason:Timeout
                                                                                                                                                                                                                                Sample name:ArenaWarsSetup.exe
                                                                                                                                                                                                                                Detection:MAL
                                                                                                                                                                                                                                Classification:mal56.troj.spyw.winEXE@127/328@23/15
                                                                                                                                                                                                                                EGA Information:Failed
                                                                                                                                                                                                                                HCA Information:
                                                                                                                                                                                                                                • Successful, ratio: 100%
                                                                                                                                                                                                                                • Number of executed functions: 0
                                                                                                                                                                                                                                • Number of non-executed functions: 0
                                                                                                                                                                                                                                Cookbook Comments:
                                                                                                                                                                                                                                • Found application associated with file extension: .exe
                                                                                                                                                                                                                                • Sleeps bigger than 100000000ms are automatically reduced to 1000ms
                                                                                                                                                                                                                                • Sleep loops longer than 100000000ms are bypassed. Single calls with delay of 100000000ms and higher are ignored
                                                                                                                                                                                                                                • Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, RuntimeBroker.exe, WMIADAP.exe, SIHClient.exe, backgroundTaskHost.exe, conhost.exe, svchost.exe
                                                                                                                                                                                                                                • Excluded IPs from analysis (whitelisted): 199.232.210.172, 192.229.221.95, 142.250.74.195, 142.250.74.206, 74.125.71.84, 34.104.35.123, 13.107.42.16, 204.79.197.239, 13.107.21.239, 204.79.197.203, 216.58.206.46, 13.107.6.158, 2.19.126.152, 2.19.126.145, 4.175.223.124, 2.19.126.141, 2.19.126.151, 4.231.66.184, 88.221.110.195, 88.221.110.179, 2.23.209.155, 2.23.209.143, 2.23.209.167, 2.23.209.169, 2.23.209.149, 2.23.209.158, 2.23.209.166, 2.23.209.162, 2.23.209.154, 23.38.98.79, 23.38.98.81, 23.38.98.73, 23.38.98.72, 23.38.98.74, 23.38.98.80, 23.38.98.71, 23.38.98.82, 23.38.98.77, 2.23.209.173, 2.23.209.171, 2.23.209.178, 2.23.209.177, 204.79.197.237, 13.107.21.237, 13.74.129.1, 199.232.214.172, 142.250.115.94, 142.250.113.94, 142.251.186.94
                                                                                                                                                                                                                                • Excluded domains from analysis (whitelisted): cdp-f-ssl-tlu-net.trafficmanager.net, nav-edge.smartscreen.microsoft.com, slscr.update.microsoft.com, a416.dscd.akamai.net, data-edge.smartscreen.microsoft.com, img-s-msn-com.akamaized.net, clientservices.googleapis.com, star.sf.tlu.dl.delivery.mp.microsoft.com.delivery.microsoft.com, prod-agic-we-10.westeurope.cloudapp.azure.com, clients2.google.com, e86303.dscx.akamaiedge.net, ocsp.digicert.com, login.live.com, config-edge-skype.l-0007.l-msedge.net, www.gstatic.com, l-0007.l-msedge.net, e28578.d.akamaiedge.net, www.bing.com, assets.msn.com.edgekey.net, bingadsedgeextension-prod.trafficmanager.net, c-bing-com.dual-a-0034.a-msedge.net, prod-atm-wds-edge.trafficmanager.net, www-www.bing.com.trafficmanager.net, business-bing-com.b-0005.b-msedge.net, wildcardtlu-ssl.azureedge.net, a1834.dscg2.akamai.net, edgedl.me.gvt1.com, c.bing.com, clients.l.google.com, config.edge.skype.com.trafficmanager.net, c-msn-com-nsatc.trafficmanager.net, prod-agic-we-4.westeurope.cloudap
                                                                                                                                                                                                                                • Not all processes where analyzed, report is missing behavior information
                                                                                                                                                                                                                                • Report size exceeded maximum capacity and may have missing behavior information.
                                                                                                                                                                                                                                • Report size getting too big, too many NtAllocateVirtualMemory calls found.
                                                                                                                                                                                                                                • Report size getting too big, too many NtOpenFile calls found.
                                                                                                                                                                                                                                • Report size getting too big, too many NtOpenKeyEx calls found.
                                                                                                                                                                                                                                • Report size getting too big, too many NtProtectVirtualMemory calls found.
                                                                                                                                                                                                                                • Report size getting too big, too many NtQueryValueKey calls found.
                                                                                                                                                                                                                                • Report size getting too big, too many NtQueryVolumeInformationFile calls found.
                                                                                                                                                                                                                                • Report size getting too big, too many NtWriteVirtualMemory calls found.
                                                                                                                                                                                                                                • Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
                                                                                                                                                                                                                                • VT rate limit hit for: ArenaWarsSetup.exe
                                                                                                                                                                                                                                No simulations
                                                                                                                                                                                                                                MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                                                                                                                                                20.25.227.174file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                  file.exeGet hashmaliciousLummaC Stealer, StealcBrowse
                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                      file.exeGet hashmaliciousLummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                        file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, Credential Flusher, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                          file.exeGet hashmaliciousStealc, VidarBrowse
                                                                                                                                                                                                                                            setup.msiGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                              test.exeGet hashmaliciousBabadedaBrowse
                                                                                                                                                                                                                                                GrammarlyInstaller.evxSw76fmxki94ued2mj0c82.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                  SecuriteInfo.com.Riskware.OfferCore.702.11507.exeGet hashmaliciousPrivateLoader, PureLog StealerBrowse
                                                                                                                                                                                                                                                    108.181.20.35Document.pdf.lnkGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • files.catbox.moe/p1yr9i.pdf
                                                                                                                                                                                                                                                    SecuriteInfo.com.HEUR.Trojan.OLE2.Agent.gen.26943.12401.msiGet hashmaliciousLummaC StealerBrowse
                                                                                                                                                                                                                                                    • files.catbox.moe/nzct1p
                                                                                                                                                                                                                                                    152.195.19.97http://ustteam.com/Get hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • www.ust.com/
                                                                                                                                                                                                                                                    MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                                                                                                                                                                    chrome.cloudflare-dns.comfile.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 162.159.61.3
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousStealc, VidarBrowse
                                                                                                                                                                                                                                                    • 172.64.41.3
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 162.159.61.3
                                                                                                                                                                                                                                                    Facebook_Advertiser_Position_Description.lnkGet hashmaliciousDucktailBrowse
                                                                                                                                                                                                                                                    • 172.64.41.3
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 172.64.41.3
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 162.159.61.3
                                                                                                                                                                                                                                                    S0FTWARE.exeGet hashmaliciousStealc, VidarBrowse
                                                                                                                                                                                                                                                    • 172.64.41.3
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 172.64.41.3
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 162.159.61.3
                                                                                                                                                                                                                                                    ssl.bingadsedgeextension-prod-europe.azurewebsites.netfile.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousStealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    S0FTWARE.exeGet hashmaliciousStealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    catbox.moefile.exeGet hashmaliciousFormBookBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Launcher 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Launcher 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    https://files.catbox.moe/iz3lne.zipGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Xeno Executor Setup 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Xeno Executor Setup 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousFormBookBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousFormBookBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Exploit Detector LIST (2).batGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                                                                                                                                                                    MICROSOFT-CORP-MSN-AS-BLOCKUSEmail_sending_restriction_[sebastien.morel!](#HOHSM).htmlGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 52.98.227.242
                                                                                                                                                                                                                                                    https://www.google.dk/url?sa=https://abc123xyz456def789ghj101klm112nop345qrs678tuv901wxyz234abc567d&rct=j&q=&esrc=s&source=web&cd=&cad=rja&uact=8&ved=2ahUKEwiX6tO39MiJAxUSnP0HHcggDNwQFnoECBoQAQ&url=amp%2F%62%68%61%72%61%74%68%73%65%72%76%69%63%65%73%69%6E%64%69%61%2E%63%6F%6D%2F%75%6E%73%75%62%73%63%72%69%62%65%2Fab86aa851e981834b77805f77a6cca34%2Fcm9yeWdvd2VyQHF1YW50ZXhhLmNvbQ==&token=fgj784jkh23&referrerID=xyz456789&sessionKey=abc123456789&trackingID=klmn987654&clickID=7890abcd1234&userID=xyz901234&pageID=web23456789Get hashmaliciousHTMLPhisher, Mamba2FABrowse
                                                                                                                                                                                                                                                    • 13.107.246.45
                                                                                                                                                                                                                                                    https://www.cognitoforms.com/f/QJDkMg1ACkylvn0c20THNA/1Get hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 13.107.246.45
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 94.245.104.56
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousLummaCBrowse
                                                                                                                                                                                                                                                    • 13.107.246.44
                                                                                                                                                                                                                                                    https://www.google.es/url?q=queryrp18(spellCorrectionEnabled%3Atrue%2CrecentSearchParam%3A(id%3A3891228890%2CdoLogHistory%3Atrue)%2Cfilters%3AList((type%3AREGION%2Cvalues%3AList((id%3A103644278%2Ctext%3AUnited%2520States%2CselectionType%3AINCLUDED))))%2Ckeywords%3Aremote)&sessionId=5NTcRf4wT3OOZdAOuNu6%2FQ%3D%3Dquery(spellCorrectionEnabled%3Atrue%2CrecentSearchParam%3A(id%3A3891228890%2CdoLogHistory%3Atrue)%2Cfilters%3AList((type%3AREGION%2Cvalues%3AList((id%3A103644278%2Ctext%3AUnited%2520States%2CselectionType%3AINCLUDED))))%2Ckeywords%3Aremote)&sessionId=5NTcRf4wT3OOZdAOuNu6%2FQ%3D%3Dquery(spellCorrectionEnabled%3Atrue%2CrecentSearchParam%3A(id%3A3891228890%2CdoLogHistory%3Atrue)%2Cfilters%3AList((type%3AREGION%2Cvalues%3AList((id%3A103644278%2Ctext%3AUnited%2520States%2CselectionType%3AINCLUDED))))%2Ckeywords%3Aremote)&sessionId=5NTcRf4wT3OOZdAOuNu6%2FQ%3D%3Dquery(spellCorrectionEnabled%3Atrue%2CrecentSearchParam%3A(id%3A3891228890%2CdoLogHistory%3Atrue)%2Cfilters%3AList((type%3AREGION%2Cvalues%3AList((id%3A103644278%2Ctext%3AUnited%2520States%2CselectionType%3AINCLUDED))))%2Ckeywords%3Aremote)&sessionId=5NTcRf4wT3OOZdAOuNu6%2FQ%3D%3D&sa=t&url=amp%2fpreview.adope.jp%2fod%2f8gqnmo6zgfuuc6sej4k7rfdswihr8l%2fZnJhbnMuZW5nZWxicmVjaHRAYXJkYWdoZ3JvdXAuY29t$?Get hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 40.101.138.2
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousStealc, VidarBrowse
                                                                                                                                                                                                                                                    • 20.99.185.48
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousLummaCBrowse
                                                                                                                                                                                                                                                    • 13.107.246.45
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousLummaCBrowse
                                                                                                                                                                                                                                                    • 13.107.246.45
                                                                                                                                                                                                                                                    ASN852CAxd.spc.elfGet hashmaliciousMiraiBrowse
                                                                                                                                                                                                                                                    • 142.169.14.239
                                                                                                                                                                                                                                                    mips.elfGet hashmaliciousMiraiBrowse
                                                                                                                                                                                                                                                    • 161.19.241.167
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousFormBookBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    botnet.sh4.elfGet hashmaliciousMirai, MoobotBrowse
                                                                                                                                                                                                                                                    • 209.53.104.227
                                                                                                                                                                                                                                                    Launcher 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Launcher 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    https://files.catbox.moe/iz3lne.zipGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Xeno Executor Setup 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    Xeno Executor Setup 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 108.181.20.35
                                                                                                                                                                                                                                                    CLOUDFLARENETUSEmail_sending_restriction_[sebastien.morel!](#HOHSM).htmlGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 172.67.151.164
                                                                                                                                                                                                                                                    9RM52QaURq.exeGet hashmaliciousCredGrabber, Meduza StealerBrowse
                                                                                                                                                                                                                                                    • 172.67.74.152
                                                                                                                                                                                                                                                    HZ1BUCfTne.exeGet hashmaliciousCredGrabber, Meduza StealerBrowse
                                                                                                                                                                                                                                                    • 172.67.74.152
                                                                                                                                                                                                                                                    9RM52QaURq.exeGet hashmaliciousCredGrabber, Meduza StealerBrowse
                                                                                                                                                                                                                                                    • 172.67.74.152
                                                                                                                                                                                                                                                    bv2DbIiZeK.exeGet hashmaliciousCredGrabber, Meduza StealerBrowse
                                                                                                                                                                                                                                                    • 104.26.13.205
                                                                                                                                                                                                                                                    brozer.exeGet hashmaliciousCredGrabber, Meduza StealerBrowse
                                                                                                                                                                                                                                                    • 104.26.13.205
                                                                                                                                                                                                                                                    NewVoicemail - +1 392 504 7XXX00-33Rebecca.silvaTranscript.htmlGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 104.16.123.96
                                                                                                                                                                                                                                                    YU7jHNMJjG.exeGet hashmaliciousCredGrabber, Meduza StealerBrowse
                                                                                                                                                                                                                                                    • 172.67.74.152
                                                                                                                                                                                                                                                    6Ev0Nd7z2t.exeGet hashmaliciousCredGrabber, Meduza StealerBrowse
                                                                                                                                                                                                                                                    • 104.26.12.205
                                                                                                                                                                                                                                                    EDGECASTUSEmail_sending_restriction_[sebastien.morel!](#HOHSM).htmlGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 152.199.21.175
                                                                                                                                                                                                                                                    https://www.google.dk/url?sa=https://abc123xyz456def789ghj101klm112nop345qrs678tuv901wxyz234abc567d&rct=j&q=&esrc=s&source=web&cd=&cad=rja&uact=8&ved=2ahUKEwiX6tO39MiJAxUSnP0HHcggDNwQFnoECBoQAQ&url=amp%2F%62%68%61%72%61%74%68%73%65%72%76%69%63%65%73%69%6E%64%69%61%2E%63%6F%6D%2F%75%6E%73%75%62%73%63%72%69%62%65%2Fab86aa851e981834b77805f77a6cca34%2Fcm9yeWdvd2VyQHF1YW50ZXhhLmNvbQ==&token=fgj784jkh23&referrerID=xyz456789&sessionKey=abc123456789&trackingID=klmn987654&clickID=7890abcd1234&userID=xyz901234&pageID=web23456789Get hashmaliciousHTMLPhisher, Mamba2FABrowse
                                                                                                                                                                                                                                                    • 152.199.21.175
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 152.195.19.97
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousStealc, VidarBrowse
                                                                                                                                                                                                                                                    • 152.195.19.97
                                                                                                                                                                                                                                                    https://midlandtxconstruction.com/o/?c3Y9bzM2NV8xX29uZSZyYW5kPU5IRjVZVzA9JnVpZD1VU0VSMTcxMDIwMjRVMTgxMDE3MjE=N0123NGet hashmaliciousMamba2FABrowse
                                                                                                                                                                                                                                                    • 152.199.21.175
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousPureCrypter, LummaC, Amadey, LummaC Stealer, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 152.195.19.97
                                                                                                                                                                                                                                                    https://linklock.titanhq.com/analyse?url=https%3A%2F%2Fmyarrowleaf1-my.sharepoint.com%2F%3Af%3A%2Fg%2Fpersonal%2Fmarge_penrod_myarrowleaf_org%2FElQV40bjfBZKivPSKIPxGuYBa20TAVuQG9ya4YrQRKjHiQ%3Fe%3D7nML8f&data=eJxVzctugzAQBdCvMbtGBqOkWXhBlOYhUiW0VaR0gyZgGyL80Ng05e8L6aaVZlZz7p2Kz5PlPI1BxBQqFtW8qkF14P2ssjrSfEEPxukjHONsHXlusRboSUrN_aG0VA-IPFyxVU0QOB7_dfS8CcF5wjKSbMbRAyDaeydAxk96mPkGUDjbmjDxybBM_mo1rhv_WQPdlARUonTCoK3LPzWlxUm-dMU5pdebXH3m7dfpPd-fvrf9ZQUJ_cjOfbFdDpBesHjLb7u2IGwjCFsvzOvhWf4A0NhYxQ%25%25Get hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 152.199.21.175
                                                                                                                                                                                                                                                    https://share.hsforms.com/13Dqwfz0LRkK1qoBQuRdgjgsnbj9Get hashmaliciousHTMLPhisherBrowse
                                                                                                                                                                                                                                                    • 152.199.21.175
                                                                                                                                                                                                                                                    http://loop.net.pk/cos.htmlGet hashmaliciousHTMLPhisher, Mamba2FABrowse
                                                                                                                                                                                                                                                    • 152.199.21.175
                                                                                                                                                                                                                                                    https://forms.office.com/Pages/ShareFormPage.aspx?id=xW69F1aTs06UvACEsnZeONWs3ov4-fZJk9ZDjpIIN5tUMUFMSUpJVVFUWEtHTFlURVNUWE1QV1hXQi4u&sharetoken=2Z2A4vYPJAA4bBGx5zDgGet hashmaliciousHTMLPhisherBrowse
                                                                                                                                                                                                                                                    • 152.199.21.175
                                                                                                                                                                                                                                                    MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                                                                                                                                                                    28a2c9bd18a11de089ef85a160da29e4Email_sending_restriction_[sebastien.morel!](#HOHSM).htmlGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    tmp8EC6.HTmL.htmlGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    NewVoicemail - +1 392 504 7XXX00-33Rebecca.silvaTranscript.htmlGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    https://incomestatementsaau.de/Secured_shared_invoice%25PdsD$f%253vt7674/Get hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    https://www.google.dk/url?sa=https://abc123xyz456def789ghj101klm112nop345qrs678tuv901wxyz234abc567d&rct=j&q=&esrc=s&source=web&cd=&cad=rja&uact=8&ved=2ahUKEwiX6tO39MiJAxUSnP0HHcggDNwQFnoECBoQAQ&url=amp%2F%62%68%61%72%61%74%68%73%65%72%76%69%63%65%73%69%6E%64%69%61%2E%63%6F%6D%2F%75%6E%73%75%62%73%63%72%69%62%65%2Fab86aa851e981834b77805f77a6cca34%2Fcm9yeWdvd2VyQHF1YW50ZXhhLmNvbQ==&token=fgj784jkh23&referrerID=xyz456789&sessionKey=abc123456789&trackingID=klmn987654&clickID=7890abcd1234&userID=xyz901234&pageID=web23456789Get hashmaliciousHTMLPhisher, Mamba2FABrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    https://www.cognitoforms.com/f/QJDkMg1ACkylvn0c20THNA/1Get hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    file.exeGet hashmaliciousAmadey, Stealc, VidarBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    BankInformation.vbeGet hashmaliciousAgentTeslaBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    https://microsoft-outlook-microsoft-outlook.chicken10.com.br/?no=Y2hyaXN0b3BoZS50aWJlcmdoaWVuQGRhaWljaGktc2Fua3lvLmZy$Get hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                    • 20.109.210.53
                                                                                                                                                                                                                                                    • 40.126.31.73
                                                                                                                                                                                                                                                    MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                                                                                                                                                                    C:\Users\user\AppData\Local\Programs\unrealgame\d3dcompiler_47.dllLauncher 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                      Launcher 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                        Xeno Executor Setup 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                          Xeno Executor Setup 1.0.0.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                            Setup.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                              Setup.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                                Setup.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                                  Setup.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                                    Setup.exeGet hashmaliciousUnknownBrowse
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):65552
                                                                                                                                                                                                                                                                      Entropy (8bit):0.01264908944072593
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:wolGlll/l/lXp9ZjrPBY0GlAl/SxrP:wo0dPBY0yAIN
                                                                                                                                                                                                                                                                      MD5:0685D8086D2E1B3FF4BB5E31BD8323E6
                                                                                                                                                                                                                                                                      SHA1:463A551AD9DE9D6FEB31A4AC9B97C1C2644E2707
                                                                                                                                                                                                                                                                      SHA-256:AA57E6F6DCEF94EB2FF468DD28D2CD31A918DADD90EA82FD265331599452FFA2
                                                                                                                                                                                                                                                                      SHA-512:F658B1A5355D78C5A532EF4343AC27241E1F7020B196D386A74391EC5FE2794DAE67B67CBED53A6FE360F048908EB8CCC967E32D6C530FC3D6FC36BC7FEAFD02
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.t..........................................f...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):4
                                                                                                                                                                                                                                                                      Entropy (8bit):1.5
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:R:R
                                                                                                                                                                                                                                                                      MD5:F49655F856ACB8884CC0ACE29216F511
                                                                                                                                                                                                                                                                      SHA1:CB0F1F87EC0455EC349AAA950C600475AC7B7B6B
                                                                                                                                                                                                                                                                      SHA-256:7852FCE59C67DDF1D6B8B997EAA1ADFAC004A9F3A91C37295DE9223674011FBA
                                                                                                                                                                                                                                                                      SHA-512:599E93D25B174524495ED29653052B3590133096404873318F05FD68F4C9A5C9A3B30574551141FBB73D7329D6BE342699A17F3AE84554BAB784776DFDA2D5F8
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:EERF
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:Matlab v4 mat-file (little endian) (, numeric, rows 0, columns 16, imaginary
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):65536
                                                                                                                                                                                                                                                                      Entropy (8bit):0.027246732148531988
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:O9q08MsUEZ+lX1IbRmAe9M9EDdtj2Hrn:T/MsQ1Ib8AeH2L
                                                                                                                                                                                                                                                                      MD5:D60A70FFEC2A6A60C57B5A377A62DED1
                                                                                                                                                                                                                                                                      SHA1:068E3CD732A50F88E583B2FE904462715C534F23
                                                                                                                                                                                                                                                                      SHA-256:FAFC7080E1A6B5AABB700711DCD3D8D00159F578F61A166A3C3427B17844F7D1
                                                                                                                                                                                                                                                                      SHA-512:134E2235BFBAC2FAB410926F85FC512F6CD09F4755B0DE69CB0CF3A3B324108DCA338613E68EE8275CDCDB7388BD3B6E41F65093F76D4ABB4B794E3AD58E7453
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:................|...(....x:no.&A.e.u~+..C.:.\.U.s.e.r.s.\.t.i.n.a.\.A.p.p.D.a.t.a.\.L.o.c.a.l.\.P.r.o.g.r.a.m.s.\.u.n.r.e.a.l.g.a.m.e.\.W.a.r.s.A.r.e.n.a...e.x.e...................................(...p.DJ!.IL.....Zm.F............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):58444
                                                                                                                                                                                                                                                                      Entropy (8bit):6.10166998551495
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:z/Ps+wsI7ynGCBS2qX7bgtPHgorQXdbiR3oM:z/0+zI7ynGkS20wtP0Xdbe3
                                                                                                                                                                                                                                                                      MD5:BE8ED380B27F2567BEAD212DBCC4A932
                                                                                                                                                                                                                                                                      SHA1:3F334E950206A50BE0E22DA58C5C53D124376581
                                                                                                                                                                                                                                                                      SHA-256:E25279E1808542E977A4ABD29C98B19ABA43BA2E5291DE881C4B0AEA3B1340F8
                                                                                                                                                                                                                                                                      SHA-512:3685A1F410B0C6899A679BB54A55E7078D44E9F0BC923B0AA84E2FB0B0604966C67E7CF8BA08ECC29CD1C1570271838FCCED216CE58658AA2454FDF93C858778
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"abusive_adblocker_etag":"\"229EC35087C81534A88F41A12F3A505F330A0BE57C43F6CEB29F4718042EFC4F\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):60278
                                                                                                                                                                                                                                                                      Entropy (8bit):6.10072832729183
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:SMk1rT8HRnRCBS2qX7bo0B3odgorQXdbiZ:SMYrT8xRkS20p1tXdbe
                                                                                                                                                                                                                                                                      MD5:43806A7EA2412B143A3C6BDE75F85BB4
                                                                                                                                                                                                                                                                      SHA1:61F60B2955051371543B1809A4E68D56687DB64A
                                                                                                                                                                                                                                                                      SHA-256:4DC8DD77CCC7223D144CDC56CDCE2548FC4030E2DD6DE2A472CE6090628CFB2A
                                                                                                                                                                                                                                                                      SHA-512:0A45AF2C184B7A75B4112DF80D1E0B524B6959F48525CF2D76B779B81B8DD105D7B12CBC8DFFA4B0CB6D5033B8129410B49FC276CAB06821E960041EF5F2BDE6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"abusive_adblocker_etag":"\"5E25271B8190D943537AD3FDB50874FC133E8B4A00380E2A6A888D63386F728B\"","browser":{"browser_build_version":"117.0.2045.47","browser_version_of_last_seen_whats_new":"117.0.2045.47","last_seen_whats_new_page_version":"117.0.2045.47"},"continuous_migration":{"local_guid":"e6a53a92-06d2-4aa0-b000-34ecb29bc408"},"desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):107893
                                                                                                                                                                                                                                                                      Entropy (8bit):4.64013246649014
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:B/lv4EsQMNeQ9s5VwB34PsiaR+tjvYArQdW+Iuh57P78:fwUQC5VwBIiElEd2K57P78
                                                                                                                                                                                                                                                                      MD5:10101225085294C4AA9050CEF19E599D
                                                                                                                                                                                                                                                                      SHA1:D1E683B46B7E0B1C4DE538392F7ACB4DF6280404
                                                                                                                                                                                                                                                                      SHA-256:6F703C25109774C2D844787790FFA45183787FBFA140A5AEAD247638E0987C21
                                                                                                                                                                                                                                                                      SHA-512:A8C5867A96AD36813905AD2C01D5C18CBB82D3F1F91DFCE64E48D60EED226F1F16DBD5F3B8FC9DF065D0C641A3245EC6E59556EE4B2C219852B0C43584D334F4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"sites":[{"url":"24video.be"},{"url":"7dnifutbol.bg"},{"url":"6tv.dk"},{"url":"9kefa.com"},{"url":"aculpaedoslb.blogspot.pt"},{"url":"aek-live.gr"},{"url":"arcadepunk.co.uk"},{"url":"acidimg.cc"},{"url":"aazah.com"},{"url":"allehensbeverwijk.nl"},{"url":"amateurgonewild.org"},{"url":"aindasoudotempo.blogspot.com"},{"url":"anorthosis365.com"},{"url":"autoreview.bg"},{"url":"alivefoot.us"},{"url":"arbitro10.com"},{"url":"allhard.org"},{"url":"babesnude.info"},{"url":"aysel.today"},{"url":"animepornx.com"},{"url":"bahisideal20.com"},{"url":"analyseindustrie.nl"},{"url":"bahis10line.org"},{"url":"apoel365.net"},{"url":"bahissitelerisikayetleri.com"},{"url":"bambusratte.com"},{"url":"banzaj.pl"},{"url":"barlevegas.com"},{"url":"baston.info"},{"url":"atomcurve.com"},{"url":"atascadocherba.com"},{"url":"astrologer.gr"},{"url":"adultpicz.com"},{"url":"alleporno.com"},{"url":"beaver-tube.com"},{"url":"beachbabes.info"},{"url":"bearworldmagazine.com"},{"url":"bebegimdensonra.com"},{"url":"autoy
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):107893
                                                                                                                                                                                                                                                                      Entropy (8bit):4.64013246649014
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:B/lv4EsQMNeQ9s5VwB34PsiaR+tjvYArQdW+Iuh57P78:fwUQC5VwBIiElEd2K57P78
                                                                                                                                                                                                                                                                      MD5:10101225085294C4AA9050CEF19E599D
                                                                                                                                                                                                                                                                      SHA1:D1E683B46B7E0B1C4DE538392F7ACB4DF6280404
                                                                                                                                                                                                                                                                      SHA-256:6F703C25109774C2D844787790FFA45183787FBFA140A5AEAD247638E0987C21
                                                                                                                                                                                                                                                                      SHA-512:A8C5867A96AD36813905AD2C01D5C18CBB82D3F1F91DFCE64E48D60EED226F1F16DBD5F3B8FC9DF065D0C641A3245EC6E59556EE4B2C219852B0C43584D334F4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"sites":[{"url":"24video.be"},{"url":"7dnifutbol.bg"},{"url":"6tv.dk"},{"url":"9kefa.com"},{"url":"aculpaedoslb.blogspot.pt"},{"url":"aek-live.gr"},{"url":"arcadepunk.co.uk"},{"url":"acidimg.cc"},{"url":"aazah.com"},{"url":"allehensbeverwijk.nl"},{"url":"amateurgonewild.org"},{"url":"aindasoudotempo.blogspot.com"},{"url":"anorthosis365.com"},{"url":"autoreview.bg"},{"url":"alivefoot.us"},{"url":"arbitro10.com"},{"url":"allhard.org"},{"url":"babesnude.info"},{"url":"aysel.today"},{"url":"animepornx.com"},{"url":"bahisideal20.com"},{"url":"analyseindustrie.nl"},{"url":"bahis10line.org"},{"url":"apoel365.net"},{"url":"bahissitelerisikayetleri.com"},{"url":"bambusratte.com"},{"url":"banzaj.pl"},{"url":"barlevegas.com"},{"url":"baston.info"},{"url":"atomcurve.com"},{"url":"atascadocherba.com"},{"url":"astrologer.gr"},{"url":"adultpicz.com"},{"url":"alleporno.com"},{"url":"beaver-tube.com"},{"url":"beachbabes.info"},{"url":"bearworldmagazine.com"},{"url":"bebegimdensonra.com"},{"url":"autoy
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):4194304
                                                                                                                                                                                                                                                                      Entropy (8bit):0.3465941589802917
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:Opp+G6GMnge0W1+VGlvNHsCIf0sVxveIMvec2Rc:a+G+gXGl1HsCuhMvec2Rc
                                                                                                                                                                                                                                                                      MD5:EB5CC5B3C5F13596023D7F20E7F76BD0
                                                                                                                                                                                                                                                                      SHA1:DCCA61409095B1242C556CCDF38A85A6C1020F5D
                                                                                                                                                                                                                                                                      SHA-256:3E234D237FEE88C2F5300D209F87ABA8380621A08E02B36C340DD4626FB91054
                                                                                                                                                                                                                                                                      SHA-512:1E089C6ECA377831AF5C500FCCEA747172634C9408A0AA59C6398C9CA4AE5A6749B0688218F3055BE17326A82B51438916645E92EFF80C109EE9F621D23FB5AD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...@..@...@.....C.].....@...................h...............`... ...i.y.........BrowserMetrics......i.y..Yd. .......A...................v.0.....UV&K.k<................UV&K.k<................UMA.PersistentHistograms.InitResult.....8...i.y.[".................................................i.y.Pq.30..............117.0.2045.47-64..".en-GB*...Windows NT..10.0.190452l..x86_64..?.......".faclpe20,1(.0..8..B.......2.:.M..BU..Be...?j...GenuineIntel... .. ..........x86_64...J....k..^o..J..l.zL.^o..J....\.^o..J.....f.^o..J....?.^o..P.Z...b.INBXj....... .8.@..............%..................-...w..U..G...W6.....>.........."....."...24.."."93dRcxCw0cDlBQeAYE33nFACeirrSGEv1FXdrR8ueYg="*.:............B)..1.3.177.11.. .*.RegKeyNotFound2.windowsR...Z....Mb.XiP@..$...SF@.......Y@.......4@.......Y@........?........?.........................Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......Y@.......4@.......Y@................Y@.......Y@.......Y@........?........?2................. ....2.....
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):280
                                                                                                                                                                                                                                                                      Entropy (8bit):4.1326399824826066
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:FiWWltlT0EiCjG2xo6kMWPGdV8B+BVP/Sh/JzvXEAAG34tTAUFVHTthtll:o1AGGwwMWj+BVsJDkG3V8
                                                                                                                                                                                                                                                                      MD5:AD4AAC17B8FFB7AFD83DA9B3ADC3C80A
                                                                                                                                                                                                                                                                      SHA1:F10B9356C02FCFB50094CA5D4D5B22CAEB388BE5
                                                                                                                                                                                                                                                                      SHA-256:1160BB1263B5738578E71FA9571F3C5F73AAEDF4B5387550E453F7691B5C08F9
                                                                                                                                                                                                                                                                      SHA-512:55456F8C6F56654C2411978D392EA16776C537C9B7A0FB0BCCFDC08CB7743F28C83B6224CE66B349D51DC0858933B1FD5EC4E6F15D1AA3207800FF58AFC82473
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:sdPC.......................c.CsJ......5"93dRcxCw0cDlBQeAYE33nFACeirrSGEv1FXdrR8ueYg="..................................................................................47DEQpj8HBSa+/TImW+5JCeuQeRkm5NMpJWZG3hSuFU=....................e9a6470b-82e9-4451-b995-4e1980b580b6............
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):9585
                                                                                                                                                                                                                                                                      Entropy (8bit):5.104507974492643
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:sttkdw6sG0CIJZVkQaI8sbV+FTnQAyaCPpYJ:sttasG0CiZdbG7Qy
                                                                                                                                                                                                                                                                      MD5:BC729EEE4BE7C7B885EB7D01ED508E6D
                                                                                                                                                                                                                                                                      SHA1:EF8D9FFA0F89B136F4D7ED65D1EB5F47E2402E34
                                                                                                                                                                                                                                                                      SHA-256:2CC7F5BCDF2C93B6FB84B812B9CD9D91E8BC36A22830A15C34EFC457E2BD7DEC
                                                                                                                                                                                                                                                                      SHA-512:3442635BDA860C440D67D756ABF0148DCB697AC8B7B2F0855398F10A70929CC043F9564D069F8CCCDF046E453E51F4D20C6BCB02B8B1C011C3C180BA10BB032C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13376137533265150","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13340970644573687","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":-1436,"left":-2400,"maximized":false,"right":-1350,"top":-2400,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":853,"browser_content_container_width":1006,"browser_content_container_x":0,"browser_content_container_y":111,"continuous_migration":{"ci_correction_for_holdout_treatment_state":1,"datatype_details_migration_performed"
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:very short file (no magic)
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1
                                                                                                                                                                                                                                                                      Entropy (8bit):0.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:L:L
                                                                                                                                                                                                                                                                      MD5:5058F1AF8388633F609CADB75A75DC9D
                                                                                                                                                                                                                                                                      SHA1:3A52CE780950D4D969792A2559CD519D7EE8C727
                                                                                                                                                                                                                                                                      SHA-256:CDB4EE2AEA69CC6A83331BBE96DC2CAA9A299D21329EFB0336FC02A82E1839A8
                                                                                                                                                                                                                                                                      SHA-512:0B61241D7C17BCBB1BAEE7094D14B7C451EFECC7FFCBD92598A0F13D313CC9EBC2A07E61F007BAF58FBF94FF9A8695BDD5CAE7CE03BBF1E94E93613A00F25F21
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):26730
                                                                                                                                                                                                                                                                      Entropy (8bit):5.574127240378702
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:768:nXEpZyWPoCffG8F1+UoAYDCx9Tuqh0VfUC9xbog/OVgnkamAjrwXepBtuP:nXEpZyWPoCffGu1ja9nkjAYXkto
                                                                                                                                                                                                                                                                      MD5:E4823F63967E9E1E59B1192C8A6E5317
                                                                                                                                                                                                                                                                      SHA1:51E8A7E55C995B3DC11E98936987C26ABB4D48A0
                                                                                                                                                                                                                                                                      SHA-256:146A5ACFEB1664A7941E4518BCA1CC41E35AF31E7F3072BE47024037385FE951
                                                                                                                                                                                                                                                                      SHA-512:54A636664FBDC1AAA6ECDED2F9A475127EF5E4D184388BEC091D235C79CB893A3584E0CB89FB709F297AA958DCAD4EBA052B31373A4DE632EF42BC3004ED0273
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13376137532738946","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13376137532738946","location":5,"ma
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):16
                                                                                                                                                                                                                                                                      Entropy (8bit):3.2743974703476995
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:1sjgWIV//Uv:1qIFUv
                                                                                                                                                                                                                                                                      MD5:46295CAC801E5D4857D09837238A6394
                                                                                                                                                                                                                                                                      SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                                                                                                                                                                                                                                                                      SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                                                                                                                                                                                                                                                                      SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:MANIFEST-000001.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):33
                                                                                                                                                                                                                                                                      Entropy (8bit):3.5394429593752084
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:iWstvhYNrkUn:iptAd
                                                                                                                                                                                                                                                                      MD5:F27314DD366903BBC6141EAE524B0FDE
                                                                                                                                                                                                                                                                      SHA1:4714D4A11C53CF4258C3A0246B98E5F5A01FBC12
                                                                                                                                                                                                                                                                      SHA-256:68C7AD234755B9EDB06832A084D092660970C89A7305E0C47D327B6AC50DD898
                                                                                                                                                                                                                                                                      SHA-512:07A0D529D9458DE5E46385F2A9D77E0987567BA908B53DDB1F83D40D99A72E6B2E3586B9F79C2264A83422C4E7FC6559CAC029A6F969F793F7407212BB3ECD51
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...m.................DB_VERSION.1
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):16
                                                                                                                                                                                                                                                                      Entropy (8bit):3.2743974703476995
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:1sjgWIV//Uv:1qIFUv
                                                                                                                                                                                                                                                                      MD5:46295CAC801E5D4857D09837238A6394
                                                                                                                                                                                                                                                                      SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                                                                                                                                                                                                                                                                      SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                                                                                                                                                                                                                                                                      SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:MANIFEST-000001.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):305
                                                                                                                                                                                                                                                                      Entropy (8bit):5.292873998381858
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWSA7F+q1qLTwi23oH+Tcwtp3hBtB2KLlVUyW5L+q2PqLTwi23oH+Tcwtp3hBH:M/kwZYebp3dFLkUv8wZYebp3eFUv
                                                                                                                                                                                                                                                                      MD5:DB7F0F873D846B29575CEC3E23E2119A
                                                                                                                                                                                                                                                                      SHA1:06A54B769A7AF500281C0C1CCB5E87D8614FAA38
                                                                                                                                                                                                                                                                      SHA-256:AD1CDEF0FEB66C5E40514746521639A090097D060B0085F631B22015C9448526
                                                                                                                                                                                                                                                                      SHA-512:2CE8D77C9775D830B2510A86E0DE8648D358BEF9BC3C7593059C28E5044BCF9CEF74FAAD728A3FCDEA802D7776EAABA437FD2F298C0D9302CACA7E5926D0653E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:38.976 23c8 Creating DB C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\AdPlatform/auto_show_data.db since it was missing..2024/11/15-04:45:39.038 23c8 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\AdPlatform/auto_show_data.db/MANIFEST-000001.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:OpenPGP Secret Key
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):41
                                                                                                                                                                                                                                                                      Entropy (8bit):4.704993772857998
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:scoBAIxQRDKIVjn:scoBY7jn
                                                                                                                                                                                                                                                                      MD5:5AF87DFD673BA2115E2FCF5CFDB727AB
                                                                                                                                                                                                                                                                      SHA1:D5B5BBF396DC291274584EF71F444F420B6056F1
                                                                                                                                                                                                                                                                      SHA-256:F9D31B278E215EB0D0E9CD709EDFA037E828F36214AB7906F612160FEAD4B2B4
                                                                                                                                                                                                                                                                      SHA-512:DE34583A7DBAFE4DD0DC0601E8F6906B9BC6A00C56C9323561204F77ABBC0DC9007C480FFE4092FF2F194D54616CAF50AECBD4A1E9583CAE0C76AD6DD7C2375B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.|.."....leveldb.BytewiseComparator......
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:modified
                                                                                                                                                                                                                                                                      Size (bytes):1696115
                                                                                                                                                                                                                                                                      Entropy (8bit):5.040584442810461
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24576:7if76gGkISshcFdmcOAoPENUpifYP+MbI2T:7ifgAmmE
                                                                                                                                                                                                                                                                      MD5:823DBE7AC8681DD31AB4BC766012FF59
                                                                                                                                                                                                                                                                      SHA1:A29A35597CCFB0C9082498155D253E9B96591101
                                                                                                                                                                                                                                                                      SHA-256:95B8F9AF4A54362AA36D7A827064A9DF6C7841A040E1C5DA7D428BFB1E506606
                                                                                                                                                                                                                                                                      SHA-512:02D9AF83054335B106D9B47AE527C137A2AC0B230B2BE673C70D41112F23A1E1428A0067424EC7540831B4E54B4B9A1A14BF04083AC9887105966C6C493160A3
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...m.................DB_VERSION.1acT..................QUERY_TIMESTAMP:arbitration_priority_list4.*.*.13340969984833782.$QUERY:arbitration_priority_list4.*.*..[{"name":"arbitration_priority_list","url":"https://edgeassetservice.azureedge.net/assets/arbitration_priority_list/4.0.5/asset?sv=2017-07-29&sr=c&sig=NtPyTqjbjPElpw2mWa%2FwOk1no4JFJEK8%2BwO4xQdDJO4%3D&st=2021-01-01T00%3A00%3A00Z&se=2023-12-30T00%3A00%3A00Z&sp=r&assetgroup=ArbitrationService","version":{"major":4,"minor":0,"patch":5},"hash":"N0MkrPHaUyfTgQSPaiVpHemLMcVgqoPh/xUYLZyXayg=","size":11749}]...................'ASSET_VERSION:arbitration_priority_list.4.0.5..ASSET:arbitration_priority_list.[{. "configVersion": 32,. "PrivilegedExperiences": [. "ShorelinePrivilegedExperienceID",. "SHOPPING_AUTO_SHOW_COUPONS_CHECKOUT",. "SHOPPING_AUTO_SHOW_LOWER_PRICE_FOUND",. "SHOPPING_AUTO_SHOW_BING_SEARCH",. "SHOPPING_AUTO_SHOW_REBATES",. "SHOPPING_AUTO_SHOW_REBATES_CONFIRMATION",. "SHOPPING_AUTO_SHOW_REBATES_DEACTI
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):332
                                                                                                                                                                                                                                                                      Entropy (8bit):5.157046331209309
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWuiM+q2PqLTwi23oH+Tcwt9Eh1tIFUt8YUyWeZmw+YUyWDpMVkwOqLTwi23of:MuiM+v8wZYeb9Eh16FUt8Pe/+PDpMV5h
                                                                                                                                                                                                                                                                      MD5:CD1060A5E34FF39FB3943AF886749F68
                                                                                                                                                                                                                                                                      SHA1:FF381AB9BD4C20B466FBC1708F082F7854838709
                                                                                                                                                                                                                                                                      SHA-256:4799CC6E800FE5783B967B3C59E2113CAFA5ECC75D595FD1BEFF14083AD578BE
                                                                                                                                                                                                                                                                      SHA-512:335972AF743ED55D7667A1B6C855B338AC35F927C79F4A71A468B76017B298F655B80C0DB90ECA36E29402DFEB587F6FABC17DFDE27DB85AE79F0D1078A109BB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:38.832 23fc Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/MANIFEST-000001.2024/11/15-04:45:38.845 23fc Recovering log #3.2024/11/15-04:45:38.849 23fc Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):332
                                                                                                                                                                                                                                                                      Entropy (8bit):5.157046331209309
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWuiM+q2PqLTwi23oH+Tcwt9Eh1tIFUt8YUyWeZmw+YUyWDpMVkwOqLTwi23of:MuiM+v8wZYeb9Eh16FUt8Pe/+PDpMV5h
                                                                                                                                                                                                                                                                      MD5:CD1060A5E34FF39FB3943AF886749F68
                                                                                                                                                                                                                                                                      SHA1:FF381AB9BD4C20B466FBC1708F082F7854838709
                                                                                                                                                                                                                                                                      SHA-256:4799CC6E800FE5783B967B3C59E2113CAFA5ECC75D595FD1BEFF14083AD578BE
                                                                                                                                                                                                                                                                      SHA-512:335972AF743ED55D7667A1B6C855B338AC35F927C79F4A71A468B76017B298F655B80C0DB90ECA36E29402DFEB587F6FABC17DFDE27DB85AE79F0D1078A109BB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:38.832 23fc Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/MANIFEST-000001.2024/11/15-04:45:38.845 23fc Recovering log #3.2024/11/15-04:45:38.849 23fc Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Asset Store\assets.db/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x3, schema 4, UTF-8, version-valid-for 1
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):28672
                                                                                                                                                                                                                                                                      Entropy (8bit):0.4632279128040404
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:TLi5YFQq3qh7z3WMYziciNW9WkZ96UwOfBug0W:TouQq3qh7z3bY2LNW9WMcUvBux
                                                                                                                                                                                                                                                                      MD5:542582853D27BE5883DA452EB4BA81F1
                                                                                                                                                                                                                                                                      SHA1:CB19312FA3DE176FD7107B576BC402CF17623978
                                                                                                                                                                                                                                                                      SHA-256:917CE760487566CB4F244BE5E100B62B9E9CECEB56FBB7C4A3F39E3F379BD7D0
                                                                                                                                                                                                                                                                      SHA-512:899E05619284D870E7B3D2803632236DE18BD50F065848ABCF5CA28059D43D8400DEC5F88B9664E200FAC581D1D79D633BB1BB6D884A0809F1997D4DEEDAC632
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j..........g.....8...n................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 5, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 5
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):10240
                                                                                                                                                                                                                                                                      Entropy (8bit):0.8708334089814068
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:LBtW4mqsmvEFUU30dZV3lY7+YNbr1dj3BzA2ycFUxOUDaazMvbKGxiTUwZ79GV:LLaqEt30J2NbDjfy6UOYMvbKGxjgm
                                                                                                                                                                                                                                                                      MD5:92F9F7F28AB4823C874D79EDF2F582DE
                                                                                                                                                                                                                                                                      SHA1:2D4F1B04C314C79D76B7FF3F50056ECA517C338B
                                                                                                                                                                                                                                                                      SHA-256:6318FCD9A092D1F5B30EBD9FB6AEC30B1AEBD241DC15FE1EEED3B501571DA3C7
                                                                                                                                                                                                                                                                      SHA-512:86FEF0E05F871A166C3FAB123B0A4B95870DCCECBE20B767AF4BDFD99653184BBBFE4CE1EDF17208B7700C969B65B8166EE264287B613641E7FDD55A6C09E6D4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j...v... .. .....M....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):344
                                                                                                                                                                                                                                                                      Entropy (8bit):5.213908895387472
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW24Vq2PqLTwi23oH+TcwtnG2tMsIFUt8YUyW2dX0gZmw+YUyW2dmIkwOqLTwL:M24Vv8wZYebn9GFUt8P2dX0g/+P2dmIS
                                                                                                                                                                                                                                                                      MD5:F22E69099EC2E82E6962EBD0E095B34B
                                                                                                                                                                                                                                                                      SHA1:F3FFE95EE16BAD780C1B27FE1A8C1223D212A5C7
                                                                                                                                                                                                                                                                      SHA-256:7A56ADDC7ABFA6A32D494218010D281881F544163366BBE18351CD92BA71512C
                                                                                                                                                                                                                                                                      SHA-512:162D24E4D7D2A9BA61773F7FB6FE21768200DD62ED5DF5B24EAD570ED5F1FE4A7B0943F90FA213D54D21D784FA0D395C70C4B1B68725943E752B45393A3AA4B0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.777 1f14 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/MANIFEST-000001.2024/11/15-04:45:32.780 1f14 Recovering log #3.2024/11/15-04:45:32.782 1f14 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):344
                                                                                                                                                                                                                                                                      Entropy (8bit):5.213908895387472
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW24Vq2PqLTwi23oH+TcwtnG2tMsIFUt8YUyW2dX0gZmw+YUyW2dmIkwOqLTwL:M24Vv8wZYebn9GFUt8P2dX0g/+P2dmIS
                                                                                                                                                                                                                                                                      MD5:F22E69099EC2E82E6962EBD0E095B34B
                                                                                                                                                                                                                                                                      SHA1:F3FFE95EE16BAD780C1B27FE1A8C1223D212A5C7
                                                                                                                                                                                                                                                                      SHA-256:7A56ADDC7ABFA6A32D494218010D281881F544163366BBE18351CD92BA71512C
                                                                                                                                                                                                                                                                      SHA-512:162D24E4D7D2A9BA61773F7FB6FE21768200DD62ED5DF5B24EAD570ED5F1FE4A7B0943F90FA213D54D21D784FA0D395C70C4B1B68725943E752B45393A3AA4B0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.777 1f14 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/MANIFEST-000001.2024/11/15-04:45:32.780 1f14 Recovering log #3.2024/11/15-04:45:32.782 1f14 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EdgeCoupons/coupons_data.db/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 6, database pages 5, cookie 0x5, schema 4, UTF-8, version-valid-for 6
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):20480
                                                                                                                                                                                                                                                                      Entropy (8bit):0.6120364306761134
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:TLapR+DDNzWjJ0npnyXKUO8+jObT40p6TOuXmL:TO8D4jJ/6Up+6
                                                                                                                                                                                                                                                                      MD5:A84EC35FEE80D25D4BCB4F2312CA0A76
                                                                                                                                                                                                                                                                      SHA1:3EDCDE52ED609BC9311BA25D7D89CCA62C46A09A
                                                                                                                                                                                                                                                                      SHA-256:05B934BD055D893687BF0FCF5DAAC306BFBE96D3344CA1842828061624203A32
                                                                                                                                                                                                                                                                      SHA-512:61D90CD1BFA0187D614C8078A0052A3D44D6FD3AEE1DAC324831A03B67F904D22FBDCFAF67E5AE8CCDB7AA0607CC10FF924CE244BCAF677FCAC2728424808AC9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j...%.................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):16
                                                                                                                                                                                                                                                                      Entropy (8bit):3.2743974703476995
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:1sjgWIV//Uv:1qIFUv
                                                                                                                                                                                                                                                                      MD5:46295CAC801E5D4857D09837238A6394
                                                                                                                                                                                                                                                                      SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                                                                                                                                                                                                                                                                      SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                                                                                                                                                                                                                                                                      SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:MANIFEST-000001.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):375520
                                                                                                                                                                                                                                                                      Entropy (8bit):5.354159812719002
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:2A/imBpx6WdPSxKWcHu5MURacq49QxxPnyEndBuHltBfdK5WNbsVEziP/CfXtLPz:2FdMyq49tEndBuHltBfdK5WNbsVEziPU
                                                                                                                                                                                                                                                                      MD5:D0B42B1A009B45EE12EDF47E0243EC1D
                                                                                                                                                                                                                                                                      SHA1:2042337B204039F26A1A944619DFF26076B5B7CB
                                                                                                                                                                                                                                                                      SHA-256:B79389EF40E6297676A82182F40CDB0D35F52291958E7CECE76ECC4D1176E9F3
                                                                                                                                                                                                                                                                      SHA-512:BC7BA3534F6298F185C38BDB88CA5F0E13B121E04F121186ED1A818F4EF402BCC780C9FD8F0E735B8AA0498AF27CEADE597F375B1AE03384DB33B2B5F00C242E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...m.................DB_VERSION.1...q...............&QUERY_TIMESTAMP:domains_config_gz2.*.*.13376137541086779..QUERY:domains_config_gz2.*.*..[{"name":"domains_config_gz","url":"https://edgeassetservice.azureedge.net/assets/domains_config_gz/2.8.76/asset?assetgroup=EntityExtractionDomainsConfig","version":{"major":2,"minor":8,"patch":76},"hash":"78Xsq/1H+MXv88uuTT1Rx79Nu2ryKVXh2J6ZzLZd38w=","size":374872}]..*.`~...............ASSET_VERSION:domains_config_gz.2.8.76..ASSET:domains_config_gz...{"config": {"token_limit": 1600, "page_cutoff": 4320, "default_locale_map": {"bg": "bg-bg", "bs": "bs-ba", "el": "el-gr", "en": "en-us", "es": "es-mx", "et": "et-ee", "cs": "cs-cz", "da": "da-dk", "de": "de-de", "fa": "fa-ir", "fi": "fi-fi", "fr": "fr-fr", "he": "he-il", "hr": "hr-hr", "hu": "hu-hu", "id": "id-id", "is": "is-is", "it": "it-it", "ja": "ja-jp", "ko": "ko-kr", "lv": "lv-lv", "lt": "lt-lt", "mk": "mk-mk", "nl": "nl-nl", "nb": "nb-no", "no": "no-no", "pl": "pl-pl", "pt": "pt-pt", "ro": "
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):16
                                                                                                                                                                                                                                                                      Entropy (8bit):3.2743974703476995
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:1sjgWIV//Uv:1qIFUv
                                                                                                                                                                                                                                                                      MD5:46295CAC801E5D4857D09837238A6394
                                                                                                                                                                                                                                                                      SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                                                                                                                                                                                                                                                                      SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                                                                                                                                                                                                                                                                      SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:MANIFEST-000001.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):307
                                                                                                                                                                                                                                                                      Entropy (8bit):5.1709969072441755
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWcdJ81qLTwi23oH+Tcwtk2WwnvB2KLlVUyWpGSQL+q2PqLTwi23oH+Tcwtk2P:McdwZYebkxwnvFLkpGSQ+v8wZYebkxwp
                                                                                                                                                                                                                                                                      MD5:26E42D629401FAC3E93C0362D6E1113D
                                                                                                                                                                                                                                                                      SHA1:249F9786A752571B1944B3BC96493CDA0853FBD3
                                                                                                                                                                                                                                                                      SHA-256:6EC91BFF5C8785F3A8C3613134ED7C5F89E08216E84341F801D0D712B73D3C23
                                                                                                                                                                                                                                                                      SHA-512:E0E2A1F1CC838472075A6AE01D8C1960F79F88A82557D822CFACDC82A89F3B11C8B12E822958F7ED589784ECC1F52E0E84499D6307FEF9EBF4F82FEFEA583E13
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:38.781 1a9c Creating DB C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EntityExtractionAssetStore.db since it was missing..2024/11/15-04:45:38.870 1a9c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\EntityExtractionAssetStore.db/MANIFEST-000001.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:OpenPGP Secret Key
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):41
                                                                                                                                                                                                                                                                      Entropy (8bit):4.704993772857998
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:scoBAIxQRDKIVjn:scoBY7jn
                                                                                                                                                                                                                                                                      MD5:5AF87DFD673BA2115E2FCF5CFDB727AB
                                                                                                                                                                                                                                                                      SHA1:D5B5BBF396DC291274584EF71F444F420B6056F1
                                                                                                                                                                                                                                                                      SHA-256:F9D31B278E215EB0D0E9CD709EDFA037E828F36214AB7906F612160FEAD4B2B4
                                                                                                                                                                                                                                                                      SHA-512:DE34583A7DBAFE4DD0DC0601E8F6906B9BC6A00C56C9323561204F77ABBC0DC9007C480FFE4092FF2F194D54616CAF50AECBD4A1E9583CAE0C76AD6DD7C2375B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.|.."....leveldb.BytewiseComparator......
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:modified
                                                                                                                                                                                                                                                                      Size (bytes):358860
                                                                                                                                                                                                                                                                      Entropy (8bit):5.324612670431118
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:CgimBVvUrsc6rRA81b/18jyJNjfvrfM6Ru:C1gAg1zfvG
                                                                                                                                                                                                                                                                      MD5:403170E5D77863F651BC55DFB78A496D
                                                                                                                                                                                                                                                                      SHA1:E986A34DEDEB5591FCFFE2A2FE70232985F4C52B
                                                                                                                                                                                                                                                                      SHA-256:5EAFD17B48468F656E4BA4675698019CD73D87FD28C4AE2340FE7781B19431CA
                                                                                                                                                                                                                                                                      SHA-512:182017B9390E04E39D3BC53F1B5268227DA21463395F471AF9D2244C570DF0C8C8894A364CB310AB59E0332702D4A2996AD634809B247E7C460DAC0B96AC3D9C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"aee_config":{"ar":{"price_regex":{"ae":"(((ae|aed|\\x{062F}\\x{0660}\\x{0625}\\x{0660}|\\x{062F}\\.\\x{0625}|dhs|dh)\\s*\\d{1,3})|(\\d{1,3}\\s*(ae|aed|\\x{062F}\\x{0660}\\x{0625}\\x{0660}|\\x{062F}\\.\\x{0625}|dhs|dh)))","dz":"(((dzd|da|\\x{062F}\\x{062C})\\s*\\d{1,3})|(\\d{1,3}\\s*(dzd|da|\\x{062F}\\x{062C})))","eg":"(((e\\x{00a3}|egp)\\s*\\d{1,3})|(\\d{1,3}\\s*(e\\x{00a3}|egp)))","ma":"(((mad|dhs|dh)\\s*\\d{1,3})|(\\d{1,3}\\s*(mad|dhs|dh)))","sa":"((\\d{1,3}\\s*(sar\\s*\\x{fdfc}|sar|sr|\\x{fdfc}|\\.\\x{0631}\\.\\x{0633}))|((sar\\s*\\x{fdfc}|sar|sr|\\x{fdfc}|\\.\\x{0631}\\.\\x{0633})\\s*\\d{1,3}))"},"product_terms":"((\\x{0623}\\x{0636}\\x{0641}\\s*\\x{0625}\\x{0644}\\x{0649}\\s*\\x{0627}\\x{0644}\\x{0639}\\x{0631}\\x{0628}\\x{0629})|(\\x{0623}\\x{0636}\\x{0641}\\s*\\x{0625}\\x{0644}\\x{0649}\\s*\\x{0627}\\x{0644}\\x{062D}\\x{0642}\\x{064A}\\x{0628}\\x{0629})|(\\x{0627}\\x{0634}\\x{062A}\\x{0631}\\x{064A}\\s*\\x{0627}\\x{0644}\\x{0622}\\x{0646})|(\\x{062E}\\x{064A}\\x{0627}\\x{0631}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):418
                                                                                                                                                                                                                                                                      Entropy (8bit):1.8784775129881184
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:qTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCT:qWWWWWWWWWWWWWWWWWWWWW
                                                                                                                                                                                                                                                                      MD5:BF097D724FDF1FCA9CF3532E86B54696
                                                                                                                                                                                                                                                                      SHA1:4039A5DD607F9FB14018185F707944FE7BA25EF7
                                                                                                                                                                                                                                                                      SHA-256:1B8B50A996172C16E93AC48BCB94A3592BEED51D3EF03F87585A1A5E6EC37F6B
                                                                                                                                                                                                                                                                      SHA-512:31857C157E5B02BCA225B189843CE912A792A7098CEA580B387977B29E90A33C476DF99AD9F45AD5EB8DA1EFFD8AC3A78870988F60A32D05FA2DA8F47794FACE
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5...............
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.2109792327622175
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2Rcd3+q2PqLTwi23oH+Tcwt8aPrqIFUt8YUyW2RJ/Zmw+YUyW2RJ/VkwOqLF:M2Rdv8wZYebL3FUt8P2RF/+P2RX5TwZE
                                                                                                                                                                                                                                                                      MD5:94E1C21B2F888B735127AA5DF8846E6B
                                                                                                                                                                                                                                                                      SHA1:692FA294AE5630D0D702B817F54069F914B64BC9
                                                                                                                                                                                                                                                                      SHA-256:0808E720C0AC4203FFE91B744E29F92A3F959ED4858FA45EABE28535C4F3DAFB
                                                                                                                                                                                                                                                                      SHA-512:42F683C0A78304150B463823BA848600E76433A6708AC37A9A53499E4351CD204DFE4B90BE6BC61BCE6E8EA8BEC2ABBD536D46A2A99EEFA8789B0CCF7042102D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.745 1f38 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/MANIFEST-000001.2024/11/15-04:45:32.746 1f38 Recovering log #3.2024/11/15-04:45:32.746 1f38 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.2109792327622175
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2Rcd3+q2PqLTwi23oH+Tcwt8aPrqIFUt8YUyW2RJ/Zmw+YUyW2RJ/VkwOqLF:M2Rdv8wZYebL3FUt8P2RF/+P2RX5TwZE
                                                                                                                                                                                                                                                                      MD5:94E1C21B2F888B735127AA5DF8846E6B
                                                                                                                                                                                                                                                                      SHA1:692FA294AE5630D0D702B817F54069F914B64BC9
                                                                                                                                                                                                                                                                      SHA-256:0808E720C0AC4203FFE91B744E29F92A3F959ED4858FA45EABE28535C4F3DAFB
                                                                                                                                                                                                                                                                      SHA-512:42F683C0A78304150B463823BA848600E76433A6708AC37A9A53499E4351CD204DFE4B90BE6BC61BCE6E8EA8BEC2ABBD536D46A2A99EEFA8789B0CCF7042102D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.745 1f38 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/MANIFEST-000001.2024/11/15-04:45:32.746 1f38 Recovering log #3.2024/11/15-04:45:32.746 1f38 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Rules/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):418
                                                                                                                                                                                                                                                                      Entropy (8bit):1.8784775129881184
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:qTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCTCT:qWWWWWWWWWWWWWWWWWWWWW
                                                                                                                                                                                                                                                                      MD5:BF097D724FDF1FCA9CF3532E86B54696
                                                                                                                                                                                                                                                                      SHA1:4039A5DD607F9FB14018185F707944FE7BA25EF7
                                                                                                                                                                                                                                                                      SHA-256:1B8B50A996172C16E93AC48BCB94A3592BEED51D3EF03F87585A1A5E6EC37F6B
                                                                                                                                                                                                                                                                      SHA-512:31857C157E5B02BCA225B189843CE912A792A7098CEA580B387977B29E90A33C476DF99AD9F45AD5EB8DA1EFFD8AC3A78870988F60A32D05FA2DA8F47794FACE
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5...............
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):324
                                                                                                                                                                                                                                                                      Entropy (8bit):5.205922775818257
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2e+q2PqLTwi23oH+Tcwt865IFUt8YUyW25XZmw+YUyW2zVkwOqLTwi23oH+v:M2Pv8wZYeb/WFUt8P2V/+P2Z5TwZYebD
                                                                                                                                                                                                                                                                      MD5:A50B1AEDC975E057F35F3F19C95D5FAD
                                                                                                                                                                                                                                                                      SHA1:1B8F5839E30062C5ABE0B681829A5E79C7AA157E
                                                                                                                                                                                                                                                                      SHA-256:00090EEFCEF1D06E6A0556FB6166DC280FC11E17C412D7556917B875FAE805E0
                                                                                                                                                                                                                                                                      SHA-512:80B7130094E0D8BAC581FC4BB6B17CFD357B56122D3842BEABB9D2A1170C88B2256AC9660369FA7F873DEEC3B0031FE8E04FF6BB1377816D54527A972A55E00A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.752 1f38 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/MANIFEST-000001.2024/11/15-04:45:32.753 1f38 Recovering log #3.2024/11/15-04:45:32.777 1f38 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):324
                                                                                                                                                                                                                                                                      Entropy (8bit):5.205922775818257
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2e+q2PqLTwi23oH+Tcwt865IFUt8YUyW25XZmw+YUyW2zVkwOqLTwi23oH+v:M2Pv8wZYeb/WFUt8P2V/+P2Z5TwZYebD
                                                                                                                                                                                                                                                                      MD5:A50B1AEDC975E057F35F3F19C95D5FAD
                                                                                                                                                                                                                                                                      SHA1:1B8F5839E30062C5ABE0B681829A5E79C7AA157E
                                                                                                                                                                                                                                                                      SHA-256:00090EEFCEF1D06E6A0556FB6166DC280FC11E17C412D7556917B875FAE805E0
                                                                                                                                                                                                                                                                      SHA-512:80B7130094E0D8BAC581FC4BB6B17CFD357B56122D3842BEABB9D2A1170C88B2256AC9660369FA7F873DEEC3B0031FE8E04FF6BB1377816D54527A972A55E00A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.752 1f38 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/MANIFEST-000001.2024/11/15-04:45:32.753 1f38 Recovering log #3.2024/11/15-04:45:32.777 1f38 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension Scripts/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1254
                                                                                                                                                                                                                                                                      Entropy (8bit):1.8784775129881184
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:qWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWA:
                                                                                                                                                                                                                                                                      MD5:826B4C0003ABB7604485322423C5212A
                                                                                                                                                                                                                                                                      SHA1:6B8EF07391CD0301C58BB06E8DEDCA502D59BCB4
                                                                                                                                                                                                                                                                      SHA-256:C56783C3A6F28D9F7043D2FB31B8A956369F25E6CE6441EB7C03480334341A63
                                                                                                                                                                                                                                                                      SHA-512:0474165157921EA84062102743EE5A6AFE500F1F87DE2E87DBFE36C32CFE2636A0AE43D8946342740A843D5C2502EA4932623C609B930FE8511FE7356D4BAA9C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5................f.5........
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.130166723029207
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW+fAq2PqLTwi23oH+Tcwt8NIFUt8YUyWyIhZmw+YUyWyI7kwOqLTwi23oH+TG:MNv8wZYebpFUt8PyE/+Pyk5TwZYebqJ
                                                                                                                                                                                                                                                                      MD5:AFBF39C1CAB2B6D11D6C7B7CE4D0E501
                                                                                                                                                                                                                                                                      SHA1:846E161D0D5E0620595A096C85620FCC366BB4B3
                                                                                                                                                                                                                                                                      SHA-256:4D354A6AFF66384C712E38CA8BBE6853F1D9111043CA301C21E8054CA69C938C
                                                                                                                                                                                                                                                                      SHA-512:3B9284BF0A5C97AE556BB05C0F9C68EE8270AEBAC650E26A065866E9E20E8D152B64BA4CE9B146EB0E06558BF7EF3E58FFFC602780B56A4017B5CA653B7DF343
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.482 1f10 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/MANIFEST-000001.2024/11/15-04:45:33.483 1f10 Recovering log #3.2024/11/15-04:45:33.483 1f10 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.130166723029207
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW+fAq2PqLTwi23oH+Tcwt8NIFUt8YUyWyIhZmw+YUyWyI7kwOqLTwi23oH+TG:MNv8wZYebpFUt8PyE/+Pyk5TwZYebqJ
                                                                                                                                                                                                                                                                      MD5:AFBF39C1CAB2B6D11D6C7B7CE4D0E501
                                                                                                                                                                                                                                                                      SHA1:846E161D0D5E0620595A096C85620FCC366BB4B3
                                                                                                                                                                                                                                                                      SHA-256:4D354A6AFF66384C712E38CA8BBE6853F1D9111043CA301C21E8054CA69C938C
                                                                                                                                                                                                                                                                      SHA-512:3B9284BF0A5C97AE556BB05C0F9C68EE8270AEBAC650E26A065866E9E20E8D152B64BA4CE9B146EB0E06558BF7EF3E58FFFC602780B56A4017B5CA653B7DF343
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.482 1f10 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/MANIFEST-000001.2024/11/15-04:45:33.483 1f10 Recovering log #3.2024/11/15-04:45:33.483 1f10 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Extension State/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):429
                                                                                                                                                                                                                                                                      Entropy (8bit):5.809210454117189
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:Y8U0vEjrAWT0VAUD9lpMXO4SrqiweVHUSENjrAWT0HQQ9/LZyVMQ3xqiweVHlrSQ:Y8U5j0pqCjJA7tNj0pHx/LZ4hcdQ
                                                                                                                                                                                                                                                                      MD5:5D1D9020CCEFD76CA661902E0C229087
                                                                                                                                                                                                                                                                      SHA1:DCF2AA4A1C626EC7FFD9ABD284D29B269D78FCB6
                                                                                                                                                                                                                                                                      SHA-256:B829B0DF7E3F2391BFBA70090EB4CE2BA6A978CCD665EEBF1073849BDD4B8FB9
                                                                                                                                                                                                                                                                      SHA-512:5F6E72720E64A7AC19F191F0179992745D5136D41DCDC13C5C3C2E35A71EB227570BD47C7B376658EF670B75929ABEEBD8EF470D1E24B595A11D320EC1479E3C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"file_hashes":[{"block_hashes":["OdZL4YFLwCTKbdslekC6/+U9KTtDUk+T+nnpVOeRzUc=","6RbL+qKART8FehO4s7U0u67iEI8/jaN+8Kg3kII+uy4=","CuN6+RcZAysZCfrzCZ8KdWDkQqyaIstSrcmsZ/c2MVs="],"block_size":4096,"path":"content.js"},{"block_hashes":["OdZL4YFLwCTKbdslekC6/+U9KTtDUk+T+nnpVOeRzUc=","UL53sQ5hOhAmII/Yx6muXikzahxM+k5gEmVOh7xJ3Rw=","u6MdmVNzBUfDzMwv2LEJ6pXR8k0nnvpYRwOL8aApwP8="],"block_size":4096,"path":"content_new.js"}],"version":2}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with very long lines (1597), with CRLF line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):115717
                                                                                                                                                                                                                                                                      Entropy (8bit):5.183660917461099
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:utDURN77GZqW3v6PD/469IxVBmB22q7LRks3swn0:utAaE2Jt0
                                                                                                                                                                                                                                                                      MD5:3D8183370B5E2A9D11D43EBEF474B305
                                                                                                                                                                                                                                                                      SHA1:155AB0A46E019E834FA556F3D818399BFF02162B
                                                                                                                                                                                                                                                                      SHA-256:6A30BADAD93601FC8987B8239D8907BCBE65E8F1993E4D045D91A77338A2A5B4
                                                                                                                                                                                                                                                                      SHA-512:B7AD04F10CD5DE147BDBBE2D642B18E9ECB2D39851BE1286FDC65FF83985EA30278C95263C98999B6D94683AE1DB86436877C30A40992ACA1743097A2526FE81
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "current_locale": "en-GB",.. "hub_apps": [ {.. "auto_show": {.. "enabled": true,.. "fre_notification": {.. "enabled": true,.. "header": "Was opening this pane helpful to you?",.. "show_count": 2,.. "text": "Was opening this pane helpful to you?".. },.. "settings_description": "We'll automatically open Bing Chat in the sidebar to show you relevant web experiences alongside your web content",.. "settings_title": "Automatically open Bing Chat in the sidebar",.. "triggering_configs|flight:msHubAppsMsnArticleAutoShowTriggering": [ {.. "show_count_basis": "signal",.. "signal_name": "IsMsnArticleAutoOpenFromP1P2",.. "signal_threshold": 0.5.. } ],.. "triggering_configs|flight:msUndersidePersistentChat": [ {.. "signal_name": "IsUndersidePersistentChatLink",.. "signal_threshold": 0.5.. } ],.. "triggering_co
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 7, database pages 12, cookie 0x3, schema 4, UTF-8, version-valid-for 7
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):49152
                                                                                                                                                                                                                                                                      Entropy (8bit):3.647799852569662
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:384:aj9P0Q773pLHjlxQkQerPP/KbtIgam6I0hlcERKToaAu:adx7llxe2PP/SEAERKcC
                                                                                                                                                                                                                                                                      MD5:798AA64BF19CE84882D7EE8E016E08D3
                                                                                                                                                                                                                                                                      SHA1:5E3E5D9BC8E525E39147C88AECE131DA1352932C
                                                                                                                                                                                                                                                                      SHA-256:5B4362AD061B16E14A33195F8317BBAC8F9977F60E259FC36EB06A46550FC2AF
                                                                                                                                                                                                                                                                      SHA-512:40B8E9FE049169192B4B01E8DD6F650ED9A65FBF954E7D097C0A4263C9D543C8720068DE13BC8597B9235B4D33B37E694D5F1847C65830F4D10016255489B8F7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j..........g...:.8....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):404
                                                                                                                                                                                                                                                                      Entropy (8bit):5.297847094567768
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:MxAv8wZYeb8rcHEZrELFUt8PW/+Pq5TwZYeb8rcHEZrEZSJ:Mxy8wZYeb8nZrExg8PX0TwZYeb8nZrE8
                                                                                                                                                                                                                                                                      MD5:D6023D6D536E2B592CC1530E7AC2C186
                                                                                                                                                                                                                                                                      SHA1:6205D92476A097FD05C38DE1823F9F735F695F91
                                                                                                                                                                                                                                                                      SHA-256:61FB768B91AC448464652448E7C468CB94A96CF832F682D3F47EC9A0340F4E70
                                                                                                                                                                                                                                                                      SHA-512:C9DFF1B718F908C44A185C9ED88B14DFBFE7ED6310DA29A0581C16EB61695CB64D51E031069151AC1F4CF806B785B2BE0D77A418F5BAF632CF77774650F9944E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:36.477 1ed8 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/MANIFEST-000001.2024/11/15-04:45:36.478 1ed8 Recovering log #3.2024/11/15-04:45:36.478 1ed8 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):404
                                                                                                                                                                                                                                                                      Entropy (8bit):5.297847094567768
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:MxAv8wZYeb8rcHEZrELFUt8PW/+Pq5TwZYeb8rcHEZrEZSJ:Mxy8wZYeb8nZrExg8PX0TwZYeb8nZrE8
                                                                                                                                                                                                                                                                      MD5:D6023D6D536E2B592CC1530E7AC2C186
                                                                                                                                                                                                                                                                      SHA1:6205D92476A097FD05C38DE1823F9F735F695F91
                                                                                                                                                                                                                                                                      SHA-256:61FB768B91AC448464652448E7C468CB94A96CF832F682D3F47EC9A0340F4E70
                                                                                                                                                                                                                                                                      SHA-512:C9DFF1B718F908C44A185C9ED88B14DFBFE7ED6310DA29A0581C16EB61695CB64D51E031069151AC1F4CF806B785B2BE0D77A418F5BAF632CF77774650F9944E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:36.477 1ed8 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/MANIFEST-000001.2024/11/15-04:45:36.478 1ed8 Recovering log #3.2024/11/15-04:45:36.478 1ed8 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Extension Settings\jdiccldimpdaibmpdkjnbmckianbfold/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):332
                                                                                                                                                                                                                                                                      Entropy (8bit):5.169067526603421
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWxMM+q2PqLTwi23oH+Tcwt8a2jMGIFUt8YUyW9+Zmw+YUyW4+MVkwOqLTwi2o:MxMM+v8wZYeb8EFUt8P4/+PHMV5TwZYL
                                                                                                                                                                                                                                                                      MD5:613FB5288B1CD3017FE6CA6CF0167C52
                                                                                                                                                                                                                                                                      SHA1:5D1B6EFF99845343DCF81429BB6EC02DDAE03C27
                                                                                                                                                                                                                                                                      SHA-256:65D7C8F79C3D107615C06CD9D6D778835EF14F17589BAFEEAD0D1CC6431C691E
                                                                                                                                                                                                                                                                      SHA-512:8B7F159AEC71C5071D3912FF6AD61060144EC055E7BB6820B4648CB20A65928901C6BD9399764A3838D08C6D21CE2BB2AA458682073C5FD14201E146687A7F87
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.166 1ffc Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/MANIFEST-000001.2024/11/15-04:45:33.167 1ffc Recovering log #3.2024/11/15-04:45:33.170 1ffc Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):332
                                                                                                                                                                                                                                                                      Entropy (8bit):5.169067526603421
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWxMM+q2PqLTwi23oH+Tcwt8a2jMGIFUt8YUyW9+Zmw+YUyW4+MVkwOqLTwi2o:MxMM+v8wZYeb8EFUt8P4/+PHMV5TwZYL
                                                                                                                                                                                                                                                                      MD5:613FB5288B1CD3017FE6CA6CF0167C52
                                                                                                                                                                                                                                                                      SHA1:5D1B6EFF99845343DCF81429BB6EC02DDAE03C27
                                                                                                                                                                                                                                                                      SHA-256:65D7C8F79C3D107615C06CD9D6D778835EF14F17589BAFEEAD0D1CC6431C691E
                                                                                                                                                                                                                                                                      SHA-512:8B7F159AEC71C5071D3912FF6AD61060144EC055E7BB6820B4648CB20A65928901C6BD9399764A3838D08C6D21CE2BB2AA458682073C5FD14201E146687A7F87
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.166 1ffc Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/MANIFEST-000001.2024/11/15-04:45:33.167 1ffc Recovering log #3.2024/11/15-04:45:33.170 1ffc Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):40
                                                                                                                                                                                                                                                                      Entropy (8bit):4.1275671571169275
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:Y2ktGMxkAXWMSN:Y2xFMSN
                                                                                                                                                                                                                                                                      MD5:20D4B8FA017A12A108C87F540836E250
                                                                                                                                                                                                                                                                      SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
                                                                                                                                                                                                                                                                      SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
                                                                                                                                                                                                                                                                      SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"SDCH":{"dictionaries":{},"version":2}}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):40
                                                                                                                                                                                                                                                                      Entropy (8bit):4.1275671571169275
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:Y2ktGMxkAXWMSN:Y2xFMSN
                                                                                                                                                                                                                                                                      MD5:20D4B8FA017A12A108C87F540836E250
                                                                                                                                                                                                                                                                      SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
                                                                                                                                                                                                                                                                      SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
                                                                                                                                                                                                                                                                      SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"SDCH":{"dictionaries":{},"version":2}}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 3, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 3
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):20480
                                                                                                                                                                                                                                                                      Entropy (8bit):0.7429706785845666
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:TLSnAFUxOUDaabZXiDiIF8izX4fhhdWeci2oesJaYi3isPnSdvd0dn3ldjt9d6XF:TLSOUOq0afDdWec9sJQ3tOXI7J5fc
                                                                                                                                                                                                                                                                      MD5:E837EA6D04D8BF6E6EB3DE44A0D55B3B
                                                                                                                                                                                                                                                                      SHA1:4B9760FAE3A4790477529EA827DFBAF077B626A6
                                                                                                                                                                                                                                                                      SHA-256:9AA122EA750652A4771847ED1329C17F416979053EDA385A99EC10C90AE04EB5
                                                                                                                                                                                                                                                                      SHA-512:1BFDF7E6574A2DA534265F8B6D8641CBC5E841FF445825E7E1634B70D40EC2D62016CBD34A0C739CD2F630A6587EA01B28CA9DA9534C9AD81E9B32CC49019AA5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):9585
                                                                                                                                                                                                                                                                      Entropy (8bit):5.104507974492643
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:sttkdw6sG0CIJZVkQaI8sbV+FTnQAyaCPpYJ:sttasG0CiZdbG7Qy
                                                                                                                                                                                                                                                                      MD5:BC729EEE4BE7C7B885EB7D01ED508E6D
                                                                                                                                                                                                                                                                      SHA1:EF8D9FFA0F89B136F4D7ED65D1EB5F47E2402E34
                                                                                                                                                                                                                                                                      SHA-256:2CC7F5BCDF2C93B6FB84B812B9CD9D91E8BC36A22830A15C34EFC457E2BD7DEC
                                                                                                                                                                                                                                                                      SHA-512:3442635BDA860C440D67D756ABF0148DCB697AC8B7B2F0855398F10A70929CC043F9564D069F8CCCDF046E453E51F4D20C6BCB02B8B1C011C3C180BA10BB032C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"aadc_info":{"age_group":0},"account_tracker_service_last_update":"13376137533265150","alternate_error_pages":{"backup":true},"apps":{"shortcuts_arch":"","shortcuts_version":0},"arbitration_experiences":{},"arbitration_local_nsat_reset_time":"13340970644573687","arbitration_using_experiment_config":false,"autocomplete":{"retention_policy_last_version":117},"browser":{"available_dark_theme_options":"All","has_seen_welcome_page":false,"should_reset_check_default_browser":false,"toolbar_extensions_hub_button_visibility":0,"underside_chat_bing_signed_in_status":false,"window_placement":{"bottom":-1436,"left":-2400,"maximized":false,"right":-1350,"top":-2400,"work_area_bottom":984,"work_area_left":0,"work_area_right":1280,"work_area_top":0}},"browser_content_container_height":853,"browser_content_container_width":1006,"browser_content_container_x":0,"browser_content_container_y":111,"continuous_migration":{"ci_correction_for_holdout_treatment_state":1,"datatype_details_migration_performed"
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):26730
                                                                                                                                                                                                                                                                      Entropy (8bit):5.574127240378702
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:768:nXEpZyWPoCffG8F1+UoAYDCx9Tuqh0VfUC9xbog/OVgnkamAjrwXepBtuP:nXEpZyWPoCffGu1ja9nkjAYXkto
                                                                                                                                                                                                                                                                      MD5:E4823F63967E9E1E59B1192C8A6E5317
                                                                                                                                                                                                                                                                      SHA1:51E8A7E55C995B3DC11E98936987C26ABB4D48A0
                                                                                                                                                                                                                                                                      SHA-256:146A5ACFEB1664A7941E4518BCA1CC41E35AF31E7F3072BE47024037385FE951
                                                                                                                                                                                                                                                                      SHA-512:54A636664FBDC1AAA6ECDED2F9A475127EF5E4D184388BEC091D235C79CB893A3584E0CB89FB709F297AA958DCAD4EBA052B31373A4DE632EF42BC3004ED0273
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"edge_fundamentals_appdefaults":{"ess_lightweight_version":101},"ess_kv_states":{"restore_on_startup":{"closed_notification":false,"decrypt_success":true,"key":"restore_on_startup","notification_popup_count":0},"startup_urls":{"closed_notification":false,"decrypt_success":true,"key":"startup_urls","notification_popup_count":0},"template_url_data":{"closed_notification":false,"decrypt_success":true,"key":"template_url_data","notification_popup_count":0}},"extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":{"active_permissions":{"api":["management","system.display","system.storage","webstorePrivate","system.cpu","system.memory","system.network"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"app_launcher_ordinal":"t","commands":{},"content_settings":[],"creation_flags":1,"events":[],"first_install_time":"13376137532738946","from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"last_update_time":"13376137532738946","location":5,"ma
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):242
                                                                                                                                                                                                                                                                      Entropy (8bit):4.3517649689467675
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:S85aEFljljljljlMillaV935DcO0/VwYdUV:S+a8ljljljljltlc5QO0/HW
                                                                                                                                                                                                                                                                      MD5:B7B4ADD733F4318C79FD37019F520989
                                                                                                                                                                                                                                                                      SHA1:242C05B1E777597CA1C19B79B1E711BAFC814DBB
                                                                                                                                                                                                                                                                      SHA-256:8B9AF75D9811541972F488D9793CAE5868BFDD039A93FF379899C0954A822DD4
                                                                                                                                                                                                                                                                      SHA-512:22080E579033CA71720E89A29CB72E79DFA98B8D50EC3E8E4C5C9B1187645E5D0EE691775AA26B8F2011A487C2B8D79A862D3D15F01C01A0DCD071DCB88E439D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:*...#................version.1..namespace-..&f.................&f.................&f.................&f.................&f.................B.b................next-map-id.1.Cnamespace-27691af7_d399_4a89_af04_f99a884ae837-https://ntp.msn.com/.0
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.1452818969490535
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWsM+q2PqLTwi23oH+TcwtrQMxIFUt8YUyWtZZmw+YUyW+kMVkwOqLTwi23oHs:MsM+v8wZYebCFUt8PtZ/+P+kMV5TwZYM
                                                                                                                                                                                                                                                                      MD5:57985F781D754FCA544F44F937AE6B4F
                                                                                                                                                                                                                                                                      SHA1:4629149D20D2A89874A833034EFA60AB5C10299E
                                                                                                                                                                                                                                                                      SHA-256:6512A23B988DD32C578F77A414EC026F53ED170AEFF4EA14A0647195D486E0A9
                                                                                                                                                                                                                                                                      SHA-512:F5A450E52D411119A24285E7DA7DD3C0D6D14264F49E0FA04487F30BC5568BDE74DCCB679DB401B88C2CA6BFB55FF5850AF8AE05A3B67ED0737D780C2F622400
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.630 1ffc Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/MANIFEST-000001.2024/11/15-04:45:33.636 1ffc Recovering log #3.2024/11/15-04:45:33.648 1ffc Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.1452818969490535
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWsM+q2PqLTwi23oH+TcwtrQMxIFUt8YUyWtZZmw+YUyW+kMVkwOqLTwi23oHs:MsM+v8wZYebCFUt8PtZ/+P+kMV5TwZYM
                                                                                                                                                                                                                                                                      MD5:57985F781D754FCA544F44F937AE6B4F
                                                                                                                                                                                                                                                                      SHA1:4629149D20D2A89874A833034EFA60AB5C10299E
                                                                                                                                                                                                                                                                      SHA-256:6512A23B988DD32C578F77A414EC026F53ED170AEFF4EA14A0647195D486E0A9
                                                                                                                                                                                                                                                                      SHA-512:F5A450E52D411119A24285E7DA7DD3C0D6D14264F49E0FA04487F30BC5568BDE74DCCB679DB401B88C2CA6BFB55FF5850AF8AE05A3B67ED0737D780C2F622400
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.630 1ffc Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/MANIFEST-000001.2024/11/15-04:45:33.636 1ffc Recovering log #3.2024/11/15-04:45:33.648 1ffc Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Session Storage/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1323
                                                                                                                                                                                                                                                                      Entropy (8bit):3.722801719232358
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:3RY2AtJ/gVopsAF4unx/gtLp3X2amEtG1Chqt0plFnHQKkOAM4cqP77:3XAtJ/FzFP+Lp2FEkCh26FnwHOpU7
                                                                                                                                                                                                                                                                      MD5:2ECB9B648D6400136B248DBA73863113
                                                                                                                                                                                                                                                                      SHA1:9FCF3163FD4DBCBD1B0B00D60E9A821264D4E3FD
                                                                                                                                                                                                                                                                      SHA-256:5F3132293306565D7D4E3C858B510C97F64F5AFC0D1F18C3F93518FD51434590
                                                                                                                                                                                                                                                                      SHA-512:2E446E7023CD8E89AD302DF69AA96280B60997F34330ECA3D3F315FE486F1BAD61D5994785CE10761519579045129E140EDD86D894B209488F2C4EE22CB7C4E4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SNSS........!.P............!.P......".!.P............!.P........!.P........!.P........!.P....!...!.P................................!.P.!.P1..,....!.P$...27691af7_d399_4a89_af04_f99a884ae837....!.P........!.P....dND.........!.P.......!.P............!.P........edge://newtab/......N.e.w. .t.a.b...........!...............................................................x...............................x.......V..m.&..W..m.&.................................. ...................................................r...h.t.t.p.s.:././.n.t.p...m.s.n...c.o.m./.e.d.g.e./.n.t.p.?.l.o.c.a.l.e.=.e.n.-.G.B.&.t.i.t.l.e.=.N.e.w.%.2.0.t.a.b.&.d.s.p.=.1.&.s.p.=.B.i.n.g.&.i.s.F.R.E.M.o.d.a.l.B.a.c.k.g.r.o.u.n.d.=.1.&.s.t.a.r.t.p.a.g.e.=.1.&.P.C.=.U.5.3.1.....................................8.......0.......8....................................................................... .......................................................P...$...c.6.2.2.5.7.1.4.-.2.8.f.b.-.4.4.1.b.-.b.4.5.c.-.f.c.e.b.0.e.2.7.7.e.8.e.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 5, cookie 0x2, schema 4, UTF-8, version-valid-for 1
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):20480
                                                                                                                                                                                                                                                                      Entropy (8bit):0.44194574462308833
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:TLiNCcUMskMVcIWGhWxBzEXx7AAQlvsdFxOUwa5qgufTJpbZ75fOS:TLisVMnYPhIY5Qlvsd6UwccNp15fB
                                                                                                                                                                                                                                                                      MD5:B35F740AA7FFEA282E525838EABFE0A6
                                                                                                                                                                                                                                                                      SHA1:A67822C17670CCE0BA72D3E9C8DA0CE755A3421A
                                                                                                                                                                                                                                                                      SHA-256:5D599596D116802BAD422497CF68BE59EEB7A9135E3ED1C6BEACC48F73827161
                                                                                                                                                                                                                                                                      SHA-512:05C0D33516B2C1AB6928FB34957AD3E03CB0A8B7EEC0FD627DD263589655A16DEA79100B6CC29095C3660C95FD2AFB2E4DD023F0597BD586DD664769CABB67F8
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j..........g....."....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):348
                                                                                                                                                                                                                                                                      Entropy (8bit):5.131798695295724
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2dXt+q2PqLTwi23oH+Tcwt7Uh2ghZIFUt8YUyWZXWZmw+YUyWAUKiVkwOqL1:M2d9+v8wZYebIhHh2FUt8PZXW/+PAdiV
                                                                                                                                                                                                                                                                      MD5:5F32FCF9E34556858C551A06E9EA59B1
                                                                                                                                                                                                                                                                      SHA1:543BCBCC98360886D23F26392839B5E169F72E86
                                                                                                                                                                                                                                                                      SHA-256:1AFDCA8448046E8410A8FD4B7E0B9AA55D3EEC789C19263DE955C88D7F8E6B6C
                                                                                                                                                                                                                                                                      SHA-512:84C5728DBD96D6A5811F42B5C88B67273BD8289A70AB8B45091F27C75DED401EA63A01777B1A37203A8164FDC835F975EB6B04AFEDB29520617CD814DC1925A6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.783 1f3c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/MANIFEST-000001.2024/11/15-04:45:32.800 1f3c Recovering log #3.2024/11/15-04:45:32.801 1f3c Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):348
                                                                                                                                                                                                                                                                      Entropy (8bit):5.131798695295724
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2dXt+q2PqLTwi23oH+Tcwt7Uh2ghZIFUt8YUyWZXWZmw+YUyWAUKiVkwOqL1:M2d9+v8wZYebIhHh2FUt8PZXW/+PAdiV
                                                                                                                                                                                                                                                                      MD5:5F32FCF9E34556858C551A06E9EA59B1
                                                                                                                                                                                                                                                                      SHA1:543BCBCC98360886D23F26392839B5E169F72E86
                                                                                                                                                                                                                                                                      SHA-256:1AFDCA8448046E8410A8FD4B7E0B9AA55D3EEC789C19263DE955C88D7F8E6B6C
                                                                                                                                                                                                                                                                      SHA-512:84C5728DBD96D6A5811F42B5C88B67273BD8289A70AB8B45091F27C75DED401EA63A01777B1A37203A8164FDC835F975EB6B04AFEDB29520617CD814DC1925A6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.783 1f3c Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/MANIFEST-000001.2024/11/15-04:45:32.800 1f3c Recovering log #3.2024/11/15-04:45:32.801 1f3c Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Site Characteristics Database/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):430
                                                                                                                                                                                                                                                                      Entropy (8bit):5.243880501828377
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:My2v8wZYebvqBQFUt8PGQ/+PTn5TwZYebvqBvJ:Mt8wZYebvZg8PMVTwZYebvk
                                                                                                                                                                                                                                                                      MD5:AE23145E8209CFBA8CDD760E2267FF37
                                                                                                                                                                                                                                                                      SHA1:F1A9B5DFCA67746330D082AE403C8B95DDED0085
                                                                                                                                                                                                                                                                      SHA-256:B4E3B528E000C1FCEEC7E788318B99A90F7B591F2A44AE69ABEBC9C6CEF3BB0B
                                                                                                                                                                                                                                                                      SHA-512:997DCE06F15E790E6654EE0267863C08FE977E21AC7156FE2E39D938F3EAB7A00BF3EEB68B522DE481D93BE9239D8C10E5A8A961AF34BE2D68462B8373891BDD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.644 1c24 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/MANIFEST-000001.2024/11/15-04:45:33.649 1c24 Recovering log #3.2024/11/15-04:45:33.658 1c24 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):430
                                                                                                                                                                                                                                                                      Entropy (8bit):5.243880501828377
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:My2v8wZYebvqBQFUt8PGQ/+PTn5TwZYebvqBvJ:Mt8wZYebvZg8PMVTwZYebvk
                                                                                                                                                                                                                                                                      MD5:AE23145E8209CFBA8CDD760E2267FF37
                                                                                                                                                                                                                                                                      SHA1:F1A9B5DFCA67746330D082AE403C8B95DDED0085
                                                                                                                                                                                                                                                                      SHA-256:B4E3B528E000C1FCEEC7E788318B99A90F7B591F2A44AE69ABEBC9C6CEF3BB0B
                                                                                                                                                                                                                                                                      SHA-512:997DCE06F15E790E6654EE0267863C08FE977E21AC7156FE2E39D938F3EAB7A00BF3EEB68B522DE481D93BE9239D8C10E5A8A961AF34BE2D68462B8373891BDD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.644 1c24 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/MANIFEST-000001.2024/11/15-04:45:33.649 1c24 Recovering log #3.2024/11/15-04:45:33.658 1c24 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Storage\ext\ihmafllikibpmigkcoadcmckbfhibefp\def\Local Storage\leveldb/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):40
                                                                                                                                                                                                                                                                      Entropy (8bit):4.1275671571169275
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:Y2ktGMxkAXWMSN:Y2xFMSN
                                                                                                                                                                                                                                                                      MD5:20D4B8FA017A12A108C87F540836E250
                                                                                                                                                                                                                                                                      SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
                                                                                                                                                                                                                                                                      SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
                                                                                                                                                                                                                                                                      SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"SDCH":{"dictionaries":{},"version":2}}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:H:H
                                                                                                                                                                                                                                                                      MD5:D751713988987E9331980363E24189CE
                                                                                                                                                                                                                                                                      SHA1:97D170E1550EEE4AFC0AF065B78CDA302A97674C
                                                                                                                                                                                                                                                                      SHA-256:4F53CDA18C2BAA0C0354BB5F9A3ECBE5ED12AB4D8E11BA873C2F11161202B945
                                                                                                                                                                                                                                                                      SHA-512:B25B294CB4DEB69EA00A4C3CF3113904801B6015E5956BD019A8570B1FE1D6040E944EF3CDEE16D0A46503CA6E659A25F21CF9CEDDC13F352A3C98138C15D6AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[]
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):40
                                                                                                                                                                                                                                                                      Entropy (8bit):4.1275671571169275
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:Y2ktGMxkAXWMSN:Y2xFMSN
                                                                                                                                                                                                                                                                      MD5:20D4B8FA017A12A108C87F540836E250
                                                                                                                                                                                                                                                                      SHA1:1AC617FAC131262B6D3CE1F52F5907E31D5F6F00
                                                                                                                                                                                                                                                                      SHA-256:6028BD681DBF11A0A58DDE8A0CD884115C04CAA59D080BA51BDE1B086CE0079D
                                                                                                                                                                                                                                                                      SHA-512:507B2B8A8A168FF8F2BDAFA5D9D341C44501A5F17D9F63F3D43BD586BC9E8AE33221887869FA86F845B7D067CB7D2A7009EFD71DDA36E03A40A74FEE04B86856
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"SDCH":{"dictionaries":{},"version":2}}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 4, database pages 9, cookie 0x7, schema 4, UTF-8, version-valid-for 4
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):36864
                                                                                                                                                                                                                                                                      Entropy (8bit):0.3886039372934488
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:TLqEeWOT/kIAoDJ84l5lDlnDMlRlyKDtM6UwccWfp15fBIe:T2EeWOT/nDtX5nDOvyKDhU1cSB
                                                                                                                                                                                                                                                                      MD5:DEA619BA33775B1BAEEC7B32110CB3BD
                                                                                                                                                                                                                                                                      SHA1:949B8246021D004B2E772742D34B2FC8863E1AAA
                                                                                                                                                                                                                                                                      SHA-256:3669D76771207A121594B439280A67E3A6B1CBAE8CE67A42C8312D33BA18854B
                                                                                                                                                                                                                                                                      SHA-512:7B9741E0339B30D73FACD4670A9898147BE62B8F063A59736AFDDC83D3F03B61349828F2AE88F682D42C177AE37E18349FD41654AEBA50DDF10CD6DC70FA5879
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j..........g...}.....$.X..............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):324
                                                                                                                                                                                                                                                                      Entropy (8bit):5.215038385576445
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2Tq2PqLTwi23oH+TcwtpIFUt8YUyW2OOZmw+YUyW2gkwOqLTwi23oH+Tcwt7:M2Tv8wZYebmFUt8P2T/+P2g5TwZYebaQ
                                                                                                                                                                                                                                                                      MD5:8D098E16EC7C71EAA462903C8F4DABB3
                                                                                                                                                                                                                                                                      SHA1:B5B01764AFA51A192F20E9754422739BB6767A31
                                                                                                                                                                                                                                                                      SHA-256:18947296ED77AD6DE156803FDEF07335F243328C516B807855008920BF126AF2
                                                                                                                                                                                                                                                                      SHA-512:F7B9A3AA17CD330A8C94D0669EF421D98EB6327256550457B312BF659EDB625B780B10562F69C508AA4C21F5ED68F6F43C1BAC29BD3A044F68E6CFC6DA2629DF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.737 1f40 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/MANIFEST-000001.2024/11/15-04:45:32.738 1f40 Recovering log #3.2024/11/15-04:45:32.739 1f40 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):324
                                                                                                                                                                                                                                                                      Entropy (8bit):5.215038385576445
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyW2Tq2PqLTwi23oH+TcwtpIFUt8YUyW2OOZmw+YUyW2gkwOqLTwi23oH+Tcwt7:M2Tv8wZYebmFUt8P2T/+P2g5TwZYebaQ
                                                                                                                                                                                                                                                                      MD5:8D098E16EC7C71EAA462903C8F4DABB3
                                                                                                                                                                                                                                                                      SHA1:B5B01764AFA51A192F20E9754422739BB6767A31
                                                                                                                                                                                                                                                                      SHA-256:18947296ED77AD6DE156803FDEF07335F243328C516B807855008920BF126AF2
                                                                                                                                                                                                                                                                      SHA-512:F7B9A3AA17CD330A8C94D0669EF421D98EB6327256550457B312BF659EDB625B780B10562F69C508AA4C21F5ED68F6F43C1BAC29BD3A044F68E6CFC6DA2629DF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:32.737 1f40 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/MANIFEST-000001.2024/11/15-04:45:32.738 1f40 Recovering log #3.2024/11/15-04:45:32.739 1f40 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 9, database pages 91, cookie 0x36, schema 4, UTF-8, version-valid-for 9
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):196608
                                                                                                                                                                                                                                                                      Entropy (8bit):1.2662392146115866
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:384:KrJ/2qOB1nxCkMRSAELyKOMq+8ETZKoxAXCVumj:K0q+n0JR9ELyKOMq+8ET8cU8
                                                                                                                                                                                                                                                                      MD5:E686CA95023BA861EE28CD99020A5155
                                                                                                                                                                                                                                                                      SHA1:D37C1578DF33CA89B7A8B236699C72781397507A
                                                                                                                                                                                                                                                                      SHA-256:CFE55C82B8432F5ED2AA9D570CC7A57C3E740D9520B1841772FB390E7EC029B1
                                                                                                                                                                                                                                                                      SHA-512:D17E8AD13E1BB3A93F917DA097BD645B39C98A11DE91A0A9124F2D91B82C2F01DDC7ED1CB082C1B89333F7F5392A89B7E18632EB9D190D061CC6D1AE94F8A58B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ .......[...........6......................................................j............W........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 10, cookie 0x7, schema 4, UTF-8, version-valid-for 1
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):40960
                                                                                                                                                                                                                                                                      Entropy (8bit):0.39689531567966974
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:Tnj7dojKsKmjKZKAsjZNOjAhts3N8g1j3U1+B:v7doKsKuKZKlZNmu46yjV
                                                                                                                                                                                                                                                                      MD5:28DD4D415CD776104AADAC48A93053E8
                                                                                                                                                                                                                                                                      SHA1:1860BBC6ECBF6853485A66E6EED0790924CE7692
                                                                                                                                                                                                                                                                      SHA-256:802FE410377F4A75678FC654A75CC3DA28E7BB682A7215BF55505EF4E3FFB910
                                                                                                                                                                                                                                                                      SHA-512:52E583C2EB0C25021B406DC200932BA28479E68AD5E8C8E418E9A5747714DF13280B1D5E178A726CD23F4A22C412EF8BEF3AD433B2B52946C838243FD2C29592
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j.......w..g...........M...w..........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):8720
                                                                                                                                                                                                                                                                      Entropy (8bit):0.21894699840838347
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:Ll1/lNlljq7A/mhWJFuQ3yy7IOWUxcyV4dweytllrE9SFcVpNGcV1vG0OV9RUI7y:zk75fOkQ4d0Xi97pJ1e06k
                                                                                                                                                                                                                                                                      MD5:85C09BEA53E5E3345AD7FE7488E648E2
                                                                                                                                                                                                                                                                      SHA1:479FAE96BB9F17AF59302F3D2BB4A90605D2BFF2
                                                                                                                                                                                                                                                                      SHA-256:DF8D773C58EDEE4E1235CBB7DB577D999C44AEC9839C522CD96D987688B8AB1E
                                                                                                                                                                                                                                                                      SHA-512:06590A9F6ED7402BFF0241E379AB3A6CED68C7102B0E64695FD326A9F4F14CBE911658128459604AC44887B06D79AEFD8CD26916023CD995D29F09FC78B9ED12
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............W.y.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with very long lines (3951), with CRLF line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):11755
                                                                                                                                                                                                                                                                      Entropy (8bit):5.190465908239046
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:hH4vrmqRBB4W4PoiUDNaxvR5FCHFcoaSbqGEDI:hH4vrmUB6W4jR3GaSbqGEDI
                                                                                                                                                                                                                                                                      MD5:07301A857C41B5854E6F84CA00B81EA0
                                                                                                                                                                                                                                                                      SHA1:7441FC1018508FF4F3DBAA139A21634C08ED979C
                                                                                                                                                                                                                                                                      SHA-256:2343C541E095E1D5F202E8D2A0807113E69E1969AF8E15E3644C51DB0BF33FBF
                                                                                                                                                                                                                                                                      SHA-512:00ADE38E9D2F07C64648202F1D5F18A2DFB2781C0517EAEBCD567D8A77DBB7CB40A58B7C7D4EC03336A63A20D2E11DD64448F020C6FF72F06CA870AA2B4765E0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "DefaultCohort": {.. "21f3388b-c2a5-4791-8f6e-a4cad6d17f4f.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.BingHomePage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Covid.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Finance.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Jobs.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.KnowledgeCard.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Local.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.NTP3PCLICK.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.NotifySearchPage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Recipe.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.SearchPage.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Sports.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Travel.Bubble": 1,.. "2354565a-f412-4654-b89c-f92eaa9dbd20.Weather.Bubble": 1,.. "2cb2db96-3bd0-403e-abe2-9269b3761041.Bubble": 1,.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with very long lines (1597), with CRLF line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):115717
                                                                                                                                                                                                                                                                      Entropy (8bit):5.183660917461099
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:utDURN77GZqW3v6PD/469IxVBmB22q7LRks3swn0:utAaE2Jt0
                                                                                                                                                                                                                                                                      MD5:3D8183370B5E2A9D11D43EBEF474B305
                                                                                                                                                                                                                                                                      SHA1:155AB0A46E019E834FA556F3D818399BFF02162B
                                                                                                                                                                                                                                                                      SHA-256:6A30BADAD93601FC8987B8239D8907BCBE65E8F1993E4D045D91A77338A2A5B4
                                                                                                                                                                                                                                                                      SHA-512:B7AD04F10CD5DE147BDBBE2D642B18E9ECB2D39851BE1286FDC65FF83985EA30278C95263C98999B6D94683AE1DB86436877C30A40992ACA1743097A2526FE81
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "current_locale": "en-GB",.. "hub_apps": [ {.. "auto_show": {.. "enabled": true,.. "fre_notification": {.. "enabled": true,.. "header": "Was opening this pane helpful to you?",.. "show_count": 2,.. "text": "Was opening this pane helpful to you?".. },.. "settings_description": "We'll automatically open Bing Chat in the sidebar to show you relevant web experiences alongside your web content",.. "settings_title": "Automatically open Bing Chat in the sidebar",.. "triggering_configs|flight:msHubAppsMsnArticleAutoShowTriggering": [ {.. "show_count_basis": "signal",.. "signal_name": "IsMsnArticleAutoOpenFromP1P2",.. "signal_threshold": 0.5.. } ],.. "triggering_configs|flight:msUndersidePersistentChat": [ {.. "signal_name": "IsUndersidePersistentChatLink",.. "signal_threshold": 0.5.. } ],.. "triggering_co
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:very short file (no magic)
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1
                                                                                                                                                                                                                                                                      Entropy (8bit):0.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:L:L
                                                                                                                                                                                                                                                                      MD5:5058F1AF8388633F609CADB75A75DC9D
                                                                                                                                                                                                                                                                      SHA1:3A52CE780950D4D969792A2559CD519D7EE8C727
                                                                                                                                                                                                                                                                      SHA-256:CDB4EE2AEA69CC6A83331BBE96DC2CAA9A299D21329EFB0336FC02A82E1839A8
                                                                                                                                                                                                                                                                      SHA-512:0B61241D7C17BCBB1BAEE7094D14B7C451EFECC7FFCBD92598A0F13D313CC9EBC2A07E61F007BAF58FBF94FF9A8695BDD5CAE7CE03BBF1E94E93613A00F25F21
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, file counter 1, database pages 7, cookie 0x4, schema 4, UTF-8, version-valid-for 1
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):28672
                                                                                                                                                                                                                                                                      Entropy (8bit):0.3410017321959524
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:TLiqi/nGb0EiDFIlTSFbyrKZb9YwFOqAyl+FxOUwa5qgufTJpbZ75fOSG:TLiMNiD+lZk/Fj+6UwccNp15fBG
                                                                                                                                                                                                                                                                      MD5:98643AF1CA5C0FE03CE8C687189CE56B
                                                                                                                                                                                                                                                                      SHA1:ECADBA79A364D72354C658FD6EA3D5CF938F686B
                                                                                                                                                                                                                                                                      SHA-256:4DC3BF7A36AB5DA80C0995FAF61ED0F96C4DE572F2D6FF9F120F9BC44B69E444
                                                                                                                                                                                                                                                                      SHA-512:68B69FCE8EF5AB1DDA2994BA4DB111136BD441BC3EFC0251F57DC20A3095B8420669E646E2347EAB7BAF30CACA4BCF74BD88E049378D8DE57DE72E4B8A5FF74B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j..........g.....P....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):32768
                                                                                                                                                                                                                                                                      Entropy (8bit):0.054107436562665055
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:GtStutoEIA4StutoEIY/lyR9XCChslotGLNl0ml/Vl/XoQXEl:Mt3IAGt3IYtyLpEjVl/PvoQ
                                                                                                                                                                                                                                                                      MD5:6A54D068281F6FCF57096769BAF6CD93
                                                                                                                                                                                                                                                                      SHA1:95F6C99D4F10D43DD278BFDAC0B3D839F349ABD6
                                                                                                                                                                                                                                                                      SHA-256:BFE46EE2998DA7B0F1E353FE6245A8BC471DBFB94017C12DF9D7E7D42DE586A5
                                                                                                                                                                                                                                                                      SHA-512:1FE42783E738213A7840C6C7130414FA9E940CF87ADE4F952F32F231876CC78A2D7640EC3A4E78A146DB427BDC4963027D242D405599DE9260CB4AEAD2183E6F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..-.....................l...3Fi.F{.....h (.&......-.....................l...3Fi.F{.....h (.&............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:SQLite Write-Ahead Log, version 3007000
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):86552
                                                                                                                                                                                                                                                                      Entropy (8bit):0.8706804217058598
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:7zxcclO+K9cbX+qhn9VAKAFXX+r2VAKAFXX+HxOqVAKAFXX+qnUYVAKAFXX+cTfl:fx1KX1NspNsRO5NslNscx
                                                                                                                                                                                                                                                                      MD5:1C8BC8E7856E52A564B4CC13EAB006A0
                                                                                                                                                                                                                                                                      SHA1:4D8124754E1BA0BDF41E8115E448BDBA0310BE1D
                                                                                                                                                                                                                                                                      SHA-256:AD5A03E4D67BB706E97B4A76F9D83C5DD83E42EED9D387EBB431010DAB837024
                                                                                                                                                                                                                                                                      SHA-512:4D536496F6E90BF25469ACAA52032DDDAB8E88C5B0722C38B888B0B544A4F25E658232FC13C0CC3049B7750A2B1CCBDFF0776C290ADCE579991F592FC152407F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:7....-..........F{.....hn.~Y.C,.........F{.....h./......SQLite format 3......@ ..........................................................................j.............................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):345
                                                                                                                                                                                                                                                                      Entropy (8bit):3.344384486833395
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:VVXntjQPEnjQhS/l3seGKT9rcQ6xeAyOtlTxotlTxotlTxotlTxotlTxotlTxot0:/XntM+4il3sedhOeAyOuuuuuuuuuuu
                                                                                                                                                                                                                                                                      MD5:8D7F0F5A5F3508200923B058A27A0365
                                                                                                                                                                                                                                                                      SHA1:B174FFB2BC29C876EE69FD3060B2D674656AF29E
                                                                                                                                                                                                                                                                      SHA-256:E54CB516CEF49C04642CF3AEB04BE6FDCC00BD23F4CF18FFBA3A51459F9A597C
                                                                                                                                                                                                                                                                      SHA-512:841FD14ED38EE8284F04EE4F91EBF7C99DED15E111D4D2CDE8AFA6A5C61EC74FE92C0193B87705A657F24F367A825B79B2F1E9F8DB7C014F97256374A6AE28CD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:A..r.................20_1_1...1.,U.................20_1_1...1.9.0................39_config..........6.....n ....1u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............u}.=...............
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.188460328090498
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWbIq2PqLTwi23oH+TcwtfrK+IFUt8YUyWdoXZmw+YUyWdoFkwOqLTwi23oH+t:MbIv8wZYeb23FUt8PdE/+Pdk5TwZYeb5
                                                                                                                                                                                                                                                                      MD5:1F0AEEB02044D974267DA962477DD2A9
                                                                                                                                                                                                                                                                      SHA1:1DEE05880103FC982B61EA867C5A3FA7A4EE723F
                                                                                                                                                                                                                                                                      SHA-256:0381AC8F46375F583301D1B746961EBA7DC86D6D9FEDABF8B2275505E8153E32
                                                                                                                                                                                                                                                                      SHA-512:E4B1A15B976B012A28F20C82F0A714DBDF1B415082C3B982E1C7B76D8B6F63FF87D28157FBAFBF8195779472591EA26402C88A79E3E5C11E35BEF8BEFA06AC10
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.298 1f10 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/MANIFEST-000001.2024/11/15-04:45:33.303 1f10 Recovering log #3.2024/11/15-04:45:33.303 1f10 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):320
                                                                                                                                                                                                                                                                      Entropy (8bit):5.188460328090498
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWbIq2PqLTwi23oH+TcwtfrK+IFUt8YUyWdoXZmw+YUyWdoFkwOqLTwi23oH+t:MbIv8wZYeb23FUt8PdE/+Pdk5TwZYeb5
                                                                                                                                                                                                                                                                      MD5:1F0AEEB02044D974267DA962477DD2A9
                                                                                                                                                                                                                                                                      SHA1:1DEE05880103FC982B61EA867C5A3FA7A4EE723F
                                                                                                                                                                                                                                                                      SHA-256:0381AC8F46375F583301D1B746961EBA7DC86D6D9FEDABF8B2275505E8153E32
                                                                                                                                                                                                                                                                      SHA-512:E4B1A15B976B012A28F20C82F0A714DBDF1B415082C3B982E1C7B76D8B6F63FF87D28157FBAFBF8195779472591EA26402C88A79E3E5C11E35BEF8BEFA06AC10
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.298 1f10 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/MANIFEST-000001.2024/11/15-04:45:33.303 1f10 Recovering log #3.2024/11/15-04:45:33.303 1f10 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):753
                                                                                                                                                                                                                                                                      Entropy (8bit):4.037333775091125
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:G0nYUtTNop//z3p/Uz0RuWlJhC+lvBavRtin01zvZDEtlkyBrgxvBs:G0nYUtypD3RUovhC+lvBOL+t3IvBs
                                                                                                                                                                                                                                                                      MD5:C5675C35B320A0898802E1ECFD3476E8
                                                                                                                                                                                                                                                                      SHA1:B6CA1C2EE1340662A7B495778416988006748327
                                                                                                                                                                                                                                                                      SHA-256:8E60BB9B60A9A242D016CF5425FF3D76A94911F197B3E4AB08A417E39C2832A5
                                                                                                                                                                                                                                                                      SHA-512:DAA3E9FADF4F69A88600460F48116E50BCE1C979E4AFA7114D1B8CCEC6626520CC3725D0BB845E0FCC8587A8690D4AC495C138AB1AAC2981CAEB9C485FA0CC67
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.h.6.................__global... .t...................__global... .9..b.................33_..........................33_........v.................21_.....vuNX.................21_.....<...................20_.....,.1..................19_.....QL.s.................18_.....<.J|.................37_...... .A.................38_..........................39_........].................20_.....Owa..................20_.....`..N.................19_.....D8.X.................18_......`...................37_..........................38_......\e..................39_.....dz.|.................9_.....'\c..................9_.......f-.................__global... .|.&R.................__global... ./....................__global... ..T...................__global... .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):338
                                                                                                                                                                                                                                                                      Entropy (8bit):5.197716078847121
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWPa9q2PqLTwi23oH+TcwtfrzAdIFUt8YUyWOXZmw+YUyW1zkwOqLTwi23oH++:MPa9v8wZYeb9FUt8Pe/+Pd5TwZYeb2J
                                                                                                                                                                                                                                                                      MD5:9FFF97951729A8DC3816DF1033ECC510
                                                                                                                                                                                                                                                                      SHA1:A4926A87D27A41103E0194CB3EDF9B9FF2C70972
                                                                                                                                                                                                                                                                      SHA-256:225DECF631DCE47072BAA9415AC35DFA88793E0A6E998CD60C21F2EA54C58569
                                                                                                                                                                                                                                                                      SHA-512:3633B906A3DA8B9F0193F9043D1BD8240195ED6E10C2F77C37D65D46153C21A8CC1B7F773CB575C6D4254EA5DEBAE30C2C7B3401DC624BD5837CA165EF3FF3B0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.294 1f10 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/MANIFEST-000001.2024/11/15-04:45:33.295 1f10 Recovering log #3.2024/11/15-04:45:33.296 1f10 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):338
                                                                                                                                                                                                                                                                      Entropy (8bit):5.197716078847121
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:HUyWPa9q2PqLTwi23oH+TcwtfrzAdIFUt8YUyWOXZmw+YUyW1zkwOqLTwi23oH++:MPa9v8wZYeb9FUt8Pe/+Pd5TwZYeb2J
                                                                                                                                                                                                                                                                      MD5:9FFF97951729A8DC3816DF1033ECC510
                                                                                                                                                                                                                                                                      SHA1:A4926A87D27A41103E0194CB3EDF9B9FF2C70972
                                                                                                                                                                                                                                                                      SHA-256:225DECF631DCE47072BAA9415AC35DFA88793E0A6E998CD60C21F2EA54C58569
                                                                                                                                                                                                                                                                      SHA-512:3633B906A3DA8B9F0193F9043D1BD8240195ED6E10C2F77C37D65D46153C21A8CC1B7F773CB575C6D4254EA5DEBAE30C2C7B3401DC624BD5837CA165EF3FF3B0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:2024/11/15-04:45:33.294 1f10 Reusing MANIFEST C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/MANIFEST-000001.2024/11/15-04:45:33.295 1f10 Recovering log #3.2024/11/15-04:45:33.296 1f10 Reusing old log C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\shared_proto_db\metadata/000003.log .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):120
                                                                                                                                                                                                                                                                      Entropy (8bit):3.32524464792714
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:tbloIlrJFlXnpQoWcNylRjlgbYnPdJiG6R7lZAUAl:tbdlrYoWcV0n1IGi7kBl
                                                                                                                                                                                                                                                                      MD5:A397E5983D4A1619E36143B4D804B870
                                                                                                                                                                                                                                                                      SHA1:AA135A8CC2469CFD1EF2D7955F027D95BE5DFBD4
                                                                                                                                                                                                                                                                      SHA-256:9C70F766D3B84FC2BB298EFA37CC9191F28BEC336329CC11468CFADBC3B137F4
                                                                                                                                                                                                                                                                      SHA-512:4159EA654152D2810C95648694DD71957C84EA825FCCA87B36F7E3282A72B30EF741805C610C5FA847CA186E34BDE9C289AAA7B6931C5B257F1D11255CD2A816
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s. .(.x.8.6.).\.M.i.c.r.o.s.o.f.t.\.E.d.g.e.\.A.p.p.l.i.c.a.t.i.o.n.\.m.s.e.d.g.e...e.x.e.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):13
                                                                                                                                                                                                                                                                      Entropy (8bit):2.7192945256669794
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:NYLFRQI:ap2I
                                                                                                                                                                                                                                                                      MD5:BF16C04B916ACE92DB941EBB1AF3CB18
                                                                                                                                                                                                                                                                      SHA1:FA8DAEAE881F91F61EE0EE21BE5156255429AA8A
                                                                                                                                                                                                                                                                      SHA-256:7FC23C9028A316EC0AC25B09B5B0D61A1D21E58DFCF84C2A5F5B529129729098
                                                                                                                                                                                                                                                                      SHA-512:F0B7DF5517596B38D57C57B5777E008D6229AB5B1841BBE74602C77EEA2252BF644B8650C7642BD466213F62E15CC7AB5A95B28E26D3907260ED1B96A74B65FB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:117.0.2045.47
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):58444
                                                                                                                                                                                                                                                                      Entropy (8bit):6.10166998551495
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:z/Ps+wsI7ynGCBS2qX7bgtPHgorQXdbiR3oM:z/0+zI7ynGkS20wtP0Xdbe3
                                                                                                                                                                                                                                                                      MD5:BE8ED380B27F2567BEAD212DBCC4A932
                                                                                                                                                                                                                                                                      SHA1:3F334E950206A50BE0E22DA58C5C53D124376581
                                                                                                                                                                                                                                                                      SHA-256:E25279E1808542E977A4ABD29C98B19ABA43BA2E5291DE881C4B0AEA3B1340F8
                                                                                                                                                                                                                                                                      SHA-512:3685A1F410B0C6899A679BB54A55E7078D44E9F0BC923B0AA84E2FB0B0604966C67E7CF8BA08ECC29CD1C1570271838FCCED216CE58658AA2454FDF93C858778
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"abusive_adblocker_etag":"\"229EC35087C81534A88F41A12F3A505F330A0BE57C43F6CEB29F4718042EFC4F\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):58444
                                                                                                                                                                                                                                                                      Entropy (8bit):6.10166998551495
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:z/Ps+wsI7ynGCBS2qX7bgtPHgorQXdbiR3oM:z/0+zI7ynGkS20wtP0Xdbe3
                                                                                                                                                                                                                                                                      MD5:BE8ED380B27F2567BEAD212DBCC4A932
                                                                                                                                                                                                                                                                      SHA1:3F334E950206A50BE0E22DA58C5C53D124376581
                                                                                                                                                                                                                                                                      SHA-256:E25279E1808542E977A4ABD29C98B19ABA43BA2E5291DE881C4B0AEA3B1340F8
                                                                                                                                                                                                                                                                      SHA-512:3685A1F410B0C6899A679BB54A55E7078D44E9F0BC923B0AA84E2FB0B0604966C67E7CF8BA08ECC29CD1C1570271838FCCED216CE58658AA2454FDF93C858778
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"abusive_adblocker_etag":"\"229EC35087C81534A88F41A12F3A505F330A0BE57C43F6CEB29F4718042EFC4F\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):58444
                                                                                                                                                                                                                                                                      Entropy (8bit):6.10166998551495
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:z/Ps+wsI7ynGCBS2qX7bgtPHgorQXdbiR3oM:z/0+zI7ynGkS20wtP0Xdbe3
                                                                                                                                                                                                                                                                      MD5:BE8ED380B27F2567BEAD212DBCC4A932
                                                                                                                                                                                                                                                                      SHA1:3F334E950206A50BE0E22DA58C5C53D124376581
                                                                                                                                                                                                                                                                      SHA-256:E25279E1808542E977A4ABD29C98B19ABA43BA2E5291DE881C4B0AEA3B1340F8
                                                                                                                                                                                                                                                                      SHA-512:3685A1F410B0C6899A679BB54A55E7078D44E9F0BC923B0AA84E2FB0B0604966C67E7CF8BA08ECC29CD1C1570271838FCCED216CE58658AA2454FDF93C858778
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"abusive_adblocker_etag":"\"229EC35087C81534A88F41A12F3A505F330A0BE57C43F6CEB29F4718042EFC4F\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):47
                                                                                                                                                                                                                                                                      Entropy (8bit):4.3818353308528755
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:2jRo6jhM6ceYcUtS2djIn:5I2uxUt5Mn
                                                                                                                                                                                                                                                                      MD5:48324111147DECC23AC222A361873FC5
                                                                                                                                                                                                                                                                      SHA1:0DF8B2267ABBDBD11C422D23338262E3131A4223
                                                                                                                                                                                                                                                                      SHA-256:D8D672F953E823063955BD9981532FC3453800C2E74C0CC3653D091088ABD3B3
                                                                                                                                                                                                                                                                      SHA-512:E3B5DB7BA5E4E3DE3741F53D91B6B61D6EB9ECC8F4C07B6AE1C2293517F331B716114BAB41D7935888A266F7EBDA6FABA90023EFFEC850A929986053853F1E02
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:customSettings_F95BA787499AB4FA9EFFF472CE383A14
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):35
                                                                                                                                                                                                                                                                      Entropy (8bit):4.014438730983427
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:YDMGA2ADH/AYKEqsYq:YQXT/bKE1F
                                                                                                                                                                                                                                                                      MD5:BB57A76019EADEDC27F04EB2FB1F1841
                                                                                                                                                                                                                                                                      SHA1:8B41A1B995D45B7A74A365B6B1F1F21F72F86760
                                                                                                                                                                                                                                                                      SHA-256:2BAE8302F9BD2D87AE26ACF692663DF1639B8E2068157451DA4773BD8BD30A2B
                                                                                                                                                                                                                                                                      SHA-512:A455D7F8E0BE9A27CFB7BE8FE0B0E722B35B4C8F206CAD99064473F15700023D5995CC2C4FAFDB8FBB50F0BAB3EC8B241E9A512C0766AAAE1A86C3472C589FFD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"forceServiceDetermination":false}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):81
                                                                                                                                                                                                                                                                      Entropy (8bit):4.3439888556902035
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:kDnaV6bVsFUIMf1HDOWg3djTHXoSWDSQ97P:kDYaoUIe1HDM3oskP
                                                                                                                                                                                                                                                                      MD5:177F4D75F4FEE84EF08C507C3476C0D2
                                                                                                                                                                                                                                                                      SHA1:08E17AEB4D4066AC034207420F1F73DD8BE3FAA0
                                                                                                                                                                                                                                                                      SHA-256:21EE7A30C2409E0041CDA6C04EEE72688EB92FE995DC94487FF93AD32BD8F849
                                                                                                                                                                                                                                                                      SHA-512:94FC142B3CC4844BF2C0A72BCE57363C554356C799F6E581AA3012E48375F02ABD820076A8C2902A3C6BE6AC4D8FA8D4F010D4FF261327E878AF5E5EE31038FB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:edgeSettings_2.0-48b11410dc937a1723bf4c5ad33ecdb286d8ec69544241bc373f753e64b396c1
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):130439
                                                                                                                                                                                                                                                                      Entropy (8bit):3.80180718117079
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:RlIyFAMrwvaGbyLWzDr6PDofI8vsUnPRLz+PMh:weWGP7Eh
                                                                                                                                                                                                                                                                      MD5:EB75CEFFE37E6DF9C171EE8380439EDA
                                                                                                                                                                                                                                                                      SHA1:F00119BA869133D64E4F7F0181161BD47968FA23
                                                                                                                                                                                                                                                                      SHA-256:48B11410DC937A1723BF4C5AD33ECDB286D8EC69544241BC373F753E64B396C1
                                                                                                                                                                                                                                                                      SHA-512:044C5113D877CE2E3B42CF07670620937ED7BE2D8B3BF2BAB085C43EF4F64598A7AC56328DDBBE7F0F3CFB9EA49D38CA332BB4ECBFEDBE24AE53B14334A30C8E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "geoidMaps": {.. "au": "https://australia.smartscreen.microsoft.com/",.. "ch": "https://switzerland.smartscreen.microsoft.com/",.. "eu": "https://europe.smartscreen.microsoft.com/",.. "ffl4": "https://unitedstates1.ss.wd.microsoft.us/",.. "ffl4mod": "https://unitedstates4.ss.wd.microsoft.us/",.. "ffl5": "https://unitedstates2.ss.wd.microsoft.us/",.. "in": "https://india.smartscreen.microsoft.com/",.. "test": "https://eu-9.smartscreen.microsoft.com/",.. "uk": "https://unitedkingdom.smartscreen.microsoft.com/",.. "us": "https://unitedstates.smartscreen.microsoft.com/",.. "gw_au": "https://australia.smartscreen.microsoft.com/",.. "gw_ch": "https://switzerland.smartscreen.microsoft.com/",.. "gw_eu": "https://europe.smartscreen.microsoft.com/",.. "gw_ffl4": "https://unitedstates1.ss.wd.microsoft.us/",.. "gw_ffl4mod": "https://unitedstates4.ss.wd.microsoft.us/",.. "gw_ffl5": "https://unitedstates2.ss.wd.microsoft.us/",.. "gw_in": "https
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):40
                                                                                                                                                                                                                                                                      Entropy (8bit):4.346439344671015
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:kfKbUPVXXMVQX:kygV5
                                                                                                                                                                                                                                                                      MD5:6A3A60A3F78299444AACAA89710A64B6
                                                                                                                                                                                                                                                                      SHA1:2A052BF5CF54F980475085EEF459D94C3CE5EF55
                                                                                                                                                                                                                                                                      SHA-256:61597278D681774EFD8EB92F5836EB6362975A74CEF807CE548E50A7EC38E11F
                                                                                                                                                                                                                                                                      SHA-512:C5D0419869A43D712B29A5A11DC590690B5876D1D95C1F1380C2F773CA0CB07B173474EE16FE66A6AF633B04CC84E58924A62F00DCC171B2656D554864BF57A4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:synchronousLookupUris_638343870221005468
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):57
                                                                                                                                                                                                                                                                      Entropy (8bit):4.556488479039065
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:GSCIPPlzYxi21goD:bCWBYx99D
                                                                                                                                                                                                                                                                      MD5:3A05EAEA94307F8C57BAC69C3DF64E59
                                                                                                                                                                                                                                                                      SHA1:9B852B902B72B9D5F7B9158E306E1A2C5F6112C8
                                                                                                                                                                                                                                                                      SHA-256:A8EF112DF7DAD4B09AAA48C3E53272A2EEC139E86590FD80E2B7CBD23D14C09E
                                                                                                                                                                                                                                                                      SHA-512:6080AEF2339031FAFDCFB00D3179285E09B707A846FD2EA03921467DF5930B3F9C629D37400D625A8571B900BC46021047770BAC238F6BAC544B48FB3D522FB0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:9.......murmur3.............,M.h...Z...8.\..<&Li.H..[.?m
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):29
                                                                                                                                                                                                                                                                      Entropy (8bit):4.030394788231021
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:0xXeZUSXkcVn:0Re5kcV
                                                                                                                                                                                                                                                                      MD5:52E2839549E67CE774547C9F07740500
                                                                                                                                                                                                                                                                      SHA1:B172E16D7756483DF0CA0A8D4F7640DD5D557201
                                                                                                                                                                                                                                                                      SHA-256:F81B7B9CE24F5A2B94182E817037B5F1089DC764BC7E55A9B0A6227A7E121F32
                                                                                                                                                                                                                                                                      SHA-512:D80E7351E4D83463255C002D3FDCE7E5274177C24C4C728D7B7932D0BE3EBCFEB68E1E65697ED5E162E1B423BB8CDFA0864981C4B466D6AD8B5E724D84B4203B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:topTraffic_638004170464094982
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):575056
                                                                                                                                                                                                                                                                      Entropy (8bit):7.999649474060713
                                                                                                                                                                                                                                                                      Encrypted:true
                                                                                                                                                                                                                                                                      SSDEEP:12288:fXdhUG0PlM/EXEBQlbk19RrH76Im4u8C1jJodha:Ji80e9Rb7Tm4u8CnR
                                                                                                                                                                                                                                                                      MD5:BE5D1A12C1644421F877787F8E76642D
                                                                                                                                                                                                                                                                      SHA1:06C46A95B4BD5E145E015FA7E358A2D1AC52C809
                                                                                                                                                                                                                                                                      SHA-256:C1CE928FBEF4EF5A4207ABAFD9AB6382CC29D11DDECC215314B0522749EF6A5A
                                                                                                                                                                                                                                                                      SHA-512:FD5B100E2F192164B77F4140ADF6DE0322F34D7B6F0CF14AED91BACAB18BB8F195F161F7CF8FB10651122A598CE474AC4DC39EDF47B6A85C90C854C2A3170960
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...._+jE.`..}....S..1....G}s..E....y".Wh.^.W.H...-...#.A...KR...9b........>k......bU.IVo...D......Y..[l.yx.......'c=..I0.....E.d...-...1 ....m../C...OQ.........qW..<:N.....38.u..X-..s....<..U.,Mi..._.......`.Y/.........^..,.E..........j@..G8..N.... ..Ea...4.+.79k.!T.-5W..!..@+..!.P..LDG.....V."....L.... .(#..$..&......C.....%A.T}....K_.S..'Q.".d....s....(j.D!......Ov..)*d0)."(..%..-..G..L.}....i.....m9;.....t.w..0....f?..-..M.c.3.....N7K.T..D>.3.x...z..u$5!..4..T.....U.O^L{.5..=E..'..;.}(|.6.:..f!.>...?M.8......P.D.J.I4.<...*.y.E....>....i%.6..Y.@..n.....M..r..C.f.;..<..0.H...F....h.......HB1]1....u..:...H..k....B.Q..J...@}j~.#...'Y.J~....I...ub.&..L[z..1.W/.Ck....M.......[.......N.F..z*.{nZ~d.V.4.u.K.V.......X.<p..cz..>*....X...W..da3(..g..Z$.L4.j=~.p.l.\.[e.&&.Y ...U)..._.^r0.,.{_......`S..[....(.\..p.bt.g..%.$+....f.....d....Im..f...W ......G..i_8a..ae..7....pS.....z-H..A.s.4.3..O.r.....u.S......a.}..v.-/..... ...a.x#./:...sS&U.().xL...pg
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:raw G3 (Group 3) FAX, byte-padded
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):460992
                                                                                                                                                                                                                                                                      Entropy (8bit):7.999625908035124
                                                                                                                                                                                                                                                                      Encrypted:true
                                                                                                                                                                                                                                                                      SSDEEP:12288:KaRwcD8XXTZGZJHXBjOVX3xFttENr4+3eGPnKvJWXrydqb:KaR5oZ2MBFt8r4+3eG/URdqb
                                                                                                                                                                                                                                                                      MD5:E9C502DB957CDB977E7F5745B34C32E6
                                                                                                                                                                                                                                                                      SHA1:DBD72B0D3F46FA35A9FE2527C25271AEC08E3933
                                                                                                                                                                                                                                                                      SHA-256:5A6B49358772DB0B5C682575F02E8630083568542B984D6D00727740506569D4
                                                                                                                                                                                                                                                                      SHA-512:B846E682427CF144A440619258F5AA5C94CAEE7612127A60E4BD3C712F8FF614DA232D9A488E27FC2B0D53FD6ACF05409958AEA3B21EA2C1127821BD8E87A5CA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...2lI.5.<C.;.{....._+jE.`..}....-...#.A...KR...l.M0,s...).9..........x.......F.b......jU....y.h'....L<...*..Z..*%.*..._...g.4yu...........'c=..I0..........qW..<:N....<..U.,Mi..._......'(..U.9.!........u....7...4. ..Ea...4.+.79k.!T.-5W..!..@+..$..t|1.E..7F...+..xf....z&_Q...-.B...)8R.c....0.......B.M.Z...0....&v..<..H...3.....N7K.T..D>.8......P.D.J.I4.B.H.VHy...@.Wc.Cl..6aD..j.....E..*4..mI..X]2.GH.G.L...E.F.=.J...@}j~.#...'Y.L[z..1.W/.Ck....L..X........J.NYd........>...N.F..z*.{nZ~d.N..../..6.\L...Q...+.w..p...>.S.iG...0]..8....S..)`B#.v..^.*.T.?...Z.rz.D'.!.T.w....S..8....V.4.u.K.V.......W.6s...Y.).[.c.X.S..........5.X7F...tQ....z.L.X..(3#j...8...i.[..j$.Q....0...]"W.c.H..n..2Te.ak...c..-F(..W2.b....3.]......c.d|.../....._...f.....d....Im..g.b..R.q.<x*x...i2..r.I()Iat..b.j.r@K.+5..C.....nJ.>*P,.V@.....s.4.3..O.r.....smd7...L.....].u&1../t.*.......uXb...=@.....wv......]....#.{$.w......i.....|.....?....E7...}$+..t).E.U..Q..~.`.)..Y@.6.h.......%(
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):9
                                                                                                                                                                                                                                                                      Entropy (8bit):3.169925001442312
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:CMzOn:CM6
                                                                                                                                                                                                                                                                      MD5:B6F7A6B03164D4BF8E3531A5CF721D30
                                                                                                                                                                                                                                                                      SHA1:A2134120D4712C7C629CDCEEF9DE6D6E48CA13FA
                                                                                                                                                                                                                                                                      SHA-256:3D6F3F8F1456D7CE78DD9DFA8187318B38E731A658E513F561EE178766E74D39
                                                                                                                                                                                                                                                                      SHA-512:4B473F45A5D45D420483EA1D9E93047794884F26781BBFE5370A554D260E80AD462E7EEB74D16025774935C3A80CBB2FD1293941EE3D7B64045B791B365F2B63
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:uriCache_
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):179
                                                                                                                                                                                                                                                                      Entropy (8bit):5.018915904109125
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:YTyLSmafBoTfIeRDHtDozRLuLgfGBkGAeekVy8HfzXNPIAclUgRSWCaYn:YWLSGTt1o9LuLgfGBPAzkVj/T8lUg0WA
                                                                                                                                                                                                                                                                      MD5:1B68810787F43063308622E42AEA70C9
                                                                                                                                                                                                                                                                      SHA1:3360B8649DE436A9CD2E6E86C63D6D3A8827668D
                                                                                                                                                                                                                                                                      SHA-256:9C531F378206BEEEC254F7E000ABC6C801DEFD99E7191730A757DA63E0102402
                                                                                                                                                                                                                                                                      SHA-512:ACD941E5A91999E09664B0992ACC19159086B9AA9119F9184F863DFF64169ACF2E92AC57D8680E869C6541C54DDA97AA4354023E2C75165406B1CF67950C0688
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"version":1,"cache_data":[{"file_hash":"da2d278eafa98c1f","server_context":"1;f94c025f-7523-6972-b613-ce2c246c55ce;unkn:100;0.01","result":1,"expiration_time":1731764736782342}]}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):86
                                                                                                                                                                                                                                                                      Entropy (8bit):4.3751917412896075
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:YQ3JYq9xSs0dMEJAELJ2rjozQp:YQ3Kq9X0dMgAEwjj
                                                                                                                                                                                                                                                                      MD5:F732DBED9289177D15E236D0F8F2DDD3
                                                                                                                                                                                                                                                                      SHA1:53F822AF51B014BC3D4B575865D9C3EF0E4DEBDE
                                                                                                                                                                                                                                                                      SHA-256:2741DF9EE9E9D9883397078F94480E9BC1D9C76996EEC5CFE4E77929337CBE93
                                                                                                                                                                                                                                                                      SHA-512:B64E5021F32E26C752FCBA15A139815894309B25644E74CECA46A9AA97070BCA3B77DED569A9BFD694193D035BA75B61A8D6262C8E6D5C4D76B452B38F5150A4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"user_experience_metrics.stability.exited_cleanly":false,"variations_crash_streak":1}
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):58982
                                                                                                                                                                                                                                                                      Entropy (8bit):6.1044797539447195
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:z/Ps+wsI7yOmCBS2qX7bowgorQXdbiR3oM:z/0+zI7yOmkS20eXdbe3
                                                                                                                                                                                                                                                                      MD5:CFF4D3DBED9B91D28D33782CB3F05AC8
                                                                                                                                                                                                                                                                      SHA1:C402D0B49775B63149F3C305C506E92BFADD7B76
                                                                                                                                                                                                                                                                      SHA-256:16929733C797D7D64CDF5ECA33827782DFB95E603E5FA81ED514C863C42776BB
                                                                                                                                                                                                                                                                      SHA-512:C30D5124B43AD68B5316FC6A0074E922E27DDC6F8B9815B8393C79B89F252AA41B02CA16FC7A610337F09FDCA0EAF02437219BD436DABA45B7C3BD3E92D1EDF6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"abusive_adblocker_etag":"\"229EC35087C81534A88F41A12F3A505F330A0BE57C43F6CEB29F4718042EFC4F\"","desktop_mode":{"clear_prefs_once_applied":true,"is_on":false,"is_on_by_default_applied":true,"is_search_only_on_by_default_applied":true},"domain_actions_config":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2278
                                                                                                                                                                                                                                                                      Entropy (8bit):3.8418663092639016
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:uiTrlKxrgxaxl9Il8uG/rypV0Vzu333Zd1rc:mjYQDYV05ua
                                                                                                                                                                                                                                                                      MD5:9C719A0D1C0E150A0F5DFBB2441889CD
                                                                                                                                                                                                                                                                      SHA1:6799888AFF48F776097E7D3240FE6CEA2CB454BF
                                                                                                                                                                                                                                                                      SHA-256:7A612369C9ABC499921085A1132676C1A5C92A1E2360C57B845D0B645C1AFC2E
                                                                                                                                                                                                                                                                      SHA-512:D861E7DF081CD37424772683FB31E64B251C0BBEF4EE4C7DA03307E70866BBFA371D650E7A01047573DA6698F0BE64D4B75F1259878F566F21514CE1F452501C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.".T.B.D.a.t.a.S.t.o.r.e.O.b.j.e.c.t.".:.{.".H.e.a.d.e.r.".:.{.".O.b.j.e.c.t.T.y.p.e.".:.".T.o.k.e.n.R.e.s.p.o.n.s.e.".,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.a.j.o.r.".:.2.,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.i.n.o.r.".:.1.}.,.".O.b.j.e.c.t.D.a.t.a.".:.{.".S.y.s.t.e.m.D.e.f.i.n.e.d.P.r.o.p.e.r.t.i.e.s.".:.{.".R.e.q.u.e.s.t.I.n.d.e.x.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".W.i.p.w.W.M.+.N.H.l.b.C.D.m.s.Z.p.8.S.O.s.j.h.t.F.B.s.=.".}.,.".E.x.p.i.r.a.t.i.o.n.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.F.u.T.f.0.s.3.2.w.E.=.".}.,.".S.t.a.t.u.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.A.A.A.A.A.=.=.".}.,.".R.e.s.p.o.n.s.e.B.y.t.e.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.t.r.u.e.,.".V.a.l.u.e.".:.".A.Q.A.A.A.N.C.M.n.d.8.B.F.d.E.R.j.H.o.A.w.E./.C.l.+.s.B.A.A.A.A.6.A.G.V.j.B.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):4622
                                                                                                                                                                                                                                                                      Entropy (8bit):4.002402699117241
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:96:HYQBz9W4tjaZb6ONUc5Y9eOG78lHjbesrtywAYtuIk:HA4tjaF5Uc55OhlHfhba
                                                                                                                                                                                                                                                                      MD5:C685618088AC3EB6B7C190D75D12A139
                                                                                                                                                                                                                                                                      SHA1:0B6DBAB3ACB2005B031B4065E0294A13E3AAF72A
                                                                                                                                                                                                                                                                      SHA-256:CE653DDD81AEA557BF91F983BD60E7BD68A9259F0AB3E4FDA8C600F8A3EA9805
                                                                                                                                                                                                                                                                      SHA-512:260BE279DE62625E956048851F2EA691B36466171A86CE847543DB919089A1028F7EEA28EBBE045477CFFADF1D0F841E4C26343D7898604038BFBEDE2F249B83
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.".T.B.D.a.t.a.S.t.o.r.e.O.b.j.e.c.t.".:.{.".H.e.a.d.e.r.".:.{.".O.b.j.e.c.t.T.y.p.e.".:.".T.o.k.e.n.R.e.s.p.o.n.s.e.".,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.a.j.o.r.".:.2.,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.i.n.o.r.".:.1.}.,.".O.b.j.e.c.t.D.a.t.a.".:.{.".S.y.s.t.e.m.D.e.f.i.n.e.d.P.r.o.p.e.r.t.i.e.s.".:.{.".R.e.q.u.e.s.t.I.n.d.e.x.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".z.3.U.T.q.T.b.3.7./.u.z.h.i.f.l.b.4.0.f.z.h.D.r.E.s.w.=.".}.,.".E.x.p.i.r.a.t.i.o.n.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".M.j.q.Z.Z.U.M.3.2.w.E.=.".}.,.".S.t.a.t.u.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.w.A.A.A.A.=.=.".}.,.".R.e.s.p.o.n.s.e.B.y.t.e.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.t.r.u.e.,.".V.a.l.u.e.".:.".A.Q.A.A.A.N.C.M.n.d.8.B.F.d.E.R.j.H.o.A.w.E./.C.l.+.s.B.A.A.A.A.6.A.G.V.j.B.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2684
                                                                                                                                                                                                                                                                      Entropy (8bit):3.90418604658476
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:uiTrlKx68Wa7xYxl9Il8uGcTFGy94+ilM9LEImNkfiUv3PS9wmsOBd/vc:aaYQchGQ4DGoKfu9wmdQ
                                                                                                                                                                                                                                                                      MD5:5BCA7737B9C737B3A8943AE92FCA9579
                                                                                                                                                                                                                                                                      SHA1:4D05BCD7B2ECDEAFF40A077E2B6086CE944E7A89
                                                                                                                                                                                                                                                                      SHA-256:3CA822489A429B7CA1CF1BED9AE73928299F385C351B0D115CD148F232214411
                                                                                                                                                                                                                                                                      SHA-512:5303640ED227E15D086E2C286FD516CDD6DA854E52D745BFFFEB8B9C0CA18DF6A0FB72948A36C9938E0B273DED7075E2B501B9A265369C7CB1AAD958905C20FE
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.".T.B.D.a.t.a.S.t.o.r.e.O.b.j.e.c.t.".:.{.".H.e.a.d.e.r.".:.{.".O.b.j.e.c.t.T.y.p.e.".:.".T.o.k.e.n.R.e.s.p.o.n.s.e.".,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.a.j.o.r.".:.2.,.".S.c.h.e.m.a.V.e.r.s.i.o.n.M.i.n.o.r.".:.1.}.,.".O.b.j.e.c.t.D.a.t.a.".:.{.".S.y.s.t.e.m.D.e.f.i.n.e.d.P.r.o.p.e.r.t.i.e.s.".:.{.".R.e.q.u.e.s.t.I.n.d.e.x.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".6.N.3.U.y.9.n.A.U.E.q.s.5.u.9.6.E./.o.g.0.E./.V.J.A.g.=.".}.,.".E.x.p.i.r.a.t.i.o.n.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".D.h.1.5.l.h.R.W.3.A.E.=.".}.,.".S.t.a.t.u.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.f.a.l.s.e.,.".V.a.l.u.e.".:.".A.A.A.A.A.A.=.=.".}.,.".R.e.s.p.o.n.s.e.B.y.t.e.s.".:.{.".T.y.p.e.".:.".I.n.l.i.n.e.B.y.t.e.s.".,.".I.s.P.r.o.t.e.c.t.e.d.".:.t.r.u.e.,.".V.a.l.u.e.".:.".A.Q.A.A.A.N.C.M.n.d.8.B.F.d.E.R.j.H.o.A.w.E./.C.l.+.s.B.A.A.A.A.6.A.G.V.j.B.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1096
                                                                                                                                                                                                                                                                      Entropy (8bit):5.13006727705212
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:36DiJHxRHuyPP3GtIHw1Gg9QH+sUW8Ok4F+d1o36qjFD:36DiJzfPvGt7ICQH+sfIte36AFD
                                                                                                                                                                                                                                                                      MD5:4D42118D35941E0F664DDDBD83F633C5
                                                                                                                                                                                                                                                                      SHA1:2B21EC5F20FE961D15F2B58EFB1368E66D202E5C
                                                                                                                                                                                                                                                                      SHA-256:5154E165BD6C2CC0CFBCD8916498C7ABAB0497923BAFCD5CB07673FE8480087D
                                                                                                                                                                                                                                                                      SHA-512:3FFBBA2E4CD689F362378F6B0F6060571F57E228D3755BDD308283BE6CBBEF8C2E84BEB5FCF73E0C3C81CD944D01EE3FCF141733C4D8B3B0162E543E0B9F3E63
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:Copyright (c) Electron contributors.Copyright (c) 2013-2020 GitHub Inc...Permission is hereby granted, free of charge, to any person obtaining.a copy of this software and associated documentation files (the."Software"), to deal in the Software without restriction, including.without limitation the rights to use, copy, modify, merge, publish,.distribute, sublicense, and/or sell copies of the Software, and to.permit persons to whom the Software is furnished to do so, subject to.the following conditions:..The above copyright notice and this permission notice shall be.included in all copies or substantial portions of the Software...THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,.EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF.MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND.NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE.LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION.OF CONTRACT, TORT OR OTHERWISE, ARISIN
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:HTML document, ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):8315859
                                                                                                                                                                                                                                                                      Entropy (8bit):4.706254155756507
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24576:dbTq6T06T5kJWSIRWnBIl70mfT76y6E65606F/HXpErpem:t4scj
                                                                                                                                                                                                                                                                      MD5:8303B3A19888F41062A614CD95B2E2D2
                                                                                                                                                                                                                                                                      SHA1:A112EE5559C27B01E3114CF10050531CAB3D98A6
                                                                                                                                                                                                                                                                      SHA-256:9C088CAAC76CF5BE69E0397D76FE9397017585CFFDBA327692FF1B3A6C00D68F
                                                                                                                                                                                                                                                                      SHA-512:281B2ECC99502A050EE69E31256DEC135E8CB877D1A6BA9F1C975FCFB11C062980EE6061D2368B62F91E392953AE6235DD726A9D98E6EFC1302F7ED713099179
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview: Generated by licenses.py; do not edit. --><!doctype html>.<html>.<head>.<meta charset="utf-8">.<meta name="viewport" content="width=device-width">.<meta name="color-scheme" content="light dark">.<title>Credits</title>.<link rel="stylesheet" href="chrome://resources/css/text_defaults.css">.<link rel="stylesheet" href="chrome://credits/credits.css">.</head>.<body>.<span class="page-title" style="float:left;">Credits</span>.<a id="print-link" href="#" style="float:right;" hidden>Print</a>.<div style="clear:both; overflow:auto;"> Chromium <3s the following projects -->.<div class="product">.<span class="title">2-dim General Purpose FFT (Fast Fourier/Cosine/Sine Transform) Package</span>.<span class="homepage"><a href="http://www.kurims.kyoto-u.ac.jp/~ooura/fft.html">homepage</a></span>.<input type="checkbox" hidden id="0">.<label class="show" for="0" tabindex="0"></label>.<div class="licence">.<pre>Copyright(C) 1997,2001 Takuya OOURA (email: ooura@kurims.kyoto-u.ac.jp)..You may us
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (GUI) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):162117120
                                                                                                                                                                                                                                                                      Entropy (8bit):6.733463624184025
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1572864:ATmw0ciLNpDPuAvHxJLkY2O6Ea3f9kwZXeT6EivLp1vUAtdjtZn+f4FnIvGaC9dU:zv6E70+Mk
                                                                                                                                                                                                                                                                      MD5:CE6BE7DBF1189F24B294ABDFA9C10CB7
                                                                                                                                                                                                                                                                      SHA1:0B76091A1B1E9F9D82CA1C9A21FDD5A0BA3BE6E4
                                                                                                                                                                                                                                                                      SHA-256:50409DDBC58A020F268977CDC9FC427A800880F2AFFD1839EC5B8E9352AC7582
                                                                                                                                                                                                                                                                      SHA-512:56BC7A4AD416DDAFFC07A1FC0E07D30C013027C25F47DC5A71E1532A69C0C6F9C00D8D0159609491597BDA931072ED2FCA0FF159235DB24DC7635F795815AF02
                                                                                                                                                                                                                                                                      Malicious:true
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 3%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e..........".................P..........@..........................................`...........................................I.. ....M.h............p...f@..........`........?.......................?.(... !..@.............M.......I......................text............................... ..`.rdata..h.n.......n.................@..@.data....TB...Q.......P.............@....pdata...f@..p...h@...X.............@..@.00cfg..0............ ..............@..@.gxfg...pA.......B..."..............@..@.retplne.....@.......d...................rodata......P.......f.............. ..`.tls.........p.......x..............@...CPADinfo8............|..............@...LZMADEC..............~.............. ..`_RDATA..\...........................@..@malloc_h+........................... ..`.rsrc...............................@..@.reloc.......`......................@..B................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):127125
                                                                                                                                                                                                                                                                      Entropy (8bit):7.915612661029362
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:vlKzwqCT4wDNzIwL2o418Gb0+VRLf0ld0GY3cQ39Vm2I:vlKzwt4uEgK18Gb0OV8ld0GecQ3f2
                                                                                                                                                                                                                                                                      MD5:ACD0FA0A90B43CD1C87A55A991B4FAC3
                                                                                                                                                                                                                                                                      SHA1:17B84E8D24DA12501105B87452F86BFA5F9B1B3C
                                                                                                                                                                                                                                                                      SHA-256:CCBCA246B9A93FA8D4F01A01345E7537511C590E4A8EFD5777B1596D10923B4B
                                                                                                                                                                                                                                                                      SHA-512:3E4C4F31C6C7950D5B886F6A8768077331A8F880D70B905CF7F35F74BE204C63200FF4A88FA236ABCCC72EC0FC102C14F50DD277A30F814F35ADFE5A7AE3B774
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..............t...#.....:.I...J~p...K~6...L~....M~#...N~....O~`...P~m...Q~....R~....S~I...T~....U~'"..V~.,..^~.7.._~;9..b~v:..c~(<..j~.<..k~.B..l~fH..m~.J..n~.K..o~.L.....M.....N....aP....IS....BV....uY.....]....Pa.....d....h....i...hk....l....m...An....n.....................................K.....x...........4.....m.....D.............................1........................'.....*.....4.....>.....C.....D....hM.....U.....V....>X.....Z....E].....]....a...%c....d....f....h....i....k....l....o...wq....t...7v....y....}....~...m................................3.................g.....6............................k.....-...........3.....9......................H.......................Y.................{.....s....M..............F...................&....y..............\....p....Z.........Z.........g...........................T..................6...............M.................r...........1.................X.................u.......
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):177406
                                                                                                                                                                                                                                                                      Entropy (8bit):7.939611912805236
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:4DQYaEQN6AJPKNzIwafR54x5GMR+F44ffbdZnYw9p4AbIVGYoDd+HxNK/rIM0:4DQYaNN68QEVgx5GMRejnbdZnVE6YopY
                                                                                                                                                                                                                                                                      MD5:4610337E3332B7E65B73A6EA738B47DF
                                                                                                                                                                                                                                                                      SHA1:8D824C9CF0A84AB902E8069A4DE9BF6C1A9AAF3B
                                                                                                                                                                                                                                                                      SHA-256:C91ABF556E55C29D1EA9F560BB17CC3489CB67A5D0C7A22B58485F5F2FBCF25C
                                                                                                                                                                                                                                                                      SHA-512:039B50284D28DCD447E0A486A099FA99914D29B543093CCCDA77BBEFDD61F7B7F05BB84B2708AE128C5F2D0C0AB19046D08796D1B5A1CFF395A0689AB25CCB51
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..............t...#.....:.t...J~....K~....L~....M~....N~....O~....P~.%..Q~.*..R~.-..S~c5..T~.9..U~.A..V~.V..^~Ck.._~.m..b~)o..c~yr..j~#s..k~.}..l~....m~...n~...o~......................................K.....!..................Q..............*........................a.......................,%....H0.....2....E:....(A.....F.....L.....R.....T....QY....:].....f.....i....br....Sv..........C...........).................].....}................................................................................................. ....!....%.....*.....,..........O/...../....y1.....2....l4.....6.....7....A:.....?.....C.....K.....S.....Y....._.....e....Ok.....l.....m.....n.....o.....q.....r.....s.....u....:w..............P............................%.............7................,........G........u.............B........S.........a....%........;.....................l...........T..........R...........6..........).............
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):4916712
                                                                                                                                                                                                                                                                      Entropy (8bit):6.398049523846958
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:49152:KCZnRO4XyM53Rkq4ypQqdoRpmruVNYvkaRwvhiD0N+YEzI4og/RfzHLeHTRhFRNc:xG2QCwmHPnog/pzHAo/A6l
                                                                                                                                                                                                                                                                      MD5:2191E768CC2E19009DAD20DC999135A3
                                                                                                                                                                                                                                                                      SHA1:F49A46BA0E954E657AAED1C9019A53D194272B6A
                                                                                                                                                                                                                                                                      SHA-256:7353F25DC5CF84D09894E3E0461CEF0E56799ADBC617FCE37620CA67240B547D
                                                                                                                                                                                                                                                                      SHA-512:5ADCB00162F284C16EC78016D301FC11559DD0A781FFBEFF822DB22EFBED168B11D7E5586EA82388E9503B0C7D3740CF2A08E243877F5319202491C8A641C970
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Joe Sandbox View:
                                                                                                                                                                                                                                                                      • Filename: Launcher 1.0.0.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Launcher 1.0.0.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Xeno Executor Setup 1.0.0.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Xeno Executor Setup 1.0.0.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Setup.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Setup.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Setup.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Setup.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      • Filename: Setup.exe, Detection: malicious, Browse
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........|3..]...]...]..e\...]...\.5.]..e...]..wX...]..wY...]..e^...]..eX.y.]..eY...]..e]...]..eU./.]..e....]..e_...].Rich..].................PE..d...^.}`.........." ......8..........<).......................................K.....:FK...`A........................................`%G.x....(G.P.....J.@.....H.......J..%....J.....p.D.p....................S<.(...pR<.@............S<.(............................text.....8.......8................. ..`.rdata...F....8..P....8.............@..@.data...`....@G......@G.............@....pdata........H......@H.............@..@.rsrc...@.....J......@J.............@..@.reloc........J......PJ.............@..B........................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2882560
                                                                                                                                                                                                                                                                      Entropy (8bit):6.699294130576871
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:49152:WdTodIrn9wbFV6Ps2cA7SJ/W1C1fLPzhkE7hjU7gUxGJwDw3lCQTQY/N3lzl3heH:C79fe/CmP6w3lXQYef/3
                                                                                                                                                                                                                                                                      MD5:A007299C49FA50AEFF594655859780AE
                                                                                                                                                                                                                                                                      SHA1:D202F1F617023763A0E9418878E8ECAC96BE9FD4
                                                                                                                                                                                                                                                                      SHA-256:B78F0036621AD1D5833289F2AD509963EF78F1A89A3C7DF0F1370FD2D35A2804
                                                                                                                                                                                                                                                                      SHA-512:444C4BAA1E1D941BD04F78184CEC519C6EB53A83FBC3AA3EA30522BFFC9ECDE73EBE7B910C1A37C345429298ADA3C0FFCB3E3849E21B2009487B5CD1A02CB2A9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ....."#..................................................@B...........`A..........................................*.......*.(.............@...............B..3....).......................).(....R#.@............"*.P............................text....!#......"#................. ..`.rdata..D....@#......&#.............@..@.data.........*.."....*.............@....pdata........@.......*.............@..@.00cfg..8.....A.......+.............@..@.gxfg....,....A.......+.............@..@.retplne......A.......+..................tls..........A.......+.............@..._RDATA..\.....A.......+.............@..@.reloc...3....B..4....+.............@..B........................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):10544880
                                                                                                                                                                                                                                                                      Entropy (8bit):6.276833777601164
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:98304:GKPBQYOo+ddlymOk25flQCUliXUxiG9Ha93Whla6ZGdnp/8j:GKPBhORjOhCliXUxiG9Ha93Whla6ZGr4
                                                                                                                                                                                                                                                                      MD5:2134E5DBC46FB1C46EAC0FE1AF710EC3
                                                                                                                                                                                                                                                                      SHA1:DBECF2D193AE575ABA4217194D4136BD9291D4DB
                                                                                                                                                                                                                                                                      SHA-256:EE3C8883EFFD90EDFB0FF5B758C560CBCA25D1598FCB55B80EF67E990DD19D41
                                                                                                                                                                                                                                                                      SHA-512:B9B50614D9BAEBF6378E5164D70BE7FE7EF3051CFFF38733FE3C7448C5DE292754BBBB8DA833E26115A185945BE419BE8DD1030FC230ED69F388479853BC0FCB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...'........CmnD........ Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html .Q....B.......B...#...B.. $...B..p$...B...$...B...%...B..`P...C...P...C...Q..(C......<C.....OC......bC..@...uC.......C..P....C.......C.......C..p....C.. ....C.......C.......D..p... D.....3D..0...FD.....YD.....lD.......D......D..0....D.......D..p....D......D..@....D.......E......E..@...*E.....=E..P...NE......bE.....rE..@....E.......E.......E..P....E.......E......E..@....F.......F.....'F..0...7F..P...JF......aF......qF...G...F.. H...F..`K...F...K...F...L...F...-...F...c...G....'.'G....'.>G..@.'.UG..0.'.oG....'..G...!'..G...!'..G..P&'..G...)'..G..@*'..H..`.(..H...e).7H..0.).VH...)*.xH....*..H....*..H...P+..H...Y+..H...Z+..I...]+. I..`^+.9I.. .+.UI....+.lI....+..I..P.-..I...=...I.......I.......I.. ....J..p....J......-J..p...EJ......ZJ......rJ..`....J..@....J.......J.......J..0....J.......J.......J..0....K..@....K..../.2K...,/.GK..../.\K..
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):480768
                                                                                                                                                                                                                                                                      Entropy (8bit):6.335610382348666
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:afuE2DT96QHENooSYBjLkt4sasMHemPwlrX+nZiML7hn:afuE2DbkGoS2jLku/wWUiNn
                                                                                                                                                                                                                                                                      MD5:CA5BB0794B7700601E9438283D458665
                                                                                                                                                                                                                                                                      SHA1:7FCF090B19820B9450937BE800575C526448B581
                                                                                                                                                                                                                                                                      SHA-256:4A8BE3B4D9FE790EFDCE38CFF8F312A2F8276908D6703E0C6C37818E217CF1E3
                                                                                                                                                                                                                                                                      SHA-512:36EBAB858FE7E014837548575389E7DF2E86676888E4A9039C736D0F2E6463102E68989B794D949DDB16D9BCCE43CE55737FCF2A4B09B1667BF968A9540E9F32
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ....."..........`.....................................................`A........................................00......F>..(.......x.... ...C..............0....(.......................'..(...@A..@...........pA...............................text....!.......".................. ..`.rdata......@.......&..............@..@.data....L....... ..................@....pdata...C... ...D..................@..@.00cfg..8....p......................@..@.gxfg...`$.......&..................@..@.retplne.............<...................tls....!............>..............@..._RDATA..\............@..............@..@.rsrc...x............B..............@..@.reloc..0............H..............@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):7626240
                                                                                                                                                                                                                                                                      Entropy (8bit):6.463446463154237
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:98304:WJTPQhRQ4t2fzqJ3IZ155Rl5F/tpcAgsOMN:Wm2foIzRJosr
                                                                                                                                                                                                                                                                      MD5:05B585464F18FE0E3BDDB20527697D66
                                                                                                                                                                                                                                                                      SHA1:8BCEC2F0B409AFA9FF054E25F3CE85EB9BD50010
                                                                                                                                                                                                                                                                      SHA-256:0BB7C6C08B569C1D2DE90A40E6C142591E160A7C6CB15D21807F3404A48C4287
                                                                                                                                                                                                                                                                      SHA-512:F680AB9C3070F443C7359BB3F0C2032F5C58C88C7823E4592E8212CE8815EA5F463C86DF113F5320944C62D3CB4E8D45B9B4DCAADCCC1AC9BF203AE4BB52083C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ......Z......... .M......................................`u...........`A........................................M.k.8.....l.d....pt.......q.`O............t......wk......................uk.(.....Z.@.............l.....p.k.@....................text....Z.......Z................. ..`.rdata..$.....Z.......Z.............@..@.data.........m..|....m.............@....pdata..`O....q..P....q.............@..@.00cfg..8.....t......Rs.............@..@.gxfg....+....t..,...Ts.............@..@.retplne.....@t.......s..................tls....:....Pt.......s.............@..._RDATA..\....`t.......s.............@..@.rsrc........pt.......s.............@..@.reloc........t.......s.............@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):5245561
                                                                                                                                                                                                                                                                      Entropy (8bit):7.99547773238381
                                                                                                                                                                                                                                                                      Encrypted:true
                                                                                                                                                                                                                                                                      SSDEEP:98304:9LYsbEcnNWz49PDq2Awkmqmcph1Dd42cjrwrbHw4o0DPelwG3RC:90WcMButpphpd4jkrU4oeelrRC
                                                                                                                                                                                                                                                                      MD5:31C7D4B11AD95DFE539DD098E0FAB736
                                                                                                                                                                                                                                                                      SHA1:5418682D939CE8485ECC9125B872C14FFEC662C2
                                                                                                                                                                                                                                                                      SHA-256:A251019EB08F1E695E935D224544BDA37C5AE092BA68A89FA1FE3BD19BDE4F5C
                                                                                                                                                                                                                                                                      SHA-512:F868A4AFA4E0D5C561873D2A728E267F98DA2DF3FB90966E5736D496B6A24E71769A02B0346B27B7DCCE11CBE07248E309F50A89977DC8E5BBC06D6CC31BF738
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............f.......P'....$*.....-...43@...4.H...4XK...4i]...4.f...4.m...4?p...4.v...4.x...4.z...4.~...4....4.....4?....4.....4....4.....4=....4z....4a....4....4....4.....4.....4.....43....4.....4.....4J....4J....4.....4.....4#....4j....4J....5.....5....v5.:..w5.;..x5.<..y5.>..z5a?...5.?...5.D...5.E...5fJ...5.O...5.V...5.f...5.w...5.x...5.|..n<(...x<....y<....z<....{<....|<....<-....<t....<:....<1....<....V@....W@....X@z...Y@f...Z@....[@4...\@Q...]@....^@...._@jh..`@....<A ...=A.....P.~...Pg....PZ....P.....P.....Pv....P.....P5....Q.....QH....Q.....Q.....Q.....Q]....QC....Q.....Q.....QY....Q.....Qx....Q;!...Q.'...QH....Q.1..,Q.F..-QuL...QNN../Q.P..0Q.U..1Q0i..2Q.j..3Q.k..4QGm..5Q.o..6Q.r..7Q.t..8QGw..9Q#x..:Q.z..;Qj...<Q'...=Q~...>Q....?Q ....R....Rw....}.....}. ...}B`...}.a...}.h...}.i...}.j...}.o...}?....}{&...}(/...}.6...}.;...}i=...}.B...}.G...~vO...~>e...~wq...~_u...~.}...~.~..!~...."~....#~(...$~...&~ ...'~....(~$...)~Y...*~.$..+~.5..,~_7..-~.8...~|;../~.<..0~.=..1~.A..2~.I
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):273328
                                                                                                                                                                                                                                                                      Entropy (8bit):3.2521912102596153
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:HpeVehd7eASb6iAGm4hmWRSJTnBSki+TzUNp2Zg+TWJ0xEI2tWaw8MCZ72T04GO9:NdyNm4mWRSJTBSX4U1hJzbYB
                                                                                                                                                                                                                                                                      MD5:4EBD06BDF6CF8DACF6597586FD1704B5
                                                                                                                                                                                                                                                                      SHA1:E6819EF37F99F91468F4B94370A4AB467A075A6D
                                                                                                                                                                                                                                                                      SHA-256:148E4B85983F0D27ADECD9C6431B66379AC5538688F320E89D74FF6D48BB740B
                                                                                                                                                                                                                                                                      SHA-512:17ED5ABE702748B4626B3EE6DE4D0916738F095C913C2700EEE06B65A2BBCAF72AFC1F87AF7CE0FCCE8BD15FE6881508255D397A346C45A82C7791B9B9833DDF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.........+.11.2.214.22-electron.0...........................................;...b...........:..a........a........a........ar.......a........a..............Y.D............`$.........D............`$.......D............`$.......m.D............`$.........D............`D.........D............`$.......1.D............`$.......D............`$.......D............`$.........D............`$.......D............`$......ID............`$.......D............`$.......D............`$....(Jb....I.....@..F^......`.....(Jb....M.....@..F^..`.....H...IDa........D`....D`....D`.......D`.....D]D....D`......WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa............L.............................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):588152
                                                                                                                                                                                                                                                                      Entropy (8bit):4.837375324466163
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:EFzofuYUahtcOm3A0Sg8zY6y4XrxXSIIBYgHi:6Mfu/f2Y6zrM9C7
                                                                                                                                                                                                                                                                      MD5:146E284750735EF4798527DC1CD0E741
                                                                                                                                                                                                                                                                      SHA1:6408985B7D05C768A62BCB912234F14E1898FFDB
                                                                                                                                                                                                                                                                      SHA-256:3820E8FA1077D02606FEA8E1B3A9CA4BF7F4A71D0569D9A8EA9EE7A009D0CE80
                                                                                                                                                                                                                                                                      SHA-512:46824DF5D20E02FB72C3EFD07BEE6D832B1AB78C0163688FA84EDB831CBFBEF2DDE12BA9DA01F9DD49C4008BD3862A95699A2F6D55B8D4B3165976D3851C7278
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........$c^X11.2.214.22-electron.0..........................................H...P<..........X...........a........a........aT.......ar.......a........a..............Y.D............`$.........D............`$.......D............`$.......m.D............`$.........D............`D.........D............`$.......1.D............`$.......D............`$.......D............`$.........D............`$.......D............`$......ID............`$.......D............`$.......D............`$....(Jb....I.....@..F^......`.....(Jb....M.....@..F^..`.....H...IDa........D`....D`....D`.......D`.....D]D....D`......WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa............L.....................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):5334528
                                                                                                                                                                                                                                                                      Entropy (8bit):6.3349883465807055
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:98304:5aTPSALpajr/PMMPTZTOWvYQ7klZz8Wd4iRk:Elajr/PMMPTZTOWvCJ4Z
                                                                                                                                                                                                                                                                      MD5:750CBDFB01943E28E08708183EC208B5
                                                                                                                                                                                                                                                                      SHA1:1BEE0CD3D0970834B2A47DAF384354F243FD1EE0
                                                                                                                                                                                                                                                                      SHA-256:A6D295DCC3AFCB55AA79EAC5F896BCEB15CCB2B798DB3BB076CEEEA78073791A
                                                                                                                                                                                                                                                                      SHA-512:DBFDF76F40558CE2F23CA315B8719E283F0F22F46E733F37C2AE237FDAFD23CF7962F36547BA1BB2D5B219DE11546C3DC06859FAC498A7DA97DF41018C0D80C4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ......A..........;.......................................R...........`A..........................................L.~...&.L.P....`R.......P.<_...........pR.P}...L.......................L.(...@.A.@.............L.P............................text.....A.......A................. ..`.rdata...(....A..*....A.............@..@.data...p.....M.......M.............@....pdata..<_....P..`...LO.............@..@.00cfg..8.....Q.......P.............@..@.gxfg....,....R.......P.............@..@.retplne.....0R.......P..................tls....Q....@R.......P.............@..._RDATA..\....PR.......P.............@..@.rsrc........`R.......P.............@..@.reloc..P}...pR..~....P.............@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):106
                                                                                                                                                                                                                                                                      Entropy (8bit):4.724752649036734
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:YD96WyV18tzsmyXLVi1rTVWSCwW2TJHzeZ18rY:Y8WyV18tAZLVmCwXFiZ18rY
                                                                                                                                                                                                                                                                      MD5:8642DD3A87E2DE6E991FAE08458E302B
                                                                                                                                                                                                                                                                      SHA1:9C06735C31CEC00600FD763A92F8112D085BD12A
                                                                                                                                                                                                                                                                      SHA-256:32D83FF113FEF532A9F97E0D2831F8656628AB1C99E9060F0332B1532839AFD9
                                                                                                                                                                                                                                                                      SHA-512:F5D37D1B45B006161E4CEFEEBBA1E33AF879A3A51D16EE3FF8C3968C0C36BBAFAE379BF9124C13310B77774C9CBB4FA53114E83F5B48B5314132736E5BB4496F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"file_format_version": "1.0.0", "ICD": {"library_path": ".\\vk_swiftshader.dll", "api_version": "1.0.5"}}
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):928256
                                                                                                                                                                                                                                                                      Entropy (8bit):6.558001659108061
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24576:yGZKHQwvuzUrfafN/iXxT+R6Z5WODYsHh6g3P0zAk7a:GwwvuziiV/iXxc6Z5WODYsHh6g3P0zAu
                                                                                                                                                                                                                                                                      MD5:6C70AAB071C4FEBC5921E0D39811937A
                                                                                                                                                                                                                                                                      SHA1:20D87B3A5333EA3F6D0D7B0333F2C30A281937AA
                                                                                                                                                                                                                                                                      SHA-256:2233FEF6788711089FC5C1A008BFFF6559CF2FC3E8363CD8A50196E90D1D9825
                                                                                                                                                                                                                                                                      SHA-512:7F786C44376B59BE7D7C51D3C40ECB80F30645551B582D042B641EA0A6464DAF367DDF7EAFAF00A1558E1F11570D99A699D33D224B01048D09F8F00EA501C4BF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ......................................................................`A........................................H...<!......P...............<o..............T...t.......................X...(...@...@............................................text...v~.......................... ..`.rdata..............................@..@.data....L...p... ...V..............@....pdata..<o.......p...v..............@..@.00cfg..8....0......................@..@.gxfg...P(...@...*..................@..@.retplne.....p...........................tls................................@..._RDATA..\...........................@..@.rsrc...............................@..@.reloc..T...........................@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (GUI) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):140288
                                                                                                                                                                                                                                                                      Entropy (8bit):6.055411992765344
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:94PTD6FEzMju6bzJKjpEPeTOKvJhEnww+YbRYvPuq:94jQju6b9KilKvJurR8W
                                                                                                                                                                                                                                                                      MD5:04BFBFEC8DB966420FE4C7B85EBB506A
                                                                                                                                                                                                                                                                      SHA1:939BB742A354A92E1DCD3661A62D69E48030A335
                                                                                                                                                                                                                                                                      SHA-256:DA2172CE055FA47D6A0EA1C90654F530ABED33F69A74D52FAB06C4C7653B48FD
                                                                                                                                                                                                                                                                      SHA-512:4EA97A9A120ED5BEE8638E0A69561C2159FC3769062D7102167B0E92B4F1A5C002A761BD104282425F6CEE8D0E39DBE7E12AD4E4A38570C3F90F31B65072DD65
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......L..............C.......C.....C................................"...C...............................................Rich............................PE..d....-!e.........." ...#.>..........XG....................................................`.............................................X.......<....`.......0..$............p..........p...............................@............P..........@....................text...`=.......>.................. ..`.rdata.......P.......B..............@..@.data...............................@....pdata..$....0......................@..@_RDATA..\....P......................@..@.rsrc........`......................@..@.reloc.......p......................@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:very short file (no magic)
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1
                                                                                                                                                                                                                                                                      Entropy (8bit):0.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:L:L
                                                                                                                                                                                                                                                                      MD5:5058F1AF8388633F609CADB75A75DC9D
                                                                                                                                                                                                                                                                      SHA1:3A52CE780950D4D969792A2559CD519D7EE8C727
                                                                                                                                                                                                                                                                      SHA-256:CDB4EE2AEA69CC6A83331BBE96DC2CAA9A299D21329EFB0336FC02A82E1839A8
                                                                                                                                                                                                                                                                      SHA-512:0B61241D7C17BCBB1BAEE7094D14B7C451EFECC7FFCBD92598A0F13D313CC9EBC2A07E61F007BAF58FBF94FF9A8695BDD5CAE7CE03BBF1E94E93613A00F25F21
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (GUI) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1717760
                                                                                                                                                                                                                                                                      Entropy (8bit):6.538398941843305
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24576:g0oBnZMpMDo5qZWWBd1Rjoj5z+E59Dlrz89efe0z4uQuq7XTfN0j8AppZ:GMp/WH1Rs1+EfW9efeugj1g
                                                                                                                                                                                                                                                                      MD5:B90EBB9DB679C1D1285F3E7CD56D0C08
                                                                                                                                                                                                                                                                      SHA1:2C7D3E479C25FA519517FCE898B32E9892C97E15
                                                                                                                                                                                                                                                                      SHA-256:D38F07A0C690B59E5760C51BCBEB9C748CA5BA1B91B0E87B8D8ED3422569F7B1
                                                                                                                                                                                                                                                                      SHA-512:A9330029B06E7DA267A95B7D38CD42FB7E00B92D30C4EA4B5C7669384ABDD4C859C5A8BA7AB3AF176C469CDD67522A2F0D12853E553D33BF7ED01D6303E4133C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......g!<.#@RC#@RC#@RCh8QB+@RCh8WB.@RCh8VB(@RC2.QB*@RC2.VB-@RC2.WB.@RCh8SB @RC#@SC.@RC..[B%@RC..C"@RC..PB"@RCRich#@RC................PE..d...H.5g.........." ...*.............\....................................................`.....................................................(....`.......p..|............p.. ... ...p........................... N..@.......................@....................text... ........................... ..`.rdata..>9.......:..................@..@.data....S.......<..................@....pdata..|....p.......8..............@..@.rsrc........`....... ..............@..@.reloc.. ....p......."..............@..B................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):19
                                                                                                                                                                                                                                                                      Entropy (8bit):3.536886723742169
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:eNKXBmLn:oKXsLn
                                                                                                                                                                                                                                                                      MD5:C4EFD9A7B61EBF43B608440BE5E33369
                                                                                                                                                                                                                                                                      SHA1:926418256C277F1B11B575EC6E92CE6A844612F7
                                                                                                                                                                                                                                                                      SHA-256:ED4280859199DA5A8F25C0C6D533D0873460AC63368C14A69BBD863EA4BFB30F
                                                                                                                                                                                                                                                                      SHA-512:9EA97363868D61D3D51BD3804D638B71BA8DC65260800B3A54051B4725CF08E9D9880A12422A549D94A339C7267E858A7FF5CA9428D64051657134B5C6C20745
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:No passwords found.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:Google Chrome extension, version 3
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):11185
                                                                                                                                                                                                                                                                      Entropy (8bit):7.951995436832936
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:YEKh1jNlwQbamjq6Bcykrs3kAVg55GzVQM5F+XwsxNv7/lsoltBq0WG4ZeJTmrRb:fKT/BAzA05Gn5F+XV7NNltrWG4kJTm1b
                                                                                                                                                                                                                                                                      MD5:78E47DDA17341BED7BE45DCCFD89AC87
                                                                                                                                                                                                                                                                      SHA1:1AFDE30E46997452D11E4A2ADBBF35CCE7A1404F
                                                                                                                                                                                                                                                                      SHA-256:67D161098BE68CD24FEBC0C7B48F515F199DDA72F20AE3BBB97FCF2542BB0550
                                                                                                                                                                                                                                                                      SHA-512:9574A66D3756540479DC955C4057144283E09CAE11CE11EBCE801053BB48E536E67DC823B91895A9E3EE8D3CB27C065D5E9030C39A26CBF3F201348385B418A5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:Cr24..............0.."0...*.H.............0.........N.......E#......9e.u.q...VYY..@.+.C..k.O..bK.`..6.G..%.....3Z...e _.6....F..1p..K.Z......./ .3...OT..`..0...Y...FT..43.th.y...}....p.L...2S.&i.`..o...f.oH.....N..:..ijT.3.F{.0.,.f?'f.CQt;b_"Pc.. ..~S.I.c.8Z.;.....{G.a......k...>.`.o..%.$>;.....g.............jg?.R..@.:..........&..{...x@.Py..;kT....%F".S..w...N....9...A..@X.t!i.@..1;......1E..X.....[.~$....J......;=T.;)k..Y...$......S......M.P..P..>..=..u.....2p...w.9..1qw.a\A..Vj .C.....A..Cf1.r6.A...L. _m...[..l.Wr_../.. .B..9!.!+..ZG.K.......0.."0...*.H.............0.........^SUd%Q.L].......Cl2o...\[.....'*...;R=....N.C5....d. .....J.C>u.kr..Y..syJC.XS.q..E.n?....(G.5..)2.G..!.M.SS.{..U....!.EE..M[.#qs.A.1...g)nQ.c..G....Bd..7... .O.BI..KXQ..4.d.K.0......g.....-p....Z.E{...M&.~n.TE7..{0....5.#.C+3.y)pd9.e.........@..3.9..B.....I....2nX........2.?.~..S....]G.N.....Lr.O.Ve....9..D1.G..W)...P.?=.#..7.R.lz..a.wX.e..h.h.~....v..RP.@X....d.G
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):33
                                                                                                                                                                                                                                                                      Entropy (8bit):4.101381529092886
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:S/rG4qrFK3:S/rG4z3
                                                                                                                                                                                                                                                                      MD5:E90E9B350402FB53508BAB25E4B0CE46
                                                                                                                                                                                                                                                                      SHA1:653CEB716312AE286BE8804A95A101F70AF52DE3
                                                                                                                                                                                                                                                                      SHA-256:E7B12EC09E8B7E8786A7BF8BC3F159837D1E655E3660C5696E6E05AA3688D36C
                                                                                                                                                                                                                                                                      SHA-512:3BD4D592FA21CA48B03B2CF61763CE10AA90258F314A86D9CF1DEC17019CCAAD738E1F8FF7649360EA166925B1DDABE353E7DE66963D007F3069A6221A0B7452
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:# Clean Cookies.# HEXON ON TOP!..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1420
                                                                                                                                                                                                                                                                      Entropy (8bit):5.3765139896685845
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:YDG5LwRD0s/Up5fP1x5fn7Zu0QRWE5fR+nh0Qut5fxjK0qRuQL5FR6l5FRF0h:YDG5LOD0s8p5nX5/o0KWE5JC0Nt5pO0w
                                                                                                                                                                                                                                                                      MD5:2EFD5AC7E9235633AF045DAE4A0170A5
                                                                                                                                                                                                                                                                      SHA1:C330016DE8CE4F927B01DD64D94415027EDE1B71
                                                                                                                                                                                                                                                                      SHA-256:C06B489145F181C24FC03A64BCC829E8B6FC8E9BFB5CD94F49D461691FA94586
                                                                                                                                                                                                                                                                      SHA-512:2DC754BE5D5233C01086A731FE9FBAD971EC6F48D941294B92A781F5057CD2B3D88CF02A17E2B429966699FDA5900C8571FE76D14653EBBDB637639F5C89D73A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"logTime": "1005/085948", "correlationVector":"8sNXFnC9i2+S99lAzDH6Rq","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1005/085948", "correlationVector":"81A02D7FC86E45EDA6CBCA8671A98AFF","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1005/085948", "correlationVector":"NiTqUUpDli2IJjzrRApLSF","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1005/091044", "correlationVector":"4hXMqVe30Bl32fn1+6AOy1","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1005/091053", "correlationVector":"D7BB119EE9F4429BBF8B8E46242DB5E9","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1005/091235", "correlationVector":"Wk5x1on3JpNq4FXPG6U9B5","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1005/091235", "correlationVector":"EC448E7330FA4F5EA1E7898FDD3F2CB6","action":"FETCH_UX_CONFIG", "result":""}.{"logTime": "1005/091436", "correlationVector":"Ltc1GKjZ6R4P7ed5oiO6YB","action":"EXTENSION_UPDATER", "result":""}.{"logTime": "1005/091437", "correlationVector":"A569DB44
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:Google Chrome extension, version 3
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):135771
                                                                                                                                                                                                                                                                      Entropy (8bit):7.802585890890899
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:LtlntxI0jRnnf4pTz8IayMaCRABlauflM+u0F/oWRW:pl4+hf4pTky1EABYufNFS4W
                                                                                                                                                                                                                                                                      MD5:DA75BB05D10ACC967EECAAC040D3D733
                                                                                                                                                                                                                                                                      SHA1:95C08E067DF713AF8992DB113F7E9AEC84F17181
                                                                                                                                                                                                                                                                      SHA-256:33AE9B8F06DC777BB1A65A6BA6C3F2A01B25CD1AFC291426B46D1DF27EA6E7E2
                                                                                                                                                                                                                                                                      SHA-512:56533DE53872F023809A20D1EA8532CDC2260D40B05C5A7012C8E61576FF092F006A197F759C92C6B8C429EEEC4BB542073B491DDCFD5B22CD4ECBE1A8A7C6EF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:Cr24..............0.."0...*.H.............0.........^...1"...w.g..t..2J.G1.)X4..=&.?[j,Lz..j.u.e[I.q*Ba/X...P.h..L.....2%3_o.......H.)'.=.e...?.......j..3UH.|.X.M..u..s[.*..?$....F%....I....)..,-./.e5).f..O.q.^........9..(.._.ph2..^.YBPXf_8....h[.v...S.*1`.#..5.SF.:f-.#.65.i..b.]9...y2.'....k[...........=.B.../EYp....i:........ua....w...\H.j....b....4...l.b.:u.%1z....}L.A.F.IZ.2^.j...!F.&@;L..z...02..`:J_@....m....qcQ.|sD.r`vC.#.8lm...R.8.~A...."~)".[.M...o.a.H.$..(.d/.K.6......c........#.$..>.#..3..-...n4J.$-....N...s.G...3..q.e..(.B?*."...9M......[0Y0...*.H.=....*.H.=....B..............r...2..+Y.I...k..bR.j5Sl..8.......H"i.-l..`.Q.{...H0F.!..w./B..$<......r-.'..xp.H..Q...8.!..R^...%..W0....q....g.D..~.".%............mo.:......<#a..e...Chp...x4z....!.!.a...qgo....p8.T.6...Z....?..CV...<..K...?....k..........q=....Y^........!..K...G...m.n..Y.Y.......u.Wf...TO".?.......U/Rd..Y....j....H..Q...{.....x.OQ.~+}...L.9_.:.,E.....q.0&...I;b..H...>...9.}.B
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:very short file (no magic)
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1
                                                                                                                                                                                                                                                                      Entropy (8bit):0.0
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:L:L
                                                                                                                                                                                                                                                                      MD5:5058F1AF8388633F609CADB75A75DC9D
                                                                                                                                                                                                                                                                      SHA1:3A52CE780950D4D969792A2559CD519D7EE8C727
                                                                                                                                                                                                                                                                      SHA-256:CDB4EE2AEA69CC6A83331BBE96DC2CAA9A299D21329EFB0336FC02A82E1839A8
                                                                                                                                                                                                                                                                      SHA-512:0B61241D7C17BCBB1BAEE7094D14B7C451EFECC7FFCBD92598A0F13D313CC9EBC2A07E61F007BAF58FBF94FF9A8695BDD5CAE7CE03BBF1E94E93613A00F25F21
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:Zip archive data, at least v2.0 to extract, compression method=store
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):304
                                                                                                                                                                                                                                                                      Entropy (8bit):3.3066155406377193
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:vhjPmvas4K5jPmv9lojm9Pmv3EWVArn3tOvXXvK4KV3tOv9l4CluRmNtOvnlAWAr:5jzS5jH0B0WE/cVDmIGWSB8lC
                                                                                                                                                                                                                                                                      MD5:1A7D9EDBFBACD2506FAC76A57212FF8D
                                                                                                                                                                                                                                                                      SHA1:5A5FF11AABC9E78BE1B4C1F1497D1006B1D7C076
                                                                                                                                                                                                                                                                      SHA-256:3608DC14443E10CE205737B8E4791A8EC308911E429825BE7885CA82377AE5DE
                                                                                                                                                                                                                                                                      SHA-512:4619F58097BD3A80F66F65731A3F5B6A98D0309495AD41B81959A90A060A6FAC8A27C24BED49B5052FC1954D7112C0F31708B61B7DA2C83D28B4DDD824032A79
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:PK.........%oY................Autofill/PK.........%oY................Cookies/PK.........%oY................Passwords/PK...........%oY.........................A....Autofill/PK...........%oY.........................A'...Cookies/PK...........%oY.........................AM...Passwords/PK..............u.....
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1096
                                                                                                                                                                                                                                                                      Entropy (8bit):5.13006727705212
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:36DiJHxRHuyPP3GtIHw1Gg9QH+sUW8Ok4F+d1o36qjFD:36DiJzfPvGt7ICQH+sfIte36AFD
                                                                                                                                                                                                                                                                      MD5:4D42118D35941E0F664DDDBD83F633C5
                                                                                                                                                                                                                                                                      SHA1:2B21EC5F20FE961D15F2B58EFB1368E66D202E5C
                                                                                                                                                                                                                                                                      SHA-256:5154E165BD6C2CC0CFBCD8916498C7ABAB0497923BAFCD5CB07673FE8480087D
                                                                                                                                                                                                                                                                      SHA-512:3FFBBA2E4CD689F362378F6B0F6060571F57E228D3755BDD308283BE6CBBEF8C2E84BEB5FCF73E0C3C81CD944D01EE3FCF141733C4D8B3B0162E543E0B9F3E63
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:Copyright (c) Electron contributors.Copyright (c) 2013-2020 GitHub Inc...Permission is hereby granted, free of charge, to any person obtaining.a copy of this software and associated documentation files (the."Software"), to deal in the Software without restriction, including.without limitation the rights to use, copy, modify, merge, publish,.distribute, sublicense, and/or sell copies of the Software, and to.permit persons to whom the Software is furnished to do so, subject to.the following conditions:..The above copyright notice and this permission notice shall be.included in all copies or substantial portions of the Software...THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,.EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF.MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND.NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE.LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION.OF CONTRACT, TORT OR OTHERWISE, ARISIN
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:HTML document, ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):8315859
                                                                                                                                                                                                                                                                      Entropy (8bit):4.706254155756507
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24576:dbTq6T06T5kJWSIRWnBIl70mfT76y6E65606F/HXpErpem:t4scj
                                                                                                                                                                                                                                                                      MD5:8303B3A19888F41062A614CD95B2E2D2
                                                                                                                                                                                                                                                                      SHA1:A112EE5559C27B01E3114CF10050531CAB3D98A6
                                                                                                                                                                                                                                                                      SHA-256:9C088CAAC76CF5BE69E0397D76FE9397017585CFFDBA327692FF1B3A6C00D68F
                                                                                                                                                                                                                                                                      SHA-512:281B2ECC99502A050EE69E31256DEC135E8CB877D1A6BA9F1C975FCFB11C062980EE6061D2368B62F91E392953AE6235DD726A9D98E6EFC1302F7ED713099179
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview: Generated by licenses.py; do not edit. --><!doctype html>.<html>.<head>.<meta charset="utf-8">.<meta name="viewport" content="width=device-width">.<meta name="color-scheme" content="light dark">.<title>Credits</title>.<link rel="stylesheet" href="chrome://resources/css/text_defaults.css">.<link rel="stylesheet" href="chrome://credits/credits.css">.</head>.<body>.<span class="page-title" style="float:left;">Credits</span>.<a id="print-link" href="#" style="float:right;" hidden>Print</a>.<div style="clear:both; overflow:auto;"> Chromium <3s the following projects -->.<div class="product">.<span class="title">2-dim General Purpose FFT (Fast Fourier/Cosine/Sine Transform) Package</span>.<span class="homepage"><a href="http://www.kurims.kyoto-u.ac.jp/~ooura/fft.html">homepage</a></span>.<input type="checkbox" hidden id="0">.<label class="show" for="0" tabindex="0"></label>.<div class="licence">.<pre>Copyright(C) 1997,2001 Takuya OOURA (email: ooura@kurims.kyoto-u.ac.jp)..You may us
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (GUI) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):162117120
                                                                                                                                                                                                                                                                      Entropy (8bit):6.733463624184025
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1572864:ATmw0ciLNpDPuAvHxJLkY2O6Ea3f9kwZXeT6EivLp1vUAtdjtZn+f4FnIvGaC9dU:zv6E70+Mk
                                                                                                                                                                                                                                                                      MD5:CE6BE7DBF1189F24B294ABDFA9C10CB7
                                                                                                                                                                                                                                                                      SHA1:0B76091A1B1E9F9D82CA1C9A21FDD5A0BA3BE6E4
                                                                                                                                                                                                                                                                      SHA-256:50409DDBC58A020F268977CDC9FC427A800880F2AFFD1839EC5B8E9352AC7582
                                                                                                                                                                                                                                                                      SHA-512:56BC7A4AD416DDAFFC07A1FC0E07D30C013027C25F47DC5A71E1532A69C0C6F9C00D8D0159609491597BDA931072ED2FCA0FF159235DB24DC7635F795815AF02
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 3%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e..........".................P..........@..........................................`...........................................I.. ....M.h............p...f@..........`........?.......................?.(... !..@.............M.......I......................text............................... ..`.rdata..h.n.......n.................@..@.data....TB...Q.......P.............@....pdata...f@..p...h@...X.............@..@.00cfg..0............ ..............@..@.gxfg...pA.......B..."..............@..@.retplne.....@.......d...................rodata......P.......f.............. ..`.tls.........p.......x..............@...CPADinfo8............|..............@...LZMADEC..............~.............. ..`_RDATA..\...........................@..@malloc_h+........................... ..`.rsrc...............................@..@.reloc.......`......................@..B................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):127125
                                                                                                                                                                                                                                                                      Entropy (8bit):7.915612661029362
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:vlKzwqCT4wDNzIwL2o418Gb0+VRLf0ld0GY3cQ39Vm2I:vlKzwt4uEgK18Gb0OV8ld0GecQ3f2
                                                                                                                                                                                                                                                                      MD5:ACD0FA0A90B43CD1C87A55A991B4FAC3
                                                                                                                                                                                                                                                                      SHA1:17B84E8D24DA12501105B87452F86BFA5F9B1B3C
                                                                                                                                                                                                                                                                      SHA-256:CCBCA246B9A93FA8D4F01A01345E7537511C590E4A8EFD5777B1596D10923B4B
                                                                                                                                                                                                                                                                      SHA-512:3E4C4F31C6C7950D5B886F6A8768077331A8F880D70B905CF7F35F74BE204C63200FF4A88FA236ABCCC72EC0FC102C14F50DD277A30F814F35ADFE5A7AE3B774
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..............t...#.....:.I...J~p...K~6...L~....M~#...N~....O~`...P~m...Q~....R~....S~I...T~....U~'"..V~.,..^~.7.._~;9..b~v:..c~(<..j~.<..k~.B..l~fH..m~.J..n~.K..o~.L.....M.....N....aP....IS....BV....uY.....]....Pa.....d....h....i...hk....l....m...An....n.....................................K.....x...........4.....m.....D.............................1........................'.....*.....4.....>.....C.....D....hM.....U.....V....>X.....Z....E].....]....a...%c....d....f....h....i....k....l....o...wq....t...7v....y....}....~...m................................3.................g.....6............................k.....-...........3.....9......................H.......................Y.................{.....s....M..............F...................&....y..............\....p....Z.........Z.........g...........................T..................6...............M.................r...........1.................X.................u.......
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):177406
                                                                                                                                                                                                                                                                      Entropy (8bit):7.939611912805236
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:4DQYaEQN6AJPKNzIwafR54x5GMR+F44ffbdZnYw9p4AbIVGYoDd+HxNK/rIM0:4DQYaNN68QEVgx5GMRejnbdZnVE6YopY
                                                                                                                                                                                                                                                                      MD5:4610337E3332B7E65B73A6EA738B47DF
                                                                                                                                                                                                                                                                      SHA1:8D824C9CF0A84AB902E8069A4DE9BF6C1A9AAF3B
                                                                                                                                                                                                                                                                      SHA-256:C91ABF556E55C29D1EA9F560BB17CC3489CB67A5D0C7A22B58485F5F2FBCF25C
                                                                                                                                                                                                                                                                      SHA-512:039B50284D28DCD447E0A486A099FA99914D29B543093CCCDA77BBEFDD61F7B7F05BB84B2708AE128C5F2D0C0AB19046D08796D1B5A1CFF395A0689AB25CCB51
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..............t...#.....:.t...J~....K~....L~....M~....N~....O~....P~.%..Q~.*..R~.-..S~c5..T~.9..U~.A..V~.V..^~Ck.._~.m..b~)o..c~yr..j~#s..k~.}..l~....m~...n~...o~......................................K.....!..................Q..............*........................a.......................,%....H0.....2....E:....(A.....F.....L.....R.....T....QY....:].....f.....i....br....Sv..........C...........).................].....}................................................................................................. ....!....%.....*.....,..........O/...../....y1.....2....l4.....6.....7....A:.....?.....C.....K.....S.....Y....._.....e....Ok.....l.....m.....n.....o.....q.....r.....s.....u....:w..............P............................%.............7................,........G........u.............B........S.........a....%........;.....................l...........T..........R...........6..........).............
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):4916712
                                                                                                                                                                                                                                                                      Entropy (8bit):6.398049523846958
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:49152:KCZnRO4XyM53Rkq4ypQqdoRpmruVNYvkaRwvhiD0N+YEzI4og/RfzHLeHTRhFRNc:xG2QCwmHPnog/pzHAo/A6l
                                                                                                                                                                                                                                                                      MD5:2191E768CC2E19009DAD20DC999135A3
                                                                                                                                                                                                                                                                      SHA1:F49A46BA0E954E657AAED1C9019A53D194272B6A
                                                                                                                                                                                                                                                                      SHA-256:7353F25DC5CF84D09894E3E0461CEF0E56799ADBC617FCE37620CA67240B547D
                                                                                                                                                                                                                                                                      SHA-512:5ADCB00162F284C16EC78016D301FC11559DD0A781FFBEFF822DB22EFBED168B11D7E5586EA82388E9503B0C7D3740CF2A08E243877F5319202491C8A641C970
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........|3..]...]...]..e\...]...\.5.]..e...]..wX...]..wY...]..e^...]..eX.y.]..eY...]..e]...]..eU./.]..e....]..e_...].Rich..].................PE..d...^.}`.........." ......8..........<).......................................K.....:FK...`A........................................`%G.x....(G.P.....J.@.....H.......J..%....J.....p.D.p....................S<.(...pR<.@............S<.(............................text.....8.......8................. ..`.rdata...F....8..P....8.............@..@.data...`....@G......@G.............@....pdata........H......@H.............@..@.rsrc...@.....J......@J.............@..@.reloc........J......PJ.............@..B........................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2882560
                                                                                                                                                                                                                                                                      Entropy (8bit):6.699294130576871
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:49152:WdTodIrn9wbFV6Ps2cA7SJ/W1C1fLPzhkE7hjU7gUxGJwDw3lCQTQY/N3lzl3heH:C79fe/CmP6w3lXQYef/3
                                                                                                                                                                                                                                                                      MD5:A007299C49FA50AEFF594655859780AE
                                                                                                                                                                                                                                                                      SHA1:D202F1F617023763A0E9418878E8ECAC96BE9FD4
                                                                                                                                                                                                                                                                      SHA-256:B78F0036621AD1D5833289F2AD509963EF78F1A89A3C7DF0F1370FD2D35A2804
                                                                                                                                                                                                                                                                      SHA-512:444C4BAA1E1D941BD04F78184CEC519C6EB53A83FBC3AA3EA30522BFFC9ECDE73EBE7B910C1A37C345429298ADA3C0FFCB3E3849E21B2009487B5CD1A02CB2A9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ....."#..................................................@B...........`A..........................................*.......*.(.............@...............B..3....).......................).(....R#.@............"*.P............................text....!#......"#................. ..`.rdata..D....@#......&#.............@..@.data.........*.."....*.............@....pdata........@.......*.............@..@.00cfg..8.....A.......+.............@..@.gxfg....,....A.......+.............@..@.retplne......A.......+..................tls..........A.......+.............@..._RDATA..\.....A.......+.............@..@.reloc...3....B..4....+.............@..B........................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):10544880
                                                                                                                                                                                                                                                                      Entropy (8bit):6.276833777601164
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:98304:GKPBQYOo+ddlymOk25flQCUliXUxiG9Ha93Whla6ZGdnp/8j:GKPBhORjOhCliXUxiG9Ha93Whla6ZGr4
                                                                                                                                                                                                                                                                      MD5:2134E5DBC46FB1C46EAC0FE1AF710EC3
                                                                                                                                                                                                                                                                      SHA1:DBECF2D193AE575ABA4217194D4136BD9291D4DB
                                                                                                                                                                                                                                                                      SHA-256:EE3C8883EFFD90EDFB0FF5B758C560CBCA25D1598FCB55B80EF67E990DD19D41
                                                                                                                                                                                                                                                                      SHA-512:B9B50614D9BAEBF6378E5164D70BE7FE7EF3051CFFF38733FE3C7448C5DE292754BBBB8DA833E26115A185945BE419BE8DD1030FC230ED69F388479853BC0FCB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:...'........CmnD........ Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html .Q....B.......B...#...B.. $...B..p$...B...$...B...%...B..`P...C...P...C...Q..(C......<C.....OC......bC..@...uC.......C..P....C.......C.......C..p....C.. ....C.......C.......D..p... D.....3D..0...FD.....YD.....lD.......D......D..0....D.......D..p....D......D..@....D.......E......E..@...*E.....=E..P...NE......bE.....rE..@....E.......E.......E..P....E.......E......E..@....F.......F.....'F..0...7F..P...JF......aF......qF...G...F.. H...F..`K...F...K...F...L...F...-...F...c...G....'.'G....'.>G..@.'.UG..0.'.oG....'..G...!'..G...!'..G..P&'..G...)'..G..@*'..H..`.(..H...e).7H..0.).VH...)*.xH....*..H....*..H...P+..H...Y+..H...Z+..I...]+. I..`^+.9I.. .+.UI....+.lI....+..I..P.-..I...=...I.......I.......I.. ....J..p....J......-J..p...EJ......ZJ......rJ..`....J..@....J.......J.......J..0....J.......J.......J..0....K..@....K..../.2K...,/.GK..../.\K..
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):480768
                                                                                                                                                                                                                                                                      Entropy (8bit):6.335610382348666
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:afuE2DT96QHENooSYBjLkt4sasMHemPwlrX+nZiML7hn:afuE2DbkGoS2jLku/wWUiNn
                                                                                                                                                                                                                                                                      MD5:CA5BB0794B7700601E9438283D458665
                                                                                                                                                                                                                                                                      SHA1:7FCF090B19820B9450937BE800575C526448B581
                                                                                                                                                                                                                                                                      SHA-256:4A8BE3B4D9FE790EFDCE38CFF8F312A2F8276908D6703E0C6C37818E217CF1E3
                                                                                                                                                                                                                                                                      SHA-512:36EBAB858FE7E014837548575389E7DF2E86676888E4A9039C736D0F2E6463102E68989B794D949DDB16D9BCCE43CE55737FCF2A4B09B1667BF968A9540E9F32
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ....."..........`.....................................................`A........................................00......F>..(.......x.... ...C..............0....(.......................'..(...@A..@...........pA...............................text....!.......".................. ..`.rdata......@.......&..............@..@.data....L....... ..................@....pdata...C... ...D..................@..@.00cfg..8....p......................@..@.gxfg...`$.......&..................@..@.retplne.............<...................tls....!............>..............@..._RDATA..\............@..............@..@.rsrc...x............B..............@..@.reloc..0............H..............@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):7626240
                                                                                                                                                                                                                                                                      Entropy (8bit):6.463446463154237
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:98304:WJTPQhRQ4t2fzqJ3IZ155Rl5F/tpcAgsOMN:Wm2foIzRJosr
                                                                                                                                                                                                                                                                      MD5:05B585464F18FE0E3BDDB20527697D66
                                                                                                                                                                                                                                                                      SHA1:8BCEC2F0B409AFA9FF054E25F3CE85EB9BD50010
                                                                                                                                                                                                                                                                      SHA-256:0BB7C6C08B569C1D2DE90A40E6C142591E160A7C6CB15D21807F3404A48C4287
                                                                                                                                                                                                                                                                      SHA-512:F680AB9C3070F443C7359BB3F0C2032F5C58C88C7823E4592E8212CE8815EA5F463C86DF113F5320944C62D3CB4E8D45B9B4DCAADCCC1AC9BF203AE4BB52083C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ......Z......... .M......................................`u...........`A........................................M.k.8.....l.d....pt.......q.`O............t......wk......................uk.(.....Z.@.............l.....p.k.@....................text....Z.......Z................. ..`.rdata..$.....Z.......Z.............@..@.data.........m..|....m.............@....pdata..`O....q..P....q.............@..@.00cfg..8.....t......Rs.............@..@.gxfg....+....t..,...Ts.............@..@.retplne.....@t.......s..................tls....:....Pt.......s.............@..._RDATA..\....`t.......s.............@..@.rsrc........pt.......s.............@..@.reloc........t.......s.............@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):377708
                                                                                                                                                                                                                                                                      Entropy (8bit):5.4079285675542845
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:ebGJWQdLX/Wi6fR9a5DhZ2FQPnUGSBhjA636Zi2Jyn9Ybt5KXpgmLwSVxJsVxSjf:6GJW2bOi6fRmZ2OPnUThjA636Zi2Jynd
                                                                                                                                                                                                                                                                      MD5:7E51349EDC7E6AED122BFA00970FAB80
                                                                                                                                                                                                                                                                      SHA1:EB6DF68501ECCE2090E1AF5837B5F15AC3A775EB
                                                                                                                                                                                                                                                                      SHA-256:F528E698B164283872F76DF2233A47D7D41E1ABA980CE39F6B078E577FD14C97
                                                                                                                                                                                                                                                                      SHA-512:69DA19053EB95EEF7AB2A2D3F52CA765777BDF976E5862E8CEBBAA1D1CE84A7743F50695A3E82A296B2F610475ABB256844B6B9EB7A23A60B4A9FC4EAE40346D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........E...h.....i.....j.....k.....l.....n."...o.'...p.4...r.:...s.K...t.T...v.i...w.v...y.|...z.....|.....}.....................................................................................-.....>.....E.....N.....g.....p.....{...................................................../.....?.....K.....X.....y...........................................................<.....R.....W.....].....l.....y.....}.....................................................+.....9.....A.....I.....P.....U.....c.....s...............................................%.....J.....d.....m.....y...........................................................+.....2.....5.....6.....B.....L.....V.....].....g.............................O.....^.....k.................................................................".....5.....Q.....z....................................... .....".....%.....(.$...*.D...+.G...,.e........./.....0.....1.....3.....4.....5.....6.D...7.U...8.j...9.y...<.....=.....>.....?.....@.....A.....C.$...D.+.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):613646
                                                                                                                                                                                                                                                                      Entropy (8bit):4.894866190630168
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:Jf6uKsr8xSTwVF/gsSP5R9F5AVqruvyP2x30jH8+I:Xr8xLVF4sSP5R9F5AVqWyPS
                                                                                                                                                                                                                                                                      MD5:C6EF9C40B48A069B70ED3335B52A9A9C
                                                                                                                                                                                                                                                                      SHA1:D4A5FB05C4B493ECBB6FC80689B955C30C5CBBB4
                                                                                                                                                                                                                                                                      SHA-256:73A1034BE12ABDA7401EB601819657CD7ADDF011BFD9CE39F115A442BCCBA995
                                                                                                                                                                                                                                                                      SHA-512:33C18B698040CD77162EB05658ECA82A08994455865B70D1C08819DFAC68F6DB6B27D7E818260CAA25310FF71CF128239A52C948FDE098E75D1A319F478A9854
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........W...h.....i.....j.'...k.6...l.A...n.I...o.N...p.[...r.a...s.r...t.{...v.....w.....y.....z.....|.....}.........................................................................7.....S.....i.........................................L.....k.....m.....q...................................1.....A.....`.............................".....4.....=.....\.....~...................................5.....Q.....W.....Z.....i.............................K.....z.....................................................8.....G.....`.............................".........................................>.....A.....s.............................@.....G.....J.....K.....W.....`.....|.......................<............................./.....g.....w...............................................3.......................E.....j.....p.....x..................... .....".....%.6...(.c...*.....+.....,.........../.....0.....1.]...3.y...4.....5.....6.K...7.s...8.....9.....;.....<.....=.....>.?...?.I...@.i...A.....C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):671212
                                                                                                                                                                                                                                                                      Entropy (8bit):4.903418230501937
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:2wnA/ktqm99pX8vYUxXrmhkH+95NNb++YTzgpPMgSENIg:XACPfuq5S+L
                                                                                                                                                                                                                                                                      MD5:56F6DC44CC50FC98314D0F88FCC2A962
                                                                                                                                                                                                                                                                      SHA1:B1740B05C66622B900E19E9F71E0FF1F3488A98E
                                                                                                                                                                                                                                                                      SHA-256:7018884D3C60A9C9D727B21545C7DBBCC7B57FA93A16FA97DECA0D35891E3465
                                                                                                                                                                                                                                                                      SHA-512:594E38739AF7351A6117B0659B15F4358BD363D42FFC19E9F5035B57E05E879170BBAFE51AECE62C13F2AE17C84EFB2AED2FC19D2EB9DCB95EBD34211D61674E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........'...h.....i.....j.....k.....l.....n.....o.....p.....r.....s.....t.....v.0...w.=...y.C...z.R...|.X...}.j.....r.....w.................................................................!.....X.....h...................................!.....$.....(.....P.....r.........................................A.....W.....j...............................................i.....................................................).....K.....m.......................".....Y.....c.....k.....r...................................4.....g.......................#.....T.....e...............................................9.....O.....e...........................................................j.................1.....F.....b.............................+.....3.....?.....a....................... .....T............................................. .!...".>...%.r...(.....*.....+.....,.0.....G.../.x...0.....1.....3.....4.....5.&...6.....7.....8.....9.....;.....<.4...=.J...>.....?.....@.....A.....C.....D.....E.....F.Y.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):701712
                                                                                                                                                                                                                                                                      Entropy (8bit):4.660949177773058
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:wQpKqVw2iILlY+dAs1aQUfjoaVV4FH2mFx0x35uKN3CuKb7szmV2Jfu64K+z5jSF:5pKqJi6lY+dAs1aQU7yCx35uK4XQzQIp
                                                                                                                                                                                                                                                                      MD5:945DE8A62865092B8100E93EA3E9828D
                                                                                                                                                                                                                                                                      SHA1:18D4C83510455CE12A6AC85F9F33AF46B0557E2E
                                                                                                                                                                                                                                                                      SHA-256:F0E39893A39CE6133C1B993F1792207830B8670A6EB3185B7E5826D50FEA7BA2
                                                                                                                                                                                                                                                                      SHA-512:5F61160FF64B9490A1AD5517D8C1BB81AF77D349541FED5045E7F6E5053B7D79B7E8F114630BFBE4D5AF30258F70A6569462BFA39CCB765F8CA191F82EE04F3F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........P...h.....i.....j.....k.%...l.0...n.8...o.=...p.J...r.P...s.a...t.j...v.....w.....y.....z.....|.....}.........................................................................F.....h...............................................[.........................................#.....Q.....x...................................[.........................................T...............................................'.....U......................./.....c...............................................>.....s.............................4.....^................. .....9.....V.....l...................................\...............................................&.....B.....S.....v...............................................O.....r...................................0.......................9.....z.......................-.....[............... .....".....%.....(.E...*.q...+.t...,.........../.....0.....1.....3.....4.....5.....6.....7.....8.....9.....;.3...<.G...=._...>.....?.....@.....A.....C.F.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):904928
                                                                                                                                                                                                                                                                      Entropy (8bit):4.27317054663832
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:IGZVieUrnJssYEgp8S7cRySC/bYbkJBbdJ2DB5y0XlRr:7ZVlUrnzYEgp8S7cRySCDY0Bbd255lt
                                                                                                                                                                                                                                                                      MD5:8FEB4092426A0C2C167C0674114B014D
                                                                                                                                                                                                                                                                      SHA1:6FC9A1076723BFAF5301D8816543A05A82AD654D
                                                                                                                                                                                                                                                                      SHA-256:FB0656A687555801EDFB9442B9F3E7F2B009BE1126F901CF4DA82D67AC4AD954
                                                                                                                                                                                                                                                                      SHA-512:3DE40BDD18E9E7D3F2ECEEBF7C089E2250CE4D40412A18D718FACBA8F045E68B996978EF8B4D047B21D3424094056D16B5ABB81BD0507F446B805D6B889522A7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........J...h.....i.....j.....k."...l.-...n.5...o.;...p.H...r.N...s._...t.h...v.}...w.....y.....z.....|.....}.............................................................................................................5....._....................... .....".....&.....N.......................).....R.....n.......................F...................................K.....a...........3.....B.....].........................................?.....x.................@.......................................................................F....._.....q.................}.......................@.....e.............................1.....U.....y...............................................<...........h...................................4.....P.........................................e...........7.....s...........E...................................'... .<...".....%.....(.....*.K...,.N........./.....0.....1.O...3.o...4.....5.....6.....7.....8.4...9.S...;.....<.....=.....>.....?.$...@.Y...A.....C."...D.B.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):426865
                                                                                                                                                                                                                                                                      Entropy (8bit):5.401183228931482
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:+S19cdrijIs3cSlFEYLCJBB43nbhjJSwmrwiwWzMw1dLbpuQ16BtryBBwIle3neq:t39V4GRsMNux1hnW5CptA
                                                                                                                                                                                                                                                                      MD5:01ACD6F7A4EA85D8E63099CE1262FBAD
                                                                                                                                                                                                                                                                      SHA1:F654870D442938385B99444C2CACD4D6B60D2A0D
                                                                                                                                                                                                                                                                      SHA-256:B48D1BAD676F2E718CBE548302127E0B3567913A2835522D6DD90279A6D2A56A
                                                                                                                                                                                                                                                                      SHA-512:2BD13ECA1A85C219E24A9DEB5B767FAA5DC7E6B3005D4EB772E3794233ED49CB94C4492538D18ACC98658C01D941E35C6F213C18AC5480DA151C7545EEDEB4AB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........N...h.....i.....j.....k.!...l.,...n.4...o.9...p.F...r.L...s.]...t.f...v.{...w.....y.....z.....|.....}...............................................................................6.....O.....o.....|.....................................................2.....J.....j.....q...........................................................1.....;.....M.....].......................................................................D.....i.................................................................+.....2.....?.....u.........................................".....5.....F.....b.....e.....}.............................................................................&.....h......................./.....P.....s.....................................................4.....P.....|...............................................:.....F... .Q...".g...%.....(.....*.....+.....,.........../.-...0.2...1.h...3.x...4.....5.....6.....7.....8.....9.(...;.6...<.D...=.R...>.l...?.v...@.....A.....C.....D.....E...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):436203
                                                                                                                                                                                                                                                                      Entropy (8bit):5.843605854598268
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:U4Wm4h8qE2jv7SxUjBA59wjR558YAGKND9Gto8QV:U4WlvE2jjSxqywjR558YAbNDcI
                                                                                                                                                                                                                                                                      MD5:A934431D469D19A274243F88BB5AC6FB
                                                                                                                                                                                                                                                                      SHA1:146845EDC7442BF8641BC8B6C1A7E2C021FB01EB
                                                                                                                                                                                                                                                                      SHA-256:51C36A5ACDAD5930D8D4F1285315E66B2578F27534D37CD40F0625EE99852C51
                                                                                                                                                                                                                                                                      SHA-512:562F07151E5392CBFFB6B643C097A08045E9550E56712975D453A2EBAEE0745FBFBA99D69867EEC560D1D58B58DFF4F6035811B9D4F0B1B87547EFA98F94D55D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:......../...h.....i.....j.....k.....l.....n.....o.....p.....r.....s.....t.(...v.=...w.J...y.P...z._...|.e...}.w.........................................................................................#.....,.....9.....V.....d.........................................!.....?.....L.....X.....d.....o.....................................................".....4.....E.....{.......................................................................8.....O.....d.....{.................................................................H.....Z.....h.....................................................9.....<.....J.....X.....h.....w.................................................................!.....p.......................".....>.....s.....................................................&.....N.....n.........................................+.....5... .=...".N...%.u...(.....*.....+.....,.........../.....0.....1.H...3.V...4.s...5.....6.....7.....8.....9.....<."...=.,...>.A...?.I...@.[...A.....C.....D...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):396425
                                                                                                                                                                                                                                                                      Entropy (8bit):5.453683242581375
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:HWjRHz8SRl8o4mmwlGXaJwZnBEb1INv65h5aarXyzOeiphd4CTWwG:H+AoROBE55frxTe
                                                                                                                                                                                                                                                                      MD5:BB5252DC6F0F3C01CE3638138BF946C8
                                                                                                                                                                                                                                                                      SHA1:BFB584B67C8CA51D94BFF40809410553D54DA1CF
                                                                                                                                                                                                                                                                      SHA-256:C93F39D0AB9A2FAB26977AA729261633225879BA6DC5EA8D0CA89814B2DF9FA9
                                                                                                                                                                                                                                                                      SHA-512:E411FD3CC5285A6059C3FD80C3421253A4CE06B2D0CD1CD1EFC25E88191A58FED176452D852922137268BE2824E1E162CD4D4A6F8C695A50517A783D15B1C6E7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........]...h.....i.-...j.9...k.H...l.S...n.[...o.`...p.m...r.s...s.....t.....v.....w.....y.....z.....|.....}.........................................................................C.....Q.....a.....u.....}.....................................................#.....8.....O.....V.....a.....q.....x...........................................................9.....J.....y.......................................................................#.....=.....X.....q.....{.....~.................................................................3.....I.....o............................................................................./.....6.....9.....:.....A.....J.....P.....W.....b.......................!.....\.....r................................................................. .....J....._................................................... .....".....%.0...(.X...*.....+.....,.........../.....0.....1.....3.....4.)...5.A...6.s...7.....8.....9.....;.....<.....=.....>.....?.....@.....A.)...C.F...D.P.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):424275
                                                                                                                                                                                                                                                                      Entropy (8bit):5.503242835637318
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:Vn8S0lko9kj+QrKJgWqajUzUd8YI3iSEmhqYf51gHN8OIkCJD:V5oGyQWJgTaKcSEi5h9kCJD
                                                                                                                                                                                                                                                                      MD5:ED329B35D10E81F55D611FE8748876F8
                                                                                                                                                                                                                                                                      SHA1:0D998732BB4C4D1FAAD5A5BC0A21D6C5672418D3
                                                                                                                                                                                                                                                                      SHA-256:6FACD562ADD58C4684EF4A40DE9B63581FEA71C5B83049ED8A2C2A2C929C45CE
                                                                                                                                                                                                                                                                      SHA-512:BD713FF78E375FEC3A04AB0C9476C0379F87EFC6D18359C2A4D297303D78381081120C371848C8675F1F16DD4AB7284D81E5BFC9AE11AB33E12F96C12D89E764
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............h.R...i.c...j.o...k.~...l.....n.....o.....p.....r.....s.....t.....v.....w.....y.....z.....|.....}...................'...../.....7.....>.....E.....L.....M.....N.....P........................................................... .....6.....8.....<.....d.....y.....................................................).....M.....`.....f.....o...............................................0.....G.....K.....N.....W.....p...................................@.....M.....W....._.....f.....l.....y...............................................,.....`.................................................................2.....K.....e.....l.....o.....p.....z...................................9...................................2.....;.....M.....W.....d.....i.....n...................................$.....U.....q.....w........................... .....".....%.....(.....*.+...+.....,.L.....].../.s...0.{...1.....3.....4.....5.....6.=...7.Q...8.e...9.s...;.....<.....=.....>.....?.....@.....A.....C.....D.!.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):769054
                                                                                                                                                                                                                                                                      Entropy (8bit):4.751354951226556
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:H/58iMx4BquNw2202pgtZSWjZ4LIbsJvaP5A3HKQiEQBR07391qf2utKMaBlS9Wb:Hgx4BquNw2202pgtsWjyLrJvaRA3Htic
                                                                                                                                                                                                                                                                      MD5:6922AAA87431699787C1489E89AF17B9
                                                                                                                                                                                                                                                                      SHA1:6FB7771C9271CA2EEEBE025A171BFA62DB3527F7
                                                                                                                                                                                                                                                                      SHA-256:800545F9134914649DA91B90E7DF65D8208014C3E12F2BE551DFD6722BF84719
                                                                                                                                                                                                                                                                      SHA-512:367EF8467631E17E0A71D682F5792A499E8578B6C22AF93D9A919D9E78709EC2501DF9599624F013B43F4C3E9FB825182193116DBEAD01874995D322B7A6E4D6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........M...h.....i.....j.....k.....l.(...n.0...o.5...p.B...r.H...s.Y...t.b...v.w...w.....y.....z.....|.....}.........................................................................P.....w.............................B.....N.....Z...................................+.....x...................................h.....y.............................&.....C.....a.................,.....4.....H.....o...................................!.....M.................8...............................................1....._.....w.................!.....2.....q.................J.....a.........................................,.....O.....|.........................................!.....3.....F.....^.......................,.................<.............................(.....;.....I.......................M.................T.................................../... .B...".e...%.....(.....*.7...+.:...,.X........./.....0.....1.m...3.....4.....5.#...6.....7.....8.....9. ...;.a...<.w...=.....>.....?.....@.....A.B...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):344608
                                                                                                                                                                                                                                                                      Entropy (8bit):5.516692483052514
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:8esz1VquAhWG5J8C4MP9egFXwqfaYnT9Xa5alSeBNeg:8rz1sNZr4M1XwWT05YSxg
                                                                                                                                                                                                                                                                      MD5:0DB7F3A3BA228AA7F2457DB1AA58D002
                                                                                                                                                                                                                                                                      SHA1:BBF3469CAADFA3D2469DD7E0809352EF21A7476D
                                                                                                                                                                                                                                                                      SHA-256:CF5ACA381C888DE8AA6BBD1DCD609E389833CB5AF3F4E8AF5281FFD70CD65D98
                                                                                                                                                                                                                                                                      SHA-512:9C46C8D12579BD8C0BE230BBCDB31BDB537D2FEA38000CF700547CA59E3139C18CC7CB3E74053475605132404C4C4591F651D2DAD2CE7F413CCFFD6ACF7139E8
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........h.h.....i.....j.....k.....l.....n.....o.....p.....r.....s.....t.(...v.=...w.J...y.P...z._...|.e...}.w...........................................................................................................3.....;.....E.....c.....t.....v.....z...........................................................+.....:.....T.....g.....k.....q...................................................................................,.....:.....S.....h.....{.......................................................................+.....5.....A.....X.....h.................................................................(.....=.....R.....f.....m.....p.....q.....x..................................................... .....P.....].....h.......................................................................-.....D.....l....................................... .....".....%.....(.....*.....+.....,./.....@.../.N...0.W...1.....3.....4.....5.....6.....7.....8.....9.(...;.9...<.A...=.L...>.a...?.i...@.x...A...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):347111
                                                                                                                                                                                                                                                                      Entropy (8bit):5.508989875739037
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:xiLqIY2MuZYLMMP9ecGmM8faYdY4K55TiSbn8vMwS:xiLqIp34MM+mM0Y55eSKMwS
                                                                                                                                                                                                                                                                      MD5:5E3813E616A101E4A169B05F40879A62
                                                                                                                                                                                                                                                                      SHA1:615E4D94F69625DDA81DFAEC7F14E9EE320A2884
                                                                                                                                                                                                                                                                      SHA-256:4D207C5C202C19C4DACA3FDDB2AE4F747F943A8FAF86A947EEF580E2F2AEE687
                                                                                                                                                                                                                                                                      SHA-512:764A271A9CFB674CCE41EE7AED0AD75F640CE869EFD3C865D1B2D046C9638F4E8D9863A386EBA098F5DCEDD20EA98BAD8BCA158B68EB4BDD606D683F31227594
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........:.h.....i.....j.*...k.9...l.D...n.L...o.Q...p.^...r.d...s.u...t.~...v.....w.....y.....z.....|.....}.........................................................................6.....C.....R.....b.....i.....r.................................................................#...........>.....E.....Q.....l.....~.................................................................2.....:.....F.....S.....W.....Z.....`.....p...................................................................................:.....A.....P...........................................................'.....5.....H.....K.....\.....l.....|...................................................................................E.....m.....t.......................................................................0.....I.....m......................................................... .....".....%.3...(.J...*.c...+.f...,.........../.....0.....1.....3.....4.....5.....6.J...7.Z...8.o...9.|...;.....<.....=.....>.....?.....@.....A...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):421247
                                                                                                                                                                                                                                                                      Entropy (8bit):5.378825024438884
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:EqEmmoO5Tkz+v9zjzVdY/tIyN9d8pizkGp2Ioiw5QbdOXV5blUB0GLF90RRIHKx1:EqFmoY9rYChpWq95wLF90oSdc4
                                                                                                                                                                                                                                                                      MD5:5321C1E88C5C6FA20BDBC16043C6D0F6
                                                                                                                                                                                                                                                                      SHA1:07B35ED8F22EDC77E543F28D36C5E4789E7723F4
                                                                                                                                                                                                                                                                      SHA-256:F7CAA691599C852AFB6C2D7B8921E6165418CC4B20D4211A92F69C877DA54592
                                                                                                                                                                                                                                                                      SHA-512:121B3547A8AF9E7360774C1BD6850755B849E3F2E2E10287C612CF88FB096EB4CF4EE56B428BA67AEB185F0CB08D34D4FA987C4B0797436EEA53F64358D2B989
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........c...h.(...i.1...j.=...k.L...l.W...n._...o.d...p.q...r.w...s.....t.....v.....w.....y.....z.....|.....}.........................................................................D.....V.....e.....z...........................................................0.....K.....e.....m.....{...............................................".....'...../.....A.....e.....v...........................................................4.....O.....f...............................................%.....8.....G.....Y.....q.....y...................................!.....D.....P.....c.....o...........................................................&.....).....*.....3.....<.....E.....L.....].................4.....<.........................................-.....8.....A.....F....._...................................B.....[.....a.....i.....w............... .....".....%.....(.....*.....+. ...,.>.....d.../.....0.....1.....3.....4.....5.....6.]...7.o...8.....9.....;.....<.....=.....>.....?.....@.....A.3...C.Z...D.d.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):421381
                                                                                                                                                                                                                                                                      Entropy (8bit):5.350071187715506
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:LulovTVU/dglXU0+/oIgAClpG+v6Idj+I5Orj7FQoheL66PZqS:LbvTwdglCTupXv6gj+I5OrmohEGS
                                                                                                                                                                                                                                                                      MD5:E9FA4CADA447B507878A568F82266353
                                                                                                                                                                                                                                                                      SHA1:4A38F9D11E12376E4D13E1EE8C4E0D082D545701
                                                                                                                                                                                                                                                                      SHA-256:186C596D8555F8DB77B3495B7AD6B7AF616185CA6C74E5DFB6C39F368E3A12A4
                                                                                                                                                                                                                                                                      SHA-512:1E8F97FF3DAAD3D70C992F332D007F3DDB16206E2FF4CFFD3F2C5099DA92A7AD6FB122B48796F5758FE334D9FBF0BBAE5C552414DEBBB60FE5854AAA922E206E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........Y...h.....i.....j.(...k.7...l.B...n.J...o.O...p.\...r.b...s.s...t.|...v.....w.....y.....z.....|.....}.........................................................................8.....K.....[.....p.....~.....................................................&.....E....._.....g.....u...........................................................'.....9.....L.....].................................................................1.....Q.....{.....................................................+.....<.....T.....\.....m...................................3.....>.....H.....T.....f.............................................................................%...........5.....F.................1.....9.........................................).....4.....@.....E.....]...................................,.....E.....K.....S.....a............... .....".....%.....(.....*.....+.....,.'.....A.../.[...0.b...1.....3.....4.....5.....6.4...7.E...8.Z...9.l...;.}...<.....=.....>.....?.....@.....A.....C./...D.9.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):380687
                                                                                                                                                                                                                                                                      Entropy (8bit):5.464870724176939
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:2Mg++J/xRN0JLnrC4HFJbT/RauiQ/G5LjR43f7LQkPQW:2MmJnq7DG5LjQ
                                                                                                                                                                                                                                                                      MD5:A94E1775F91EA8622F82AE5AB5BA6765
                                                                                                                                                                                                                                                                      SHA1:FF17ACCDD83AC7FCC630E9141E9114DA7DE16FDB
                                                                                                                                                                                                                                                                      SHA-256:1606B94AEF97047863481928624214B7E0EC2F1E34EC48A117965B928E009163
                                                                                                                                                                                                                                                                      SHA-512:A2575D2BD50494310E8EF9C77D6C1749420DFBE17A91D724984DF025C47601976AF7D971ECAE988C99723D53F240E1A6B3B7650A17F3B845E3DAEEFAAF9FE9B9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........m...h.<...i.M...j.Y...k.h...l.s...n.{...o.....p.....r.....s.....t.....v.....w.....y.....z.....|.....}...............................!.....(...../.....6.....7.....8.....:.....l.....|...............................................,.....B.....D.....H.....p.................................................................5.....B.....H.....P.....^.....m.....v.......................................................................-.....F.....Z.....o.......................................................................0.....=.....W.....e.................................................................-.....B.....V.....m.....t.....w.....x...............................................U.....[...............................................$.....).....,.....<.....b.....x.........................................$.....6.....O.....Z... .d...".w...%.....(.....*.....+.....,....... .../.8...0.E...1.n...3.y...4.....5.....6.....7.....8.....9.+...;.>...<.K...=.T...>.g...?.o...@.~...A.....C.....D...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):622224
                                                                                                                                                                                                                                                                      Entropy (8bit):5.029280630090111
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:jje/X9nuyaXgfwHawNUWGOGfStQEvy1zeItDmNtua/1wMTAKzIxRAQiHedNu36XH:mxuyaXgfw6wNUWGOGfStQEvy1zeItDm8
                                                                                                                                                                                                                                                                      MD5:DCD3B982A52CDF8510A54830F270E391
                                                                                                                                                                                                                                                                      SHA1:3E0802460950512B98CD124FF9F1F53827E3437E
                                                                                                                                                                                                                                                                      SHA-256:E70DFA2D5F61AFE202778A3FAF5ED92B8D162C62525DB79D4EC82003D8773FA3
                                                                                                                                                                                                                                                                      SHA-512:3D5B7FA1A685FA623EC7183C393E50007912872E22CA37FDC094BADAEFDDEAC018CC043640814A4DF21BB429741DD295AA8719686461AFA362E130B8E1441A12
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............h.|...i.....j.....k.....l.....n.....o.....p.....r.....s.....t.....v.....w.....y.....z.....|.$...}.6.....>.....C.....K.....S.....[.....b.....i.....p.....r.....w...................................7....._.....m.....w............................. .....C.....r.....x...................................G.....b.........................................V.....{.....................................................:.....Y.......................-.....H.....P.....X....._.....i.....z.............................-.....D.....a.............................5.....D.....^.....t........................................./.....L.....S.....V.....g.....x.....................................................u.............................1.....9.....L.....X.....d.......................&.....L.....y...................................I.....\... .o...".....%.....(.....*.*...+.-...,.K.....o.../.....0.....1.....3.....4.-...5.a...6.....7.....8.0...9.I...;.Y...<.k...=.....>.....?.....@.....A.....C.X...D.....E...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):389054
                                                                                                                                                                                                                                                                      Entropy (8bit):5.4272126333674695
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:7Ji6mI/BcM0ohFpxGseSFOE/xaWEkLl5W5ucHiEi18OWUcrOShPGNgX1wA2:7Ji9CBPbpxaS5W5xHiEi18OWUs/2
                                                                                                                                                                                                                                                                      MD5:5518B51D4AF7F1B9D686CBEA28B69E71
                                                                                                                                                                                                                                                                      SHA1:DF7F70846F059826C792A831E32247B2294C8E52
                                                                                                                                                                                                                                                                      SHA-256:8FF1B08727C884D6B7B6C8B0A0B176706109AE7FE06323895E35325742FE5BD1
                                                                                                                                                                                                                                                                      SHA-512:B573050585C5E89A65FC45000F48A0F6AABCCD2937F33A0B3FCBD8A8C817BEAA2158F62A83C2CAE6FCFB655F4A4F9A0C2F6505B41A90BC9D8EDE74141EBC3266
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............h.~...i.....j.....k.....l.....n.....o.....p.....r.....s.....t.....v.....w.....y.....z.&...|.,...}.>.....F.....K.....S.....[.....c.....j.....q.....x.....y.....z...........................................................".....].....v.....x.....|.....................................................5.....C.....P.....d.....t.....z.....~..................................................... .....*.....0.....O.....h.....~...........................................................$.....1.....F.....L.....T.....................................................+.....<.....M.....P.....^.....p.............................................................................7.............................*.....=.....f.....u...........................................................3.....V............................................. .....".....%.....(.1...*.Q...+.T...,.r........./.....0.....1.....3.....4.....5.4...6.n...7.....8.....9.....;.....<.....=.....>.....?.!...@.@...A.x...C.....D.....E...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):438088
                                                                                                                                                                                                                                                                      Entropy (8bit):5.195613019166525
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:2zHaVyEDQV5aZrU+5xeuhGjZ3ZmA58Pm+7JATvy8:2zNMdU4XA5Imb
                                                                                                                                                                                                                                                                      MD5:3165351C55E3408EAA7B661FA9DC8924
                                                                                                                                                                                                                                                                      SHA1:181BEE2A96D2F43D740B865F7E39A1BA06E2CA2B
                                                                                                                                                                                                                                                                      SHA-256:2630A9D5912C8EF023154C6A6FB5C56FAF610E1E960AF66ABEF533AF19B90CAA
                                                                                                                                                                                                                                                                      SHA-512:3B1944EA3CFCBE98D4CE390EA3A8FF1F6730EB8054E282869308EFE91A9DDCD118290568C1FC83BD80E8951C4E70A451E984C27B400F2BDE8053EA25B9620655
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........].h.....i.....j.....k.....l.....n.....o.....p.&...r.,...s.=...t.F...v.[...w.h...y.n...z.}...|.....}...........................................................................................5.....<.....E.....d.....l.....y...................................................../.....E.....O.....^.....................................................".....8.......................................................................%.....J.....d.....~.................................................................+.....h.....q.....}...................................&.....4.....I.....o.....r................................................................. .....*.....5.....>.....O.................(.....0.................................................................,.....R.....l.............................6.....=.....H.....Y............... .....".....%.....(.....*.....+.....,.*.....B.../.W...0.`...1.....3.....4.....5.....6.....7.3...8.O...9.d...;.}...<.....=.....>.....?.....@.....A...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):455097
                                                                                                                                                                                                                                                                      Entropy (8bit):5.3846988377077745
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:FaQ6+Dt6QuagV1Zz+zApZ4MYnYMArDBW5Mx0q20wC7KZL3wyLkCMg1fF5FEs6rYX:B6+cV37a5JB
                                                                                                                                                                                                                                                                      MD5:0445700799DE14382201F2B8B840C639
                                                                                                                                                                                                                                                                      SHA1:B2D2A03A981E6FF5B45BB29A594739B836F5518D
                                                                                                                                                                                                                                                                      SHA-256:9A57603F33CC1BE68973BDD2022B00D9D547727D2D4DC15E91CC05EBC7730965
                                                                                                                                                                                                                                                                      SHA-512:423F941EC35126A2015C5BB3BF963C8B4C71BE5EDFB6FC9765764409A562E028C91C952DA9BE8F250B25C82E8FACEC5CADA6A4AE1495479D6B6342A0AF9DDA5F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........@...h.....i.....j.....k.....l.....n.!...o.&...p.3...r.9...s.J...t.S...v.h...w.u...y.{...z.....|.....}.....................................................................................#.....5.....@.....I.....k.....w.....................................................!...../.....@.....M.....[...............................................&.....2.....n.......................................................................0.....Q.....t.......................................................................X.....f.....p..................................."...../.....>.....V.....Y.....p..................................................................................._.......................(.....=.....R...........................................................".....\.........................................(.....I.....S... ._...".x...%.....(.....*.....+.....,.........../.'...0.5...1.r...3.....4.....5.....6.....7. ...8.8...9.N...;.a...<.o...=.....>.....?.....@.....A.....C.,...D.>.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):879149
                                                                                                                                                                                                                                                                      Entropy (8bit):4.32399215971305
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:Xz2UMY57hmdUoITsKMaWZKerbtsMhmksd4M+0+z20QmuOAl5VpvoxWnhygfZw/gQ:D2UMY57h9w4MSbsp5cLhdKE8
                                                                                                                                                                                                                                                                      MD5:7B5F52F72D3A93F76337D5CF3168EBD1
                                                                                                                                                                                                                                                                      SHA1:00D444B5A7F73F566E98ABADF867E6BB27433091
                                                                                                                                                                                                                                                                      SHA-256:798EA5D88A57D1D78FA518BF35C5098CBEB1453D2CB02EF98CD26CF85D927707
                                                                                                                                                                                                                                                                      SHA-512:10C6F4FAAB8CCB930228C1D9302472D0752BE19AF068EC5917249675B40F22AB24C3E29EC3264062826113B966C401046CFF70D91E7E05D8AADCC0B4E07FEC9B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........N...h.....i.....j.$...k.3...l.>...n.F...o.K...p.X...r.^...s.o...t.x...v.....w.....y.....z.....|.....}.............................................................................................................T.....l.................'.....).....5.....].......................4.....S.....i.............................l.................................................................'.....k.....t.....w.............................a.................;.....[.....n.....v.....}.......................+.....:.....f.......................X.....y...........].....s...................................6.....X.....w...............................................-.....L.....c....................... .....B.................Q.............................3.....?.....K.....}...................................o.............................3.....[... .a...".....%.....(.....*.g...+.j...,.........../.....0.....1.~...3.....4.....5.....6.[...7.....8.....9.....;.Q...<.h...=.....>.....?.....@.....A.D...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):544212
                                                                                                                                                                                                                                                                      Entropy (8bit):4.626369079921645
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:EQ+K7r0rkgrlOUmTU2/C9iyBZ60DAf1X2VeQCap4M52QoLpMzu5tlmd9DnwWHQgZ:/+55Voi
                                                                                                                                                                                                                                                                      MD5:93D9261F91BCD80D7F33F87BAD35DDA4
                                                                                                                                                                                                                                                                      SHA1:A498434FD2339C5D6465A28D8BABB80607DB1B65
                                                                                                                                                                                                                                                                      SHA-256:31661709AB05E2C392A7FAEED5E863B718F6A5713D0D4BBDAB28BC5FB6565458
                                                                                                                                                                                                                                                                      SHA-512:F213FF20E45F260174CAA21EAE5A58E73777CD94E4D929326DEEFBEF01759D0200B2A14F427BE1BB270DFCD2C6FB2FCE789E60F668AC89ECF1849D7575302725
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........*...h.....i.....j.....k.....l.....n.....o.....p.....r.....s.....t.'...v.<...w.I...y.O...z.^...|.d...}.v.....~.............................................................................4.....M.....`.....y.....................................................6.....Q.....h.....{.............................'.....<.....a.....t.....|...................................;.....C.....M.....i...............................................E.....o...............................................".....>.....f.....p...................................4.........................................#.....&.....9.....P.....c.....{.................................................................a...........1.....;.............................$.....<.....B.....N....._.....g.............................&.....a.........................................!... .3...".N...%.....(.....*.....+.....,.........../.....0.....1.Y...3.n...4.....5.....6.....7.....8.3...9.G...;.\...<.v...=.....>.....?.....@.....A.D...C.w.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):921629
                                                                                                                                                                                                                                                                      Entropy (8bit):4.309424818801467
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:L+UfSs6ZQZmi1jk34lFOwG8bkFSvf4QAEm5dmGhsYK/GR3TX4kNMdpqdYnLsuFQ8:CUfSsDmilN6O5H5NJ6K
                                                                                                                                                                                                                                                                      MD5:B7E4892B2030E4F916364856B6CC470A
                                                                                                                                                                                                                                                                      SHA1:B08AD51E98E3B6949F61F0B9251F7281818CD23E
                                                                                                                                                                                                                                                                      SHA-256:093119A99F008AB15D0E5B34CD16EC6B4313554E6C3CFFE44502BFCE51470E3E
                                                                                                                                                                                                                                                                      SHA-512:CA453025D73228592A4BFE747A3EA08B86327F733032A64CED0FC0C9E2E00B02450F133E691B94BE13A3E69E22B43BCA512E5F77B0E490320F0BF8E65571BB46
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........ ...h.....i.....j.....k.....l.....n.....o.....p.....r.....s.....t.....v.(...w.5...y.;...z.J...|.P...}.b.....j.....o.....w.....................................................2.....T.....y.............................".....<...................................).....W.....}.......................*.......................+.....W.....g.....}.............................................../.....k.....t.....w.......................>.................&.....l...............................................\.....n.................7.....T...............................................$.....n.....q............................./.....b.....i.....l.....n.........................................R...................................Z.....z...................................5.................q.................\...................................0... .K...".k...%.....(.....*.2...+.5...,.S........./.....0.....1.p...3.....4.....5.....6._...7.....8.....9.....;.^...<.r...=.....>.....?.....@.....A.;...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):423481
                                                                                                                                                                                                                                                                      Entropy (8bit):5.516218200944141
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:yL0fCmEZW/FhjNmvgVRTKBOS+/6ocIG0uPXuyAF6Wk6DkYAiKbeM/ogQbn7xjemW:QYCmNLjN31V5v5tE77ORS
                                                                                                                                                                                                                                                                      MD5:105472BC766A30BB71F13D86081DE68D
                                                                                                                                                                                                                                                                      SHA1:D014103AD930889239EFD92ECFDFCC669312AF6C
                                                                                                                                                                                                                                                                      SHA-256:A3A853A049735C7D474191DFF19550A15503ECD20BAFE44938EB12EA60E50B7C
                                                                                                                                                                                                                                                                      SHA-512:EE7479D459EFF8EC59206C2269DF4E9FC1CA143E9B94A908EB8A5A1E16180BCC88F0B24D73C387F5853EA0418E737641F23146676232C1A3AC794611F7880F11
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........h...h.2...i.C...j.O...k.^...l.i...n.q...o.v...p.....r.....s.....t.....v.....w.....y.....z.....|.....}...........................................%.....,.....-...........0.....Y.....e.....q.................................................................A.....T.....p.....x...........................................................".....*.....8.....G.....X.............................................................................%.....B.....c.......................................................................G.....U.....a.....w.............................................../.....2.....B.....S.....f.....|.................................................................(.....g.............................8.....l.....{.....................................................I.....h................................................... .....".0...%.U...(.r...*.....+.....,.........../.....0.....1.....3.)...4.F...5.d...6.....7.....8.....9.....;.....<.....=.....>.4...?.=...@.N...A.....C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):456792
                                                                                                                                                                                                                                                                      Entropy (8bit):5.643747395444093
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:SGudNK66hRyoSSfLOAYXky1MV5QgsZfGRAxY62E9PSam7EEOEeLvx5gR4RStG2rA:pkP6hRyosAhV5QgsiE4747vx5VL/
                                                                                                                                                                                                                                                                      MD5:B338DCB0E672FB7B2910CE2F561A8E38
                                                                                                                                                                                                                                                                      SHA1:CF18C82EC89F52753F7258CDB01203FBC49BED99
                                                                                                                                                                                                                                                                      SHA-256:BCDF39AA7004984CB6C13AAC655B2E43EFEB387CE7D61964B063D6CF37773F7A
                                                                                                                                                                                                                                                                      SHA-512:F95F6A8E36D99680FB3CDB439F09439782BCC325923EC54BDC4AEB8EC85CF31A3A2216E40E2B06C73A2F5E7439D8178D8BECAC72781A6D79808067E8CCF3CAC6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........6...h.....i.....j.....k.....l.....n.....o.....p.....r.#...s.4...t.=...v.R...w._...y.e...z.t...|.z...}.....................................................................................2.....G.....W.....q.....................................................9.....X.....d.....}...............................................0.....5.....;.....N.....^.....s.....................................................-.....G.....d.....z.......................#.....?.....H.....P.....W.....].....l...............................................(.....Q.....x...........................................................;.....`.....u.....|...............................................1.......................b.....w...........................................................K.....l.......................5.....L.....T....._.....w............... .....".....%.....(.....*.8...+.;...,.Y.....j.../.....0.....1.....3.....4.....5.....6.P...7.k...8.....9.....;.....<.....=.....>.....?.....@.....A.0...C.U...D.b.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):373931
                                                                                                                                                                                                                                                                      Entropy (8bit):5.37912097047996
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:5ig8kAijuuv1p4UVWfjDVnjHFsRmP28Jvr5PdhpvtEHSVsEaOq:TfjuCpRgVnjHFCm+8dr5Pdhlq
                                                                                                                                                                                                                                                                      MD5:BD9636E9C7DC7BE4C7F53FB0B886BE04
                                                                                                                                                                                                                                                                      SHA1:55421D0E8EFCBEF8C3B72E00A623FB65D33C953E
                                                                                                                                                                                                                                                                      SHA-256:5761EE7DA9CA163E86E2023829D377A48AF6F59C27F07E820731192051343F40
                                                                                                                                                                                                                                                                      SHA-512:7C7E88FFD2B748E93122585B95850DED580E1136DB39386CED9F4DB0090E71394A1F9CEB937262C95969132C26BF6CE1684FBB97B6469ED10414171A2E8CC3A4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........?...h.....i.....j.....k.....l.....n.....o.$...p.1...r.7...s.H...t.Q...v.f...w.s...y.y...z.....|.....}...........................................................................................,.....3.....;.....R.....Y.....c.....~.................................................................*.....H.....Y.....f.......................................................................,.....9.....=.....@.....E.....Y.....h.....|.................................................................(.....D.....J....._.........................................4.....F.....O.....Z.....p...............................................................................................%.....1....._.........................................A.....K.....W.....^.....f.....m.....t.........................................<.....O.....T.....Z.....g............... .....".....%.....(.....*.....+.....,.!.....1.../.@...0.D...1.x...3.....4.....5.....6.....7.....8.....9.%...;.3...<.<...=.I...>.^...?.f...@.w...A...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):414290
                                                                                                                                                                                                                                                                      Entropy (8bit):5.287464735635254
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:9ErNnm7VCctogSrqRrhsO1gRT9TeexAGT96+q2tKLV9fLwUQ2KKU3I8HrmwGWNBJ:eGVi3ZPS8KN1Lj+w5ZzoB
                                                                                                                                                                                                                                                                      MD5:7C981A25BE0E02FBA150E17D9669A536
                                                                                                                                                                                                                                                                      SHA1:3AF10FEB7CDC7BC091B80173301B1A3D4EF941D4
                                                                                                                                                                                                                                                                      SHA-256:EE2D2643AD7A8F97B7A6C070910866436CAE0267A6691A3D8A88ED0948D8AF49
                                                                                                                                                                                                                                                                      SHA-512:445EECFA83E7635BC3442937BDF3B9C4A38EF3FBB7F07CA90A1D4222E1A29639F3FDCE12B20E798888823F2D612E5972492B3786D37B256AEC5C1C96CDB96B28
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........R...h.....i.....j.#...k.2...l.=...n.E...o.J...p.W...r.]...s.n...t.w...v.....w.....y.....z.....|.....}........................................................................./.....B.....Q.....j.....u.....~...........................................................=.....D.....T.....b.....n.....{.....................................................5.....i.......................................................................,.....M.....r.......................................................................<.....J.....W.....t...........................................................1.....F.....Y.....q.................................................................(.....s.............................*.....P.....X.....l.....u...............................................1.....L.....}....................................... .....".....%.....(.&...*.B...+.E...,.c.....t.../.....0.....1.....3.....4.....5.,...6.{...7.....8.....9.....;.....<.....=.....>.....?.....@.-...A.[...C.~...D...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):505348
                                                                                                                                                                                                                                                                      Entropy (8bit):5.70215508714318
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:Z41y9KfIBW57kXoT3r0x9pUV6tIz4ZKs24AMNA4oQPkwaIAOen1IUNH7bbeCYX5M:gy8f6+/iSVwm4ZKs2kowP/53/gxVX
                                                                                                                                                                                                                                                                      MD5:F47EFAA76F5200A6C0C23C33684D7BAD
                                                                                                                                                                                                                                                                      SHA1:9B24F6491A1171D3DFEAE329E1F45AB3E3D9CF22
                                                                                                                                                                                                                                                                      SHA-256:5B99D6A11D7B653681B2A2BB616CC1814451AD35C370D178B2EF6650465D4F2A
                                                                                                                                                                                                                                                                      SHA-512:67D130A66F03A4D1A0A30576B19FE44FA707CBA764C6DCD355CBE891A2BCC0B25823BA2106E9271E06ADA674F66824A5323B77D4984900516D2A8802AF87960E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........w.h.....i.....j.....k.....l.....m.....o.....p.....v.....w.....y.....z.....|."...}.4.....<.....A.....I.....T.....\.....k.....p.....x.....................................................(...........@.....h.....}...................................-.....W.....x...............................................+.....L.....g.....m.....|.............................9.....?.....Q.....o...............................................I.....y...................................................../.....V.....b.............................U.....................................................'.....<.....h...........................................................Z...........0.....6...................................9.....B.....N.....T.....].....x.............................<............................................. .....".....%.M...(.....*.....+.....,.........../.....0.'...1.l...3.....4.....5.....6.....7.8...8.V...9.t...;.....<.....=.....>.....?.....@.....A.I...C.p...D.....E.....F.....G...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1013161
                                                                                                                                                                                                                                                                      Entropy (8bit):4.228821100054137
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:VfJ86BOVXCMsEb7ytUGGGHPsj/lEmlPV01tqErthLVGkcVw2VzidmEHXy0r2Slih:VfG7VES7yv54EPh4ow7M5LrUf+w542Fv
                                                                                                                                                                                                                                                                      MD5:A603F3D899CCDCD9AF20DCD8F87D0ED8
                                                                                                                                                                                                                                                                      SHA1:F476355D6EA5C05B35AD74C08E2EDFE5FF2881AD
                                                                                                                                                                                                                                                                      SHA-256:3C11A589AAB0C5D9E5C18E6A95DCE7E613089D3598B8FE54E656A8D97E22A6FD
                                                                                                                                                                                                                                                                      SHA-512:F6B008080CAE44D680FAAAB02911F62E21D042C55FC5AF87E719E9BC4102B282E58E67F19F37F60FE8BA99F5B8CFD4E70A61AF9918A9EE8E3D8AE72555D31C15
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........m...h.<...i.M...j.Y...k.h...l.s...n.{...o.....p.....r.....s.....t.....v.....w.....y.....z.....|.....}...............................!.....(...../.....6.....7.....8.....=.................=.....}......................./.....A.............................:.......................&.....d.................-.....U.................6.....N.....j.................L.............................4.....C.....F.....d.................4.................e.........................................P.....o...............................................J...........,.....H.....v.................(.....+.....e.......................G.....................................................(...........V...................................H.....`.....................................................x.................z.......................E............... .....".....%.t...(.....*.....+.....,.!.....R.../.....0.....1.;...3.U...4.....5.....6.s...7.....8.....9.<...;.m...<.....=.....>.....?.....@.-...A.....C.....D.#.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):425564
                                                                                                                                                                                                                                                                      Entropy (8bit):6.081749497168224
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:neS2i6I3l956t91zt8OhYJRFJCqj5T718I8MtWq7hUoBAA:efia6JH5D8iAA
                                                                                                                                                                                                                                                                      MD5:B83BC27C5BC2BB4D0FF7934DB87E12AD
                                                                                                                                                                                                                                                                      SHA1:050F004E82F46053B6566300C9A7B1A6A6E84209
                                                                                                                                                                                                                                                                      SHA-256:AB3060E7D16DE4D1536FF6DD4F82939A73388201AD7E2BE15F3AFEE6A5AAE0EF
                                                                                                                                                                                                                                                                      SHA-512:B56B211587FE93A254198CA617CDECD8DC01E4561151A53173721665111C4D2440535F5F6B8A5A69A31840EA60124F4AFD2C693D1FC4683FA2CF237C8EDE5F0A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............h.|...i.....j.....k.....l.....m.....o.....p.....r.....s.....t.....y.....z.....|.....}.......&.....+.....3.....>.....F.....U.....Z.....a.....h.....j.....o...........................................................g.....w.....y.....}...............................................).....H.....U.....h.....|...............................................&.....,.....5.....H.....[.....a.....d.....j.........................................:.....Q.....W....._.....f.....o.....|..................................."...../.....Y.....v...............................................1.....>.....N.....[.....t.....................................................$.......................u.................................................................?.....V...................................#.....).....?.....Q.....^... .a...".k...%.....(.....*.....+.....,.-.....C.../.`...0.l...1.....3.....4.....5.....6.?...7.U...8.l...9.|...;.....<.....=.....>.....?.....@.....A.....C.8...D.H...E.i...F.....G...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):457229
                                                                                                                                                                                                                                                                      Entropy (8bit):5.6340316488356885
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:Ca5OWNr5w0tunX4nkokKgneIVUoCb1DD7U5R3zv9dFaL8tx9e2lJ2I96S2:Ca5JOIpg7e2UoC9c59zv9fx9eoP6S2
                                                                                                                                                                                                                                                                      MD5:96602A3F3B59FAA997A4D337889FA02B
                                                                                                                                                                                                                                                                      SHA1:94593A270B0D84C006E0959BC136B6C4987DFD3F
                                                                                                                                                                                                                                                                      SHA-256:51DB5311DE9DFF41FB4EADDA8BA7D5E492912F72C3754ADAF8E3DE23ABA46F8A
                                                                                                                                                                                                                                                                      SHA-512:DD45240494D09AD9A41BE9D4056ED274E78A50DC85E6BFF9438E707A84F65B77EBE522531370DA99E50A6887D6063C29E9728B49DF2B2B3C61362D774797FAC2
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........U...h.....i.....j.)...k.8...l.C...n.K...o.P...p.]...r.c...s.t...t.}...v.....w.....y.....z.....|.....}.........................................................................8.....F.....S.....g.....r.....................................................5.....T.....m.....v...............................................!.....6.....=.....F.....S.....a.....u.....................................................&.....<.....Z.....w.............................5.....>.....F.....M.....X.....j.....................................................-.....T.....m.....{.................................................................H.....O.....R.....S.....].....h.....o.....y.................).....x.............................G.....X.....v...............................................B.....d...............................................)... .>...".N...%.m...(.....*.....+.....,.........../.!...0.$...1.U...3.f...4.....5.....6.....7. ...8.@...9.T...;.b...<.s...=.....>.....?.....@.....A.....C.:.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):455871
                                                                                                                                                                                                                                                                      Entropy (8bit):5.635474464056208
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:GOQDGtu4e+D8NHtVFHTPq7K4vHo4q3sb3755ZanXDEG9Aarl4zxmEA5QXls14:GOQUZ2Gu4vTqw75KEGGmEs14
                                                                                                                                                                                                                                                                      MD5:E4F7D9E385CB525E762ECE1AA243E818
                                                                                                                                                                                                                                                                      SHA1:689D784379BAC189742B74CD8700C687FEEEDED1
                                                                                                                                                                                                                                                                      SHA-256:523D141E59095DA71A41C14AEC8FE9EE667AE4B868E0477A46DD18A80B2007EF
                                                                                                                                                                                                                                                                      SHA-512:E4796134048CD12056D746F6B8F76D9EA743C61FEE5993167F607959F11FD3B496429C3E61ED5464551FD1931DE4878AB06F23A3788EE34BB56F53DB25BCB6DF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........e...h.,...i.=...j.I...k.X...l.c...n.k...o.p...p.}...r.....s.....t.....v.....w.....y.....z.....|.....}.................................................&.....'.....(.....*.....O.....b.....u.....................................................!.....%.....M.....].....s.....z...............................................!.....2.....8.....>.....Q.....e.....{...........................................................%.....7.....I.....g.....}...........................................................3.....7.....P.........................................+.....<.....O.....d.....v...........................................................".....#.....-.....8.....@.....G.....Y.................-.....8...................................%.....,.....;.....>.....I....._.............................#.....T.....i.....p.....y..................... .....".....%.....(.....*.....+.1...,.O.....r.../.....0.....1.....3.....4.....5.!...6.\...7.|...8.....9.....<.....=.....>.....?.....@.....A.9...C.X...D.e.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1056670
                                                                                                                                                                                                                                                                      Entropy (8bit):4.265027412218305
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:GoHap3rrLnsoR47/J7nUwmoMmWDcZubSA/doySi3ethK5G/7dxOY3ab:Gj3r0ofwvi3eG5G/7OY3c
                                                                                                                                                                                                                                                                      MD5:3B1305ECCA60FB5A7B3224A70398EAD9
                                                                                                                                                                                                                                                                      SHA1:04E28FCE93FC57360E9830E2F482028FFC58A0A2
                                                                                                                                                                                                                                                                      SHA-256:C10942F5333F0D710DE4D3DEF7AA410C4576FFE476B3EA84AAC736BFB9C40D67
                                                                                                                                                                                                                                                                      SHA-512:68FDD944A153C16D18E73DD2AA75593F6AC13B8E87DBFB5BFCCDD982A4F885BD9903C3ED1AF781581CD3C5D42DD2FF21CC780F54FD71AB04A3237D08ED5A1554
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........j...h.6...i.G...j.S...k.b...l.m...n.u...o.z...p.....r.....s.....t.....v.....w.....y.....z.....|.....}.....................................".....).....0.....1.....2.....7.................".....b.....}.......................N...........3.....5.....9.....a.......................M.....{.................@.....n...........!.....e.............................'.......................C.....}.............................H.................=.................P.....~.........................................v.................I.....j.........................................b...................................q.......................b.....i.....l.....n.............................1...........q.....'.....E...........N...........(.....`...................................;.............................Y.....4.............................;.....k... .....".....%.n...(.....*.....+.....,.M........./.....0.....1.}...3.....4.....5.>...6.....7.....8.....9.....;.....<.8...=.X...>.....?.....@.....A.....C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):863832
                                                                                                                                                                                                                                                                      Entropy (8bit):4.294820073892162
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:mNmdqcjlxFxta+oFNkWt0qJASXspXi+zoF5MU9G3GRe3RQR3K5/knxi4nou4AmH1:mgqylx+Pkc0qO8o2D6WA0+te503pueVx
                                                                                                                                                                                                                                                                      MD5:25F2B9842E2C4C026E0FC4BC191A6915
                                                                                                                                                                                                                                                                      SHA1:7DE7F82BADB2183F1F294B63CA506322F4F2AAFA
                                                                                                                                                                                                                                                                      SHA-256:771EB119A20FCC5E742A932A9A8C360A65C90A5FE26AB7633419966BA3E7DB60
                                                                                                                                                                                                                                                                      SHA-512:AC6D2EEB439351EEE0CF1784B941F6DD2F4C8C496455479CA76919BF7767CCA48A04BA25FCCDE74751BAA7C90B907B347396235A3CE70F15C1B8E5388E5C6107
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........)...h.....i.....j.....k.....l.....n.....o.....p.....r.....s.%...t.....v.C...w.P...y.V...z.e...|.k...}.}.......................................................................;.....].........................................#...................................+.....^.............................A.......................(.....G.....c.....y.......................]...............................................6.....`.......................N.............................!.....(.....4.....W.....p.......................k.....................................................=.....Z.........................................<.....o.....v.....y.....{.........................................9.................................../.....H.....h.....q.............................$.....x.................Q.............................A.....v......... .....".....%.....(.d...*.....+.....,.........../.A...0.N...1.....3.....4.....5.I...6.....7.....8.3...9.[...;.....<.....=.....>.....?.....@.B...A.v...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):390303
                                                                                                                                                                                                                                                                      Entropy (8bit):5.258177538585681
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:zCsFFfyrvxoQuXkulRopY/5BI8T5sHAVHMM/k3y:tQxoNlR6K5v5vVsMZ
                                                                                                                                                                                                                                                                      MD5:9B3E2F3C49897228D51A324AB625EB45
                                                                                                                                                                                                                                                                      SHA1:8F3DAEC46E9A99C3B33E3D0E56C03402CCC52B9D
                                                                                                                                                                                                                                                                      SHA-256:61A3DAAE72558662851B49175C402E9FE6FD1B279E7B9028E49506D9444855C5
                                                                                                                                                                                                                                                                      SHA-512:409681829A861CD4E53069D54C80315E0C8B97E5DB4CD74985D06238BE434A0F0C387392E3F80916164898AF247D17E8747C6538F08C0EF1C5E92A7D1B14F539
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........c...h.(...i.0...j.<...k.K...l.V...n.^...o.c...p.p...r.v...s.....t.....v.....w.....y.....z.....|.....}................................................................... .....J.....].....q.................................................................<.....R.....r.....{.......................................................................+.....;.....J.....y.............................................................................6.....S.....w.............................................................................:.....S....._.................................................................0.....I.....`.....s.....z.....}.....~.....................................................M.....T.................................................................2.....N.....f.....................................................,.....:... .=...".I...%.u...(.....*.....+.....,.........../.....0.....1.....3.;...4.Z...5.m...6.....7.....8.....9.....;.....<.....=.....>.:...?.B...@.W...A...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):382997
                                                                                                                                                                                                                                                                      Entropy (8bit):5.424185417752492
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:Kf9KG0yIhGHby7Op7f21zg2mKP7s4UzUn5el4nYHOp1k:Kf7xHby7Op7f21vs4kY5el4Jp1k
                                                                                                                                                                                                                                                                      MD5:7576C2FA9199A4121BC4A50FF6C439C3
                                                                                                                                                                                                                                                                      SHA1:55E3E2E651353E7566ED4DBE082FFC834363752B
                                                                                                                                                                                                                                                                      SHA-256:2A3DFC6B41FA50FABED387CB8F05DEBBC530FA191366B30C9CB9EAAE50686BD5
                                                                                                                                                                                                                                                                      SHA-512:86C44E43609E6EB61273F23D2242AA3D4A0BFA0EA653A86C8B663FA833283CC85A4356F4DF653E85080F7437B81AE6201A3ECF898A63780B5CA67FAA26D669FE
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........S...h.....i.....j.+...k.:...l.E...n.M...o.R...p._...r.e...s.v...t.....v.....w.....y.....z.....|.....}.........................................................................3.....>.....M.....`.....h.....r.....................................................$.....<.....A.....P.....a.....h.....t...........................................................).....\.....o.....v.....{...........................................................).....A.....Z.....e.....i.....q.....x.....~...........................................................5.....X.....n.....w.........................................................................................!.....).....4.....;.....F.....v.......................>.....X.....p...........................................................&.....?.....W................................................... .....".....%. ...(.@...*.c...+.f...,.........../.....0.....1.....3.....4.....5.....6.L...7.c...8.....9.....;.....<.....=.....>.....?.....@.....A.....C.".
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):395005
                                                                                                                                                                                                                                                                      Entropy (8bit):5.3648120313169505
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:9w7EkDj0crV7gSSO5S3HDpaQj3D+qnRVZ5qYx1Gp7KNWaPW:9wYkH04FgSSO5SUO7Z5qYx1Gp7KNrPW
                                                                                                                                                                                                                                                                      MD5:BC41967B2FF493E7F151C7721245739D
                                                                                                                                                                                                                                                                      SHA1:7606133DDBB58492DBBF02C03A975FB48DA1E26F
                                                                                                                                                                                                                                                                      SHA-256:3DBE5569F53D1314DCB1BC99540CF6A0FEA45B6D67576FD0D14C688107892F32
                                                                                                                                                                                                                                                                      SHA-512:9E395A3B5BBF64DE3E474C56C4FB39879F107A9DB246632CF6BB4B06160E05A82C0161D6496EDB2BC29FEBB4A8F67CA7EA904167B860FD6DA96636A6711CB593
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........E...h.....i.....j.....k.....l.#...n.+...o.0...p.=...r.C...s.T...t.]...v.r...w.....y.....z.....|.....}...............................................................................$.....4.....E.....N.....W.....r.....z.....................................................'.....7.....I.....V.....c...........................................................!.....`.....u.....z...........................................................+.....G.....f.......................................................................9.....E.....].....v.....................................................2.....F.....Y.....t.................................................................'.....a...................................<.....I.....Y.....a.....j.....n.....r...................................".....O.....d.....m.....x..................... .....".....%.....(.....*.....+.....,.!.....2.../.I...0.S...1.....3.....4.....5.....6.....7.....8.;...9.J...;.Z...<.h...=.v...>.....?.....@.....A.....C.....D...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):439993
                                                                                                                                                                                                                                                                      Entropy (8bit):5.767289703106541
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:nXFDujSoL/7+Xgv3iWSb1vPiCUdcUd3Imhz1QhjAB5cyE447e:XJg3d1Qhw5qe
                                                                                                                                                                                                                                                                      MD5:61C093FAC4021062E1838A32D79399C2
                                                                                                                                                                                                                                                                      SHA1:84A47537EF58D2507CF7697EA7E1E27B1F812EE8
                                                                                                                                                                                                                                                                      SHA-256:58067EC06973F5DD7AFEBBE57BFFCE3A3ED9F8E5093AF8FCEFDB6A65B2B68B22
                                                                                                                                                                                                                                                                      SHA-512:475D9D4F27CBC23EFD9ACF75024F993BCF7A8279E658CCBD84C8AC810E1C828DE4DAC4141298865FAF1BB8858A7A88A12D1A21C467E8C656533E364CEFF7E5DC
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........T...h.....i.....j.%...k.4...l.?...n.G...o.L...p.Y...r._...s.p...t.y...v.....w.....y.....z.....|.....}.........................................................................6.....E.....S.....h.....q...........................................................3.....M.....S.....g.....|.................................................................).....;.....n.............................................................................2.....N.....i.....{.................................................................+.....6.....V.....c...........................................................(.....7.....M.....d.....{...........................................................T.............................,.....i.....r.....................................................7.....V.....r............................................. .....".)...%.K...(.c...*.....+.....,.........../.....0.....1.....3.,...4.K...5.i...6.....7.....8.....9.....;.....<.....=.....>.....?.$...@.7...A.{...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):415490
                                                                                                                                                                                                                                                                      Entropy (8bit):5.425893789423815
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:Bmyk1sBD6ytNBXBLw1OGDcpryHF55NJNtYbsRklb2:Bk1EuBX5PJbssRwC
                                                                                                                                                                                                                                                                      MD5:A23C805EE4D3D67C811B50826CA25A51
                                                                                                                                                                                                                                                                      SHA1:C14FA8B9C7073FE88E188CFA4B34883FACCC2C09
                                                                                                                                                                                                                                                                      SHA-256:62BE4FB0BD3B8BE563516BFEA3F0848924BB7AFB0C563D02C1508608A4487E3B
                                                                                                                                                                                                                                                                      SHA-512:C478BD2234EEF73AA08085D29B916AD1471576FF213F972C9616757172D0CDEC6E5D6797A1F2635AC17A0BAC34964A298E4AB4336479456CE10330128CD68A53
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........j...h.6...i.G...j.S...k.b...l.m...n.u...o.z...p.....r.....s.....t.....v.....w.....y.....z.....|.....}.....................................".....).....0.....1.....2.....7....._.....q.....................................................#.....%.....).....T.....c.....|...................................................../.....F.....P.....X.....h.....y...........................................................%.....:.....H.....Y.....r.................................................................+.....5.....F.....~...............................................).....;.....S.....V.....g.....y.............................................................................=.....y............................. .....H.....R.....i.....p.....z...............................................3.....f....................................... .....".....%.....(.....*.(...+.+...,.I.....Z.../.n...0.w...1.....3.....4.....5.....6.-...7.A...8.Y...9.l...;.|...<.....=.....>.....?.....@.....A.....C.!...D.+.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):416968
                                                                                                                                                                                                                                                                      Entropy (8bit):5.40159614402729
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:Mg2vZhLwJeOMfieJVJJxhUOlxLu3yv5xKqSR0B:z2HLwx18dv5xKqSRW
                                                                                                                                                                                                                                                                      MD5:ACFFA29064F40A014BC7FE13E5FF58A9
                                                                                                                                                                                                                                                                      SHA1:5A0890C94084075446264469818753F699A3D154
                                                                                                                                                                                                                                                                      SHA-256:423E7CCB22D32276320ED72F07186188E095C577DB5BCE7309C8BD589A2A8858
                                                                                                                                                                                                                                                                      SHA-512:D4572C81FDD3B7B69D77544F68B23AE0B546158033BE503DBAAB736D3CA1188B18916688234FAE9EA29FA430258B2D2B95A93D0E8B74919A62040B84902D3B6E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........s...h.H...i.Y...j.e...k.t...l.....n.....o.....p.....r.....s.....t.....v.....w.....y.....z.....|.....}.........................%.....-.....4.....;.....B.....C.....D.....I.....r...........................................................&.....(.....,.....W.....f...........................................................!.....9.....C.....K.....\.....n.................................................................%.....3.....D.....b.................................................................#.....+.....<.....t.....~...............................................(.....:.....T.....W.....h.....|.............................................................................N...................................0.....X.....b.....|.....................................................;.....^............................................. .....".....%.....(.3...*.P...+.S...,.q........./.....0.....1.....3.....4.....5.8...6.....7.....8.....9.....;.....<.....=.....>.....?.....@.+...A.a...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):430188
                                                                                                                                                                                                                                                                      Entropy (8bit):5.460211694476929
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:pqgw46K4aoFt3GgnSYJ0vLi5OU6ois2a/7ulqr:pqg16Ft3GgnSYuvLi5OXo3/5r
                                                                                                                                                                                                                                                                      MD5:19CFC7C8F1A2E4A2DE1F9F64475469BC
                                                                                                                                                                                                                                                                      SHA1:BF6C4F373C19B03E116D2593C64E1CECA47D79DC
                                                                                                                                                                                                                                                                      SHA-256:3E725F7A791AED1FBED57F075CA11CE389A5BD425CCCE3C00537DAD27E5A8DD6
                                                                                                                                                                                                                                                                      SHA-512:FF5254E3A3676B8F5E74CBA6661AE43D5739C7363C66CB17F74DCE158DC36CEE103885F055846DD320B932F2E7FBDC831BCEE6293D423FF9B842B68644F633BD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........L...h.....i.....j.....k.$...l./...n.7...o.<...p.I...r.O...s.`...t.i...v.~...w.....y.....z.....|.....}.........................................................................1.....@.....L.....Z.....e.....p...........................................................<.....E.....^.....n.....y...............................................+.....?.....T.................................................................M.....n...................................#.....+.....2.....8.....G.....Y.....n.....u...............................................T.....b.....t.....................................................,.....@.....G.....J.....K.....W.....c.....p.....y.................).....r.....z.............................9.....S.....d.....l.....r.....x.............................3.....V............................................. .....".....%.<...(.S...*.k...+.n...,.........../.....0.....1.....3.....4.'...5.G...6.....7.....8.....9.....;.....<.....=.....>.....?.....@.&...A._...C.....D...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):703434
                                                                                                                                                                                                                                                                      Entropy (8bit):4.837280329650102
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:y0MhY5eXN2hHO3j/jHwzvMBsWA2kkje8P/XyFGGJFsWPaZuLoUFC8WNcHWajf+6K:y0Cjc5w6pw
                                                                                                                                                                                                                                                                      MD5:FC0E2FC09AA9089C5DB75BAB7A0754A7
                                                                                                                                                                                                                                                                      SHA1:F3D1E3E1600AE188E801A81B6D233DB9903B82DF
                                                                                                                                                                                                                                                                      SHA-256:188B6405CB6C5B7C0B35050278A119C3CE41FB90883B9ADB39FEC15DA0A05550
                                                                                                                                                                                                                                                                      SHA-512:377E685D1D171D0A7158B56F356CA33D4493D07EFA58D3C384E272E1B6829933552C69AFF95215AE7D1A0F99616A20790708F5187EA10CFE46BAA2BB522FC18F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........S.h.....i.....j.....k.....l.....n.#...o.(...p.5...r.;...s.L...t.U...v.j...w.w...y.}...z.....|.....}.........................................................................:.....W.....t.........................................E.....l.....n.....r...................................(.....A.....K.............................3.....?.....b.......................+.....5.....F.....[.....v.........................................8.....f.........................................*.....K.....e...................................H.....i.............................7.....t.....w...................................B.....I.....L.....M.....].....q...................................>.....J.................#.....e.........................................6.....t.................:.......................#.....7.....G.....w......... .....".....%.....(.....*.....+.....,.........../.....0.....1.]...3.t...4.....5.....6.N...7.r...8.....9.....;.....<.....=.....>.8...?.G...@.f...A.....C.!...D.2...E.j...F...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):443083
                                                                                                                                                                                                                                                                      Entropy (8bit):5.818419643630632
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:o9fWTbKt/WJWyqiLJcPXPJ5ELALWaQlKDEmLFGR:uMKYkyqiWPXR5ELALWaQlwdLE
                                                                                                                                                                                                                                                                      MD5:793C442420F27D54410CDB8D8ECCE5FF
                                                                                                                                                                                                                                                                      SHA1:8995E9E29DBAAA737777E9C9449B67CA4C5B4066
                                                                                                                                                                                                                                                                      SHA-256:5A9D6B77CA43C8ED344416D854C2D945D8613E6C7936445D6FE35E410C7190BB
                                                                                                                                                                                                                                                                      SHA-512:291E3D2300C973966D85E15A1B270BA05C83696271A7C7D4063B91097A942590C9797A4D22DFBE154564B779DAC92FD12DB0D5B63F5F0406F818B956B126E7E9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........U...h.....i. ...j.,...k.;...l.F...n.N...o.S...p.`...r.f...s.w...t.....v.....w.....y.....z.....|.....}.........................................................................A.....U.....].....o.....z.....................................................9.....R.....q.....w...............................................!.....0.....6.....>.....N....._.....s.....................................................$.....:.....L.....h.......................................................................".....=.....|...............................................*.....9.....a.....d.....v...................................................................................d.......................t.........................................%.....0.....9.....P.....x.............................U.....r.....z........................... .....".....%.....(.....*.6...+.9...,.W.....h.../.....0.....1.....3.....4.....5.....6.D...7.Y...8.p...9.....;.....<.....=.....>.....?.....@.....A.(...C.I...D.T...E.t.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):427793
                                                                                                                                                                                                                                                                      Entropy (8bit):5.485228938958345
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:iyCex+3QRB21BPDwY5omcAVOlJgi/fzxzqg:iThgkDwY5omc0i/fzxt
                                                                                                                                                                                                                                                                      MD5:4D9D56EF0B176E7F7AA14270E964EC77
                                                                                                                                                                                                                                                                      SHA1:515AAC37E4F25CA50BD52EA73889B70B1E79863D
                                                                                                                                                                                                                                                                      SHA-256:6BA684A8F06F7EB175955B15D30C7162D92C7E7C48864DFB853238263E1BE8C7
                                                                                                                                                                                                                                                                      SHA-512:740ADBB7D8B039F98E187F45A1A87D0354136FB48B75262E508F720BFCBEB2746F04D31A57DCCD50E37DDB5A1B7C0AD79A01CAC6BA5FB98A9AF272AD99FCB169
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........A...h.....i.....j.....k.....l.....n.!...o.&...p.3...r.9...s.J...t.S...v.h...w.u...y.{...z.....|.....}.....................................................................................*.....:.....B.....R.....y...............................................,.....D.....N.....X.....b.....m.....{.................................................................M.....c.....h.....o...........................................................%.....C.....d.................................................................3.....=.....L.....c.....v.....................................................-.....@.....P.....e.....|.................................................................Y.............................2.....m.....z.....................................................2.....H.....o............................................. .....".....%.....(.P...*.t...+.w...,.........../.....0.....1.....3. ...4.<...5.Q...6.....7.....8.....9.....;.....<.....=.....>.....?.....@.,...A.....C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):660184
                                                                                                                                                                                                                                                                      Entropy (8bit):4.762088583435569
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:FqLaALUKEuNI0I4Ki1pg82ATs+Hc549x4moW037LJzk/k/N:FWFLrSqJc5Axjw
                                                                                                                                                                                                                                                                      MD5:CF160983A86B51EC42845F4E60AC9123
                                                                                                                                                                                                                                                                      SHA1:4D3BD86A7EF1EAADB8BEC0B79ECC6C05B4273A48
                                                                                                                                                                                                                                                                      SHA-256:EF07512FB337005BB66696C69722A0D65BFB749B9D2F763F5B2FF2885CB247A4
                                                                                                                                                                                                                                                                      SHA-512:B909FC3614C3250856D2C502CBFED5EB6E398140B801669BF92427E7E8A5939B14052B9ABF2C94749F1AEA61946FF66BE4978C68064196458733BCFF0A963FFA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........e...h.,...i.=...j.I...k.X...l.c...n.k...o.p...p.}...r.....s.....t.....v.....w.....y.....z.....|.....}.................................................&.....'.....(.....*.....y............................. .....b.........................................?.....c.........................................?.....V.....o...................................3.....R...................................'.....1.....A.....M.....l.............................J.....................................................4.....@.....c.............................-.....l...................................P.....S.....n.....................................................%.....1.....J.....Y.....o.......................%.................".....j...............................................c.......................D...................................,.....A... .U...".|...%.....(.....*.....+.....,.<.....d.../.....0.....1.....3.....4.N...5.....6.....7.....8.>...9.r...;.....<.....=.....>.....?.....@.....A.....C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):385358
                                                                                                                                                                                                                                                                      Entropy (8bit):5.543864706629343
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:M4pIcHsEAjiwshcB7xopq/4LLXru9M9SOxDE/xUDvZv5pB5mEgb7:BpIcsV9Bxq5/5mz
                                                                                                                                                                                                                                                                      MD5:BBE0785C5F9591E8A1E7C4830FE949D6
                                                                                                                                                                                                                                                                      SHA1:DA4F3286079D50E1C04E923529E03E7D334C7FFF
                                                                                                                                                                                                                                                                      SHA-256:0AD84F6F95FD7505862278A7C1C92D00A7E7DD4A765569E9C3086F55C1D7059D
                                                                                                                                                                                                                                                                      SHA-512:38BAB6F3A6C9395D3B57E63168045AD2E8188B2F04751A15253E7226EC3043C9678A77BE1EB27A3B2E751934A024F3FFC89FFFD9F1E229E19638BE318B53E961
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........0...h.....i.....j.....k.....l.....n.....o.....p.....r.....s.*...t.3...v.H...w.U...y.[...z.j...|.p...}...........................................................................................!.....).....2.....M.....U.....`...........................................................&.....-.....:.....c.....t.........................................................../.....;.....C.....U.....e.....i.....s.....z...................................%.....H.....S.....Y.....a.....h.....n.....{.....................................................).....R.....q.....y.................................................................$.....+.........../.....7.....?.....J.....R.....].................".....).....u.................................................................'.....?.....k...............................................".....*... ./...".9...%.[...(.x...*.....+.....,.........../.....0.....1.....3.)...4.P...5.e...6.....7.....8.....9.....;.....<.....=.....>.....?.....@.%...A.Q...C.p.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):404454
                                                                                                                                                                                                                                                                      Entropy (8bit):5.342474055533773
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:iehLwLk65vqimUwbQuBndO8gJGgnATm5A1vZcsToe4t2ht:isLwZP5Ar
                                                                                                                                                                                                                                                                      MD5:EE8DA42FFE40FBB916C56390E2CD99E8
                                                                                                                                                                                                                                                                      SHA1:6D824F56AFE6B3605A881D2C26E69A46E6675347
                                                                                                                                                                                                                                                                      SHA-256:192E248C7AC4644F8712CF5032DA1C6063D70662216CCF084205F902253AA827
                                                                                                                                                                                                                                                                      SHA-512:7BEFE72B073000BC35A31323D666FD51D105A188D59C4A85D76EE72B6C8C83A39A1BEB935C1079DEF8E3FFA8C4BF6044CF4F3BEF0F1C850C789B57E1144FF714
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........Y...h.....i.....j.+...k.:...l.E...n.M...o.R...p._...r.e...s.v...t.....v.....w.....y.....z.....|.....}.........................................................................3.....E.....U.....i.....u...........................................................+.....H.....N.....Z.....m.....z.....................................................$.....8.....E.....p.......................................................................8.....W.....{................................................................. .....[.....m.....{...................................(.....4.....K.....x.....{.........................................................................................+.....\...................................+.....P.....Z.....r.....x...............................................-.....L............................................. .....".....%.....(.7...*.S...+.V...,.t........./.....0.....1.....3.....4.....5.1...6.i...7.....8.....9.....;.....<.....=.....>.....?.....@.....A.9.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1043822
                                                                                                                                                                                                                                                                      Entropy (8bit):4.043942262405797
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:LXNxfybLQ4iFd2n1E+1lhfi5yzntRMcA2i:rffyblEd21Z13i5yzMcA2i
                                                                                                                                                                                                                                                                      MD5:A8BEAB6896018A6D37F9B2E5BDD7A78C
                                                                                                                                                                                                                                                                      SHA1:64310684247219A14AC3AC3B4C8EBAA602C5F03A
                                                                                                                                                                                                                                                                      SHA-256:C68B708BA61B3EEAB5AE81D9D85D6E9F92E416ECFAE92E8DE9965608732384DF
                                                                                                                                                                                                                                                                      SHA-512:73B0A31235BF4B7C5AD673F08717F3B4F03BCDF2A91440EE7228AA78C2D15DD2AED32498E23DED78EC35BC731DBE16B6A1C236A170F2A84123A464857686C7B5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........(...h.....i.....j.....k.....l.....n.....o.....p.....r.....s.....t.#...v.8...w.E...y.K...z.Z...|.`...}.r.....z.................................................................M.....{.............................v.......................n.....p.....t.................E.....c.......................;.......................0.....m...............................................$.....`...................................0.....y.................9.............................!.....(.....F.....n.......................3.............................F...........;.....`.......................7.....:.....n.................$.....Z.....................................................E.....#.......................Q.................c.............................#...../.....s.............................B.................*.....?.....d............... .....".....%.}...(.....*.O...+.R...,.p........./.....0.....1.u...3.....4.....5.....6.....7.]...8.....9.....;.'...<.G...=.j...>.....?.....@.....A.9...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):965192
                                                                                                                                                                                                                                                                      Entropy (8bit):4.296319027025746
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:zqfk4UYABx3p1F9SviTlw2cTgCNFO9gr/p54JkQJgw4taJCb8+58XfX0Dxq9OyUn:eM4U4lp5WMfD
                                                                                                                                                                                                                                                                      MD5:02415DED02CC7AC25E8F8D0E83365061
                                                                                                                                                                                                                                                                      SHA1:5A25BF63EC97DBEB37E64AB3825CBBCE6326A5CF
                                                                                                                                                                                                                                                                      SHA-256:97024F0CFAC78E0C738E771BEEA1E35F5A8EB2B132B3043B59CE4ECD6C153523
                                                                                                                                                                                                                                                                      SHA-512:54E658C6D432B29B031BE278E5B4396AC14B0F85E1F772A0A76C0431D4CBE2370FF2898077837688E2FB9700DB1EAB7A19E4E350A280A2FFAD8176D861D93E45
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........m...h.<...i.V...j.b...k.q...l.|...n.....o.....p.....r.....s.....t.....v.....w.....y.....z.....|.....}.........................".....*.....1.....8.....?.....@.....A.....F.................1.....n...........................................................4.....z.......................P.....r.................*.....t.................=....._.......................g.......................1.....{.............................J.................j...........2.....g.........................................\.....q.................@.....[.................b.............................W...................................F...............................................@.....g.....t..........._...................................%.............................5.....J.....Y.................f...........D...........2.............................I.....p... .....".....%.....(.e...*.....+.....,.........../.b...0.....1.....3.:...4.....5.....6.C...7.....8.....9.....;.E...<.b...=.....>.....?.....@.....A.N.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):812017
                                                                                                                                                                                                                                                                      Entropy (8bit):4.341302348376344
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:z0O3mMkgs3s5UW4HLRflsjj8sKGs1loIG0EeuLADh7Kle9dPu753ohP09XAyFHyW:Y69K5V5q
                                                                                                                                                                                                                                                                      MD5:293AD7C20C22D744E4DB0FB001EC45BB
                                                                                                                                                                                                                                                                      SHA1:486C9E0732306A45ACEB633DA2B3DED281197620
                                                                                                                                                                                                                                                                      SHA-256:D67D68F24D3347E244A7E8C3B63D47F18FCF37258256F48DAD785CF98BB560FA
                                                                                                                                                                                                                                                                      SHA-512:AC2B2DD82095925B3229958E89DCF5283BDCE0273734A0C338F5A1AA8B014644806CA517F0FC2003669910E58FEDF9C2CA7A009FA3F53D58C07BC5E9191F2E2F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........w.h.....i.....j.....k.....l.....o.....p.....r.....s.....t.....v.....w.....y.!...z.0...|.6...}.H.....P.....U.....].....h.....p.....u.....}...............................................2.............................,.....;...................................$.....].....o.............................A.....`.....~.............................b.................h.....................................................N.....{.......................J.....}...............................................0.....N.....x.................&.....}.................I.....g...................................*.....K.....h.....................................................?...........T.................r.................n.........................................=.......................G.................6.....?.....T..................... .....".....%.@...(.....*.....+.....,.........../.V...0.i...1.....3.....4.W...5.....6.*...7.K...8.....9.....;.....<.....=.....>.Y...?.....@.....A.....C.!...D.=...E.p.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):411446
                                                                                                                                                                                                                                                                      Entropy (8bit):5.612902230569552
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:TaT6Tj4rfG2a4l1kKJtkOq/7V56sA7WGgeh5X/0+gi1ZavXmAQwiBTVGI:2w0u27leaoy5775X/7
                                                                                                                                                                                                                                                                      MD5:9F24F44CAC0997E1D0A6A419520F3BFE
                                                                                                                                                                                                                                                                      SHA1:EDB61859CBB5D77C666AAC98379D4155188F4FF5
                                                                                                                                                                                                                                                                      SHA-256:3AFF7DCBFB1A244CC29B290376B52CFB3E1F844C98FACAFEA17B4A45CE064B8A
                                                                                                                                                                                                                                                                      SHA-512:65FBE2D7FEA37DB59B805D031F6AE85D628A51B254E76E8C2B4EF4B5153527B7E2412ED6A0961D174B8A5581B521B0436160FE5ED252F78303BCFDE815733D81
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........}...h.\...i.m...j.w...k.....l.....n.....o.....p.....r.....s.....t.....v.....w.....y.....z.....|.....}.......".....'...../.....7.....?.....F.....M.....T.....U.....V.....X...........................................................L.....f.....h.....l.....................................................4.....I.....U.....x...........................................................&.....3.....H.....J.....M.....T.....k...........................................................".....).....>.....R.....u.........................................-.....P....._.....k.....v.............................................................................#.....,.....3.....>.....F.....U.......................!.....i.....~...........................................................3.....R...............................................*.....A.....G... .R...".g...%.....(.....*.....+.....,.........../.....0.....1.T...3.a...4.w...5.....6.....7.....8.....9.,...;.<...<.G...=.T...>.g...?.p...@.~...A.....C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):705044
                                                                                                                                                                                                                                                                      Entropy (8bit):4.868695926663652
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:FkzOqMnty/KiZswU1nbx05kB3IjUUmEg5KuoLNiXElqnOyh:muGN35EEK
                                                                                                                                                                                                                                                                      MD5:E4C4E3700469704B936460CA1A90FCC0
                                                                                                                                                                                                                                                                      SHA1:E809990FC07A1D39FE623046382699E648E343C0
                                                                                                                                                                                                                                                                      SHA-256:29AF2ABC75A35BB9E3F9BC6E2904228BA651EA4E0CE8E9C7A2D7E272374B9EBB
                                                                                                                                                                                                                                                                      SHA-512:68E33F471C5BF2D4ED9CB00ACE3E094EF102A5F1566A6E2C8A3007EF7FBD8A24C36EB36B08745F3608E70940444E9FC7A36FABE1A9945D1F00B4F3F28C7BDAF6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............h.....i.....j.....k.....l.....n.....o.....p.....r.....s.....t.....v.....w.....y.....z.,...|.2...}.D.....L.....Q.....Y.....a.....i.....p.....w.....~...................................!.....K.....d.....m.............................P.....R.....V.....~...................................%.....F.........................................1.....S.....y.............................!.....8.....Q.....[.....k.....{.............................A.....n.........................................(.....H.....l.....x.......................&.....=.........................................A.....D.....i.............................'...........1.....2.....B.....T.....f.....y.............................+.................$.....~...................................$.....R.......................<.....w.............................E.....u......... .....".....%.....(.....*.{...+.~...,.........../.....0. ...1.....3.....4.....5.....6.Z...7.}...8.....9.....;.....<.....=.....>.I...?.X...@.y...A.....C.1...D.J.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):617160
                                                                                                                                                                                                                                                                      Entropy (8bit):5.143464180285778
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:bXldbsPI8PzGSEHybOAXsA5yzTExbWW7mQYrjuUco/9NjjFpvhl:rLsK8t5bWx
                                                                                                                                                                                                                                                                      MD5:D7EC7D551DEE1E1EF11BE3E2820052F9
                                                                                                                                                                                                                                                                      SHA1:D7F2D35841883103C2773FC093A9A706B2FE5D36
                                                                                                                                                                                                                                                                      SHA-256:05E45371159075048DB688564B6BC707E0891303C40F490C3DB428B0EDD36102
                                                                                                                                                                                                                                                                      SHA-512:92E2D32FC106812E08163A26F202A5D0E7EB7028A871F3BC6CBC05EE6C7CE287032179322B19E396308968515BF214534A38D93AFC259A780AD7BA8432FAB56A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........S...h.....i.....j.....k.+...l.6...n.>...o.C...p.P...r.V...s.g...t.p...v.....w.....y.....z.....|.....}.........................................................................v...............................................$.....f...............................................6.....].....j.............................=.....d.....n..................................._.....i.....|.........................................+.....M.....{.......................:.....I.....Q.....X.....l...................................S.....f.......................+.....[.....j...............................................$.....B.....`...........................................................Z...........3.....H.............................(.....D.....J.....X.....l.....r.......................e.......................2.....>.....S.....l............... .....".....%.....(.'...*.T...+.W...,.u........./.....0.....1. ...3.:...4.g...5.....6.....7.!...8.\...9.u...;.....<.....=.....>.....?.....@.....A.&...C.`.
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):488307
                                                                                                                                                                                                                                                                      Entropy (8bit):5.797698606019311
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12288:JqiJKHugsHBM0P5ZwSQ3cXzIJ1758/UIi0+UG3Lzi8Tal:eugsHe0PTwSmezE5Iti0+UKfi8Tal
                                                                                                                                                                                                                                                                      MD5:9274866D7C6314F43DD63ED293293E25
                                                                                                                                                                                                                                                                      SHA1:4AF0E6EC1BCB99588810A9FB69C1DC2BBAD892FC
                                                                                                                                                                                                                                                                      SHA-256:DCBDC6D9E11DD10FC1364C10BE5438CE2697F61EC5F32997C43B87238087C4E3
                                                                                                                                                                                                                                                                      SHA-512:3C8C9E9960A49469AF83CAE31790A03E41846163C14D3DAE45FD92A1A412C82075BDEF3317BACA02399EB53DE0F9164C0A9A17B7CD63E0FA61C3E4617393C42E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............h.j...i.....j.....k.....l.....n.....o.....p.....r.....s.....t.....v.....w.....y.....z.....|.!...}.3.....;.....@.....H.....P.....X....._.....f.....m.....n.....o.....q...............................................(.....2.....Y.....x.....z.....~................................... .....+.....D.....t...........................................................5.....L.....V.....a.....r...........................................................T.....q.................................................................o...................................<.....P.....[.....i.....|.........................................#.....:.....A.....D.....E.....N.....W.....c.....m.......................4.....C.....................................................2.....=....._.............................4.....i....................................... .....".....%.....(.E...*.j...+.m...,.........../.....0.....1.....3.....4.*...5.?...6.y...7.....8.....9.....;.....<.....=.....>.....?.'...@.I...A.u...C...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):354098
                                                                                                                                                                                                                                                                      Entropy (8bit):6.681132543457813
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:ALU9jcaZx79+vKKS/+kTme5zBNCJ7AAmlv:nAaZ+vKKS/ye5zBNCJ7Y
                                                                                                                                                                                                                                                                      MD5:9D4F54EB5A12CF4C2F34F5F538DFF90B
                                                                                                                                                                                                                                                                      SHA1:C31B892CE78C733BDE0571B6236170103CC9FE7A
                                                                                                                                                                                                                                                                      SHA-256:58B934A09858F037F1966A495E73D44416180AFCDEBFAEFCEE1F5E3377DE63F7
                                                                                                                                                                                                                                                                      SHA-512:46BF6099C50F7959A6F0800EC679B61A78EFABE87985CAD8DC0D7D0006470A9C61E659BDE0258DA6CF7ED6104749A157F5AD133F324479C3460A19FC14E31C37
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........>.h.....i.....j.....k.(...l./...m.7...o.=...p.B...r.H...s.Y...t.b...v.w...w.....|.....}...............................................................................'.....3.....E.....K.....^.....u.....{.....................................................%.....1.....I.....U.....a.................................................................$.....3.....9.....B.....T.....f.....l.....r.....x...............................................)...../.....7.....>.....J.....V.....b.....}...............................................=.....[.....j.....p.........................................................................................7.....@.....F.....P.....Z.............................D.....V.....h.................................................................%.....7.....`............................................. .....".....%.....(."...*.7...+.:...,.g.....|.../.....0.....1.....3.....4.....5.....6.G...7.\...8.q...9.}...;.....<.....=.....>.....?.....@.....A.I...C.p...D...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):350092
                                                                                                                                                                                                                                                                      Entropy (8bit):6.694428887930931
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:gTRIoLBHxLFJkrCU28LulyMD94qz5MHzC5M8Z/9ybT1:ga4BRSxBMD94qz5MHzby/o
                                                                                                                                                                                                                                                                      MD5:8F67A9F38AD36D7D4A6B48E63852208D
                                                                                                                                                                                                                                                                      SHA1:F087C85C51BDBDEF5998CFC3790835DA95DA982A
                                                                                                                                                                                                                                                                      SHA-256:92F26E692DC1309558F90278425A7E83E56974B6AF84DBD8CC90324785EE71CA
                                                                                                                                                                                                                                                                      SHA-512:623034BBDFDF5D331DE78B630F403AEB9CEF27B1827E0D29EC66AD69310F56C7DB96C6775DF0E749F8112A4A8E75754BCF987903D415FC7AE360E3C39E6E18E0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:..........\.h.....i.....j.....k.....l.....n.....o.....p.....r.....s.-...t.6...v.K...w.X...y.^...z.m...|.s...}..................................................................................... .....8.....N.....Z.....m...........................................................!.....*.....6.....S.....`.....l.....~.......................................................................#.....)...../.....5.....M.....\.....k.....}.............................................................................'.....T.....`.....l.....................................................,...../.....;.....M....._.....s.............................................................................I.....v.....|...............................................!.....'.....-.....?.....i.....................................................$.....8.....A... .M..."._...%.z...(.....*.....+.....,.........../.....0.....1.@...3.Q...4.i...5.....6.....7.....8.....9.....;.....<.....=.-...>.F...?.P...@.e...A.....C.....D...
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):5245561
                                                                                                                                                                                                                                                                      Entropy (8bit):7.99547773238381
                                                                                                                                                                                                                                                                      Encrypted:true
                                                                                                                                                                                                                                                                      SSDEEP:98304:9LYsbEcnNWz49PDq2Awkmqmcph1Dd42cjrwrbHw4o0DPelwG3RC:90WcMButpphpd4jkrU4oeelrRC
                                                                                                                                                                                                                                                                      MD5:31C7D4B11AD95DFE539DD098E0FAB736
                                                                                                                                                                                                                                                                      SHA1:5418682D939CE8485ECC9125B872C14FFEC662C2
                                                                                                                                                                                                                                                                      SHA-256:A251019EB08F1E695E935D224544BDA37C5AE092BA68A89FA1FE3BD19BDE4F5C
                                                                                                                                                                                                                                                                      SHA-512:F868A4AFA4E0D5C561873D2A728E267F98DA2DF3FB90966E5736D496B6A24E71769A02B0346B27B7DCCE11CBE07248E309F50A89977DC8E5BBC06D6CC31BF738
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............f.......P'....$*.....-...43@...4.H...4XK...4i]...4.f...4.m...4?p...4.v...4.x...4.z...4.~...4....4.....4?....4.....4....4.....4=....4z....4a....4....4....4.....4.....4.....43....4.....4.....4J....4J....4.....4.....4#....4j....4J....5.....5....v5.:..w5.;..x5.<..y5.>..z5a?...5.?...5.D...5.E...5fJ...5.O...5.V...5.f...5.w...5.x...5.|..n<(...x<....y<....z<....{<....|<....<-....<t....<:....<1....<....V@....W@....X@z...Y@f...Z@....[@4...\@Q...]@....^@...._@jh..`@....<A ...=A.....P.~...Pg....PZ....P.....P.....Pv....P.....P5....Q.....QH....Q.....Q.....Q.....Q]....QC....Q.....Q.....QY....Q.....Qx....Q;!...Q.'...QH....Q.1..,Q.F..-QuL...QNN../Q.P..0Q.U..1Q0i..2Q.j..3Q.k..4QGm..5Q.o..6Q.r..7Q.t..8QGw..9Q#x..:Q.z..;Qj...<Q'...=Q~...>Q....?Q ....R....Rw....}.....}. ...}B`...}.a...}.h...}.i...}.j...}.o...}?....}{&...}(/...}.6...}.;...}i=...}.B...}.G...~vO...~>e...~wq...~_u...~.}...~.~..!~...."~....#~(...$~...&~ ...'~....(~$...)~Y...*~.$..+~.5..,~_7..-~.8...~|;../~.<..0~.=..1~.A..2~.I
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):68363435
                                                                                                                                                                                                                                                                      Entropy (8bit):6.204684323939159
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:393216:frWOzncEKavNsSLIm7VILBaQvv7WyF5+bw:aucEKavNsSDHQvvSS5+bw
                                                                                                                                                                                                                                                                      MD5:E0F66C174E15BAF7273E97EA7A6623A5
                                                                                                                                                                                                                                                                      SHA1:D3F43CD6E34EFB877766D58410635A58BC210EAB
                                                                                                                                                                                                                                                                      SHA-256:E169F2BE7BC8D6FBB24C57C212BBE46441B31ED8DB7D27BD27BBD1DC2E7FAA80
                                                                                                                                                                                                                                                                      SHA-512:E7CDADA0B63AD8234263A329FCCC1CE09224D64DBBDB65EFA7DCF9C41D1134112FDF43285953AB19153F89A2425389D7FFB79F7F5C7061C5BFA1FE346DC3B724
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:............z...{"files":{"f65f799c45aa99e8.js":{"size":2603364,"integrity":{"algorithm":"SHA256","hash":"c28fe4322ab0a479325d42e2e3f2badd2e36923267e0642acddfaab89c60eda1","blockSize":4194304,"blocks":["c28fe4322ab0a479325d42e2e3f2badd2e36923267e0642acddfaab89c60eda1"]},"offset":"0"},"package.json":{"size":639,"integrity":{"algorithm":"SHA256","hash":"d281820b83ff21e95ca083ce534026bab6cb94109dc5013d55fbce2094be1b2d","blockSize":4194304,"blocks":["d281820b83ff21e95ca083ce534026bab6cb94109dc5013d55fbce2094be1b2d"]},"offset":"2603364"},"node_modules":{"files":{"@isaacs":{"files":{"cliui":{"files":{"LICENSE.txt":{"size":731,"integrity":{"algorithm":"SHA256","hash":"2dc0465729366c3a7890dfa9e972a1ba7048a26c02116fb8b419a6a1ac110149","blockSize":4194304,"blocks":["2dc0465729366c3a7890dfa9e972a1ba7048a26c02116fb8b419a6a1ac110149"]},"offset":"8201687"},"index.mjs":{"size":299,"integrity":{"algorithm":"SHA256","hash":"b75d22297e1bd8992f86218f1749435d05921d2d765697e46a43f680b2edc859","blockSize":4
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32 executable (console) Intel 80386, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):107520
                                                                                                                                                                                                                                                                      Entropy (8bit):6.442687067441468
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:1bLnrwQoRDtdMMgSXiFJWcIgUVCfRjV/GrWl:1PrwRhte1XsE1l
                                                                                                                                                                                                                                                                      MD5:792B92C8AD13C46F27C7CED0810694DF
                                                                                                                                                                                                                                                                      SHA1:D8D449B92DE20A57DF722DF46435BA4553ECC802
                                                                                                                                                                                                                                                                      SHA-256:9B1FBF0C11C520AE714AF8AA9AF12CFD48503EEDECD7398D8992EE94D1B4DC37
                                                                                                                                                                                                                                                                      SHA-512:6C247254DC18ED81213A978CCE2E321D6692848C64307097D2C43432A42F4F4F6D3CF22FB92610DFA8B7B16A5F1D94E9017CF64F88F2D08E79C0FE71A9121E40
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......B..O..............h.......j.q.....k.....e......e......e.......zR........._...h......h.f.............h......Rich....................PE..L......W............................l........0....@.......................................@....................................P.......x.......................T.......p...............................@............0..$............................text............................... ..`.rdata...k...0...l..................@..@.data...............................@....gfids..............................@..@.rsrc...x...........................@..@.reloc..T...........................@..B........................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):273328
                                                                                                                                                                                                                                                                      Entropy (8bit):3.2521912102596153
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:HpeVehd7eASb6iAGm4hmWRSJTnBSki+TzUNp2Zg+TWJ0xEI2tWaw8MCZ72T04GO9:NdyNm4mWRSJTBSX4U1hJzbYB
                                                                                                                                                                                                                                                                      MD5:4EBD06BDF6CF8DACF6597586FD1704B5
                                                                                                                                                                                                                                                                      SHA1:E6819EF37F99F91468F4B94370A4AB467A075A6D
                                                                                                                                                                                                                                                                      SHA-256:148E4B85983F0D27ADECD9C6431B66379AC5538688F320E89D74FF6D48BB740B
                                                                                                                                                                                                                                                                      SHA-512:17ED5ABE702748B4626B3EE6DE4D0916738F095C913C2700EEE06B65A2BBCAF72AFC1F87AF7CE0FCCE8BD15FE6881508255D397A346C45A82C7791B9B9833DDF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.........+.11.2.214.22-electron.0...........................................;...b...........:..a........a........a........ar.......a........a..............Y.D............`$.........D............`$.......D............`$.......m.D............`$.........D............`D.........D............`$.......1.D............`$.......D............`$.......D............`$.........D............`$.......D............`$......ID............`$.......D............`$.......D............`$....(Jb....I.....@..F^......`.....(Jb....M.....@..F^..`.....H...IDa........D`....D`....D`.......D`.....D]D....D`......WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa............L.............................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):588152
                                                                                                                                                                                                                                                                      Entropy (8bit):4.837375324466163
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:EFzofuYUahtcOm3A0Sg8zY6y4XrxXSIIBYgHi:6Mfu/f2Y6zrM9C7
                                                                                                                                                                                                                                                                      MD5:146E284750735EF4798527DC1CD0E741
                                                                                                                                                                                                                                                                      SHA1:6408985B7D05C768A62BCB912234F14E1898FFDB
                                                                                                                                                                                                                                                                      SHA-256:3820E8FA1077D02606FEA8E1B3A9CA4BF7F4A71D0569D9A8EA9EE7A009D0CE80
                                                                                                                                                                                                                                                                      SHA-512:46824DF5D20E02FB72C3EFD07BEE6D832B1AB78C0163688FA84EDB831CBFBEF2DDE12BA9DA01F9DD49C4008BD3862A95699A2F6D55B8D4B3165976D3851C7278
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:........$c^X11.2.214.22-electron.0..........................................H...P<..........X...........a........a........aT.......ar.......a........a..............Y.D............`$.........D............`$.......D............`$.......m.D............`$.........D............`D.........D............`$.......1.D............`$.......D............`$.......D............`$.........D............`$.......D............`$......ID............`$.......D............`$.......D............`$....(Jb....I.....@..F^......`.....(Jb....M.....@..F^..`.....H...IDa........D`....D`....D`.......D`.....D]D....D`......WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa...........WIa............L.....................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):5334528
                                                                                                                                                                                                                                                                      Entropy (8bit):6.3349883465807055
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:98304:5aTPSALpajr/PMMPTZTOWvYQ7klZz8Wd4iRk:Elajr/PMMPTZTOWvCJ4Z
                                                                                                                                                                                                                                                                      MD5:750CBDFB01943E28E08708183EC208B5
                                                                                                                                                                                                                                                                      SHA1:1BEE0CD3D0970834B2A47DAF384354F243FD1EE0
                                                                                                                                                                                                                                                                      SHA-256:A6D295DCC3AFCB55AA79EAC5F896BCEB15CCB2B798DB3BB076CEEEA78073791A
                                                                                                                                                                                                                                                                      SHA-512:DBFDF76F40558CE2F23CA315B8719E283F0F22F46E733F37C2AE237FDAFD23CF7962F36547BA1BB2D5B219DE11546C3DC06859FAC498A7DA97DF41018C0D80C4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ......A..........;.......................................R...........`A..........................................L.~...&.L.P....`R.......P.<_...........pR.P}...L.......................L.(...@.A.@.............L.P............................text.....A.......A................. ..`.rdata...(....A..*....A.............@..@.data...p.....M.......M.............@....pdata..<_....P..`...LO.............@..@.00cfg..8.....Q.......P.............@..@.gxfg....,....R.......P.............@..@.retplne.....0R.......P..................tls....Q....@R.......P.............@..._RDATA..\....PR.......P.............@..@.rsrc........`R.......P.............@..@.reloc..P}...pR..~....P.............@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):106
                                                                                                                                                                                                                                                                      Entropy (8bit):4.724752649036734
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:YD96WyV18tzsmyXLVi1rTVWSCwW2TJHzeZ18rY:Y8WyV18tAZLVmCwXFiZ18rY
                                                                                                                                                                                                                                                                      MD5:8642DD3A87E2DE6E991FAE08458E302B
                                                                                                                                                                                                                                                                      SHA1:9C06735C31CEC00600FD763A92F8112D085BD12A
                                                                                                                                                                                                                                                                      SHA-256:32D83FF113FEF532A9F97E0D2831F8656628AB1C99E9060F0332B1532839AFD9
                                                                                                                                                                                                                                                                      SHA-512:F5D37D1B45B006161E4CEFEEBBA1E33AF879A3A51D16EE3FF8C3968C0C36BBAFAE379BF9124C13310B77774C9CBB4FA53114E83F5B48B5314132736E5BB4496F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"file_format_version": "1.0.0", "ICD": {"library_path": ".\\vk_swiftshader.dll", "api_version": "1.0.5"}}
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):928256
                                                                                                                                                                                                                                                                      Entropy (8bit):6.558001659108061
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24576:yGZKHQwvuzUrfafN/iXxT+R6Z5WODYsHh6g3P0zAk7a:GwwvuziiV/iXxc6Z5WODYsHh6g3P0zAu
                                                                                                                                                                                                                                                                      MD5:6C70AAB071C4FEBC5921E0D39811937A
                                                                                                                                                                                                                                                                      SHA1:20D87B3A5333EA3F6D0D7B0333F2C30A281937AA
                                                                                                                                                                                                                                                                      SHA-256:2233FEF6788711089FC5C1A008BFFF6559CF2FC3E8363CD8A50196E90D1D9825
                                                                                                                                                                                                                                                                      SHA-512:7F786C44376B59BE7D7C51D3C40ECB80F30645551B582D042B641EA0A6464DAF367DDF7EAFAF00A1558E1F11570D99A699D33D224B01048D09F8F00EA501C4BF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....&e.........." ......................................................................`A........................................H...<!......P...............<o..............T...t.......................X...(...@...@............................................text...v~.......................... ..`.rdata..............................@..@.data....L...p... ...V..............@....pdata..<o.......p...v..............@..@.00cfg..8....0......................@..@.gxfg...P(...@...*..................@..@.retplne.....p...........................tls................................@..._RDATA..\...........................@..@.rsrc...............................@..@.reloc..T...........................@..B................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):9216
                                                                                                                                                                                                                                                                      Entropy (8bit):5.5347224014600345
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:5lkE3uqRI1y7/xcfK4PRef6gQzJyY1rpKlVrw:5lkMBI1y7UKcef6XzJrpKY
                                                                                                                                                                                                                                                                      MD5:17309E33B596BA3A5693B4D3E85CF8D7
                                                                                                                                                                                                                                                                      SHA1:7D361836CF53DF42021C7F2B148AEC9458818C01
                                                                                                                                                                                                                                                                      SHA-256:996A259E53CA18B89EC36D038C40148957C978C0FD600A268497D4C92F882A93
                                                                                                                                                                                                                                                                      SHA-512:1ABAC3CE4F2D5E4A635162E16CF9125E059BA1539F70086C2D71CD00D41A6E2A54D468E6F37792E55A822D7082FB388B8DFECC79B59226BBB047B7D28D44D298
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........N.../../../..Wy./../../....../..Wi./..Wx./..W~./..W{./..Rich./..................PE..L...T{mW...........!................p!.......0...............................p............@..........................5..o...l1..P....P.......................`.......................................................0...............................text............................... ..`.rdata.......0......................@..@.data........@......................@....rsrc........P......................@..@.reloc..d....`....... ..............@..B........................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32 executable (DLL) (console) Intel 80386, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):102400
                                                                                                                                                                                                                                                                      Entropy (8bit):6.729923587623207
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:WNuZmJ9TDP3ahD2TF7Rq9cJNPhF9vyHf:WNuZ81zaAFHhF9v
                                                                                                                                                                                                                                                                      MD5:C6A6E03F77C313B267498515488C5740
                                                                                                                                                                                                                                                                      SHA1:3D49FC2784B9450962ED6B82B46E9C3C957D7C15
                                                                                                                                                                                                                                                                      SHA-256:B72E9013A6204E9F01076DC38DABBF30870D44DFC66962ADBF73619D4331601E
                                                                                                                                                                                                                                                                      SHA-512:9870C5879F7B72836805088079AD5BBAFCB59FC3D9127F2160D4EC3D6E88D3CC8EBE5A9F5D20A4720FE6407C1336EF10F33B2B9621BC587E930D4CBACF337803
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........q....C...C...C...C...C...C...C...C...C...C...C...C...C.[.C...C.[.C...C.[.C...C.[.C...CRich...C........................PE..L...I..[...........!.....*...b...............@.......................................+....@..........................}..d....t..........X............................................................................@...............................text....).......*.................. ..`.rdata..TC...@...D..................@..@.data...l............r..............@....rsrc...X............x..............@..@.reloc..j............~..............@..B................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):12288
                                                                                                                                                                                                                                                                      Entropy (8bit):5.719859767584478
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:1enY0LWelt70elWjvfstJcVtwtYbjnIOg5AaDnbC7ypXhtIj:18PJlt70esj0Mt9vn6ay6
                                                                                                                                                                                                                                                                      MD5:0D7AD4F45DC6F5AA87F606D0331C6901
                                                                                                                                                                                                                                                                      SHA1:48DF0911F0484CBE2A8CDD5362140B63C41EE457
                                                                                                                                                                                                                                                                      SHA-256:3EB38AE99653A7DBC724132EE240F6E5C4AF4BFE7C01D31D23FAF373F9F2EACA
                                                                                                                                                                                                                                                                      SHA-512:C07DE7308CB54205E8BD703001A7FE4FD7796C9AC1B4BB330C77C872BF712B093645F40B80CE7127531FE6746A5B66E18EA073AB6A644934ABED9BB64126FEA9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......qr*.5.D.5.D.5.D...J.2.D.5.E.!.D.....2.D.a0t.1.D.V1n.4.D..3@.4.D.Rich5.D.........PE..L....~.\...........!....."...........).......@...............................p............@..........................B.......@..P............................`.......................................................@..X............................text.... .......".................. ..`.rdata..c....@.......&..............@..@.data...x....P.......*..............@....reloc.......`.......,..............@..B................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:7-zip archive data, version 0.4
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):85927537
                                                                                                                                                                                                                                                                      Entropy (8bit):7.9999961719482275
                                                                                                                                                                                                                                                                      Encrypted:true
                                                                                                                                                                                                                                                                      SSDEEP:1572864:+J39Kk9MTMh5/pCy5sbB8ceyIS7nqYdd6hIEhSmn6nlN/fFZ:1k9MT2/Uyyb/vP7nMhJnUXf/
                                                                                                                                                                                                                                                                      MD5:9763F16B9918B3D1D340FFA843051E88
                                                                                                                                                                                                                                                                      SHA1:FAC4E1EAA3AC460B98CD3FFA367F2747E53D2B3F
                                                                                                                                                                                                                                                                      SHA-256:D92D91950D3D3BAE360FBA9446EEE66F2641506EB779D809DA43D5382157DA98
                                                                                                                                                                                                                                                                      SHA-512:135EC5D3961B4E73B2DBFA47C54BCE4E65251910D7E4A5FF95855A39A5712EDECB0ED4786EE0C5446E32FF9F708C73F0CD40113A63C7B82555867BCBF268A1AA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:7z..'...C1-.,&......%.............R..]...6...#k.![y.`.Gr#.f..F......./.t..C..8.^..k .....@..........ih..w*.`.c...I...;.R.A`../_.Q:..yn........6...a {.f_.....>..`..Nu.....q/..H...hsIhA.5..... .9.[...L./.(.^.+Vz@.Dt7OZI.z.N...~;].rW..k......s...^<i ...w.`3.}............T.Z.v.m..W8..m...........k..8..w+.8..9N.C......._; ..u.J........i43.d.......`....r."O.E...'.{h....'....$.M.$..Y....&.+.r|T....aF.T.9...&..sh....I..;.qP.Y..........V..^..P.:...D.."..@Cw...%8.h.5....6V/0..]....%7.Z.P..w..J..].....M..^......+..BMZ..&..}.6l..hT..t).?2....1...F..H..+...0.s.}.S.-x;...f.b}....8.R.@.....r.....Ib......$(/^XdI..46G..Q....`......h..H.U......p..[.Sa-Q@G.......h!....Z....2$.^.IqZ...~~CUB..#.nAp5.k..K....O".G.(......N...>`.k.....;.~A.X.e.mzUq.L...o..PH..WxfRH..z..dT!."d.W.4...Tx... ..Y<..1.P.#.W..Z7.f.z.R...u6.......C.+?.....p.d........".<.../h.Y..`u<m.y.u.Lh.Fz...#...F).,..G.~..'..Mx.s:3..V..m..[%.B.V[...V.Id_.~i6..$...H.ywyg.D.lA.`.H..+..X..@H....
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):6656
                                                                                                                                                                                                                                                                      Entropy (8bit):5.155286976455086
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:96:YjHFiKaoggCtJzTlKXb0tbo68qD853Ns7GgmkNq3m+s:JbogRtJzTlNR8qD85uGgmkNr
                                                                                                                                                                                                                                                                      MD5:EC0504E6B8A11D5AAD43B296BEEB84B2
                                                                                                                                                                                                                                                                      SHA1:91B5CE085130C8C7194D66B2439EC9E1C206497C
                                                                                                                                                                                                                                                                      SHA-256:5D9CEB1CE5F35AEA5F9E5A0C0EDEEEC04DFEFE0C77890C80C70E98209B58B962
                                                                                                                                                                                                                                                                      SHA-512:3F918F1B47E8A919CBE51EB17DC30ACC8CFC18E743A1BAE5B787D0DB7D26038DC1210BE98BF5BA3BE8D6ED896DBBD7AC3D13E66454A98B2A38C7E69DAD30BB57
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.........................,..................Rich...........PE..L....~.\...........!......................... ...............................P............@..........................$..l.... ..P............................@....................................................... ...............................text............................... ..`.rdata..L.... ......................@..@.data........0......................@....reloc.......@......................@..B................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File Type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):434176
                                                                                                                                                                                                                                                                      Entropy (8bit):6.584811966667578
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6144:aUWQQ5O3fz0NG3ucDaEUTWfk+ZA0NrCL/k+uyoyBOX1okfW7w+Pfzqibckl:an5QEG39fPAkrE4yrBOXDfaNbck
                                                                                                                                                                                                                                                                      MD5:80E44CE4895304C6A3A831310FBF8CD0
                                                                                                                                                                                                                                                                      SHA1:36BD49AE21C460BE5753A904B4501F1ABCA53508
                                                                                                                                                                                                                                                                      SHA-256:B393F05E8FF919EF071181050E1873C9A776E1A0AE8329AEFFF7007D0CADF592
                                                                                                                                                                                                                                                                      SHA-512:C8BA7B1F9113EAD23E993E74A48C4427AE3562C1F6D9910B2BBE6806C9107CF7D94BC7D204613E4743D0CD869E00DAFD4FB54AAD1E8ADB69C553F3B9E5BC64DF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Antivirus:
                                                                                                                                                                                                                                                                      • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                                                                                                                                                      Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......L.6a..X2..X2..X2m.[3..X2m.]3..X2Z.]3+.X2Z.\3..X2Z.[3..X2m.\3..X2m.Y3..X2..Y2..X2..\3#.X2..]3..X2..X3..X2...2..X2...2..X2..Z3..X2Rich..X2........PE..L.....\...........!......................... ...............................@............@..........................6.......7..d................................E.....................................@............ ...............................text............................... ..`.rdata..8"... ...$..................@..@.data........P... ...6..............@....rsrc................V..............@..@.reloc...E.......F...Z..............@..B........................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 20, cookie 0xb, schema 4, UTF-8, version-valid-for 1
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):40960
                                                                                                                                                                                                                                                                      Entropy (8bit):0.8553638852307782
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:2x7BA+IIF7CVEq8Ma0D0HOlf/6ykwp1EUwMHZq10bvJKLkw8s8LKvUf9KVyJ7h/f:QNDCn8MouB6wz8iZqmvJKLPeymwil
                                                                                                                                                                                                                                                                      MD5:28222628A3465C5F0D4B28F70F97F482
                                                                                                                                                                                                                                                                      SHA1:1BAA3DEB7DFD7C9B4CA9FDB540F236C24917DD14
                                                                                                                                                                                                                                                                      SHA-256:93A6AF6939B17143531FA4474DFC564FA55359308B910E6F0DCA774D322C9BE4
                                                                                                                                                                                                                                                                      SHA-512:C8FB93F658C1A654186FA6AA2039E40791E6B0A1260B223272BB01279A7B574E238B28217DADF3E1850C7083ADFA2FE5DA0CCE6F9BCABD59E1FFD1061B3A88F7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:SQLite 3.x database, last written using SQLite version 3042000, page size 2048, file counter 1, database pages 25, cookie 0xe, schema 4, UTF-8, version-valid-for 1
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):51200
                                                                                                                                                                                                                                                                      Entropy (8bit):0.8746135976761988
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:96:O8mmwLCn8MouB6wzFlOqUvJKLReZff44EK:O8yLG7IwRWf4
                                                                                                                                                                                                                                                                      MD5:9E68EA772705B5EC0C83C2A97BB26324
                                                                                                                                                                                                                                                                      SHA1:243128040256A9112CEAC269D56AD6B21061FF80
                                                                                                                                                                                                                                                                      SHA-256:17006E475332B22DB7B337F1CBBA285B3D9D0222FD06809AA8658A8F0E9D96EF
                                                                                                                                                                                                                                                                      SHA-512:312484208DC1C35F87629520FD6749B9DDB7D224E802D0420211A7535D911EC1FA0115DC32D8D1C2151CF05D5E15BBECC4BCE58955CFFDE2D6D5216E5F8F3BDF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:SQLite format 3......@ ..........................................................................j.....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:PNG image data, 128 x 128, 8-bit/color RGBA, non-interlaced
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):4982
                                                                                                                                                                                                                                                                      Entropy (8bit):7.929761711048726
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:96:L7Rf7U1ylWb3KfyEfOXE+PIcvBirQFiAql1ZwKREkXCSAk:pTvWqfD+gl0sAql1u7kySAk
                                                                                                                                                                                                                                                                      MD5:913064ADAAA4C4FA2A9D011B66B33183
                                                                                                                                                                                                                                                                      SHA1:99EA751AC2597A080706C690612AEEEE43161FC1
                                                                                                                                                                                                                                                                      SHA-256:AFB4CE8882EF7AE80976EBA7D87F6E07FCDDC8E9E84747E8D747D1E996DEA8EB
                                                                                                                                                                                                                                                                      SHA-512:162BF69B1AD5122C6154C111816E4B87A8222E6994A72743ED5382D571D293E1467A2ED2FC6CC27789B644943CF617A56DA530B6A6142680C5B2497579A632B5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:.PNG........IHDR..............>a....=IDATx..]}...U..;...O.Q..QH.I(....v..E....GUb*..R[.4@%..hK..B..(.B..". ....&)U#.%...jZ...JC.8.....{.cfvgf.3;.....}ow.....{...P.B...*T.P.B...*Tx...=.Q..wv.w.....|.e.1.$.P.?..l_\.n.}...~.g.....Q...A.f....m.....{,...C2 %..X.......FE.1.N..f...Q..D.K87.....:g..Q.{............3@$.8.....{.....q....G.. .....5..y......)XK..F...D.......... ."8...J#.eM.i....H.E.....a.RIP.`......)..T.....! .[p`X.`..L.a....e. .T..2.....H..p$..02...j....\..........s{...Ymm~.a........f.$./.[.{..C.2:.0..6..]....`....NW.....0..o.T..$;k.2......_...k..{,.+........{..6...L..... .dw...l$..}...K...EV....0......P...e....k....+Go....qw.9.1...X2\..qfw0v.....N...{...l.."....f.A..I..+#.v....'..~E.N-k.........{...l.$..ga..1...$......x$X=}.N..S..B$p..`..`.ZG:c..RA.(.0......Gg.A.I..>...3u.u........_..KO.m.........C...,..c.......0...@_..m...-..7.......4LZ......j@.......\..'....u. QJ.:G..I`.w'B0..w.H..'b.0- ......|..}./.....e..,.K.1........W.u.v. ...\.o
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):908
                                                                                                                                                                                                                                                                      Entropy (8bit):4.512512697156616
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgMTCBxNB+kCIww3v+BBJ/wjsV8lCBxeBeRiGTCSU8biHULaBg/4srCBhUJJ:1HAkkJ+kCIwEg/wwbw0PXa22QLWmSDg
                                                                                                                                                                                                                                                                      MD5:12403EBCCE3AE8287A9E823C0256D205
                                                                                                                                                                                                                                                                      SHA1:C82D43C501FAE24BFE05DB8B8F95ED1C9AC54037
                                                                                                                                                                                                                                                                      SHA-256:B40BDE5B612CFFF936370B32FB0C58CC205FC89937729504C6C0B527B60E2CBA
                                                                                                                                                                                                                                                                      SHA-512:153401ECDB13086D2F65F9B9F20ACB3CEFE5E2AEFF1C31BA021BE35BF08AB0634812C33D1D34DA270E5693A8048FC5E2085E30974F6A703F75EA1622A0CA0FFD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "SKEP NUWE".. },.. "explanationofflinedisabled": {.. "message": "Jy is vanlyn. As jy Google Dokumente sonder 'n internetverbinding wil gebruik, moet jy die volgende keer as jy aan die internet gekoppel is na instellings op die Google Dokumente-tuisblad gaan en vanlynsinkronisering aanskakel.".. },.. "explanationofflineenabled": {.. "message": "Jy is vanlyn, maar jy kan nog steeds beskikbare l.ers redigeer of nuwes skep.".. },.. "extdesc": {.. "message": "Skep, wysig en bekyk jou dokumente, sigblaaie en aanbiedings . alles sonder toegang tot die internet.".. },.. "extname": {.. "message": "Google Vanlyn Dokumente".. },.. "learnmore": {.. "message": "Kom meer te wete".. },.. "popuphelptext": {.. "message": "Skryf, redigeer en werk saam, waar jy ook al is, met of sonder 'n internetverbinding.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1285
                                                                                                                                                                                                                                                                      Entropy (8bit):4.702209356847184
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAn6bfEpxtmqMI91ivWjm/6GcCIoToCZzlgkX/Mj:W6bMt3MITFjm/Pcd4oCZhg6k
                                                                                                                                                                                                                                                                      MD5:9721EBCE89EC51EB2BAEB4159E2E4D8C
                                                                                                                                                                                                                                                                      SHA1:58979859B28513608626B563138097DC19236F1F
                                                                                                                                                                                                                                                                      SHA-256:3D0361A85ADFCD35D0DE74135723A75B646965E775188F7DCDD35E3E42DB788E
                                                                                                                                                                                                                                                                      SHA-512:FA3689E8663565D3C1C923C81A620B006EA69C99FB1EB15D07F8F45192ED9175A6A92315FA424159C1163382A3707B25B5FC23E590300C62CBE2DACE79D84871
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "... ...".. },.. "explanationofflinedisabled": {.. "message": "..... .. .... Google ..... ........ ..... ..... .Google .... ... .. .. .. ..... .... ....... .. ....... ... .. .. ..... .. ..... ....".. },.. "explanationofflineenabled": {.. "message": "..... .. .... ... .. .... .... ..... .... ... ..... .... .....".. },.. "extdesc": {.. "message": "...... ..... .... ... .. ..... ...... ..... .... .. ..... . .... .. ...... .....".. },.. "extname": {.. "message": "..... .. Goog
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1244
                                                                                                                                                                                                                                                                      Entropy (8bit):4.5533961615623735
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgPCBxNhieFTr9ogjIxurIyJCCBxeh6wAZKn7uCSUhStuysUm+WCBhSueW1Y:1HAgJzoaC6VEn7Css8yoXzzd
                                                                                                                                                                                                                                                                      MD5:3EC93EA8F8422FDA079F8E5B3F386A73
                                                                                                                                                                                                                                                                      SHA1:24640131CCFB21D9BC3373C0661DA02D50350C15
                                                                                                                                                                                                                                                                      SHA-256:ABD0919121956AB535E6A235DE67764F46CFC944071FCF2302148F5FB0E8C65A
                                                                                                                                                                                                                                                                      SHA-512:F40E879F85BC9B8120A9B7357ED44C22C075BF065F45BEA42BD5316AF929CBD035D5D6C35734E454AEF5B79D378E51A77A71FA23F9EBD0B3754159718FCEB95C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "..... ....".. },.. "explanationofflinedisabled": {.. "message": "... ... ...... ........ ....... Google ... ..... .......... ..... ... ......... .. ...... ........ ........ Google ..... ........ ... ..... .. ..... ....... .... .... .... ..........".. },.. "explanationofflineenabled": {.. "message": "... ... ...... .... .. .... ....... ..... ....... ....... .. ..... ..... ......".. },.. "extdesc": {.. "message": "..... ......... ...... ........ ....... ......... ........ ....... .. ... ... ..... .........".. },.. "extname": {.. "message": "....... Google ... ......".. },.. "learnmore": {.. "messa
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):977
                                                                                                                                                                                                                                                                      Entropy (8bit):4.867640976960053
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAWNjbwlmyuAoW32Md+80cVLdUSERHtRo3SjX:J3wlzs42m+8TV+S4H0CjX
                                                                                                                                                                                                                                                                      MD5:9A798FD298008074E59ECC253E2F2933
                                                                                                                                                                                                                                                                      SHA1:1E93DA985E880F3D3350FC94F5CCC498EFC8C813
                                                                                                                                                                                                                                                                      SHA-256:628145F4281FA825D75F1E332998904466ABD050E8B0DC8BB9B6A20488D78A66
                                                                                                                                                                                                                                                                      SHA-512:9094480379F5AB711B3C32C55FD162290CB0031644EA09A145E2EF315DA12F2E55369D824AF218C3A7C37DD9A276AEEC127D8B3627D3AB45A14B0191ED2BBE70
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "YEN.S.N. YARADIN".. },.. "explanationofflinedisabled": {.. "message": "Oflayns.n.z. Google S.n.di internet ba.lant.s. olmadan istifad. etm.k ist.yirsinizs., Google S.n.din .sas s.hif.sind. ayarlara gedin v. n.vb.ti d.f. internet. qo.ulanda oflayn sinxronizasiyan. aktiv edin.".. },.. "explanationofflineenabled": {.. "message": "Oflayns.n.z, amma m.vcud fayllar. redakt. ed. v. yenil.rini yarada bil.rsiniz.".. },.. "extdesc": {.. "message": "S.n.d, c.dv.l v. t.qdimatlar.n ham.s.n. internet olmadan redakt. edin, yarad.n v. bax.n.".. },.. "extname": {.. "message": "Google S.n.d Oflayn".. },.. "learnmore": {.. "message": ".trafl. M.lumat".. },.. "popuphelptext": {.. "message": "Harda olma..n.zdan v. internet. qo.ulu olub-olmad...n.zdan as.l. olmayaraq, yaz.n, redakt. edin v. .m.kda.l.q edin.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):3107
                                                                                                                                                                                                                                                                      Entropy (8bit):3.535189746470889
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:YOWdTQ0QRk+QyJQAy6Qg4QWSe+QECTQLHQlQIfyQ0fnWQjQDrTQik+QvkZTQ+89b:GdTbyRvwgbCTEHQhyVues9oOT3rOCkV
                                                                                                                                                                                                                                                                      MD5:68884DFDA320B85F9FC5244C2DD00568
                                                                                                                                                                                                                                                                      SHA1:FD9C01E03320560CBBB91DC3D1917C96D792A549
                                                                                                                                                                                                                                                                      SHA-256:DDF16859A15F3EB3334D6241975CA3988AC3EAFC3D96452AC3A4AFD3644C8550
                                                                                                                                                                                                                                                                      SHA-512:7FF0FBD555B1F9A9A4E36B745CBFCAD47B33024664F0D99E8C080BE541420D1955D35D04B5E973C07725573E592CD0DD84FDBB867C63482BAFF6929ADA27CCDE
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u0421\u0422\u0412\u0410\u0420\u042b\u0426\u042c \u041d\u041e\u0412\u042b"},"explanationofflinedisabled":{"message":"\u0412\u044b \u045e \u043f\u0430\u0437\u0430\u0441\u0435\u0442\u043a\u0430\u0432\u044b\u043c \u0440\u044d\u0436\u044b\u043c\u0435. \u041a\u0430\u0431 \u043a\u0430\u0440\u044b\u0441\u0442\u0430\u0446\u0446\u0430 \u0414\u0430\u043a\u0443\u043c\u0435\u043d\u0442\u0430\u043c\u0456 Google \u0431\u0435\u0437 \u043f\u0430\u0434\u043a\u043b\u044e\u0447\u044d\u043d\u043d\u044f \u0434\u0430 \u0456\u043d\u0442\u044d\u0440\u043d\u044d\u0442\u0443, \u043f\u0435\u0440\u0430\u0439\u0434\u0437\u0456\u0446\u0435 \u0434\u0430 \u043d\u0430\u043b\u0430\u0434 \u043d\u0430 \u0433\u0430\u043b\u043e\u045e\u043d\u0430\u0439 \u0441\u0442\u0430\u0440\u043e\u043d\u0446\u044b \u0414\u0430\u043a\u0443\u043c\u0435\u043d\u0442\u0430\u045e Google \u0456 \u045e\u043a\u043b\u044e\u0447\u044b\u0446\u0435 \u0441\u0456\u043d\u0445\u0440\u0430\u043d\u0456\u0437\u0430\u0446\u044b\u044e
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1389
                                                                                                                                                                                                                                                                      Entropy (8bit):4.561317517930672
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAp1DQqUfZ+Yann08VOeadclUZbyMzZzsYvwUNn7nOyRK8/nn08V7:g1UTfZ+Ya08Uey3tflCRE08h
                                                                                                                                                                                                                                                                      MD5:2E6423F38E148AC5A5A041B1D5989CC0
                                                                                                                                                                                                                                                                      SHA1:88966FFE39510C06CD9F710DFAC8545672FFDCEB
                                                                                                                                                                                                                                                                      SHA-256:AC4A8B5B7C0B0DD1C07910F30DCFBDF1BCB701CFCFD182B6153FD3911D566C0E
                                                                                                                                                                                                                                                                      SHA-512:891FCDC6F07337970518322C69C6026896DD3588F41F1E6C8A1D91204412CAE01808F87F9F2DEA1754458D70F51C3CEF5F12A9E3FC011165A42B0844C75EC683
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".........".. },.. "explanationofflinedisabled": {.. "message": "...... .... .. .. .......... Google ......... ... ........ ......, ........ ........... . ......... ........ .. Google ......... . ........ ...... .............. ......... ..., ...... ..... ...... . .........".. },.. "explanationofflineenabled": {.. "message": "...... ..., .. ... ...... .. ........... ......... ....... ... .. ......... .....".. },.. "extdesc": {.. "message": "............, .......... . ............ ...... ........., .......... ....... . ........... . ...... .... ... ...... .. .........".. },..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1763
                                                                                                                                                                                                                                                                      Entropy (8bit):4.25392954144533
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HABGtNOtIyHmVd+q+3X2AFl2DhrR7FAWS9+SMzI8QVAEq8yB0XtfOyvU7D:oshmm/+H2Ml2DrFPS9+S99EzBd7D
                                                                                                                                                                                                                                                                      MD5:651375C6AF22E2BCD228347A45E3C2C9
                                                                                                                                                                                                                                                                      SHA1:109AC3A912326171D77869854D7300385F6E628C
                                                                                                                                                                                                                                                                      SHA-256:1DBF38E425C5C7FC39E8077A837DF0443692463BA1FBE94E288AB5A93242C46E
                                                                                                                                                                                                                                                                      SHA-512:958AA7CF645FAB991F2ECA0937BA734861B373FB1C8BCC001599BE57C65E0917F7833A971D93A7A6423C5F54A4839D3A4D5F100C26EFA0D2A068516953989F9D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".... .... ....".. },.. "explanationofflinedisabled": {.. "message": ".... ....... ....... .... ......... ..... ..... Google ........ ....... ...., Google .......... ........ ....... ... ... .... ... .... ... ........... .... ....... .... ... ...... ..... .... .....".. },.. "explanationofflineenabled": {.. "message": ".... ....... ......, ...... .... .... ...... .......... ........ .... .. .... .... .... .... .......".. },.. "extdesc":
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):930
                                                                                                                                                                                                                                                                      Entropy (8bit):4.569672473374877
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvggoSCBxNFT0sXuqgEHQ2fTq9blUJYUJaw9CBxejZFPLOjCSUuE44pMiiDat:1HAtqs+BEHGpURxSp1iUPWCAXtRKe
                                                                                                                                                                                                                                                                      MD5:D177261FFE5F8AB4B3796D26835F8331
                                                                                                                                                                                                                                                                      SHA1:4BE708E2FFE0F018AC183003B74353AD646C1657
                                                                                                                                                                                                                                                                      SHA-256:D6E65238187A430FF29D4C10CF1C46B3F0FA4B91A5900A17C5DFD16E67FFC9BD
                                                                                                                                                                                                                                                                      SHA-512:E7D730304AED78C0F4A78DADBF835A22B3D8114FB41D67B2B26F4FE938B572763D3E127B7C1C81EBE7D538DA976A7A1E7ADC40F918F88AFADEA2201AE8AB47D0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREA'N UN DE NOU".. },.. "explanationofflinedisabled": {.. "message": "No tens connexi.. Per utilitzar Documents de Google sense connexi. a Internet, ves a la configuraci. de la p.gina d'inici d'aquest servei i activa l'opci. per sincronitzar-se sense connexi. la propera vegada que estiguis connectat a la xarxa.".. },.. "explanationofflineenabled": {.. "message": "Tot i que no tens connexi., pots editar o crear fitxers.".. },.. "extdesc": {.. "message": "Edita, crea i consulta documents, fulls de c.lcul i presentacions, tot sense acc.s a Internet.".. },.. "extname": {.. "message": "Documents de Google sense connexi.".. },.. "learnmore": {.. "message": "M.s informaci.".. },.. "popuphelptext": {.. "message": "Escriu text, edita fitxers i col.labora-hi siguis on siguis, amb o sense connexi. a Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):913
                                                                                                                                                                                                                                                                      Entropy (8bit):4.947221919047
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgdsbCBxNBmobXP15Dxoo60n40h6qCBxeBeGG/9jZCSUKFPDLZ2B2hCBhPLm:1HApJmoZ5e50nzQhwAd7dvYB2kDSGGKs
                                                                                                                                                                                                                                                                      MD5:CCB00C63E4814F7C46B06E4A142F2DE9
                                                                                                                                                                                                                                                                      SHA1:860936B2A500CE09498B07A457E0CCA6B69C5C23
                                                                                                                                                                                                                                                                      SHA-256:21AE66CE537095408D21670585AD12599B0F575FF2CB3EE34E3A48F8CC71CFAB
                                                                                                                                                                                                                                                                      SHA-512:35839DAC6C985A6CA11C1BFF5B8B5E59DB501FCB91298E2C41CB0816B6101BF322445B249EAEA0CEF38F76D73A4E198F2B6E25EEA8D8A94EA6007D386D4F1055
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "VYTVO.IT".. },.. "explanationofflinedisabled": {.. "message": "Jste offline. Pokud chcete Dokumenty Google pou..vat bez p.ipojen. k.internetu, a. budete p...t. online, p.ejd.te do nastaven. na domovsk. str.nce Dokument. Google a.zapn.te offline synchronizaci.".. },.. "explanationofflineenabled": {.. "message": "Jste offline, ale st.le m..ete upravovat dostupn. soubory nebo vytv..et nov..".. },.. "extdesc": {.. "message": "Upravujte, vytv..ejte a.zobrazujte sv. dokumenty, tabulky a.prezentace . v.e bez p..stupu k.internetu.".. },.. "extname": {.. "message": "Dokumenty Google offline".. },.. "learnmore": {.. "message": "Dal.. informace".. },.. "popuphelptext": {.. "message": "Pi.te, upravujte a.spolupracujte kdekoli, s.p.ipojen.m k.internetu i.bez n.j.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):806
                                                                                                                                                                                                                                                                      Entropy (8bit):4.815663786215102
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:YGo35xMxy6gLr4Dn1eBVa1xzxyn1VFQB6FDVgdAJex9QH7uy+XJEjENK32J21j:Y735+yoeeRG54uDmdXx9Q7u3r83Xj
                                                                                                                                                                                                                                                                      MD5:A86407C6F20818972B80B9384ACFBBED
                                                                                                                                                                                                                                                                      SHA1:D1531CD0701371E95D2A6BB5EDCB79B949D65E7C
                                                                                                                                                                                                                                                                      SHA-256:A482663292A913B02A9CDE4635C7C92270BF3C8726FD274475DC2C490019A7C9
                                                                                                                                                                                                                                                                      SHA-512:D9FBF675514A890E9656F83572208830C6D977E34D5744C298A012515BC7EB5A17726ADD0D9078501393BABD65387C4F4D3AC0CC0F7C60C72E09F336DCA88DE7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"CREU NEWYDD"},"explanationofflinedisabled":{"message":"Rydych chi all-lein. I ddefnyddio Dogfennau Google heb gysylltiad \u00e2'r rhyngrwyd, ewch i'r gosodiadau ar dudalen hafan Dogfennau Google a throi 'offine sync' ymlaen y tro nesaf y byddwch wedi'ch cysylltu \u00e2'r rhyngrwyd."},"explanationofflineenabled":{"message":"Rydych chi all-lein, ond gallwch barhau i olygu'r ffeiliau sydd ar gael neu greu rhai newydd."},"extdesc":{"message":"Gallwch olygu, creu a gweld eich dogfennau, taenlenni a chyflwyniadau \u2013 i gyd heb fynediad i'r rhyngrwyd."},"extname":{"message":"Dogfennau Google All-lein"},"learnmore":{"message":"DYSGU MWY"},"popuphelptext":{"message":"Ysgrifennwch, golygwch a chydweithiwch lle bynnag yr ydych, gyda chysylltiad \u00e2'r rhyngrwyd neu hebddo."}}.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):883
                                                                                                                                                                                                                                                                      Entropy (8bit):4.5096240460083905
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA4EFkQdUULMnf1yo+9qgpukAXW9bGJTvDyqdr:zEFkegfw9qwAXWNs/yu
                                                                                                                                                                                                                                                                      MD5:B922F7FD0E8CCAC31B411FC26542C5BA
                                                                                                                                                                                                                                                                      SHA1:2D25E153983E311E44A3A348B7D97AF9AAD21A30
                                                                                                                                                                                                                                                                      SHA-256:48847D57C75AF51A44CBF8F7EF1A4496C2007E58ED56D340724FDA1604FF9195
                                                                                                                                                                                                                                                                      SHA-512:AD0954DEEB17AF04858DD5EC3D3B3DA12DFF7A666AF4061DEB6FD492992D95DB3BAF751AB6A59BEC7AB22117103A93496E07632C2FC724623BB3ACF2CA6093F3
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "OPRET NYT".. },.. "explanationofflinedisabled": {.. "message": "Du er offline. Hvis du vil bruge Google Docs uden en internetforbindelse, kan du g. til indstillinger p. startsiden for Google Docs og aktivere offlinesynkronisering, n.ste gang du har internetforbindelse.".. },.. "explanationofflineenabled": {.. "message": "Du er offline, men du kan stadig redigere tilg.ngelige filer eller oprette nye.".. },.. "extdesc": {.. "message": "Rediger, opret og se dine dokumenter, regneark og pr.sentationer helt uden internetadgang.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "F. flere oplysninger".. },.. "popuphelptext": {.. "message": "Skriv, rediger og samarbejd, uanset hvor du er, og uanset om du har internetforbindelse.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1031
                                                                                                                                                                                                                                                                      Entropy (8bit):4.621865814402898
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA6sZnqWd77ykJzCkhRhoe1HMNaAJPwG/p98HKpy2kX/R:WZqWxykJzthRhoQma+tpyHX2O/R
                                                                                                                                                                                                                                                                      MD5:D116453277CC860D196887CEC6432FFE
                                                                                                                                                                                                                                                                      SHA1:0AE00288FDE696795CC62FD36EABC507AB6F4EA4
                                                                                                                                                                                                                                                                      SHA-256:36AC525FA6E28F18572D71D75293970E0E1EAD68F358C20DA4FDC643EEA2C1C5
                                                                                                                                                                                                                                                                      SHA-512:C788C3202A27EC220E3232AE25E3C855F3FDB8F124848F46A3D89510C564641A2DFEA86D5014CEA20D3D2D3C1405C96DBEB7CCAD910D65C55A32FDCA8A33FDD4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "NEU ERSTELLEN".. },.. "explanationofflinedisabled": {.. "message": "Sie sind offline. Um Google Docs ohne Internetverbindung zu verwenden, gehen Sie auf der Google Docs-Startseite auf \"Einstellungen\" und schalten die Offlinesynchronisierung ein, wenn Sie das n.chste Mal mit dem Internet verbunden sind.".. },.. "explanationofflineenabled": {.. "message": "Sie sind offline, aber k.nnen weiterhin verf.gbare Dateien bearbeiten oder neue Dateien erstellen.".. },.. "extdesc": {.. "message": "Mit der Erweiterung k.nnen Sie Dokumente, Tabellen und Pr.sentationen bearbeiten, erstellen und aufrufen.. ganz ohne Internetverbindung.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Weitere Informationen".. },.. "popuphelptext": {.. "message": "Mit oder ohne Internetverbindung: Sie k.nnen von .berall Dokumente erstellen, .ndern und zusammen mit anderen
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1613
                                                                                                                                                                                                                                                                      Entropy (8bit):4.618182455684241
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAJKan4EITDZGoziRAc2Z8eEfkTJfLhGX7b0UBNoAcGpVyhxefSmuq:SKzTD0IK85JlwsGOUyaSk
                                                                                                                                                                                                                                                                      MD5:9ABA4337C670C6349BA38FDDC27C2106
                                                                                                                                                                                                                                                                      SHA1:1FC33BE9AB4AD99216629BC89FBB30E7AA42B812
                                                                                                                                                                                                                                                                      SHA-256:37CA6AB271D6E7C9B00B846FDB969811C9CE7864A85B5714027050795EA24F00
                                                                                                                                                                                                                                                                      SHA-512:8564F93AD8485C06034A89421CE74A4E719BBAC865E33A7ED0B87BAA80B7F7E54B240266F2EDB595DF4E6816144428DB8BE18A4252CBDCC1E37B9ECC9F9D7897
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".......... ....".. },.. "explanationofflinedisabled": {.. "message": "..... ..... ......... ... .. ............... .. ....... Google ..... ....... ... ........., ......... .... ......... .... ...... ...... ... ........ Google ... ............. ... ........... ..... ........ ... ....... .... ... .. ..... ............ ... ..........".. },.. "explanationofflineenabled": {.. "message": "..... ..... ........ .... ........ .. .............. .. ......... ...... . .. ............. ... .......".. },.. "extdesc": {.. "message": ".............., ............ ... ..... .. ......., .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):851
                                                                                                                                                                                                                                                                      Entropy (8bit):4.4858053753176526
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgg4eCBxNdN3Pj1NzXW6iFryCBxesJGceKCSUuvNn3AwCBhUufz1tHaXRdAv:1HA3dj/BNzXviFrpj4sNQXJezAa6
                                                                                                                                                                                                                                                                      MD5:07FFBE5F24CA348723FF8C6C488ABFB8
                                                                                                                                                                                                                                                                      SHA1:6DC2851E39B2EE38F88CF5C35A90171DBEA5B690
                                                                                                                                                                                                                                                                      SHA-256:6895648577286002F1DC9C3366F558484EB7020D52BBF64A296406E61D09599C
                                                                                                                                                                                                                                                                      SHA-512:7ED2C8DB851A84F614D5DAF1D5FE633BD70301FD7FF8A6723430F05F642CEB3B1AD0A40DE65B224661C782FFCEC69D996EBE3E5BB6B2F478181E9A07D8CD41F6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREATE NEW".. },.. "explanationofflinedisabled": {.. "message": "You're offline. To use Google Docs without an internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the internet.".. },.. "explanationofflineenabled": {.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extdesc": {.. "message": "Edit, create, and view your documents, spreadsheets, and presentations . all without internet access.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Learn More".. },.. "popuphelptext": {.. "message": "Write, edit, and collaborate wherever you are, with or without an internet connection.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):851
                                                                                                                                                                                                                                                                      Entropy (8bit):4.4858053753176526
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgg4eCBxNdN3Pj1NzXW6iFryCBxesJGceKCSUuvNn3AwCBhUufz1tHaXRdAv:1HA3dj/BNzXviFrpj4sNQXJezAa6
                                                                                                                                                                                                                                                                      MD5:07FFBE5F24CA348723FF8C6C488ABFB8
                                                                                                                                                                                                                                                                      SHA1:6DC2851E39B2EE38F88CF5C35A90171DBEA5B690
                                                                                                                                                                                                                                                                      SHA-256:6895648577286002F1DC9C3366F558484EB7020D52BBF64A296406E61D09599C
                                                                                                                                                                                                                                                                      SHA-512:7ED2C8DB851A84F614D5DAF1D5FE633BD70301FD7FF8A6723430F05F642CEB3B1AD0A40DE65B224661C782FFCEC69D996EBE3E5BB6B2F478181E9A07D8CD41F6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREATE NEW".. },.. "explanationofflinedisabled": {.. "message": "You're offline. To use Google Docs without an internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the internet.".. },.. "explanationofflineenabled": {.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extdesc": {.. "message": "Edit, create, and view your documents, spreadsheets, and presentations . all without internet access.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Learn More".. },.. "popuphelptext": {.. "message": "Write, edit, and collaborate wherever you are, with or without an internet connection.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):848
                                                                                                                                                                                                                                                                      Entropy (8bit):4.494568170878587
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgg4eCBxNdN3vRyc1NzXW6iFrSCBxesJGceKCSUuvlvOgwCBhUufz1tnaXrQ:1HA3djfR3NzXviFrJj4sJXJ+bA6RM
                                                                                                                                                                                                                                                                      MD5:3734D498FB377CF5E4E2508B8131C0FA
                                                                                                                                                                                                                                                                      SHA1:AA23E39BFE526B5E3379DE04E00EACBA89C55ADE
                                                                                                                                                                                                                                                                      SHA-256:AB5CDA04013DCE0195E80AF714FBF3A67675283768FFD062CF3CF16EDB49F5D4
                                                                                                                                                                                                                                                                      SHA-512:56D9C792954214B0DE56558983F7EB7805AC330AF00E944E734340BE41C68E5DD03EDDB17A63BC2AB99BDD9BE1F2E2DA5BE8BA7C43D938A67151082A9041C7BA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREATE NEW".. },.. "explanationofflinedisabled": {.. "message": "You're offline. To use Google Docs without an Internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the Internet.".. },.. "explanationofflineenabled": {.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extdesc": {.. "message": "Edit, create and view your documents, spreadsheets and presentations . all without Internet access.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Learn more".. },.. "popuphelptext": {.. "message": "Write, edit and collaborate wherever you are, with or without an Internet connection.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1425
                                                                                                                                                                                                                                                                      Entropy (8bit):4.461560329690825
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA6Krbbds5Kna/BNzXviFrpsCxKU4irpNQ0+qWK5yOJAaCB7MAa6:BKrbBs5Kna/BNzXvi3sCxKZirA0jWK5m
                                                                                                                                                                                                                                                                      MD5:578215FBB8C12CB7E6CD73FBD16EC994
                                                                                                                                                                                                                                                                      SHA1:9471D71FA6D82CE1863B74E24237AD4FD9477187
                                                                                                                                                                                                                                                                      SHA-256:102B586B197EA7D6EDFEB874B97F95B05D229EA6A92780EA8544C4FF1E6BC5B1
                                                                                                                                                                                                                                                                      SHA-512:E698B1A6A6ED6963182F7D25AC12C6DE06C45D14499DDC91E81BDB35474E7EC9071CFEBD869B7D129CB2CD127BC1442C75E408E21EB8E5E6906A607A3982B212
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createNew": {.. "description": "Text shown in the extension pop up for creating a new document",.. "message": "CREATE NEW".. },.. "explanationOfflineDisabled": {.. "description": "Text shown in the extension popup when the user is offline and offline is disabled.",.. "message": "You're offline. To use Google Docs without an internet connection, go to settings on the Google Docs homepage and turn on offline sync the next time you're connected to the internet.".. },.. "explanationOfflineEnabled": {.. "description": "Text shown in the extension popup when the user is offline and offline is enabled.",.. "message": "You're offline, but you can still edit available files or create new ones.".. },.. "extDesc": {.. "description": "Extension description",.. "message": "Edit, create, and view your documents, spreadsheets, and presentations . all without internet access.".. },.. "extName": {.. "description": "Extension name",..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):961
                                                                                                                                                                                                                                                                      Entropy (8bit):4.537633413451255
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvggeCBxNFxcw2CVcfamedatqWCCBxeFxCF/m+rWAaFQbCSUuExqIQdO06stp:1HAqn0gcfa9dc/5mCpmIWck02USfWmk
                                                                                                                                                                                                                                                                      MD5:F61916A206AC0E971CDCB63B29E580E3
                                                                                                                                                                                                                                                                      SHA1:994B8C985DC1E161655D6E553146FB84D0030619
                                                                                                                                                                                                                                                                      SHA-256:2008F4FAAB71AB8C76A5D8811AD40102C380B6B929CE0BCE9C378A7CADFC05EB
                                                                                                                                                                                                                                                                      SHA-512:D9C63B2F99015355ACA04D74A27FD6B81170750C4B4BE7293390DC81EF4CD920EE9184B05C61DC8979B6C2783528949A4AE7180DBF460A2620DBB0D3FD7A05CF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREAR".. },.. "explanationofflinedisabled": {.. "message": "No tienes conexi.n. Para usar Documentos de Google sin conexi.n a Internet, ve a Configuraci.n en la p.gina principal de Documentos de Google y activa la sincronizaci.n sin conexi.n la pr.xima vez que te conectes a Internet.".. },.. "explanationofflineenabled": {.. "message": "No tienes conexi.n. Aun as., puedes crear archivos o editar los que est.n disponibles.".. },.. "extdesc": {.. "message": "Edita, crea y consulta tus documentos, hojas de c.lculo y presentaciones; todo ello, sin acceso a Internet.".. },.. "extname": {.. "message": "Documentos de Google sin conexi.n".. },.. "learnmore": {.. "message": "M.s informaci.n".. },.. "popuphelptext": {.. "message": "Escribe o edita contenido y colabora con otras personas desde cualquier lugar, con o sin conexi.n a Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):959
                                                                                                                                                                                                                                                                      Entropy (8bit):4.570019855018913
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HARn05cfa9dcDmQOTtSprj0zaGUSjSGZ:+n0CfMcDmQOTQprj4qpC
                                                                                                                                                                                                                                                                      MD5:535331F8FB98894877811B14994FEA9D
                                                                                                                                                                                                                                                                      SHA1:42475E6AFB6A8AE41E2FC2B9949189EF9BBE09FB
                                                                                                                                                                                                                                                                      SHA-256:90A560FF82605DB7EDA26C90331650FF9E42C0B596CEDB79B23598DEC1B4988F
                                                                                                                                                                                                                                                                      SHA-512:2CE9C69E901AB5F766E6CFC1E592E1AF5A07AA78D154CCBB7898519A12E6B42A21C5052A86783ABE3E7A05043D4BD41B28960FEDDB30169FF7F7FE7208C8CFE9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREAR NUEVO".. },.. "explanationofflinedisabled": {.. "message": "No tienes conexi.n. Para usar Documentos de Google sin conexi.n a Internet, ve a la configuraci.n de la p.gina principal de Documentos de Google y activa la sincronizaci.n sin conexi.n la pr.xima vez que est.s conectado a Internet.".. },.. "explanationofflineenabled": {.. "message": "No tienes conexi.n, pero a.n puedes modificar los archivos disponibles o crear otros nuevos.".. },.. "extdesc": {.. "message": "Edita, crea y consulta tus documentos, hojas de c.lculo y presentaciones aunque no tengas acceso a Internet".. },.. "extname": {.. "message": "Documentos de Google sin conexi.n".. },.. "learnmore": {.. "message": "M.s informaci.n".. },.. "popuphelptext": {.. "message": "Escribe, modifica y colabora dondequiera que est.s, con conexi.n a Internet o sin ella.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):968
                                                                                                                                                                                                                                                                      Entropy (8bit):4.633956349931516
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA5WG6t306+9sihHvMfdJLjUk4NJPNczGr:mWGY0cOUdJODPmzs
                                                                                                                                                                                                                                                                      MD5:64204786E7A7C1ED9C241F1C59B81007
                                                                                                                                                                                                                                                                      SHA1:586528E87CD670249A44FB9C54B1796E40CDB794
                                                                                                                                                                                                                                                                      SHA-256:CC31B877238DA6C1D51D9A6155FDE565727A1956572F466C387B7E41C4923A29
                                                                                                                                                                                                                                                                      SHA-512:44FCF93F3FB10A3DB68D74F9453995995AB2D16863EC89779DB451A4D90F19743B8F51095EEC3ECEF5BD0C5C60D1BF3DFB0D64DF288DCCFBE70C129AE350B2C6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "LOO UUS".. },.. "explanationofflinedisabled": {.. "message": "Teil ei ole v.rgu.hendust. Teenuse Google.i dokumendid kasutamiseks ilma Interneti-.henduseta avage j.rgmine kord, kui olete Internetiga .hendatud, teenuse Google.i dokumendid avalehel seaded ja l.litage sisse v.rgu.henduseta s.nkroonimine.".. },.. "explanationofflineenabled": {.. "message": "Teil ei ole v.rgu.hendust, kuid saate endiselt saadaolevaid faile muuta v.i uusi luua.".. },.. "extdesc": {.. "message": "Saate luua, muuta ja vaadata oma dokumente, arvustustabeleid ning esitlusi ilma Interneti-.henduseta.".. },.. "extname": {.. "message": "V.rgu.henduseta Google.i dokumendid".. },.. "learnmore": {.. "message": "Lisateave".. },.. "popuphelptext": {.. "message": "Kirjutage, muutke ja tehke koost..d .ksk.ik kus olenemata sellest, kas teil on Interneti-.hendus.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):838
                                                                                                                                                                                                                                                                      Entropy (8bit):4.4975520913636595
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:YnmjggqTWngosqYQqE1kjO39m7OddC0vjWQMmWgqwgQ8KLcxOb:Ynmsgqyngosq9qxTOs0vjWQMbgqchb
                                                                                                                                                                                                                                                                      MD5:29A1DA4ACB4C9D04F080BB101E204E93
                                                                                                                                                                                                                                                                      SHA1:2D0E4587DDD4BAC1C90E79A88AF3BD2C140B53B1
                                                                                                                                                                                                                                                                      SHA-256:A41670D52423BA69C7A65E7E153E7B9994E8DD0370C584BDA0714BD61C49C578
                                                                                                                                                                                                                                                                      SHA-512:B7B7A5A0AA8F6724B0FA15D65F25286D9C66873F03080CBABA037BDEEA6AADC678AC4F083BC52C2DB01BEB1B41A755ED67BBDDB9C0FE4E35A004537A3F7FC458
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"SORTU"},"explanationofflinedisabled":{"message":"Ez zaude konektatuta Internetera. Google Dokumentuak konexiorik gabe erabiltzeko, joan Google Dokumentuak zerbitzuaren orri nagusiko ezarpenetara eta aktibatu konexiorik gabeko sinkronizazioa Internetera konektatzen zaren hurrengoan."},"explanationofflineenabled":{"message":"Ez zaude konektatuta Internetera, baina erabilgarri dauden fitxategiak edita ditzakezu, baita beste batzuk sortu ere."},"extdesc":{"message":"Editatu, sortu eta ikusi dokumentuak, kalkulu-orriak eta aurkezpenak Interneteko konexiorik gabe."},"extname":{"message":"Google Dokumentuak konexiorik gabe"},"learnmore":{"message":"Lortu informazio gehiago"},"popuphelptext":{"message":"Edonon zaudela ere, ez duzu zertan konektatuta egon idatzi, editatu eta lankidetzan jardun ahal izateko."}}.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1305
                                                                                                                                                                                                                                                                      Entropy (8bit):4.673517697192589
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAX9yM7oiI99Rwx4xyQakJbfAEJhmq/RlBu92P7FbNcgYVJ0:JM7ovex4xyQaKjAEyq/p7taX0
                                                                                                                                                                                                                                                                      MD5:097F3BA8DE41A0AAF436C783DCFE7EF3
                                                                                                                                                                                                                                                                      SHA1:986B8CABD794E08C7AD41F0F35C93E4824AC84DF
                                                                                                                                                                                                                                                                      SHA-256:7C4C09D19AC4DA30CC0F7F521825F44C4DFBC19482A127FBFB2B74B3468F48F1
                                                                                                                                                                                                                                                                      SHA-512:8114EA7422E3B20AE3F08A3A64A6FFE1517A7579A3243919B8F789EB52C68D6F5A591F7B4D16CEE4BD337FF4DAF4057D81695732E5F7D9E761D04F859359FADB
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "..... ... ....".. },.. "explanationofflinedisabled": {.. "message": "...... ...... .... ....... .. ....... Google .... ..... ........ .... ... .. .. ....... ... ..... .. ....... .. .... .... ....... Google ..... . .......... ...... .. .... .....".. },.. "explanationofflineenabled": {.. "message": "...... ..... ... ...... ......... ......... .. .. .. ..... ..... ...... .... .. ........ ..... ..... .....".. },.. "extdesc": {.. "message": "...... ............ . ........ .. ....... ..... . ...... .... . ... ... ..... .... ...... .. ........".. },.. "extname": {.. "message": "....... Google .
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):911
                                                                                                                                                                                                                                                                      Entropy (8bit):4.6294343834070935
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvguCBxNMME2BESA7gPQk36xCBxeMMcXYBt+CSU1pfazCBhUunV1tLaX5GI2N:1HAVioESAsPf36O3Xst/p3J8JeEY
                                                                                                                                                                                                                                                                      MD5:B38CBD6C2C5BFAA6EE252D573A0B12A1
                                                                                                                                                                                                                                                                      SHA1:2E490D5A4942D2455C3E751F96BD9960F93C4B60
                                                                                                                                                                                                                                                                      SHA-256:2D752A5DBE80E34EA9A18C958B4C754F3BC10D63279484E4DF5880B8FD1894D2
                                                                                                                                                                                                                                                                      SHA-512:6E65207F4D8212736059CC802C6A7104E71A9CC0935E07BD13D17EC46EA26D10BC87AD923CD84D78781E4F93231A11CB9ED8D3558877B6B0D52C07CB005F1C0C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "LUO UUSI".. },.. "explanationofflinedisabled": {.. "message": "Olet offline-tilassa. Jos haluat k.ytt.. Google Docsia ilman internetyhteytt., siirry Google Docsin etusivulle ja ota asetuksissa k.ytt..n offline-synkronointi, kun seuraavan kerran olet yhteydess. internetiin.".. },.. "explanationofflineenabled": {.. "message": "Olet offline-tilassa. Voit kuitenkin muokata k.ytett.viss. olevia tiedostoja tai luoda uusia.".. },.. "extdesc": {.. "message": "Muokkaa, luo ja katso dokumentteja, laskentataulukoita ja esityksi. ilman internetyhteytt..".. },.. "extname": {.. "message": "Google Docsin offline-tila".. },.. "learnmore": {.. "message": "Lis.tietoja".. },.. "popuphelptext": {.. "message": "Kirjoita, muokkaa ja tee yhteisty.t. paikasta riippumatta, my.s ilman internetyhteytt..".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):939
                                                                                                                                                                                                                                                                      Entropy (8bit):4.451724169062555
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAXbH2eZXn6sjLITdRSJpGL/gWFJ3sqixO:ubHfZqsHIT/FLL3qO
                                                                                                                                                                                                                                                                      MD5:FCEA43D62605860FFF41BE26BAD80169
                                                                                                                                                                                                                                                                      SHA1:F25C2CE893D65666CC46EA267E3D1AA080A25F5B
                                                                                                                                                                                                                                                                      SHA-256:F51EEB7AAF5F2103C1043D520E5A4DE0FA75E4DC375E23A2C2C4AFD4D9293A72
                                                                                                                                                                                                                                                                      SHA-512:F66F113A26E5BCF54B9AAFA69DAE3C02C9C59BD5B9A05F829C92AF208C06DC8CCC7A1875CBB7B7CE425899E4BA27BFE8CE2CDAF43A00A1B9F95149E855989EE0
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "GUMAWA NG BAGO".. },.. "explanationofflinedisabled": {.. "message": "Naka-offline ka. Upang magamit ang Google Docs nang walang koneksyon sa internet, pumunta sa mga setting sa homepage ng Google Docs at i-on ang offline na pag-sync sa susunod na nakakonekta ka sa internet.".. },.. "explanationofflineenabled": {.. "message": "Naka-offline ka, ngunit maaari mo pa ring i-edit ang mga available na file o gumawa ng mga bago.".. },.. "extdesc": {.. "message": "I-edit, gawin, at tingnan ang iyong mga dokumento, spreadsheet, at presentation . lahat ng ito nang walang access sa internet.".. },.. "extname": {.. "message": "Google Docs Offline".. },.. "learnmore": {.. "message": "Matuto Pa".. },.. "popuphelptext": {.. "message": "Magsulat, mag-edit at makipag-collaborate nasaan ka man, nang mayroon o walang koneksyon sa internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):977
                                                                                                                                                                                                                                                                      Entropy (8bit):4.622066056638277
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAdy42ArMdsH50Jd6Z1PCBolXAJ+GgNHp0X16M1J1:EyfArMS2Jd6Z1PCBolX2+vNmX16Y1
                                                                                                                                                                                                                                                                      MD5:A58C0EEBD5DC6BB5D91DAF923BD3A2AA
                                                                                                                                                                                                                                                                      SHA1:F169870EEED333363950D0BCD5A46D712231E2AE
                                                                                                                                                                                                                                                                      SHA-256:0518287950A8B010FFC8D52554EB82E5D93B6C3571823B7CECA898906C11ABCC
                                                                                                                                                                                                                                                                      SHA-512:B04AFD61DE490BC838354E8DC6C22BE5C7AC6E55386FFF78489031ACBE2DBF1EAA2652366F7A1E62CE87CFCCB75576DA3B2645FEA1645B0ECEB38B1FA3A409E8
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CR.ER".. },.. "explanationofflinedisabled": {.. "message": "Vous .tes hors connexion. Pour pouvoir utiliser Google.Docs sans connexion Internet, acc.dez aux param.tres de la page d'accueil de Google.Docs et activez la synchronisation hors connexion lors de votre prochaine connexion . Internet.".. },.. "explanationofflineenabled": {.. "message": "Vous .tes hors connexion, mais vous pouvez quand m.me modifier les fichiers disponibles ou cr.er des fichiers.".. },.. "extdesc": {.. "message": "Modifiez, cr.ez et consultez des documents, feuilles de calcul et pr.sentations, sans acc.s . Internet.".. },.. "extname": {.. "message": "Google.Docs hors connexion".. },.. "learnmore": {.. "message": "En savoir plus".. },.. "popuphelptext": {.. "message": "R.digez des documents, modifiez-les et collaborez o. que vous soyez, avec ou sans connexion Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):972
                                                                                                                                                                                                                                                                      Entropy (8bit):4.621319511196614
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAdyg2pwbv1V8Cd61PC/vT2fg3YHDyM1J1:EyHpwbpd61C/72Y3YOY1
                                                                                                                                                                                                                                                                      MD5:6CAC04BDCC09034981B4AB567B00C296
                                                                                                                                                                                                                                                                      SHA1:84F4D0E89E30ED7B7ACD7644E4867FFDB346D2A5
                                                                                                                                                                                                                                                                      SHA-256:4CAA46656ECC46A420AA98D3307731E84F5AC1A89111D2E808A228C436D83834
                                                                                                                                                                                                                                                                      SHA-512:160590B6EC3DCF48F3EA7A5BAA11A8F6FA4131059469623E00AD273606B468B3A6E56D199E97DAA0ECB6C526260EBAE008570223F2822811F441D1C900DC33D6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CR.ER".. },.. "explanationofflinedisabled": {.. "message": "Vous .tes hors connexion. Pour utiliser Google.Documents sans connexion Internet, acc.dez aux param.tres sur la page d'accueil Google.Documents et activez la synchronisation hors ligne la prochaine fois que vous .tes connect. . Internet.".. },.. "explanationofflineenabled": {.. "message": "Vous .tes hors connexion, mais vous pouvez toujours modifier les fichiers disponibles ou en cr.er.".. },.. "extdesc": {.. "message": "Modifiez, cr.ez et consultez vos documents, vos feuilles de calcul et vos pr.sentations, le tout sans acc.s . Internet.".. },.. "extname": {.. "message": "Google.Documents hors connexion".. },.. "learnmore": {.. "message": "En savoir plus".. },.. "popuphelptext": {.. "message": ".crivez, modifiez et collaborez o. que vous soyez, avec ou sans connexion Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):990
                                                                                                                                                                                                                                                                      Entropy (8bit):4.497202347098541
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvggECBxNbWVqMjlMgaPLqXPhTth0CBxebWbMRCSUCjAKFCSIj0tR7tCBhP1l:1HACzWsMlajIhJhHKWbFKFC0tR8oNK5
                                                                                                                                                                                                                                                                      MD5:6BAAFEE2F718BEFBC7CD58A04CCC6C92
                                                                                                                                                                                                                                                                      SHA1:CE0BDDDA2FA1F0AD222B604C13FF116CBB6D02CF
                                                                                                                                                                                                                                                                      SHA-256:0CF098DFE5BBB46FC0132B3CF0C54B06B4D2C8390D847EE2A65D20F9B7480F4C
                                                                                                                                                                                                                                                                      SHA-512:3DA23E74CD6CF9C0E2A0C4DBA60301281D362FB0A2A908F39A55ABDCA4CC69AD55638C63CC3BEFD44DC032F9CBB9E2FDC1B4C4ABE292917DF8272BA25B82AF20
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Est.s sen conexi.n. Para utilizar Documentos de Google sen conexi.n a Internet, accede .s opci.ns de configuraci.n na p.xina de inicio de Documentos de Google e activa a sincronizaci.n sen conexi.n a pr.xima vez que esteas conectado a Internet.".. },.. "explanationofflineenabled": {.. "message": "Est.s sen conexi.n. A.nda podes editar os ficheiros dispo.ibles ou crear outros novos.".. },.. "extdesc": {.. "message": "Modifica, crea e consulta os teus documentos, follas de c.lculo e presentaci.ns sen necesidade de acceder a Internet.".. },.. "extname": {.. "message": "Documentos de Google sen conexi.n".. },.. "learnmore": {.. "message": "M.is informaci.n".. },.. "popuphelptext": {.. "message": "Escribe, edita e colabora esteas onde esteas, tanto se tes conexi.n a Internet como se non a tes.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1658
                                                                                                                                                                                                                                                                      Entropy (8bit):4.294833932445159
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA3k3FzEVeXWuvLujNzAK11RiqRC2sA0O3cEiZ7dPRFFOPtZdK0A41yG3BczKT3:Q4pE4rCjNjw6/0y+5j8ZHA4PBSKr
                                                                                                                                                                                                                                                                      MD5:BC7E1D09028B085B74CB4E04D8A90814
                                                                                                                                                                                                                                                                      SHA1:E28B2919F000B41B41209E56B7BF3A4448456CFE
                                                                                                                                                                                                                                                                      SHA-256:FE8218DF25DB54E633927C4A1640B1A41B8E6CB3360FA386B5382F833B0B237C
                                                                                                                                                                                                                                                                      SHA-512:040A8267D67DB05BBAA52F1FAC3460F58D35C5B73AA76BBF17FA78ACC6D3BFB796A870DD44638F9AC3967E35217578A20D6F0B975CEEEEDBADFC9F65BE7E72C9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".... .....".. },.. "explanationofflinedisabled": {.. "message": "... ...... ... ........ ....... ... Google .......... ..... .... ...., ... .... .... ...... ........ .... ...... ... ...... Google ........ ...... .. ........ .. ... ... ...... ....... .... ....".. },.. "explanationofflineenabled": {.. "message": "... ...... .., ..... ... ... .. ...... ..... ....... ... ... .. .... ... ..... ... ...".. },.. "extdesc": {.. "message": "..... ........., ..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1672
                                                                                                                                                                                                                                                                      Entropy (8bit):4.314484457325167
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:46G2+ymELbLNzGVx/hXdDtxSRhqv7Qm6/7Lm:4GbxzGVzXdDtx+qzU/7C
                                                                                                                                                                                                                                                                      MD5:98A7FC3E2E05AFFFC1CFE4A029F47476
                                                                                                                                                                                                                                                                      SHA1:A17E077D6E6BA1D8A90C1F3FAF25D37B0FF5A6AD
                                                                                                                                                                                                                                                                      SHA-256:D2D1AFA224CDA388FF1DC8FAC24CDA228D7CE09DE5D375947D7207FA4A6C4F8D
                                                                                                                                                                                                                                                                      SHA-512:457E295C760ABFD29FC6BBBB7FC7D4959287BCA7FB0E3E99EB834087D17EED331DEF18138838D35C48C6DDC8A0134AFFFF1A5A24033F9B5607B355D3D48FDF88
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "... .....".. },.. "explanationofflinedisabled": {.. "message": ".. ...... .... ....... ....... .. .... Google ........ .. ..... .... .. ..., .... ... ....... .. ...... .... .. Google ........ .. ........ .. ...... ... .... .. ...... ....... .... .....".. },.. "explanationofflineenabled": {.. "message": ".. ...... ..., ..... .. .. .. ...... ...... ..... .. .... ... .. .. ...... ... .... ....".. },.. "extdesc": {.. "message": ".... .... ....... ...... ..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):935
                                                                                                                                                                                                                                                                      Entropy (8bit):4.6369398601609735
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA7sR5k/I+UX/hrcySxG1fIZ3tp/S/d6Gpb+D:YsE/I+UX/hVSxQ03f/Sj+D
                                                                                                                                                                                                                                                                      MD5:25CDFF9D60C5FC4740A48EF9804BF5C7
                                                                                                                                                                                                                                                                      SHA1:4FADECC52FB43AEC084DF9FF86D2D465FBEBCDC0
                                                                                                                                                                                                                                                                      SHA-256:73E6E246CEEAB9875625CD4889FBF931F93B7B9DEAA11288AE1A0F8A6E311E76
                                                                                                                                                                                                                                                                      SHA-512:EF00B08496427FEB5A6B9FB3FE2E5404525BE7C329D9DD2A417480637FD91885837D134A26980DCF9F61E463E6CB68F09A24402805807E656AF16B116A75E02C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "IZRADI NOVI".. },.. "explanationofflinedisabled": {.. "message": "Vi ste izvan mre.e. Da biste koristili Google dokumente bez internetske veze, idite na postavke na po.etnoj stranici Google dokumenata i uklju.ite izvanmre.nu sinkronizaciju sljede.i put kada se pove.ete s internetom.".. },.. "explanationofflineenabled": {.. "message": "Vi ste izvan mre.e, no i dalje mo.ete ure.ivati dostupne datoteke i izra.ivati nove.".. },.. "extdesc": {.. "message": "Uredite, izradite i pregledajte dokumente, prora.unske tablice i prezentacije . sve bez pristupa internetu.".. },.. "extname": {.. "message": "Google dokumenti izvanmre.no".. },.. "learnmore": {.. "message": "Saznajte vi.e".. },.. "popuphelptext": {.. "message": "Pi.ite, ure.ujte i sura.ujte gdje god se nalazili, povezani s internetom ili izvanmre.no.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1065
                                                                                                                                                                                                                                                                      Entropy (8bit):4.816501737523951
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA6J54gEYwFFMxv4gvyB9FzmxlsN147g/zJcYwJgrus4QY2jom:NJ54gEYwUmgKHFzmsG7izJcYOgKgYjm
                                                                                                                                                                                                                                                                      MD5:8930A51E3ACE3DD897C9E61A2AEA1D02
                                                                                                                                                                                                                                                                      SHA1:4108506500C68C054BA03310C49FA5B8EE246EA4
                                                                                                                                                                                                                                                                      SHA-256:958C0F664FCA20855FA84293566B2DDB7F297185619143457D6479E6AC81D240
                                                                                                                                                                                                                                                                      SHA-512:126B80CD3428C0BC459EEAAFCBE4B9FDE2541A57F19F3EC7346BAF449F36DC073A9CF015594A57203255941551B25F6FAA6D2C73C57C44725F563883FF902606
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".J L.TREHOZ.SA".. },.. "explanationofflinedisabled": {.. "message": "Jelenleg offline .llapotban van. Ha a Google Dokumentumokat internetkapcsolat n.lk.l szeretn. haszn.lni, a legk.zelebbi internethaszn.lata sor.n nyissa meg a Google Dokumentumok kezd.oldal.n tal.lhat. be.ll.t.sokat, .s tiltsa le az offline szinkroniz.l.s be.ll.t.st.".. },.. "explanationofflineenabled": {.. "message": "Offline .llapotban van, de az el.rhet. f.jlokat .gy is szerkesztheti, valamint l.trehozhat .jakat.".. },.. "extdesc": {.. "message": "Szerkesszen, hozzon l.tre .s tekintsen meg dokumentumokat, t.bl.zatokat .s prezent.ci.kat . ak.r internetkapcsolat n.lk.l is.".. },.. "extname": {.. "message": "Google Dokumentumok Offline".. },.. "learnmore": {.. "message": "Tov.bbi inform.ci.".. },.. "popuphelptext": {.. "message": ".rjon, szerkesszen .s dolgozzon egy.tt m.sokkal
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2771
                                                                                                                                                                                                                                                                      Entropy (8bit):3.7629875118570055
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:Y0Fx+eiYZBZ7K1ZZ/5QQxTuDLoFZaIZSK7lq0iC0mlMO6M3ih1oAgC:lF2BTz6N/
                                                                                                                                                                                                                                                                      MD5:55DE859AD778E0AA9D950EF505B29DA9
                                                                                                                                                                                                                                                                      SHA1:4479BE637A50C9EE8A2F7690AD362A6A8FFC59B2
                                                                                                                                                                                                                                                                      SHA-256:0B16E3F8BD904A767284345AE86A0A9927C47AFE89E05EA2B13AD80009BDF9E4
                                                                                                                                                                                                                                                                      SHA-512:EDAB2FCC14CABB6D116E9C2907B42CFBC34F1D9035F43E454F1F4D1F3774C100CBADF6B4C81B025810ED90FA91C22F1AEFE83056E4543D92527E4FE81C7889A8
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u054d\u054f\u0535\u0542\u053e\u0535\u053c \u0546\u0548\u0550"},"explanationofflinedisabled":{"message":"Google \u0553\u0561\u057d\u057f\u0561\u0569\u0572\u0569\u0565\u0580\u0568 \u0576\u0561\u0587 \u0561\u0576\u0581\u0561\u0576\u0581 \u057c\u0565\u056a\u056b\u0574\u0578\u0582\u0574 \u0585\u0563\u057f\u0561\u0563\u0578\u0580\u056e\u0565\u056c\u0578\u0582 \u0570\u0561\u0574\u0561\u0580 \u0574\u056b\u0561\u0581\u0565\u0584 \u0570\u0561\u0574\u0561\u0581\u0561\u0576\u0581\u056b\u0576, \u0562\u0561\u0581\u0565\u0584 \u056e\u0561\u057c\u0561\u0575\u0578\u0582\u0569\u0575\u0561\u0576 \u0563\u056c\u056d\u0561\u057e\u0578\u0580 \u0567\u057b\u0568, \u0561\u0576\u0581\u0565\u0584 \u056f\u0561\u0580\u0563\u0561\u057e\u0578\u0580\u0578\u0582\u0574\u0576\u0565\u0580 \u0587 \u0574\u056b\u0561\u0581\u0580\u0565\u0584 \u0561\u0576\u0581\u0561\u0576\u0581 \u0570\u0561\u0574\u0561\u056a\u0561\u0574\u0561\u0581\u0578\u0582\u0574\u0568:"},"explanationofflineenabled":{"message":"\u
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):858
                                                                                                                                                                                                                                                                      Entropy (8bit):4.474411340525479
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgJX4CBxNpXemNOAJRFqjRpCBxedIdjTi92OvbCSUuoi01uRwCBhUuvz1thK:1HARXzhXemNOQWGcEoeH1eXJNvT2
                                                                                                                                                                                                                                                                      MD5:34D6EE258AF9429465AE6A078C2FB1F5
                                                                                                                                                                                                                                                                      SHA1:612CAE151984449A4346A66C0A0DF4235D64D932
                                                                                                                                                                                                                                                                      SHA-256:E3C86DDD2EFEBE88EED8484765A9868202546149753E03A61EB7C28FD62CFCA1
                                                                                                                                                                                                                                                                      SHA-512:20427807B64A0F79A6349F8A923152D9647DA95C05DE19AD3A4BF7DB817E25227F3B99307C8745DD323A6591B515221BD2F1E92B6F1A1783BDFA7142E84601B1
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "BUAT BARU".. },.. "explanationofflinedisabled": {.. "message": "Anda sedang offline. Untuk menggunakan Google Dokumen tanpa koneksi internet, buka setelan di beranda Google Dokumen dan aktifkan sinkronisasi offline saat terhubung ke internet.".. },.. "explanationofflineenabled": {.. "message": "Anda sedang offline, namun Anda masih dapat mengedit file yang tersedia atau membuat file baru.".. },.. "extdesc": {.. "message": "Edit, buat, dan lihat dokumen, spreadsheet, dan presentasi . tanpa perlu akses internet.".. },.. "extname": {.. "message": "Google Dokumen Offline".. },.. "learnmore": {.. "message": "Pelajari Lebih Lanjut".. },.. "popuphelptext": {.. "message": "Tulis, edit, dan gabungkan di mana saja, dengan atau tanpa koneksi internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):954
                                                                                                                                                                                                                                                                      Entropy (8bit):4.6457079159286545
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:YGXU2rOcxGe+J97M9TP2DBX9tMfxqbTMvOfWWgdraqlifVpm0Ekf95Mw89KkJ+je:YwBrD2g2DBLMfFuWvdpY94viDO+uh
                                                                                                                                                                                                                                                                      MD5:CAEB37F451B5B5E9F5EB2E7E7F46E2D7
                                                                                                                                                                                                                                                                      SHA1:F917F9EAE268A385A10DB3E19E3CC3ACED56D02E
                                                                                                                                                                                                                                                                      SHA-256:943E61988C859BB088F548889F0449885525DD660626A89BA67B2C94CFBFBB1B
                                                                                                                                                                                                                                                                      SHA-512:A55DEC2404E1D7FA5A05475284CBECC2A6208730F09A227D75FDD4AC82CE50F3751C89DC687C14B91950F9AA85503BD6BF705113F2F1D478E728DF64D476A9EE
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"B\u00daA TIL N\u00ddTT"},"explanationofflinedisabled":{"message":"\u00de\u00fa ert \u00e1n nettengingar. Til a\u00f0 nota Google-skj\u00f6l \u00e1n nettengingar skaltu opna stillingarnar \u00e1 heimas\u00ed\u00f0u Google skjala og virkja samstillingu \u00e1n nettengingar n\u00e6st \u00feegar \u00fe\u00fa tengist netinu."},"explanationofflineenabled":{"message":"Engin nettenging. \u00de\u00fa getur samt sem \u00e1\u00f0ur breytt tilt\u00e6kum skr\u00e1m e\u00f0a b\u00fai\u00f0 til n\u00fdjar."},"extdesc":{"message":"Breyttu, b\u00fa\u00f0u til og sko\u00f0a\u00f0u skj\u00f6lin \u00fe\u00edn, t\u00f6flureikna og kynningar \u2014 allt \u00e1n nettengingar."},"extname":{"message":"Google-skj\u00f6l \u00e1n nettengingar"},"learnmore":{"message":"Frekari uppl\u00fdsingar"},"popuphelptext":{"message":"Skrifa\u00f0u, breyttu og starfa\u00f0u me\u00f0 \u00f6\u00f0rum hvort sem nettenging er til sta\u00f0ar e\u00f0a ekki."}}.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):899
                                                                                                                                                                                                                                                                      Entropy (8bit):4.474743599345443
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvggrCBxNp8WJOJJrJ3WytVCBxep3bjP5CSUCjV8AgJJm2CBhr+z1tWgjqEOW:1HANXJOTBFtKa8Agju4NB3j
                                                                                                                                                                                                                                                                      MD5:0D82B734EF045D5FE7AA680B6A12E711
                                                                                                                                                                                                                                                                      SHA1:BD04F181E4EE09F02CD53161DCABCEF902423092
                                                                                                                                                                                                                                                                      SHA-256:F41862665B13C0B4C4F562EF1743684CCE29D4BCF7FE3EA494208DF253E33885
                                                                                                                                                                                                                                                                      SHA-512:01F305A280112482884485085494E871C66D40C0B03DE710B4E5F49C6A478D541C2C1FDA2CEAF4307900485946DEE9D905851E98A2EB237642C80D464D1B3ADA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREA NUOVO".. },.. "explanationofflinedisabled": {.. "message": "Sei offline. Per utilizzare Documenti Google senza una connessione Internet, apri le impostazioni nella home page di Documenti Google e attiva la sincronizzazione offline la prossima volta che ti colleghi a Internet.".. },.. "explanationofflineenabled": {.. "message": "Sei offline, ma puoi comunque modificare i file disponibili o crearne di nuovi.".. },.. "extdesc": {.. "message": "Modifica, crea e visualizza documenti, fogli di lavoro e presentazioni, senza accesso a Internet.".. },.. "extname": {.. "message": "Documenti Google offline".. },.. "learnmore": {.. "message": "Ulteriori informazioni".. },.. "popuphelptext": {.. "message": "Scrivi, modifica e collabora ovunque ti trovi, con o senza una connessione Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2230
                                                                                                                                                                                                                                                                      Entropy (8bit):3.8239097369647634
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:YIiTVLrLD1MEzMEH82LBLjO5YaQEqLytLLBm3dnA5LcqLWAU75yxFLcx+UxWRJLI:YfTFf589rZNgNA12Qzt4/zRz2vc
                                                                                                                                                                                                                                                                      MD5:26B1533C0852EE4661EC1A27BD87D6BF
                                                                                                                                                                                                                                                                      SHA1:18234E3ABAF702DF9330552780C2F33B83A1188A
                                                                                                                                                                                                                                                                      SHA-256:BBB81C32F482BA3216C9B1189C70CEF39CA8C2181AF3538FFA07B4C6AD52F06A
                                                                                                                                                                                                                                                                      SHA-512:450BFAF0E8159A4FAE309737EA69CA8DD91CAAFD27EF662087C4E7716B2DCAD3172555898E75814D6F11487F4F254DE8625EF0CFEA8DF0133FC49E18EC7FD5D2
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u05d9\u05e6\u05d9\u05e8\u05ea \u05d7\u05d3\u05e9"},"explanationofflinedisabled":{"message":"\u05d0\u05d9\u05df \u05dc\u05da \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8. \u05db\u05d3\u05d9 \u05dc\u05d4\u05e9\u05ea\u05de\u05e9 \u05d1-Google Docs \u05dc\u05dc\u05d0 \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8, \u05d1\u05d4\u05ea\u05d7\u05d1\u05e8\u05d5\u05ea \u05d4\u05d1\u05d0\u05d4 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e8\u05e0\u05d8, \u05d9\u05e9 \u05dc\u05e2\u05d1\u05d5\u05e8 \u05dc\u05e7\u05d8\u05e2 \u05d4\u05d4\u05d2\u05d3\u05e8\u05d5\u05ea \u05d1\u05d3\u05e3 \u05d4\u05d1\u05d9\u05ea \u05e9\u05dc Google Docs \u05d5\u05dc\u05d4\u05e4\u05e2\u05d9\u05dc \u05e1\u05e0\u05db\u05e8\u05d5\u05df \u05d1\u05de\u05e6\u05d1 \u05d0\u05d5\u05e4\u05dc\u05d9\u05d9\u05df."},"explanationofflineenabled":{"message":"\u05d0\u05d9\u05df \u05dc\u05da \u05d7\u05d9\u05d1\u05d5\u05e8 \u05dc\u05d0\u05d9\u05e0\u05d8\u05e
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1160
                                                                                                                                                                                                                                                                      Entropy (8bit):5.292894989863142
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAoc3IiRF1viQ1RF3CMP3rnicCCAFrr1Oo0Y5ReXCCQkb:Dc3zF7F3CMTnOCAFVLHXCFb
                                                                                                                                                                                                                                                                      MD5:15EC1963FC113D4AD6E7E59AE5DE7C0A
                                                                                                                                                                                                                                                                      SHA1:4017FC6D8B302335469091B91D063B07C9E12109
                                                                                                                                                                                                                                                                      SHA-256:34AC08F3C4F2D42962A3395508818B48CA323D22F498738CC9F09E78CB197D73
                                                                                                                                                                                                                                                                      SHA-512:427251F471FA3B759CA1555E9600C10F755BC023701D058FF661BEC605B6AB94CFB3456C1FEA68D12B4D815FFBAFABCEB6C12311DD1199FC783ED6863AF97C0F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "....".. },.. "explanationofflinedisabled": {.. "message": "....................... Google ............................... Google .............. [..] .......[.......] ...........".. },.. "explanationofflineenabled": {.. "message": ".............................................".. },.. "extdesc": {.. "message": ".........................................................".. },.. "extname": {.. "message": "Google ..... ......".. },.. "learnmore": {.. "message": "..".. },.. "popuphelp
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):3264
                                                                                                                                                                                                                                                                      Entropy (8bit):3.586016059431306
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:YGFbhVhVn0nM/XGbQTvxnItVJW/476CFdqaxWNlR:HFbhV/n0MfGbw875FkaANlR
                                                                                                                                                                                                                                                                      MD5:83F81D30913DC4344573D7A58BD20D85
                                                                                                                                                                                                                                                                      SHA1:5AD0E91EA18045232A8F9DF1627007FE506A70E0
                                                                                                                                                                                                                                                                      SHA-256:30898BBF51BDD58DB397FF780F061E33431A38EF5CFC288B5177ECF76B399F26
                                                                                                                                                                                                                                                                      SHA-512:85F97F12AD4482B5D9A6166BB2AE3C4458A582CF575190C71C1D8E0FB87C58482F8C0EFEAD56E3A70EDD42BED945816DB5E07732AD27B8FFC93F4093710DD58F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u10d0\u10ee\u10da\u10d8\u10e1 \u10e8\u10d4\u10e5\u10db\u10dc\u10d0"},"explanationofflinedisabled":{"message":"\u10d7\u10e5\u10d5\u10d4\u10dc \u10ee\u10d0\u10d6\u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10ee\u10d0\u10e0\u10d7. Google Docs-\u10d8\u10e1 \u10d8\u10dc\u10e2\u10d4\u10e0\u10dc\u10d4\u10e2\u10d7\u10d0\u10dc \u10d9\u10d0\u10d5\u10e8\u10d8\u10e0\u10d8\u10e1 \u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10d2\u10d0\u10db\u10dd\u10e1\u10d0\u10e7\u10d4\u10dc\u10d4\u10d1\u10da\u10d0\u10d3 \u10d2\u10d0\u10d3\u10d0\u10d3\u10d8\u10d7 \u10de\u10d0\u10e0\u10d0\u10db\u10d4\u10e2\u10e0\u10d4\u10d1\u10d6\u10d4 Google Docs-\u10d8\u10e1 \u10db\u10d7\u10d0\u10d5\u10d0\u10e0 \u10d2\u10d5\u10d4\u10e0\u10d3\u10d6\u10d4 \u10d3\u10d0 \u10e9\u10d0\u10e0\u10d7\u10d4\u10d7 \u10ee\u10d0\u10d6\u10d2\u10d0\u10e0\u10d4\u10e8\u10d4 \u10e1\u10d8\u10dc\u10e5\u10e0\u10dd\u10dc\u10d8\u10d6\u10d0\u10ea\u10d8\u10d0, \u10e0\u10dd\u10d3\u10d4\u10e1\u10d0\u10ea \u10e8\u10d4\u10db\u10d3\u10d2\u10dd\u10
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):3235
                                                                                                                                                                                                                                                                      Entropy (8bit):3.6081439490236464
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:96:H3E+6rOEAbeHTln2EQ77Uayg45RjhCSj+OyRdM7AE9qdV:HXcR/nQXUayYV
                                                                                                                                                                                                                                                                      MD5:2D94A58795F7B1E6E43C9656A147AD3C
                                                                                                                                                                                                                                                                      SHA1:E377DB505C6924B6BFC9D73DC7C02610062F674E
                                                                                                                                                                                                                                                                      SHA-256:548DC6C96E31A16CE355DC55C64833B08EF3FBA8BF33149031B4A685959E3AF4
                                                                                                                                                                                                                                                                      SHA-512:F51CC857E4CF2D4545C76A2DCE7D837381CE59016E250319BF8D39718BE79F9F6EE74EA5A56DE0E8759E4E586D93430D51651FC902376D8A5698628E54A0F2D8
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u0416\u0410\u04a2\u0410\u0421\u042b\u041d \u0416\u0410\u0421\u0410\u0423"},"explanationofflinedisabled":{"message":"\u0421\u0456\u0437 \u043e\u0444\u043b\u0430\u0439\u043d \u0440\u0435\u0436\u0438\u043c\u0456\u043d\u0434\u0435\u0441\u0456\u0437. Google Docs \u049b\u043e\u043b\u0434\u0430\u043d\u0431\u0430\u0441\u044b\u043d \u0436\u0435\u043b\u0456 \u0431\u0430\u0439\u043b\u0430\u043d\u044b\u0441\u044b\u043d\u0441\u044b\u0437 \u049b\u043e\u043b\u0434\u0430\u043d\u0443 \u04af\u0448\u0456\u043d, \u043a\u0435\u043b\u0435\u0441\u0456 \u0436\u043e\u043b\u044b \u0436\u0435\u043b\u0456\u0433\u0435 \u049b\u043e\u0441\u044b\u043b\u0493\u0430\u043d\u0434\u0430, Google Docs \u043d\u0435\u0433\u0456\u0437\u0433\u0456 \u0431\u0435\u0442\u0456\u043d\u0435\u043d \u043f\u0430\u0440\u0430\u043c\u0435\u0442\u0440\u043b\u0435\u0440 \u0431\u04e9\u043b\u0456\u043c\u0456\u043d \u043a\u0456\u0440\u0456\u043f, \u043e\u0444\u043b\u0430\u0439\u043d \u0440\u0435\u0436\u0438\u043c\u0456\u
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):3122
                                                                                                                                                                                                                                                                      Entropy (8bit):3.891443295908904
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:96:/OOrssRU6Bg7VSdL+zsCfoZiWssriWqo2gx7RRCos2sEeBkS7Zesg:H5GRZlXsGdo
                                                                                                                                                                                                                                                                      MD5:B3699C20A94776A5C2F90AEF6EB0DAD9
                                                                                                                                                                                                                                                                      SHA1:1F9B968B0679A20FA097624C9ABFA2B96C8C0BEA
                                                                                                                                                                                                                                                                      SHA-256:A6118F0A0DE329E07C01F53CD6FB4FED43E54C5F53DB4CD1C7F5B2B4D9FB10E6
                                                                                                                                                                                                                                                                      SHA-512:1E8D15B8BFF1D289434A244172F9ED42B4BB6BCB6372C1F300B01ACEA5A88167E97FEDABA0A7AE3BEB5E24763D1B09046AE8E30745B80E2E2FE785C94DF362F6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u1794\u1784\u17d2\u1780\u17be\u178f\u200b\u1790\u17d2\u1798\u17b8"},"explanationofflinedisabled":{"message":"\u17a2\u17d2\u1793\u1780\u200b\u1782\u17d2\u1798\u17b6\u1793\u200b\u17a2\u17ca\u17b8\u1793\u1792\u17ba\u178e\u17b7\u178f\u17d4 \u178a\u17be\u1798\u17d2\u1794\u17b8\u200b\u1794\u17d2\u179a\u17be Google \u17af\u1780\u179f\u17b6\u179a\u200b\u1794\u17b6\u1793\u200b\u200b\u178a\u17c4\u1799\u200b\u200b\u1798\u17b7\u1793\u1798\u17b6\u1793\u200b\u200b\u200b\u17a2\u17ca\u17b8\u1793\u1792\u17ba\u178e\u17b7\u178f \u179f\u17bc\u1798\u200b\u200b\u1791\u17c5\u200b\u1780\u17b6\u1793\u17cb\u200b\u1780\u17b6\u179a\u200b\u1780\u17c6\u178e\u178f\u17cb\u200b\u1793\u17c5\u200b\u179b\u17be\u200b\u1782\u17c1\u17a0\u1791\u17c6\u1796\u17d0\u179a Google \u17af\u1780\u179f\u17b6\u179a \u1793\u17b7\u1784\u200b\u1794\u17be\u1780\u200b\u1780\u17b6\u179a\u1792\u17d2\u179c\u17be\u200b\u179f\u1798\u1780\u17b6\u179b\u1780\u1798\u17d2\u1798\u200b\u200b\u200b\u1782\u17d2\u1798\u17b6\u1793
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1895
                                                                                                                                                                                                                                                                      Entropy (8bit):4.28990403715536
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:SHYGuEETiuF6OX5tCYFZt5GurMRRevsY4tVZIGnZRxlKT6/U0WG:yYG8iuF6yTCYFH5GjLPtVZVZRxOZ0J
                                                                                                                                                                                                                                                                      MD5:38BE0974108FC1CC30F13D8230EE5C40
                                                                                                                                                                                                                                                                      SHA1:ACF44889DD07DB97D26D534AD5AFA1BC1A827BAD
                                                                                                                                                                                                                                                                      SHA-256:30078EF35A76E02A400F03B3698708A0145D9B57241CC4009E010696895CF3A1
                                                                                                                                                                                                                                                                      SHA-512:7BDB2BADE4680801FC3B33E82C8AA4FAC648F45C795B4BACE4669D6E907A578FF181C093464884C0E00C9762E8DB75586A253D55CD10A7777D281B4BFFAFE302
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "........ .....".. },.. "explanationofflinedisabled": {.. "message": ".... ..................... ......... ............. Google ...... ....., Google ...... ............ ............... .... ..... ...... .... .... ............ ............. ........ ..... ... .....".. },.. "explanationofflineenabled": {.. "message": ".... ...................., .... .... .... ......... ........... ............ .... ........ .........."..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1042
                                                                                                                                                                                                                                                                      Entropy (8bit):5.3945675025513955
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAWYsF4dqNfBQH49Hk8YfIhYzTJ+6WJBtl/u4s+6:ZF4wNfvm87mX4LF6
                                                                                                                                                                                                                                                                      MD5:F3E59EEEB007144EA26306C20E04C292
                                                                                                                                                                                                                                                                      SHA1:83E7BDFA1F18F4C7534208493C3FF6B1F2F57D90
                                                                                                                                                                                                                                                                      SHA-256:C52D9B955D229373725A6E713334BBB31EA72EFA9B5CF4FBD76A566417B12CAC
                                                                                                                                                                                                                                                                      SHA-512:7808CB5FF041B002CBD78171EC5A0B4DBA3E017E21F7E8039084C2790F395B839BEE04AD6C942EED47CCB53E90F6DE818A725D1450BF81BA2990154AFD3763AF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".. ...".. },.. "explanationofflinedisabled": {.. "message": ".... ...... ... .. .. Google Docs. ..... Google Docs .... .... .... .... .... ..... . .... .... ..... ......".. },.. "explanationofflineenabled": {.. "message": ".... ...... ... .. ... ... ..... ... ... .. . .....".. },.. "extdesc": {.. "message": ".... .... ... .., ...... . ....... .., .., ......".. },.. "extname": {.. "message": "Google Docs ....".. },.. "learnmore": {.. "message": "... ....".. },.. "popuphelptext": {.. "message": "... .. ... .... ..... .... .... .....
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2535
                                                                                                                                                                                                                                                                      Entropy (8bit):3.8479764584971368
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:YRcHe/4raK1EIlZt1wg62FIOg+xGaF8guI5EP9I2yC:+cs4raK1xlZtOgviOfGaF8RI5EP95b
                                                                                                                                                                                                                                                                      MD5:E20D6C27840B406555E2F5091B118FC5
                                                                                                                                                                                                                                                                      SHA1:0DCECC1A58CEB4936E255A64A2830956BFA6EC14
                                                                                                                                                                                                                                                                      SHA-256:89082FB05229826BC222F5D22C158235F025F0E6DF67FF135A18BD899E13BB8F
                                                                                                                                                                                                                                                                      SHA-512:AD53FC0B153005F47F9F4344DF6C4804049FAC94932D895FD02EEBE75222CFE77EEDD9CD3FDC4C88376D18C5972055B00190507AA896488499D64E884F84F093
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u0eaa\u0ec9\u0eb2\u0e87\u0ec3\u0edd\u0ec8"},"explanationofflinedisabled":{"message":"\u0e97\u0ec8\u0eb2\u0e99\u0ead\u0ead\u0e9a\u0ea5\u0eb2\u0e8d\u0ea2\u0eb9\u0ec8. \u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0ec3\u0e8a\u0ec9 Google Docs \u0ec2\u0e94\u0e8d\u0e9a\u0ecd\u0ec8\u0ec0\u0e8a\u0eb7\u0ec8\u0ead\u0ea1\u0e95\u0ecd\u0ec8\u0ead\u0eb4\u0e99\u0ec0\u0e95\u0eb5\u0ec0\u0e99\u0eb1\u0e94, \u0ec3\u0eab\u0ec9\u0ec4\u0e9b\u0e97\u0eb5\u0ec8\u0e81\u0eb2\u0e99\u0e95\u0eb1\u0ec9\u0e87\u0e84\u0ec8\u0eb2\u0ec3\u0e99\u0edc\u0ec9\u0eb2 Google Docs \u0ec1\u0ea5\u0ec9\u0ea7\u0ec0\u0e9b\u0eb5\u0e94\u0ec3\u0e8a\u0ec9\u0e81\u0eb2\u0e99\u0e8a\u0eb4\u0ec9\u0e87\u0ec1\u0e9a\u0e9a\u0ead\u0ead\u0e9a\u0ea5\u0eb2\u0e8d\u0ec3\u0e99\u0ec0\u0e97\u0eb7\u0ec8\u0ead\u0e95\u0ecd\u0ec8\u0ec4\u0e9b\u0e97\u0eb5\u0ec8\u0e97\u0ec8\u0eb2\u0e99\u0ec0\u0e8a\u0eb7\u0ec8\u0ead\u0ea1\u0e95\u0ecd\u0ec8\u0ead\u0eb4\u0e99\u0ec0\u0e95\u0eb5\u0ec0\u0e99\u0eb1\u0e94."},"explanationofflineenabled":{"message":"\u0e97\u0ec
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1028
                                                                                                                                                                                                                                                                      Entropy (8bit):4.797571191712988
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAivZZaJ3Rje394+k7IKgpAJjUpSkiQjuRBMd:fZZahBeu7IKgqeMg
                                                                                                                                                                                                                                                                      MD5:970544AB4622701FFDF66DC556847652
                                                                                                                                                                                                                                                                      SHA1:14BEE2B77EE74C5E38EBD1DB09E8D8104CF75317
                                                                                                                                                                                                                                                                      SHA-256:5DFCBD4DFEAEC3ABE973A78277D3BD02CD77AE635D5C8CD1F816446C61808F59
                                                                                                                                                                                                                                                                      SHA-512:CC12D00C10B970189E90D47390EEB142359A8D6F3A9174C2EF3AE0118F09C88AB9B689D9773028834839A7DFAF3AAC6747BC1DCB23794A9F067281E20B8DC6EA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "SUKURTI NAUJ.".. },.. "explanationofflinedisabled": {.. "message": "Esate neprisijung.. Jei norite naudoti .Google. dokumentus be interneto ry.io, pagrindiniame .Google. dokument. puslapyje eikite . nustatym. skilt. ir .junkite sinchronizavim. neprisijungus, kai kit. kart. b.site prisijung. prie interneto.".. },.. "explanationofflineenabled": {.. "message": "Esate neprisijung., bet vis tiek galite redaguoti pasiekiamus failus arba sukurti nauj..".. },.. "extdesc": {.. "message": "Redaguokite, kurkite ir per.i.r.kite savo dokumentus, skai.iuokles ir pristatymus . visk. darykite be prieigos prie interneto.".. },.. "extname": {.. "message": ".Google. dokumentai neprisijungus".. },.. "learnmore": {.. "message": "Su.inoti daugiau".. },.. "popuphelptext": {.. "message": "Ra.ykite, redaguokite ir bendradarbiaukite bet kurioje vietoje naudodami interneto ry.. arba
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):994
                                                                                                                                                                                                                                                                      Entropy (8bit):4.700308832360794
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAaJ7a/uNpoB/Y4vPnswSPkDzLKFQHpp//BpPDB:7J7a/uzQ/Y4vvswhDzDr/LDB
                                                                                                                                                                                                                                                                      MD5:A568A58817375590007D1B8ABCAEBF82
                                                                                                                                                                                                                                                                      SHA1:B0F51FE6927BB4975FC6EDA7D8A631BF0C1AB597
                                                                                                                                                                                                                                                                      SHA-256:0621DE9161748F45D53052ED8A430962139D7F19074C7FFE7223ECB06B0B87DB
                                                                                                                                                                                                                                                                      SHA-512:FCFBADEC9F73975301AB404DB6B09D31457FAC7CCAD2FA5BE348E1CAD6800F87CB5B56DE50880C55BBADB3C40423351A6B5C2D03F6A327D898E35F517B1C628C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "IZVEIDOT JAUNU".. },.. "explanationofflinedisabled": {.. "message": "J.s esat bezsaist.. Lai lietotu pakalpojumu Google dokumenti bez interneta savienojuma, n.kamaj. reiz., kad ir izveidots savienojums ar internetu, atveriet Google dokumentu s.kumlapas iestat.jumu izv.lni un iesl.dziet sinhroniz.ciju bezsaist..".. },.. "explanationofflineenabled": {.. "message": "J.s esat bezsaist., ta.u varat redi..t pieejamos failus un izveidot jaunus.".. },.. "extdesc": {.. "message": "Redi..jiet, veidojiet un skatiet savus dokumentus, izkl.jlapas un prezent.cijas, neizmantojot savienojumu ar internetu.".. },.. "extname": {.. "message": "Google dokumenti bezsaist.".. },.. "learnmore": {.. "message": "Uzziniet vair.k".. },.. "popuphelptext": {.. "message": "Rakstiet, redi..jiet un sadarbojieties ar interneta savienojumu vai bez t. neatkar.gi no t., kur atrodaties.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2091
                                                                                                                                                                                                                                                                      Entropy (8bit):4.358252286391144
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAnHdGc4LtGxVY6IuVzJkeNL5kP13a67wNcYP8j5PIaSTIjPU4ELFPCWJjMupV/:idGcyYPVtkAUl7wqziBsg9DbpN6XoN/
                                                                                                                                                                                                                                                                      MD5:4717EFE4651F94EFF6ACB6653E868D1A
                                                                                                                                                                                                                                                                      SHA1:B8A7703152767FBE1819808876D09D9CC1C44450
                                                                                                                                                                                                                                                                      SHA-256:22CA9415E294D9C3EC3384B9D08CDAF5164AF73B4E4C251559E09E529C843EA6
                                                                                                                                                                                                                                                                      SHA-512:487EAB4938F6BC47B1D77DD47A5E2A389B94E01D29849E38E96C95CABC7BD98679451F0E22D3FEA25C045558CD69FDDB6C4FEF7C581141F1C53C4AA17578D7F7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "....... ............".. },.. "explanationofflinedisabled": {.. "message": "...... ........... ........... ............. ..... Google ....... ..........., Google ....... .......... ............. .... ...... ...... ... ............... .................... '.......... ................' .........".. },.. "explanationofflineenabled": {.. "message": "................., .......... ......... ....... ...... ..............
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2778
                                                                                                                                                                                                                                                                      Entropy (8bit):3.595196082412897
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:Y943BFU1LQ4HwQLQ4LQhlmVQL3QUm6H6ZgFIcwn6Rs2ShpQ3IwjGLQSJ/PYoEQj8:I43BCymz8XNcfuQDXYN2sum
                                                                                                                                                                                                                                                                      MD5:83E7A14B7FC60D4C66BF313C8A2BEF0B
                                                                                                                                                                                                                                                                      SHA1:1CCF1D79CDED5D65439266DB58480089CC110B18
                                                                                                                                                                                                                                                                      SHA-256:613D8751F6CC9D3FA319F4B7EA8B2BD3BED37FD077482CA825929DD7C12A69A8
                                                                                                                                                                                                                                                                      SHA-512:3742E24FFC4B5283E6EE496813C1BDC6835630D006E8647D427C3DE8B8E7BF814201ADF9A27BFAB3ABD130B6FEC64EBB102AC0EB8DEDFE7B63D82D3E1233305D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u0428\u0418\u041d\u0418\u0419\u0413 \u04ae\u04ae\u0421\u0413\u042d\u0425"},"explanationofflinedisabled":{"message":"\u0422\u0430 \u043e\u0444\u043b\u0430\u0439\u043d \u0431\u0430\u0439\u043d\u0430. Google \u0414\u043e\u043a\u044b\u0433 \u0438\u043d\u0442\u0435\u0440\u043d\u044d\u0442\u0433\u04af\u0439\u0433\u044d\u044d\u0440 \u0430\u0448\u0438\u0433\u043b\u0430\u0445\u044b\u043d \u0442\u0443\u043b\u0434 \u0434\u0430\u0440\u0430\u0430\u0433\u0438\u0439\u043d \u0443\u0434\u0430\u0430 \u0438\u043d\u0442\u0435\u0440\u043d\u044d\u0442\u044d\u0434 \u0445\u043e\u043b\u0431\u043e\u0433\u0434\u043e\u0445\u0434\u043e\u043e Google \u0414\u043e\u043a\u044b\u043d \u043d\u04af\u04af\u0440 \u0445\u0443\u0443\u0434\u0430\u0441\u043d\u0430\u0430\u0441 \u0442\u043e\u0445\u0438\u0440\u0433\u043e\u043e \u0434\u043e\u0442\u043e\u0440\u0445 \u043e\u0444\u043b\u0430\u0439\u043d \u0441\u0438\u043d\u043a\u0438\u0439\u0433 \u0438\u0434\u044d\u0432\u0445\u0436\u04af\u04af\u043b\u043d\u0
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1719
                                                                                                                                                                                                                                                                      Entropy (8bit):4.287702203591075
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:65/5EKaDMw6pEf4I5+jSksOTJqQyrFO8C:65/5EKaAw6pEf4I5+vsOVqQyFO8C
                                                                                                                                                                                                                                                                      MD5:3B98C4ED8874A160C3789FEAD5553CFA
                                                                                                                                                                                                                                                                      SHA1:5550D0EC548335293D962AAA96B6443DD8ABB9F6
                                                                                                                                                                                                                                                                      SHA-256:ADEB082A9C754DFD5A9D47340A3DDCC19BF9C7EFA6E629A2F1796305F1C9A66F
                                                                                                                                                                                                                                                                      SHA-512:5139B6C6DF9459C7B5CDC08A98348891499408CD75B46519BA3AC29E99AAAFCC5911A1DEE6C3A57E3413DBD0FAE72D7CBC676027248DCE6364377982B5CE4151
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".... .... ...".. },.. "explanationofflinedisabled": {.. "message": "...... ...... ..... ......... ....... ....... ..... Google ....... ............, Google ....... .............. .......... .. ... ..... .... ...... ......... ...... ...... ...... .... .... ....".. },.. "explanationofflineenabled": {.. "message": "...... ...... ...., ..... ...... ...... ...... .... ....... ... ..... .... .... ... .....".. },.. "extdesc": {.. "message": "..... ..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):936
                                                                                                                                                                                                                                                                      Entropy (8bit):4.457879437756106
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HARXIqhmemNKsE27rhdfNLChtyo2JJ/YgTgin:iIqFC7lrDfNLCIBRzn
                                                                                                                                                                                                                                                                      MD5:7D273824B1E22426C033FF5D8D7162B7
                                                                                                                                                                                                                                                                      SHA1:EADBE9DBE5519BD60458B3551BDFC36A10049DD1
                                                                                                                                                                                                                                                                      SHA-256:2824CF97513DC3ECC261F378BFD595AE95A5997E9D1C63F5731A58B1F8CD54F9
                                                                                                                                                                                                                                                                      SHA-512:E5B611BBFAB24C9924D1D5E1774925433C65C322769E1F3B116254B1E9C69B6DF1BE7828141EEBBF7524DD179875D40C1D8F29C4FB86D663B8A365C6C60421A7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "BUAT BAHARU".. },.. "explanationofflinedisabled": {.. "message": "Anda berada di luar talian. Untuk menggunakan Google Docs tanpa sambungan Internet, pergi ke tetapan di halaman utama Google Docs dan hidupkan penyegerakan luar talian apabila anda disambungkan ke Internet selepas ini.".. },.. "explanationofflineenabled": {.. "message": "Anda berada di luar talian, tetapi anda masih boleh mengedit fail yang tersedia atau buat fail baharu.".. },.. "extdesc": {.. "message": "Edit, buat dan lihat dokumen, hamparan dan pembentangan anda . kesemuanya tanpa akses Internet.".. },.. "extname": {.. "message": "Google Docs Luar Talian".. },.. "learnmore": {.. "message": "Ketahui Lebih Lanjut".. },.. "popuphelptext": {.. "message": "Tulis, edit dan bekerjasama di mana-mana sahaja anda berada, dengan atau tanpa sambungan Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):3830
                                                                                                                                                                                                                                                                      Entropy (8bit):3.5483353063347587
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:Ya+Ivxy6ur1+j3P7Xgr5ELkpeCgygyOxONHO3pj6H57ODyOXOVp6:8Uspsj3P3ty2a66xl09
                                                                                                                                                                                                                                                                      MD5:342335A22F1886B8BC92008597326B24
                                                                                                                                                                                                                                                                      SHA1:2CB04F892E430DCD7705C02BF0A8619354515513
                                                                                                                                                                                                                                                                      SHA-256:243BEFBD6B67A21433DCC97DC1A728896D3A070DC20055EB04D644E1BB955FE7
                                                                                                                                                                                                                                                                      SHA-512:CD344D060E30242E5A4705547E807CE3CE2231EE983BB9A8AD22B3E7598A7EC87399094B04A80245AD51D039370F09D74FE54C0B0738583884A73F0C7E888AD8
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u1021\u101e\u1005\u103a \u1015\u103c\u102f\u101c\u102f\u1015\u103a\u101b\u1014\u103a"},"explanationofflinedisabled":{"message":"\u101e\u1004\u103a \u1021\u1031\u102c\u1037\u1016\u103a\u101c\u102d\u102f\u1004\u103a\u1038\u1016\u103c\u1005\u103a\u1014\u1031\u1015\u102b\u101e\u100a\u103a\u104b \u1021\u1004\u103a\u1010\u102c\u1014\u1000\u103a\u1001\u103b\u102d\u1010\u103a\u1006\u1000\u103a\u1019\u103e\u102f \u1019\u101b\u103e\u102d\u1018\u1032 Google Docs \u1000\u102d\u102f \u1021\u101e\u102f\u1036\u1038\u1015\u103c\u102f\u101b\u1014\u103a \u1014\u1031\u102c\u1000\u103a\u1010\u1005\u103a\u1000\u103c\u102d\u1019\u103a \u101e\u1004\u103a\u1021\u1004\u103a\u1010\u102c\u1014\u1000\u103a\u1001\u103b\u102d\u1010\u103a\u1006\u1000\u103a\u101e\u100a\u1037\u103a\u1021\u1001\u102b Google Docs \u1015\u1004\u103a\u1019\u1005\u102c\u1019\u103b\u1000\u103a\u1014\u103e\u102c\u101b\u103e\u102d \u1006\u1000\u103a\u1010\u1004\u103a\u1019\u103b\u102c\u1038\u101e\u102d\u102f\u1037\u1
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1898
                                                                                                                                                                                                                                                                      Entropy (8bit):4.187050294267571
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAmQ6ZSWfAx6fLMr48tE/cAbJtUZJScSIQoAfboFMiQ9pdvz48YgqG:TQ6W6MbkcAltUJxQdfbqQ9pp0gqG
                                                                                                                                                                                                                                                                      MD5:B1083DA5EC718D1F2F093BD3D1FB4F37
                                                                                                                                                                                                                                                                      SHA1:74B6F050D918448396642765DEF1AD5390AB5282
                                                                                                                                                                                                                                                                      SHA-256:E6ED0A023EF31705CCCBAF1E07F2B4B2279059296B5CA973D2070417BA16F790
                                                                                                                                                                                                                                                                      SHA-512:7102B90ABBE2C811E8EE2F1886A73B1298D4F3D5D05F0FFDB57CF78B9A49A25023A290B255BAA4895BB150B388BAFD9F8432650B8C70A1A9A75083FFFCD74F1A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".... ....... .........".. },.. "explanationofflinedisabled": {.. "message": "..... ...... .......... .... ........ .... .... Google ........ ...... .... ..... ..... ... .......... ....... .... Google ........ .......... ..... .......... .. ...... ..... .... ..... ......... .. ..........".. },.. "explanationofflineenabled": {.. "message": "..... ...... ........., .. ..... ... ... ...... ....... ....... .. .... ....... ....
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):914
                                                                                                                                                                                                                                                                      Entropy (8bit):4.513485418448461
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgFARCBxNBv52/fXjOXl6W6ICBxeBvMzU1CSUJAO6SFAIVIbCBhZHdb1tvz+:1HABJx4X6QDwEzlm2uGvYzKU
                                                                                                                                                                                                                                                                      MD5:32DF72F14BE59A9BC9777113A8B21DE6
                                                                                                                                                                                                                                                                      SHA1:2A8D9B9A998453144307DD0B700A76E783062AD0
                                                                                                                                                                                                                                                                      SHA-256:F3FE1FFCB182183B76E1B46C4463168C746A38E461FD25CA91FF2A40846F1D61
                                                                                                                                                                                                                                                                      SHA-512:E0966F5CCA5A8A6D91C58D716E662E892D1C3441DAA5D632E5E843839BB989F620D8AC33ED3EDBAFE18D7306B40CD0C4639E5A4E04DA2C598331DACEC2112AAD
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "NIEUW MAKEN".. },.. "explanationofflinedisabled": {.. "message": "Je bent offline. Wil je Google Documenten zonder internetverbinding gebruiken, ga dan de volgende keer dat je verbinding met internet hebt naar 'Instellingen' op de homepage van Google Documenten en zet 'Offline synchronisatie' aan.".. },.. "explanationofflineenabled": {.. "message": "Je bent offline, maar je kunt nog wel beschikbare bestanden bewerken of nieuwe bestanden maken.".. },.. "extdesc": {.. "message": "Bewerk, maak en bekijk je documenten, spreadsheets en presentaties. Allemaal zonder internettoegang.".. },.. "extname": {.. "message": "Offline Documenten".. },.. "learnmore": {.. "message": "Meer informatie".. },.. "popuphelptext": {.. "message": "Overal schrijven, bewerken en samenwerken, met of zonder internetverbinding.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):878
                                                                                                                                                                                                                                                                      Entropy (8bit):4.4541485835627475
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAqwwrJ6wky68uk+NILxRGJwBvDyrj9V:nwwQwky6W+NwswVyT
                                                                                                                                                                                                                                                                      MD5:A1744B0F53CCF889955B95108367F9C8
                                                                                                                                                                                                                                                                      SHA1:6A5A6771DFF13DCB4FD425ED839BA100B7123DE0
                                                                                                                                                                                                                                                                      SHA-256:21CEFF02B45A4BFD60D144879DFA9F427949A027DD49A3EB0E9E345BD0B7C9A8
                                                                                                                                                                                                                                                                      SHA-512:F55E43F14514EECB89F6727A0D3C234149609020A516B193542B5964D2536D192F40CC12D377E70C683C269A1BDCDE1C6A0E634AA84A164775CFFE776536A961
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "OPPRETT NYTT".. },.. "explanationofflinedisabled": {.. "message": "Du er uten nett. For . bruke Google Dokumenter uten internettilkobling, g. til innstillingene p. Google Dokumenter-nettsiden og sl. p. synkronisering uten nett neste gang du er koblet til Internett.".. },.. "explanationofflineenabled": {.. "message": "Du er uten nett, men du kan likevel endre tilgjengelige filer eller opprette nye.".. },.. "extdesc": {.. "message": "Rediger, opprett og se dokumentene, regnearkene og presentasjonene dine . uten nettilgang.".. },.. "extname": {.. "message": "Google Dokumenter uten nett".. },.. "learnmore": {.. "message": "Finn ut mer".. },.. "popuphelptext": {.. "message": "Skriv, rediger eller samarbeid uansett hvor du er, med eller uten internettilkobling.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2766
                                                                                                                                                                                                                                                                      Entropy (8bit):3.839730779948262
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:YEH6/o0iZbNCbDMUcipdkNtQjsGKIhO9aBjj/nxt9o5nDAj3:p6wbZbEbvJ8jQkIhO9aBjb/90Ab
                                                                                                                                                                                                                                                                      MD5:97F769F51B83D35C260D1F8CFD7990AF
                                                                                                                                                                                                                                                                      SHA1:0D59A76564B0AEE31D0A074305905472F740CECA
                                                                                                                                                                                                                                                                      SHA-256:BBD37D41B7DE6F93948FA2437A7699D4C30A3C39E736179702F212CB36A3133C
                                                                                                                                                                                                                                                                      SHA-512:D91F5E2D22FC2D7F73C1F1C4AF79DB98FCFD1C7804069AE9B2348CBC729A6D2DFF7FB6F44D152B0BDABA6E0D05DFF54987E8472C081C4D39315CEC2CBC593816
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u0a28\u0a35\u0a3e\u0a02 \u0a2c\u0a23\u0a3e\u0a13"},"explanationofflinedisabled":{"message":"\u0a24\u0a41\u0a38\u0a40\u0a02 \u0a06\u0a2b\u0a3c\u0a32\u0a3e\u0a08\u0a28 \u0a39\u0a4b\u0964 \u0a07\u0a70\u0a1f\u0a30\u0a28\u0a48\u0a71\u0a1f \u0a15\u0a28\u0a48\u0a15\u0a36\u0a28 \u0a26\u0a47 \u0a2c\u0a3f\u0a28\u0a3e\u0a02 Google Docs \u0a28\u0a42\u0a70 \u0a35\u0a30\u0a24\u0a23 \u0a32\u0a08, \u0a05\u0a17\u0a32\u0a40 \u0a35\u0a3e\u0a30 \u0a1c\u0a26\u0a4b\u0a02 \u0a24\u0a41\u0a38\u0a40\u0a02 \u0a07\u0a70\u0a1f\u0a30\u0a28\u0a48\u0a71\u0a1f \u0a26\u0a47 \u0a28\u0a3e\u0a32 \u0a15\u0a28\u0a48\u0a15\u0a1f \u0a39\u0a4b\u0a35\u0a4b \u0a24\u0a3e\u0a02 Google Docs \u0a2e\u0a41\u0a71\u0a16 \u0a2a\u0a70\u0a28\u0a47 '\u0a24\u0a47 \u0a38\u0a48\u0a1f\u0a3f\u0a70\u0a17\u0a3e\u0a02 \u0a35\u0a3f\u0a71\u0a1a \u0a1c\u0a3e\u0a13 \u0a05\u0a24\u0a47 \u0a06\u0a2b\u0a3c\u0a32\u0a3e\u0a08\u0a28 \u0a38\u0a3f\u0a70\u0a15 \u0a28\u0a42\u0a70 \u0a1a\u0a3e\u0a32\u0a42 \u0a15\u0a30\u0a4b\u0964"},"expla
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):978
                                                                                                                                                                                                                                                                      Entropy (8bit):4.879137540019932
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HApiJiRelvm3wi8QAYcbm24sK+tFJaSDD:FJMx3whxYcbNp
                                                                                                                                                                                                                                                                      MD5:B8D55E4E3B9619784AECA61BA15C9C0F
                                                                                                                                                                                                                                                                      SHA1:B4A9C9885FBEB78635957296FDDD12579FEFA033
                                                                                                                                                                                                                                                                      SHA-256:E00FF20437599A5C184CA0C79546CB6500171A95E5F24B9B5535E89A89D3EC3D
                                                                                                                                                                                                                                                                      SHA-512:266589116EEE223056391C65808255EDAE10EB6DC5C26655D96F8178A41E283B06360AB8E08AC3857D172023C4F616EF073D0BEA770A3B3DD3EE74F5FFB2296B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "UTW.RZ NOWY".. },.. "explanationofflinedisabled": {.. "message": "Jeste. offline. Aby korzysta. z Dokument.w Google bez po..czenia internetowego, otw.rz ustawienia na stronie g..wnej Dokument.w Google i w..cz synchronizacj. offline nast.pnym razem, gdy b.dziesz mie. dost.p do internetu.".. },.. "explanationofflineenabled": {.. "message": "Jeste. offline, ale nadal mo.esz edytowa. dost.pne pliki i tworzy. nowe.".. },.. "extdesc": {.. "message": "Edytuj, tw.rz i wy.wietlaj swoje dokumenty, arkusze kalkulacyjne oraz prezentacje bez konieczno.ci ..czenia si. z internetem.".. },.. "extname": {.. "message": "Dokumenty Google offline".. },.. "learnmore": {.. "message": "Wi.cej informacji".. },.. "popuphelptext": {.. "message": "Pisz, edytuj i wsp..pracuj, gdziekolwiek jeste. . niezale.nie od tego, czy masz po..czenie z internetem.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):907
                                                                                                                                                                                                                                                                      Entropy (8bit):4.599411354657937
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgU30CBxNd6GwXOK1styCJ02OK9+4KbCBxed6X4LBAt4rXgUCSUuYDHIIQka:1HAcXlyCJ5+Tsz4LY4rXSw/Q+ftkC
                                                                                                                                                                                                                                                                      MD5:608551F7026E6BA8C0CF85D9AC11F8E3
                                                                                                                                                                                                                                                                      SHA1:87B017B2D4DA17E322AF6384F82B57B807628617
                                                                                                                                                                                                                                                                      SHA-256:A73EEA087164620FA2260D3910D3FBE302ED85F454EDB1493A4F287D42FC882F
                                                                                                                                                                                                                                                                      SHA-512:82F52F8591DB3C0469CC16D7CBFDBF9116F6D5B5D2AD02A3D8FA39CE1378C64C0EA80AB8509519027F71A89EB8BBF38A8702D9AD26C8E6E0F499BF7DA18BF747
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CRIAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Voc. est. off-line. Para usar o Documentos Google sem conex.o com a Internet, na pr.xima vez que se conectar, acesse as configura..es na p.gina inicial do Documentos Google e ative a sincroniza..o off-line.".. },.. "explanationofflineenabled": {.. "message": "Voc. est. off-line, mas mesmo assim pode editar os arquivos dispon.veis ou criar novos arquivos.".. },.. "extdesc": {.. "message": "Edite, crie e veja seus documentos, planilhas e apresenta..es sem precisar de acesso . Internet.".. },.. "extname": {.. "message": "Documentos Google off-line".. },.. "learnmore": {.. "message": "Saiba mais".. },.. "popuphelptext": {.. "message": "Escreva, edite e colabore onde voc. estiver, com ou sem conex.o com a Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):914
                                                                                                                                                                                                                                                                      Entropy (8bit):4.604761241355716
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAcXzw8M+N0STDIjxX+qxCjKw5BKriEQFMJXkETs:zXzw0pKXbxqKw5BKri3aNY
                                                                                                                                                                                                                                                                      MD5:0963F2F3641A62A78B02825F6FA3941C
                                                                                                                                                                                                                                                                      SHA1:7E6972BEAB3D18E49857079A24FB9336BC4D2D48
                                                                                                                                                                                                                                                                      SHA-256:E93B8E7FB86D2F7DFAE57416BB1FB6EE0EEA25629B972A5922940F0023C85F90
                                                                                                                                                                                                                                                                      SHA-512:22DD42D967124DA5A2209DD05FB6AD3F5D0D2687EA956A22BA1E31C56EC09DEB53F0711CD5B24D672405358502E9D1C502659BB36CED66CAF83923B021CA0286
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CRIAR NOVO".. },.. "explanationofflinedisabled": {.. "message": "Est. offline. Para utilizar o Google Docs sem uma liga..o . Internet, aceda .s defini..es na p.gina inicial do Google Docs e ative a sincroniza..o offline da pr.xima vez que estiver ligado . Internet.".. },.. "explanationofflineenabled": {.. "message": "Est. offline, mas continua a poder editar os ficheiros dispon.veis ou criar novos ficheiros.".. },.. "extdesc": {.. "message": "Edite, crie e veja os documentos, as folhas de c.lculo e as apresenta..es, tudo sem precisar de aceder . Internet.".. },.. "extname": {.. "message": "Google Docs offline".. },.. "learnmore": {.. "message": "Saber mais".. },.. "popuphelptext": {.. "message": "Escreva edite e colabore onde quer que esteja, com ou sem uma liga..o . Internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):937
                                                                                                                                                                                                                                                                      Entropy (8bit):4.686555713975264
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA8dC6e6w+uFPHf2TFMMlecFpweWV4RE:pC6KvHf4plVweCx
                                                                                                                                                                                                                                                                      MD5:BED8332AB788098D276B448EC2B33351
                                                                                                                                                                                                                                                                      SHA1:6084124A2B32F386967DA980CBE79DD86742859E
                                                                                                                                                                                                                                                                      SHA-256:085787999D78FADFF9600C9DC5E3FF4FB4EB9BE06D6BB19DF2EEF8C284BE7B20
                                                                                                                                                                                                                                                                      SHA-512:22596584D10707CC1C8179ED3ABE46EF2C314CF9C3D0685921475944B8855AAB660590F8FA1CFDCE7976B4BB3BD9ABBBF053F61F1249A325FD0094E1C95692ED
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "CREEAZ. UN DOCUMENT".. },.. "explanationofflinedisabled": {.. "message": "E.ti offline. Pentru a utiliza Documente Google f.r. conexiune la internet, intr. .n set.rile din pagina principal. Documente Google .i activeaz. sincronizarea offline data viitoare c.nd e.ti conectat(.) la internet.".. },.. "explanationofflineenabled": {.. "message": "E.ti offline, dar po.i .nc. s. editezi fi.ierele disponibile sau s. creezi altele.".. },.. "extdesc": {.. "message": "Editeaz., creeaz. .i acceseaz. documente, foi de calcul .i prezent.ri - totul f.r. acces la internet.".. },.. "extname": {.. "message": "Documente Google Offline".. },.. "learnmore": {.. "message": "Afl. mai multe".. },.. "popuphelptext": {.. "message": "Scrie, editeaz. .i colaboreaz. oriunde ai fi, cu sau f.r. conexiune la internet.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1337
                                                                                                                                                                                                                                                                      Entropy (8bit):4.69531415794894
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HABEapHTEmxUomjsfDVs8THjqBK8/hHUg41v+Lph5eFTHQ:I/VdxUomjsre8Kh4Riph5eFU
                                                                                                                                                                                                                                                                      MD5:51D34FE303D0C90EE409A2397FCA437D
                                                                                                                                                                                                                                                                      SHA1:B4B9A7B19C62D0AA95D1F10640A5FBA628CCCA12
                                                                                                                                                                                                                                                                      SHA-256:BE733625ACD03158103D62BC0EEF272CA3F265AC30C87A6A03467481A177DAE3
                                                                                                                                                                                                                                                                      SHA-512:E8670DED44DC6EE30E5F41C8B2040CF8A463CD9A60FC31FA70EB1D4C9AC1A3558369792B5B86FA761A21F5266D5A35E5C2C39297F367DAA84159585C19EC492A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".......".. },.. "explanationofflinedisabled": {.. "message": "..... ............ Google ......... ... ........., ............ . .... . ......... ............. . ......-...... . .......... .. ......... .........".. },.. "explanationofflineenabled": {.. "message": "... ........... . .......... .. ...... ......... ..... ..... . ............. .., . ....... ........ ......-.......".. },.. "extdesc": {.. "message": ".........., .............. . ............ ........., ....... . ........... ... ....... . ..........".. },.. "extname": {.. "message": "Google.......... ......".. },.. "learnmore": {.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2846
                                                                                                                                                                                                                                                                      Entropy (8bit):3.7416822879702547
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:YWi+htQTKEQb3aXQYJLSWy7sTQThQTnQtQTrEmQ6kiLsegQSJFwsQGaiPn779I+S:zhiTK5b3tUGVjTGTnQiTryOLpyaxYf/S
                                                                                                                                                                                                                                                                      MD5:B8A4FD612534A171A9A03C1984BB4BDD
                                                                                                                                                                                                                                                                      SHA1:F513F7300827FE352E8ECB5BD4BB1729F3A0E22A
                                                                                                                                                                                                                                                                      SHA-256:54241EBE651A8344235CC47AFD274C080ABAEBC8C3A25AFB95D8373B6A5670A2
                                                                                                                                                                                                                                                                      SHA-512:C03E35BFDE546AEB3245024EF721E7E606327581EFE9EAF8C5B11989D9033BDB58437041A5CB6D567BAA05466B6AAF054C47F976FD940EEEDF69FDF80D79095B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u0db1\u0dc0 \u0dbd\u0dda\u0d9b\u0db1\u0dba\u0d9a\u0dca \u0dc3\u0dcf\u0daf\u0db1\u0dca\u0db1"},"explanationofflinedisabled":{"message":"\u0d94\u0db6 \u0db1\u0ddc\u0db6\u0dd0\u0db3\u0dd2\u0dba. \u0d85\u0db1\u0dca\u0dad\u0dbb\u0dca\u0da2\u0dcf\u0dbd \u0dc3\u0db8\u0dca\u0db6\u0db1\u0dca\u0db0\u0dad\u0dcf\u0dc0\u0d9a\u0dca \u0db1\u0ddc\u0db8\u0dd0\u0dad\u0dd2\u0dc0 Google Docs \u0db7\u0dcf\u0dc0\u0dd2\u0dad \u0d9a\u0dd2\u0dbb\u0dd3\u0db8\u0da7, Google Docs \u0db8\u0dd4\u0dbd\u0dca \u0db4\u0dd2\u0da7\u0dd4\u0dc0 \u0db8\u0dad \u0dc3\u0dd0\u0d9a\u0dc3\u0dd3\u0db8\u0dca \u0dc0\u0dd9\u0dad \u0d9c\u0ddc\u0dc3\u0dca \u0d94\u0db6 \u0d8a\u0dc5\u0d9f \u0d85\u0dc0\u0dc3\u0dca\u0dae\u0dcf\u0dc0\u0dda \u0d85\u0db1\u0dca\u0dad\u0dbb\u0dca\u0da2\u0dcf\u0dbd\u0dba\u0da7 \u0dc3\u0db6\u0dd0\u0db3\u0dd2 \u0dc0\u0dd2\u0da7 \u0db1\u0ddc\u0db6\u0dd0\u0db3\u0dd2 \u0dc3\u0db8\u0db8\u0dd4\u0dc4\u0dd4\u0dbb\u0dca\u0dad \u0d9a\u0dd2\u0dbb\u0dd3\u0db8 \u0d9a\u0dca\u200d\u0dbb\u0dd2\u0dba\u0dc
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):934
                                                                                                                                                                                                                                                                      Entropy (8bit):4.882122893545996
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAF8pMv1RS4LXL22IUjdh8uJwpPqLDEtxKLhSS:hyv1RS4LXx38u36QsS
                                                                                                                                                                                                                                                                      MD5:8E55817BF7A87052F11FE554A61C52D5
                                                                                                                                                                                                                                                                      SHA1:9ABDC0725FE27967F6F6BE0DF5D6C46E2957F455
                                                                                                                                                                                                                                                                      SHA-256:903060EC9E76040B46DEB47BBB041D0B28A6816CB9B892D7342FC7DC6782F87C
                                                                                                                                                                                                                                                                      SHA-512:EFF9EC7E72B272DDE5F29123653BC056A4BC2C3C662AE3C448F8CB6A4D1865A0679B7E74C1B3189F3E262109ED6BC8F8D2BDE14AEFC8E87E0F785AE4837D01C7
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "VYTVORI. NOV.".. },.. "explanationofflinedisabled": {.. "message": "Ste offline. Ak chcete pou.i. Dokumenty Google bez pripojenia na internet, po najbli..om pripojen. na internet prejdite do nastaven. na domovskej str.nke Dokumentov Google a.zapnite offline synchroniz.ciu.".. },.. "explanationofflineenabled": {.. "message": "Ste offline, no st.le m..ete upravova. dostupn. s.bory a.vytv.ra. nov..".. },.. "extdesc": {.. "message": ".prava, tvorba a.zobrazenie dokumentov, tabuliek a.prezent.ci.. To v.etko bez pr.stupu na internet.".. },.. "extname": {.. "message": "Dokumenty Google v re.ime offline".. },.. "learnmore": {.. "message": ".al.ie inform.cie".. },.. "popuphelptext": {.. "message": "P..te, upravujte a.spolupracuje, kdeko.vek ste, a.to s.pripojen.m na internet aj bez neho.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):963
                                                                                                                                                                                                                                                                      Entropy (8bit):4.6041913416245
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgfECBxNFCEuKXowwJrpvPwNgEcPJJJEfWOCBxeFCJuGuU4KYXCSUXKDxX4A:1HAXMKYw8VYNLcaeDmKYLdX2zJBG5
                                                                                                                                                                                                                                                                      MD5:BFAEFEFF32813DF91C56B71B79EC2AF4
                                                                                                                                                                                                                                                                      SHA1:F8EDA2B632610972B581724D6B2F9782AC37377B
                                                                                                                                                                                                                                                                      SHA-256:AAB9CF9098294A46DC0F2FA468AFFF7CA7C323A1A0EFA70C9DB1E3A4DA05D1D4
                                                                                                                                                                                                                                                                      SHA-512:971F2BBF5E9C84DE3D31E5F2A4D1A00D891A2504F8AF6D3F75FC19056BFD059A270C4C9836AF35258ABA586A1888133FB22B484F260C1CBC2D1D17BC3B4451AA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "USTVARI NOVO".. },.. "explanationofflinedisabled": {.. "message": "Nimate vzpostavljene povezave. .e .elite uporabljati Google Dokumente brez internetne povezave, odprite nastavitve na doma.i strani Google Dokumentov in vklopite sinhronizacijo brez povezave, ko naslednji. vzpostavite internetno povezavo.".. },.. "explanationofflineenabled": {.. "message": "Nimate vzpostavljene povezave, vendar lahko .e vedno urejate razpolo.ljive datoteke ali ustvarjate nove.".. },.. "extdesc": {.. "message": "Urejajte, ustvarjajte in si ogledujte dokumente, preglednice in predstavitve . vse to brez internetnega dostopa.".. },.. "extname": {.. "message": "Google Dokumenti brez povezave".. },.. "learnmore": {.. "message": "Ve. o tem".. },.. "popuphelptext": {.. "message": "Pi.ite, urejajte in sodelujte, kjer koli ste, z internetno povezavo ali brez nje.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1320
                                                                                                                                                                                                                                                                      Entropy (8bit):4.569671329405572
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HArg/fjQg2JwrfZtUWTrw1P4epMnRGi5TBmuPDRxZQ/XtiCw/Rwh/Q9EVz:ogUg2JwDZe6rwKI8VTP9xK1CwhI94
                                                                                                                                                                                                                                                                      MD5:7F5F8933D2D078618496C67526A2B066
                                                                                                                                                                                                                                                                      SHA1:B7050E3EFA4D39548577CF47CB119FA0E246B7A4
                                                                                                                                                                                                                                                                      SHA-256:4E8B69E864F57CDDD4DC4E4FAF2C28D496874D06016BC22E8D39E0CB69552769
                                                                                                                                                                                                                                                                      SHA-512:0FBAB56629368EEF87DEEF2977CA51831BEB7DEAE98E02504E564218425C751853C4FDEAA40F51ECFE75C633128B56AE105A6EB308FD5B4A2E983013197F5DBA
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "....... ....".. },.. "explanationofflinedisabled": {.. "message": "...... .... .. ..... ......... Google ......... ... ........ ...., ..... . .......... .. ........ ........ Google .......... . ........ ...... .............. ... ....... ... ...... ........ .. ...........".. },.. "explanationofflineenabled": {.. "message": "...... ..., ... . .... ...... .. ....... ...... . ........ ........ ... .. ....... .....".. },.. "extdesc": {.. "message": "....... . ........... ........., ...... . ............ . ....... ...... . ... . ... .. ... ........ .........".. },.. "extname": {.. "message
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):884
                                                                                                                                                                                                                                                                      Entropy (8bit):4.627108704340797
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HA0NOYT/6McbnX/yzklyOIPRQrJlvDymvBd:vNOcyHnX/yg0P4Bymn
                                                                                                                                                                                                                                                                      MD5:90D8FB448CE9C0B9BA3D07FB8DE6D7EE
                                                                                                                                                                                                                                                                      SHA1:D8688CAC0245FD7B886D0DEB51394F5DF8AE7E84
                                                                                                                                                                                                                                                                      SHA-256:64B1E422B346AB77C5D1C77142685B3FF7661D498767D104B0C24CB36D0EB859
                                                                                                                                                                                                                                                                      SHA-512:6D58F49EE3EF0D3186EA036B868B2203FE936CE30DC8E246C32E90B58D9B18C624825419346B62AF8F7D61767DBE9721957280AA3C524D3A5DFB1A3A76C00742
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "SKAPA NYTT".. },.. "explanationofflinedisabled": {.. "message": "Du .r offline. Om du vill anv.nda Google Dokument utan internetuppkoppling, .ppna inst.llningarna p. Google Dokuments startsida och aktivera offlinesynkronisering n.sta g.ng du .r ansluten till internet.".. },.. "explanationofflineenabled": {.. "message": "Du .r offline, men det g.r fortfarande att redigera tillg.ngliga filer eller skapa nya.".. },.. "extdesc": {.. "message": "Redigera, skapa och visa dina dokument, kalkylark och presentationer . helt utan internet.tkomst.".. },.. "extname": {.. "message": "Google Dokument Offline".. },.. "learnmore": {.. "message": "L.s mer".. },.. "popuphelptext": {.. "message": "Skriv, redigera och samarbeta .verallt, med eller utan internetanslutning.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):980
                                                                                                                                                                                                                                                                      Entropy (8bit):4.50673686618174
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgNHCBxNx1HMHyMhybK7QGU78oCuafIvfCBxex6EYPE5E1pOCSUJqONtCBh8:1HAGDQ3y0Q/Kjp/zhDoKMkeAT6dBaX
                                                                                                                                                                                                                                                                      MD5:D0579209686889E079D87C23817EDDD5
                                                                                                                                                                                                                                                                      SHA1:C4F99E66A5891973315D7F2BC9C1DAA524CB30DC
                                                                                                                                                                                                                                                                      SHA-256:0D20680B74AF10EF8C754FCDE259124A438DCE3848305B0CAF994D98E787D263
                                                                                                                                                                                                                                                                      SHA-512:D59911F91ED6C8FF78FD158389B4D326DAF4C031B940C399569FE210F6985E23897E7F404B7014FC7B0ACEC086C01CC5F76354F7E5D3A1E0DEDEF788C23C2978
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "FUNGUA MPYA".. },.. "explanationofflinedisabled": {.. "message": "Haupo mtandaoni. Ili uweze kutumia Hati za Google bila muunganisho wa intaneti, wakati utakuwa umeunganishwa kwenye intaneti, nenda kwenye sehemu ya mipangilio kwenye ukurasa wa kwanza wa Hati za Google kisha uwashe kipengele cha usawazishaji nje ya mtandao.".. },.. "explanationofflineenabled": {.. "message": "Haupo mtandaoni, lakini bado unaweza kubadilisha faili zilizopo au uunde mpya.".. },.. "extdesc": {.. "message": "Badilisha, unda na uangalie hati, malahajedwali na mawasilisho yako . yote bila kutumia muunganisho wa intaneti.".. },.. "extname": {.. "message": "Hati za Google Nje ya Mtandao".. },.. "learnmore": {.. "message": "Pata Maelezo Zaidi".. },.. "popuphelptext": {.. "message": "Andika hati, zibadilishe na ushirikiane na wengine popote ulipo, iwe una muunganisho wa intaneti au huna.".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1941
                                                                                                                                                                                                                                                                      Entropy (8bit):4.132139619026436
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAoTZwEj3YfVLiANpx96zjlXTwB4uNJDZwq3CP1B2xIZiIH1CYFIZ03SoFyxrph:JCEjWiAD0ZXkyYFyPND1L/I
                                                                                                                                                                                                                                                                      MD5:DCC0D1725AEAEAAF1690EF8053529601
                                                                                                                                                                                                                                                                      SHA1:BB9D31859469760AC93E84B70B57909DCC02EA65
                                                                                                                                                                                                                                                                      SHA-256:6282BF9DF12AD453858B0B531C8999D5FD6251EB855234546A1B30858462231A
                                                                                                                                                                                                                                                                      SHA-512:6243982D764026D342B3C47C706D822BB2B0CAFFA51F0591D8C878F981EEF2A7FC68B76D012630B1C1EB394AF90EB782E2B49329EB6538DD5608A7F0791FDCF5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "..... ....... .........".. },.. "explanationofflinedisabled": {.. "message": ".......... ........... .... ....... ..... Google ......... .........., ...... .... ........... ......... ...., Google ... ................... ................ ......, ........ ......... ..........".. },.. "explanationofflineenabled": {.. "message": ".......... ..........., .......... .......... .......... ......... ........... ...... .....
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1969
                                                                                                                                                                                                                                                                      Entropy (8bit):4.327258153043599
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:R7jQrEONienBcFNBNieCyOBw0/kCcj+sEf24l+Q+u1LU4ljCj55ONipR41ssrNix:RjQJN1nBcFNBNlCyGcj+RXl+Q+u1LU4s
                                                                                                                                                                                                                                                                      MD5:385E65EF723F1C4018EEE6E4E56BC03F
                                                                                                                                                                                                                                                                      SHA1:0CEA195638A403FD99BAEF88A360BD746C21DF42
                                                                                                                                                                                                                                                                      SHA-256:026C164BAE27DBB36A564888A796AA3F188AAD9E0C37176D48910395CF772CEA
                                                                                                                                                                                                                                                                      SHA-512:E55167CB5638E04DF3543D57C8027B86B9483BFCAFA8E7C148EDED66454AEBF554B4C1CF3C33E93EC63D73E43800D6A6E7B9B1A1B0798B6BDB2F699D3989B052
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "..... ...... ........ ......".. },.. "explanationofflinedisabled": {.. "message": ".... ........... ........ ......... ........ ....... Google Docs... .............., .... ............ ....... ..... ...... .... Google Docs .... ...... ............. ......, ........ ........ ... .......".. },.. "explanationofflineenabled": {.. "message": ".... ........... ......., .... .... ........ .......... .... ....... ..... ....... .... ..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1674
                                                                                                                                                                                                                                                                      Entropy (8bit):4.343724179386811
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:fcGjnU3UnGKD1GeU3pktOggV1tL2ggG7Q:f3jnDG1eUk0g6RLE
                                                                                                                                                                                                                                                                      MD5:64077E3D186E585A8BEA86FF415AA19D
                                                                                                                                                                                                                                                                      SHA1:73A861AC810DABB4CE63AD052E6E1834F8CA0E65
                                                                                                                                                                                                                                                                      SHA-256:D147631B2334A25B8AA4519E4A30FB3A1A85B6A0396BC688C68DC124EC387D58
                                                                                                                                                                                                                                                                      SHA-512:56DD389EB9DD335A6214E206B3BF5D63562584394D1DE1928B67D369E548477004146E6CB2AD19D291CB06564676E2B2AC078162356F6BC9278B04D29825EF0C
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".........".. },.. "explanationofflinedisabled": {.. "message": ".............. ............. Google .................................... ............................... Google ...... .................................................................".. },.. "explanationofflineenabled": {.. "message": "................................................................".. },.. "extdesc": {.. "message": "..... ..... ........
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1063
                                                                                                                                                                                                                                                                      Entropy (8bit):4.853399816115876
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAowYuBPgoMC4AGehrgGm7tJ3ckwFrXnRs5m:GYsPgrCtGehkGc3cvXr
                                                                                                                                                                                                                                                                      MD5:76B59AAACC7B469792694CF3855D3F4C
                                                                                                                                                                                                                                                                      SHA1:7C04A2C1C808FA57057A4CCEEE66855251A3C231
                                                                                                                                                                                                                                                                      SHA-256:B9066A162BEE00FD50DC48C71B32B69DFFA362A01F84B45698B017A624F46824
                                                                                                                                                                                                                                                                      SHA-512:2E507CA6874DE8028DC769F3D9DFD9E5494C268432BA41B51568D56F7426F8A5F2E5B111DDD04259EB8D9A036BB4E3333863A8FC65AAB793BCEF39EDFE41403B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "YEN. OLU.TUR".. },.. "explanationofflinedisabled": {.. "message": ".nternet'e ba.l. de.ilsiniz. Google Dok.manlar'. .nternet ba.lant.s. olmadan kullanmak i.in, .nternet'e ba.lanabildi.inizde Google Dok.manlar ana sayfas.nda Ayarlar'a gidin ve .evrimd... senkronizasyonu etkinle.tirin.".. },.. "explanationofflineenabled": {.. "message": ".nternet'e ba.l. de.ilsiniz. Ancak, yine de mevcut dosyalar. d.zenleyebilir veya yeni dosyalar olu.turabilirsiniz.".. },.. "extdesc": {.. "message": "Dok.man, e-tablo ve sunu olu.turun, bunlar. d.zenleyin ve g.r.nt.leyin. T.m bu i.lemleri internet eri.imi olmadan yapabilirsiniz.".. },.. "extname": {.. "message": "Google Dok.manlar .evrimd...".. },.. "learnmore": {.. "message": "Daha Fazla Bilgi".. },.. "popuphelptext": {.. "message": ".nternet ba.lant.n.z olsun veya olmas.n, nerede olursan.z olun yaz.n, d.zenl
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1333
                                                                                                                                                                                                                                                                      Entropy (8bit):4.686760246306605
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAk9oxkm6H4KyGGB9GeGoxPEYMQhpARezTtHUN97zlwpEH7:VKU1GB9GeBc/OARETt+9/WCb
                                                                                                                                                                                                                                                                      MD5:970963C25C2CEF16BB6F60952E103105
                                                                                                                                                                                                                                                                      SHA1:BBDDACFEEE60E22FB1C130E1EE8EFDA75EA600AA
                                                                                                                                                                                                                                                                      SHA-256:9FA26FF09F6ACDE2457ED366C0C4124B6CAC1435D0C4FD8A870A0C090417DA19
                                                                                                                                                                                                                                                                      SHA-512:1BED9FE4D4ADEED3D0BC8258D9F2FD72C6A177C713C3B03FC6F5452B6D6C2CB2236C54EA972ECE7DBFD756733805EB2352CAE44BAB93AA8EA73BB80460349504
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "........".. },.. "explanationofflinedisabled": {.. "message": ".. . ...... ....... ... ............. Google ........... ... ......... . .........., ......... . ............ .. ........ ........ Google .......... . ......... ......-............., .... ...... . .......".. },.. "explanationofflineenabled": {.. "message": ".. . ...... ......, ..... ... .... ...... .......... ........ ..... ... .......... .....".. },.. "extdesc": {.. "message": "........., ......... . ............ ........., .......... ....... .. ........... ... ....... .. ..........".. },.. "extname": {.. "message": "Goo
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1263
                                                                                                                                                                                                                                                                      Entropy (8bit):4.861856182762435
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAl3zNEUhN3mNjkSIkmdNpInuUVsqNtOJDhY8Dvp/IkLzx:e3uUhQKvkmd+s11Lp1F
                                                                                                                                                                                                                                                                      MD5:8B4DF6A9281333341C939C244DDB7648
                                                                                                                                                                                                                                                                      SHA1:382C80CAD29BCF8AAF52D9A24CA5A6ECF1941C6B
                                                                                                                                                                                                                                                                      SHA-256:5DA836224D0F3A96F1C5EB5063061AAD837CA9FC6FED15D19C66DA25CF56F8AC
                                                                                                                                                                                                                                                                      SHA-512:FA1C015D4EA349F73468C78FDB798D462EEF0F73C1A762298798E19F825E968383B0A133E0A2CE3B3DF95F24C71992235BFC872C69DC98166B44D3183BF8A9E5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "... ......".. },.. "explanationofflinedisabled": {.. "message": ".. .. .... .... Google Docs .. .... ....... ..... ....... .... ..... .... ... .. .. ....... .. ..... ... .. Google Docs ... ... .. ....... .. ..... ... .. .... ...... ..... .. .. .....".. },.. "explanationofflineenabled": {.. "message": ".. .. .... ... .... .. ... ... ...... ..... ... ..... .. .... ... .. ... ..... ... .... ....".. },.. "extdesc": {.. "message": ".......... .......... ... ....... . .... ... ....... .. ..... .. .... ...... ..... .... ... ..... .......".. },.. "extname": {.. "message": "Google Docs .. ....".. },.. "learnmore": {..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1074
                                                                                                                                                                                                                                                                      Entropy (8bit):5.062722522759407
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HAhBBLEBOVUSUfE+eDFmj4BLErQ7e2CIer32KIxqJ/HtNiE5nIGeU+KCVT:qHCDheDFmjDQgX32/S/hI9jh
                                                                                                                                                                                                                                                                      MD5:773A3B9E708D052D6CBAA6D55C8A5438
                                                                                                                                                                                                                                                                      SHA1:5617235844595D5C73961A2C0A4AC66D8EA5F90F
                                                                                                                                                                                                                                                                      SHA-256:597C5F32BC999746BC5C2ED1E5115C523B7EB1D33F81B042203E1C1DF4BBCAFE
                                                                                                                                                                                                                                                                      SHA-512:E5F906729E38B23F64D7F146FA48F3ABF6BAED9AAFC0E5F6FA59F369DC47829DBB4BFA94448580BD61A34E844241F590B8D7AEC7091861105D8EBB2590A3BEE9
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "T.O M.I".. },.. "explanationofflinedisabled": {.. "message": "B.n .ang ngo.i tuy.n. .. s. d.ng Google T.i li.u m. kh.ng c.n k.t n.i Internet, .i ..n c.i ..t tr.n trang ch. c.a Google T.i li.u v. b.t ..ng b. h.a ngo.i tuy.n v.o l.n ti.p theo b.n ...c k.t n.i v.i m.ng Internet.".. },.. "explanationofflineenabled": {.. "message": "B.n .ang ngo.i tuy.n, tuy nhi.n b.n v.n c. th. ch.nh s.a c.c t.p c. s.n ho.c t.o c.c t.p m.i.".. },.. "extdesc": {.. "message": "Ch.nh s.a, t.o v. xem t.i li.u, b.ng t.nh v. b.n tr.nh b.y . t.t c. m. kh.ng c.n truy c.p Internet.".. },.. "extname": {.. "message": "Google T.i li.u ngo.i tuy.n".. },.. "learnmore": {.. "message": "Ti.m hi..u th.m".. },.. "popuphelptext": {.. "message": "Vi.t, ch.nh s.a v. c.ng t.c
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):879
                                                                                                                                                                                                                                                                      Entropy (8bit):5.7905809868505544
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgteHCBxNtSBXuetOrgIkA2OrWjMOCBxetSBXK01fg/SOiCSUEQ27e1CBhUj:1HAFsHtrIkA2jqldI/727eggcLk9pf
                                                                                                                                                                                                                                                                      MD5:3E76788E17E62FB49FB5ED5F4E7A3DCE
                                                                                                                                                                                                                                                                      SHA1:6904FFA0D13D45496F126E58C886C35366EFCC11
                                                                                                                                                                                                                                                                      SHA-256:E72D0BB08CC3005556E95A498BD737E7783BB0E56DCC202E7D27A536616F5EE0
                                                                                                                                                                                                                                                                      SHA-512:F431E570AB5973C54275C9EEF05E49E6FE2D6C17000F98D672DD31F9A1FAD98E0D50B5B0B9CF85D5BBD3B655B93FD69768C194C8C1688CB962AA75FF1AF9BDB6
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": "..".. },.. "explanationofflinedisabled": {.. "message": "....................... Google ................ Google ....................".. },.. "explanationofflineenabled": {.. "message": ".............................".. },.. "extdesc": {.. "message": "...................... - ........".. },.. "extname": {.. "message": "Google .......".. },.. "learnmore": {.. "message": "....".. },.. "popuphelptext": {.. "message": "...............................".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1205
                                                                                                                                                                                                                                                                      Entropy (8bit):4.50367724745418
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:YWvqB0f7Cr591AhI9Ah8U1F4rw4wtB9G976d6BY9scKUrPoAhNehIrI/uIXS1:YWvl7Cr5JHrw7k7u6BY9trW+rHR
                                                                                                                                                                                                                                                                      MD5:524E1B2A370D0E71342D05DDE3D3E774
                                                                                                                                                                                                                                                                      SHA1:60D1F59714F9E8F90EF34138D33FBFF6DD39E85A
                                                                                                                                                                                                                                                                      SHA-256:30F44CFAD052D73D86D12FA20CFC111563A3B2E4523B43F7D66D934BA8DACE91
                                                                                                                                                                                                                                                                      SHA-512:D2225CF2FA94B01A7B0F70A933E1FDCF69CDF92F76C424CE4F9FCC86510C481C9A87A7B71F907C836CBB1CA41A8BEBBD08F68DBC90710984CA738D293F905272
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"\u5efa\u7acb\u65b0\u9805\u76ee"},"explanationofflinedisabled":{"message":"\u60a8\u8655\u65bc\u96e2\u7dda\u72c0\u614b\u3002\u5982\u8981\u5728\u6c92\u6709\u4e92\u806f\u7db2\u9023\u7dda\u7684\u60c5\u6cc1\u4e0b\u4f7f\u7528\u300cGoogle \u6587\u4ef6\u300d\uff0c\u8acb\u524d\u5f80\u300cGoogle \u6587\u4ef6\u300d\u9996\u9801\u7684\u8a2d\u5b9a\uff0c\u4e26\u5728\u4e0b\u6b21\u9023\u63a5\u4e92\u806f\u7db2\u6642\u958b\u555f\u96e2\u7dda\u540c\u6b65\u529f\u80fd\u3002"},"explanationofflineenabled":{"message":"\u60a8\u8655\u65bc\u96e2\u7dda\u72c0\u614b\uff0c\u4f46\u60a8\u4ecd\u53ef\u4ee5\u7de8\u8f2f\u53ef\u7528\u6a94\u6848\u6216\u5efa\u7acb\u65b0\u6a94\u6848\u3002"},"extdesc":{"message":"\u7de8\u8f2f\u3001\u5efa\u7acb\u53ca\u67e5\u770b\u60a8\u7684\u6587\u4ef6\u3001\u8a66\u7b97\u8868\u548c\u7c21\u5831\uff0c\u5b8c\u5168\u4e0d\u9700\u4f7f\u7528\u4e92\u806f\u7db2\u3002"},"extname":{"message":"\u300cGoogle \u6587\u4ef6\u300d\u96e2\u7dda\u7248"},"learnmore":{"message":"\u77ad\u89e3\u8a
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):843
                                                                                                                                                                                                                                                                      Entropy (8bit):5.76581227215314
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:1HASvgmaCBxNtBtA24ZOuAeOEHGOCBxetBtMHQIJECSUnLRNocPNy6CBhU5OGg1O:1HAEfQkekYyLvRmcPGgzcL2kx5U
                                                                                                                                                                                                                                                                      MD5:0E60627ACFD18F44D4DF469D8DCE6D30
                                                                                                                                                                                                                                                                      SHA1:2BFCB0C3CA6B50D69AD5745FA692BAF0708DB4B5
                                                                                                                                                                                                                                                                      SHA-256:F94C6DDEDF067642A1AF18D629778EC65E02B6097A8532B7E794502747AEB008
                                                                                                                                                                                                                                                                      SHA-512:6FF517EED4381A61075AC7C8E80C73FAFAE7C0583BA4FA7F4951DD7DBE183C253702DEE44B3276EFC566F295DAC1592271BE5E0AC0C7D2C9F6062054418C7C27
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "createnew": {.. "message": ".....".. },.. "explanationofflinedisabled": {.. "message": ".................. Google ................ Google .................".. },.. "explanationofflineenabled": {.. "message": ".........................".. },.. "extdesc": {.. "message": ".............................".. },.. "extname": {.. "message": "Google .....".. },.. "learnmore": {.. "message": "....".. },.. "popuphelptext": {.. "message": "................................".. }..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):912
                                                                                                                                                                                                                                                                      Entropy (8bit):4.65963951143349
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:YlMBKqLnI7EgBLWFQbTQIF+j4h3OadMJzLWnCieqgwLeOvKrCRPE:YlMBKqjI7EQOQb0Pj4heOWqeyaBrMPE
                                                                                                                                                                                                                                                                      MD5:71F916A64F98B6D1B5D1F62D297FDEC1
                                                                                                                                                                                                                                                                      SHA1:9386E8F723C3F42DA5B3F7E0B9970D2664EA0BAA
                                                                                                                                                                                                                                                                      SHA-256:EC78DDD4CCF32B5D76EC701A20167C3FBD146D79A505E4FB0421FC1E5CF4AA63
                                                                                                                                                                                                                                                                      SHA-512:30FA4E02120AF1BE6E7CC7DBB15FAE5D50825BD6B3CF28EF21D2F2E217B14AF5B76CFCC165685C3EDC1D09536BFCB10CA07E1E2CC0DA891CEC05E19394AD7144
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"createnew":{"message":"DALA ENTSHA"},"explanationofflinedisabled":{"message":"Awuxhunyiwe ku-inthanethi. Ukuze usebenzise i-Google Amadokhumenti ngaphandle koxhumano lwe-inthanethi, iya kokuthi izilungiselelo ekhasini lasekhaya le-Google Amadokhumenti bese uvula ukuvumelanisa okungaxhunyiwe ku-inthanethi ngesikhathi esilandelayo lapho uxhunywe ku-inthanethi."},"explanationofflineenabled":{"message":"Awuxhunyiwe ku-inthanethi, kodwa usangakwazi ukuhlela amafayela atholakalayo noma udale amasha."},"extdesc":{"message":"Hlela, dala, futhi ubuke amadokhumenti akho, amaspredishithi, namaphrezentheshini \u2014 konke ngaphandle kokufinyelela kwe-inthanethi."},"extname":{"message":"I-Google Amadokhumenti engaxhumekile ku-intanethi"},"learnmore":{"message":"Funda kabanzi"},"popuphelptext":{"message":"Bhala, hlela, futhi hlanganyela noma yikuphi lapho okhona, unalo noma ungenalo uxhumano lwe-inthanethi."}}.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):11280
                                                                                                                                                                                                                                                                      Entropy (8bit):5.752941882424501
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:RBG1G1UPkUj/86Op//Ier/2nsNLJtwg+K8HNnswuHEIIMuuqd7CKqvVpfcNLFev:m8IEI4u8ROxev
                                                                                                                                                                                                                                                                      MD5:F897300492E3AB467E56883D23D02D77
                                                                                                                                                                                                                                                                      SHA1:DECD6DC9E70ECCF9B45983147680614C019B99EA
                                                                                                                                                                                                                                                                      SHA-256:F9B3A5747DEDCB5AED58FCFC0F4FD3BD2F2E903F2CCEF90A92A73DBC0F8C3DBD
                                                                                                                                                                                                                                                                      SHA-512:B8AC574E24814BAF04A264E7F3F00B4285CD7B66104DFC77897440A898FCA5230775300EC7DEF723678975A04C2CD1BC73A44F77DA26262E8704029930990C62
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[{"description":"treehash per file","signed_content":{"payload":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):854
                                                                                                                                                                                                                                                                      Entropy (8bit):4.284628987131403
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:ont+QByTwnnGNcMbyWM+Q9TZldnnnGGxlF/S0WOtUL0M0r:vOrGe4dDCVGOjWJ0nr
                                                                                                                                                                                                                                                                      MD5:4EC1DF2DA46182103D2FFC3B92D20CA5
                                                                                                                                                                                                                                                                      SHA1:FB9D1BA3710CF31A87165317C6EDC110E98994CE
                                                                                                                                                                                                                                                                      SHA-256:6C69CE0FE6FAB14F1990A320D704FEE362C175C00EB6C9224AA6F41108918CA6
                                                                                                                                                                                                                                                                      SHA-512:939D81E6A82B10FF73A35C931052D8D53D42D915E526665079EEB4820DF4D70F1C6AEBAB70B59519A0014A48514833FEFD687D5A3ED1B06482223A168292105D
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{. "type": "object",. "properties": {. "allowedDocsOfflineDomains": {. "type": "array",. "items": {. "type": "string". },. "title": "Allow users to enable Docs offline for the specified managed domains.",. "description": "Users on managed devices will be able to enable docs offline if they are part of the specified managed domains.". },. "autoEnabledDocsOfflineDomains": {. "type": "array",. "items": {. "type": "string". },. "title": "Auto enable Docs offline for the specified managed domains in certain eligible situations.",. "description": "Users on managed devices, in certain eligible situations, will be able to automatically access and edit recent files offline for the managed domains set in this property. They can still disable it from Drive settings.". }. }.}.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2525
                                                                                                                                                                                                                                                                      Entropy (8bit):5.417781191647272
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1HEZ4WPoolELb/KxktGw3VwELb/4iL2QDkUpvdz1xxy/Atj1H9yiVvQe:WdP5aLTKQGwlTLT4oRvvxs/APHgiVb
                                                                                                                                                                                                                                                                      MD5:35068E2550395A8A3E74558F2F4658DA
                                                                                                                                                                                                                                                                      SHA1:BD6620054059BFB7A27A4FFF86B9966727F2C2B9
                                                                                                                                                                                                                                                                      SHA-256:E2F418C816895E830541F48C0406B9398805E88B61A4EC816244154CD793743C
                                                                                                                                                                                                                                                                      SHA-512:4BCB971D7353648ABF25ACA7A4A4771F62BBB76F8FC13BDE886F29826D9314F5101942492004FC719493604D317958B63A95CF5173F8180214F27D6BEA303F97
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "author": {.. "email": "docs-hosted-app-own@google.com".. },.. "background": {.. "service_worker": "service_worker_bin_prod.js".. },.. "content_capabilities": {.. "matches": [ "https://docs.google.com/*", "https://drive.google.com/*", "https://drive-autopush.corp.google.com/*", "https://drive-daily-0.corp.google.com/*", "https://drive-daily-1.corp.google.com/*", "https://drive-daily-2.corp.google.com/*", "https://drive-daily-3.corp.google.com/*", "https://drive-daily-4.corp.google.com/*", "https://drive-daily-5.corp.google.com/*", "https://drive-daily-6.corp.google.com/*", "https://drive-preprod.corp.google.com/*", "https://drive-staging.corp.google.com/*" ],.. "permissions": [ "clipboardRead", "clipboardWrite", "unlimitedStorage" ].. },.. "content_security_policy": {.. "extension_pages": "script-src 'self'; object-src 'self'".. },.. "default_locale": "en_US",.. "description": "__MSG_extDesc__",.. "externally_connectable": {.. "ma
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:HTML document, ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):97
                                                                                                                                                                                                                                                                      Entropy (8bit):4.862433271815736
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:PouV7uJL5XL/oGLvLAAJR90bZNGXIL0Hac4NGb:hxuJL5XsOv0EmNV4HX4Qb
                                                                                                                                                                                                                                                                      MD5:B747B5922A0BC74BBF0A9BC59DF7685F
                                                                                                                                                                                                                                                                      SHA1:7BF124B0BE8EE2CFCD2506C1C6FFC74D1650108C
                                                                                                                                                                                                                                                                      SHA-256:B9FA2D52A4FFABB438B56184131B893B04655B01F336066415D4FE839EFE64E7
                                                                                                                                                                                                                                                                      SHA-512:7567761BE4054FCB31885E16D119CD4E419A423FFB83C3B3ED80BFBF64E78A73C2E97AAE4E24AB25486CD1E43877842DB0836DB58FBFBCEF495BC53F9B2A20EC
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:<!DOCTYPE html>.<html>.<body>. <script src="offscreendocument_main.js"></script>.</body>.</html>
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with very long lines (3700)
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):95606
                                                                                                                                                                                                                                                                      Entropy (8bit):5.405749379350638
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:rFTnpa+88KmEfryTdXPVy0d8RZZ0Qk4CWbsnf29Gmyj9tIRRduRnCrl:almPXPVCFCWbsnDVQRwF0l
                                                                                                                                                                                                                                                                      MD5:9D0EF4F7CB0306DCB7A7CDCD6DC2CCC7
                                                                                                                                                                                                                                                                      SHA1:88D7F0A88C5807BFE00F13B612CC0522EEBE514A
                                                                                                                                                                                                                                                                      SHA-256:E5E4392B21A21ECAFD27707BF70F95961B2656735A20B40BA54479D40EAB063C
                                                                                                                                                                                                                                                                      SHA-512:34CD9AF9199DE606A531E98DB82BEAA5552E59BCCB2AB2BF49F82D6FA05425EB6936BC5F03BFC421AB6980B91395D9FDC5F0776882E1D49B3217CD35641FF906
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:'use strict';function aa(){return function(a){return a}}function ba(){return function(){}}function l(a){return function(){return this[a]}}function ca(a){return function(){return a}}var n;function da(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var ea=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function fa(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var q=fa(this);function r(a,b){if(b)a:{var c=q;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&ea(c,a,{configurable:!0,writable:!0,value:b})}}.r("Symbol",function(a){function b(f){if(this instanceof b)throw new Ty
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):291
                                                                                                                                                                                                                                                                      Entropy (8bit):4.65176400421739
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:6:2LGX86tj66rU8j6D3bWq2un/XBtzHrH9Mnj63LK603:2Q8KVqb2u/Rt3Onj1
                                                                                                                                                                                                                                                                      MD5:3AB0CD0F493B1B185B42AD38AE2DD572
                                                                                                                                                                                                                                                                      SHA1:079B79C2ED6F67B5A5BD9BC8C85801F96B1B0F4B
                                                                                                                                                                                                                                                                      SHA-256:73E3888CCBC8E0425C3D2F8D1E6A7211F7910800EEDE7B1E23AD43D3B21173F7
                                                                                                                                                                                                                                                                      SHA-512:32F9DB54654F29F39D49F7A24A1FC800DBC0D4A8A1BAB2369C6F9799BC6ADE54962EFF6010EF6D6419AE51D5B53EC4B26B6E2CDD98DEF7CC0D2ADC3A865F37D3
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:(function(){window._docs_chrome_extension_exists=!0;window._docs_chrome_extension_features_version=2;window._docs_chrome_extension_permissions="alarms clipboardRead clipboardWrite storage unlimitedStorage offscreen".split(" ");window._docs_chrome_extension_manifest_version=3;}).call(this);.
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with very long lines (3705)
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):104595
                                                                                                                                                                                                                                                                      Entropy (8bit):5.385879258644142
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:1536:CvBfoqPByzpq7Wj3X5GtH2n4JvHDxwKMpFs0vuFfkR/2oTnHu96Iny0Kj2ThzfS:BlXQtoZrs0vskDTHu9rhTS
                                                                                                                                                                                                                                                                      MD5:4E0C47897BF98DEAC56F800942E150C4
                                                                                                                                                                                                                                                                      SHA1:7903D30E0ACEE273724BDAA67446D9FD4E8460A5
                                                                                                                                                                                                                                                                      SHA-256:FE76EA0C2F81E6140F38F4143B40BE85014B93FF80737600CFB39AEB5C8C6537
                                                                                                                                                                                                                                                                      SHA-512:8B31463FC683439BAB5D4AEFE2BE0F6A9F5B695C2D95AFF3F842BFC74B10AE3D386D288121161506F74A08FB86D25C1096DA4177B768254BF84E83983982640F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:'use strict';function aa(){return function(){}}function k(a){return function(){return this[a]}}function ba(a){return function(){return a}}var n;function ca(a){var b=0;return function(){return b<a.length?{done:!1,value:a[b++]}:{done:!0}}}var da=typeof Object.defineProperties=="function"?Object.defineProperty:function(a,b,c){if(a==Array.prototype||a==Object.prototype)return a;a[b]=c.value;return a};.function ea(a){a=["object"==typeof globalThis&&globalThis,a,"object"==typeof window&&window,"object"==typeof self&&self,"object"==typeof global&&global];for(var b=0;b<a.length;++b){var c=a[b];if(c&&c.Math==Math)return c}throw Error("Cannot find global object");}var q=ea(this);function r(a,b){if(b)a:{var c=q;a=a.split(".");for(var d=0;d<a.length-1;d++){var e=a[d];if(!(e in c))break a;c=c[e]}a=a[a.length-1];d=c[a];b=b(d);b!=d&&b!=null&&da(c,a,{configurable:!0,writable:!0,value:b})}}.r("Symbol",function(a){function b(f){if(this instanceof b)throw new TypeError("Symbol is not a constructor");retu
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:Google Chrome extension, version 3
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):135771
                                                                                                                                                                                                                                                                      Entropy (8bit):7.802585890890899
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:LtlntxI0jRnnf4pTz8IayMaCRABlauflM+u0F/oWRW:pl4+hf4pTky1EABYufNFS4W
                                                                                                                                                                                                                                                                      MD5:DA75BB05D10ACC967EECAAC040D3D733
                                                                                                                                                                                                                                                                      SHA1:95C08E067DF713AF8992DB113F7E9AEC84F17181
                                                                                                                                                                                                                                                                      SHA-256:33AE9B8F06DC777BB1A65A6BA6C3F2A01B25CD1AFC291426B46D1DF27EA6E7E2
                                                                                                                                                                                                                                                                      SHA-512:56533DE53872F023809A20D1EA8532CDC2260D40B05C5A7012C8E61576FF092F006A197F759C92C6B8C429EEEC4BB542073B491DDCFD5B22CD4ECBE1A8A7C6EF
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:Cr24..............0.."0...*.H.............0.........^...1"...w.g..t..2J.G1.)X4..=&.?[j,Lz..j.u.e[I.q*Ba/X...P.h..L.....2%3_o.......H.)'.=.e...?.......j..3UH.|.X.M..u..s[.*..?$....F%....I....)..,-./.e5).f..O.q.^........9..(.._.ph2..^.YBPXf_8....h[.v...S.*1`.#..5.SF.:f-.#.65.i..b.]9...y2.'....k[...........=.B.../EYp....i:........ua....w...\H.j....b....4...l.b.:u.%1z....}L.A.F.IZ.2^.j...!F.&@;L..z...02..`:J_@....m....qcQ.|sD.r`vC.#.8lm...R.8.~A...."~)".[.M...o.a.H.$..(.d/.K.6......c........#.$..>.#..3..-...n4J.$-....N...s.G...3..q.e..(.B?*."...9M......[0Y0...*.H.=....*.H.=....B..............r...2..+Y.I...k..bR.j5Sl..8.......H"i.-l..`.Q.{...H0F.!..w./B..$<......r-.'..xp.H..Q...8.!..R^...%..W0....q....g.D..~.".%............mo.:......<#a..e...Chp...x4z....!.!.a...qgo....p8.T.6...Z....?..CV...<..K...?....k..........q=....Y^........!..K...G...m.n..Y.Y.......u.Wf...TO".?.......U/Rd..Y....j....H..Q...{.....x.OQ.~+}...L.9_.:.,E.....q.0&...I;b..H...>...9.}.B
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):1753
                                                                                                                                                                                                                                                                      Entropy (8bit):5.8889033066924155
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:Pxpr7Xka2NXDpfsBJODI19Kg1JqcJW9O//JE3ZBDcpu/x:L3XgNSz9/4kIO3u3Xgpq
                                                                                                                                                                                                                                                                      MD5:738E757B92939B24CDBBD0EFC2601315
                                                                                                                                                                                                                                                                      SHA1:77058CBAFA625AAFBEA867052136C11AD3332143
                                                                                                                                                                                                                                                                      SHA-256:D23B2BA94BA22BBB681E6362AE5870ACD8A3280FA9E7241B86A9E12982968947
                                                                                                                                                                                                                                                                      SHA-512:DCA3E12DD5A9F1802DB6D11B009FCE2B787E79B9F730094367C9F26D1D87AF1EA072FF5B10888648FB1231DD83475CF45594BB0C9915B655EE363A3127A5FFC2
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:[.. {.. "description": "treehash per file",.. "signed_content": {.. "payload": "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",.. "signatures": [.. {.. "header": {.. "kid": "publisher".. },.. "protected": "eyJhbGciOiJSUzI1NiJ9",.. "signature": "UglEEilkOml5P1W0X6wc-_dB87PQB73uMir11923av57zPKujb4IUe_lbGpn7cRZsy6x-8i9eEKxAW7L2TSmYqrcp4XtiON6ppcf27FWACXOUJDax9wlMr-EOtyZhykCnB9vR
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:Unicode text, UTF-8 text, with very long lines (8031), with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):9815
                                                                                                                                                                                                                                                                      Entropy (8bit):6.1716321262973315
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:+ThBV4L3npstQp6VRtROQGZ0UyVg4jq4HWeGBnUi65Ep4HdlyKyjFN3zEScQZBMX:+ThBVq3npozftROQIyVfjRZGB365Ey97
                                                                                                                                                                                                                                                                      MD5:3D20584F7F6C8EAC79E17CCA4207FB79
                                                                                                                                                                                                                                                                      SHA1:3C16DCC27AE52431C8CDD92FBAAB0341524D3092
                                                                                                                                                                                                                                                                      SHA-256:0D40A5153CB66B5BDE64906CA3AE750494098F68AD0B4D091256939EEA243643
                                                                                                                                                                                                                                                                      SHA-512:315D1B4CC2E70C72D7EB7D51E0F304F6E64AC13AE301FD2E46D585243A6C936B2AD35A0964745D291AE9B317C316A29760B9B9782C88CC6A68599DB531F87D59
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:(()=>{"use strict";var e={1:(e,o)=>{Object.defineProperty(o,"__esModule",{value:!0}),o.newCwsPromotionalButtonCta=o.chromeToEdgeCwsButtonCtaMapping=void 0,o.chromeToEdgeCwsButtonCtaMapping={"...... ... Chrome":"...... ....","........ .. Chrome":".....",........:"..........",".......... .. Chrome":"..........","Chrome . .....":"...","Chrome .... ....":"....","Afegeix a Chrome":"Obt.n","Suprimeix de Chrome":"Suprimeix","P.idat do Chromu":"Z.skat","Odstranit z Chromu":"Odebrat","F.j til Chrome":"F.","Fjern fra Chrome":"Fjerne",Hinzuf.gen:"Abrufen","Aus Chrome entfernen":"Entfernen","Add to Chrome":"Get","Remove from Chrome":"Remove","A.adir a Chrome":"Obtener",Desinstalar:"Quitar","Agregar a Chrome":"Obtener","Eliminar de Chrome":"Quitar","Lisa Chrome'i":"Hangi","Chrome'ist eemaldamine":"Eemalda",.......H:"........","......... ... .. Chr
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:Unicode text, UTF-8 text, with very long lines (8604), with no line terminators
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):10388
                                                                                                                                                                                                                                                                      Entropy (8bit):6.174387413738973
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:+ThBV4L3npstQp6VRtROQGZ0UyVg4jq4HWeGBnUi65Ep4HdlyKyjFN3EbmE1F4fn:+ThBVq3npozftROQIyVfjRZGB365Ey9+
                                                                                                                                                                                                                                                                      MD5:3DE1E7D989C232FC1B58F4E32DE15D64
                                                                                                                                                                                                                                                                      SHA1:42B152EA7E7F31A964914F344543B8BF14B5F558
                                                                                                                                                                                                                                                                      SHA-256:D4AA4602A1590A4B8A1BCE8B8D670264C9FB532ADC97A72BC10C43343650385A
                                                                                                                                                                                                                                                                      SHA-512:177E5BDF3A1149B0229B6297BAF7B122602F7BD753F96AA41CCF2D15B2BCF6AF368A39BB20336CCCE121645EC097F6BEDB94666C74ACB6174EB728FBFC43BC2A
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:(()=>{"use strict";var e={1:(e,o)=>{Object.defineProperty(o,"__esModule",{value:!0}),o.newCwsPromotionalButtonCta=o.chromeToEdgeCwsButtonCtaMapping=void 0,o.chromeToEdgeCwsButtonCtaMapping={"...... ... Chrome":"...... ....","........ .. Chrome":".....",........:"..........",".......... .. Chrome":"..........","Chrome . .....":"...","Chrome .... ....":"....","Afegeix a Chrome":"Obt.n","Suprimeix de Chrome":"Suprimeix","P.idat do Chromu":"Z.skat","Odstranit z Chromu":"Odebrat","F.j til Chrome":"F.","Fjern fra Chrome":"Fjerne",Hinzuf.gen:"Abrufen","Aus Chrome entfernen":"Entfernen","Add to Chrome":"Get","Remove from Chrome":"Remove","A.adir a Chrome":"Obtener",Desinstalar:"Quitar","Agregar a Chrome":"Obtener","Eliminar de Chrome":"Quitar","Lisa Chrome'i":"Hangi","Chrome'ist eemaldamine":"Eemalda",.......H:"........","......... ... .. Chr
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):962
                                                                                                                                                                                                                                                                      Entropy (8bit):5.698567446030411
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:24:1Hg9+D3DRnbuF2+sUrzUu+Y9VwE+Fg41T1O:NBqY+6E+F7JO
                                                                                                                                                                                                                                                                      MD5:E805E9E69FD6ECDCA65136957B1FB3BE
                                                                                                                                                                                                                                                                      SHA1:2356F60884130C86A45D4B232A26062C7830E622
                                                                                                                                                                                                                                                                      SHA-256:5694C91F7D165C6F25DAF0825C18B373B0A81EA122C89DA60438CD487455FD6A
                                                                                                                                                                                                                                                                      SHA-512:049662EF470D2B9E030A06006894041AE6F787449E4AB1FBF4959ADCB88C6BB87A957490212697815BB3627763C01B7B243CF4E3C4620173A95795884D998A75
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{.. "content_scripts": [ {.. "js": [ "content.js" ],.. "matches": [ "https://chrome.google.com/webstore/*" ].. }, {.. "js": [ "content_new.js" ],.. "matches": [ "https://chromewebstore.google.com/*" ].. } ],.. "description": "Edge relevant text changes on select websites to improve user experience and precisely surfaces the action they want to take.",.. "key": "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu06p2Mjoy6yJDUUjCe8Hnqvtmjll73XqcbylxFZZWe+MCEAEK+1D0Nxrp0+IuWJL02CU3jbuR5KrJYoezA36M1oSGY5lIF/9NhXWEx5GrosxcBjxqEsdWv/eDoOOEbIvIO0ziMv7T1SUnmAA07wwq8DXWYuwlkZU/PA0Mxx0aNZ5+QyMfYqRmMpwxkwPG8gyU7kmacxgCY1v7PmmZo1vSIEOBYrxl064w5Q6s/dpalSJM9qeRnvRMLsszGY/J2bjQ1F0O2JfIlBjCOUg/89+U8ZJ1mObOFrKO4um8QnenXtH0WGmsvb5qBNrvbWNPuFgr2+w5JYlpSQ+O8zUCb8QZwIDAQAB",.. "manifest_version": 3,.. "name": "Edge relevant text changes",.. "update_url": "https://edge.microsoft.com/extensionwebstorebase/v1/crx",.. "version": "1.2.1"..}..
                                                                                                                                                                                                                                                                      Process:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      File Type:Google Chrome extension, version 3
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):11185
                                                                                                                                                                                                                                                                      Entropy (8bit):7.951995436832936
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:192:YEKh1jNlwQbamjq6Bcykrs3kAVg55GzVQM5F+XwsxNv7/lsoltBq0WG4ZeJTmrRb:fKT/BAzA05Gn5F+XV7NNltrWG4kJTm1b
                                                                                                                                                                                                                                                                      MD5:78E47DDA17341BED7BE45DCCFD89AC87
                                                                                                                                                                                                                                                                      SHA1:1AFDE30E46997452D11E4A2ADBBF35CCE7A1404F
                                                                                                                                                                                                                                                                      SHA-256:67D161098BE68CD24FEBC0C7B48F515F199DDA72F20AE3BBB97FCF2542BB0550
                                                                                                                                                                                                                                                                      SHA-512:9574A66D3756540479DC955C4057144283E09CAE11CE11EBCE801053BB48E536E67DC823B91895A9E3EE8D3CB27C065D5E9030C39A26CBF3F201348385B418A5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:Cr24..............0.."0...*.H.............0.........N.......E#......9e.u.q...VYY..@.+.C..k.O..bK.`..6.G..%.....3Z...e _.6....F..1p..K.Z......./ .3...OT..`..0...Y...FT..43.th.y...}....p.L...2S.&i.`..o...f.oH.....N..:..ijT.3.F{.0.,.f?'f.CQt;b_"Pc.. ..~S.I.c.8Z.;.....{G.a......k...>.`.o..%.$>;.....g.............jg?.R..@.:..........&..{...x@.Py..;kT....%F".S..w...N....9...A..@X.t!i.@..1;......1E..X.....[.~$....J......;=T.;)k..Y...$......S......M.P..P..>..=..u.....2p...w.9..1qw.a\A..Vj .C.....A..Cf1.r6.A...L. _m...[..l.Wr_../.. .B..9!.!+..ZG.K.......0.."0...*.H.............0.........^SUd%Q.L].......Cl2o...\[.....'*...;R=....N.C5....d. .....J.C>u.kr..Y..syJC.XS.q..E.n?....(G.5..)2.G..!.M.SS.{..U....!.EE..M[.#qs.A.1...g)nQ.c..G....Bd..7... .O.BI..KXQ..4.d.K.0......g.....-p....Z.E{...M&.~n.TE7..{0....5.#.C+3.y)pd9.e.........@..3.9..B.....I....2nX........2.?.~..S....]G.N.....Lr.O.Ve....9..D1.G..W)...P.?=.#..7.R.lz..a.wX.e..h.h.~....v..RP.@X....d.G
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:Zip archive data (empty)
                                                                                                                                                                                                                                                                      Category:modified
                                                                                                                                                                                                                                                                      Size (bytes):22
                                                                                                                                                                                                                                                                      Entropy (8bit):1.0476747992754052
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:pjt/l:Nt
                                                                                                                                                                                                                                                                      MD5:76CDB2BAD9582D23C1F6F4D868218D6C
                                                                                                                                                                                                                                                                      SHA1:B04F3EE8F5E43FA3B162981B50BB72FE1ACABB33
                                                                                                                                                                                                                                                                      SHA-256:8739C76E681F900923B900C9DF0EF75CF421D39CABB54650C4B9AD19B6A76D85
                                                                                                                                                                                                                                                                      SHA-512:5E2F959F36B66DF0580A94F384C5FC1CEEEC4B2A3925F062D7B68F21758B86581AC2ADCFDDE73A171A28496E758EF1B23CA4951C05455CDAE9357CC3B5A5825F
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:PK....................
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Nov 15 08:45:30 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2673
                                                                                                                                                                                                                                                                      Entropy (8bit):3.9733446713046727
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:8EdoToNH7idAKZdA1P4ehwiZUklqehjy+3:8HEvOoy
                                                                                                                                                                                                                                                                      MD5:D8B1C588B87729C920777B114AE7538A
                                                                                                                                                                                                                                                                      SHA1:2D6D2E3F2CC97B9925769F963491BDDCBD23288A
                                                                                                                                                                                                                                                                      SHA-256:92BDD9D32CC3219639D49F083BBCAEB655F982466BA4B865C510CF7EC3E3F01C
                                                                                                                                                                                                                                                                      SHA-512:821887A547BC19F9E22B3F14A13C435397CA44D826753DA42A590B18E2AB056382037DA9A81104229253B7867E58767995F9810451C9DD3B902B13ABFC179B2B
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:L..................F.@.. ...$+.,....=...C7....v'&... w......................1....P.O. .:i.....+00.../C:\.....................1.....EW.I..PROGRA~1..t......O.IoY.M....B...............J.....\...P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VoY.M....L.....................p+j.G.o.o.g.l.e.....T.1.....EW.F..Chrome..>......CW.VoY.M....M......................O..C.h.r.o.m.e.....`.1.....EW.F..APPLIC~1..H......CW.VoY.M.............................A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.L .CHROME~1.EXE..R......CW.VoY.M...........................).c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............c......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Nov 15 08:45:30 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2675
                                                                                                                                                                                                                                                                      Entropy (8bit):3.9888643671563373
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:8LdoToNH7idAKZdA1+4eh/iZUkAQkqehYy+2:8+EeF9Qpy
                                                                                                                                                                                                                                                                      MD5:D4551BAF077C1F0A695E4CD86328C16D
                                                                                                                                                                                                                                                                      SHA1:6DF517FA71A3CC94E3D45B883D0D6C1841C30FB7
                                                                                                                                                                                                                                                                      SHA-256:6AFE431314D7F1A36C91C4E3175ED874F4A3DF646AC9BC0AFDB82417500B6999
                                                                                                                                                                                                                                                                      SHA-512:F2916BBE1AF0F5BC877801A0E4AA4444F7569D7BEF4E847F50174DE66682E12C9F447C08A4FBFD8A72AD6F7177ED349EA6EA086D9ED0D7D80316EC2D417CD299
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:L..................F.@.. ...$+.,....t...C7....v'&... w......................1....P.O. .:i.....+00.../C:\.....................1.....EW.I..PROGRA~1..t......O.IoY.M....B...............J.....\...P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VoY.M....L.....................p+j.G.o.o.g.l.e.....T.1.....EW.F..Chrome..>......CW.VoY.M....M......................O..C.h.r.o.m.e.....`.1.....EW.F..APPLIC~1..H......CW.VoY.M.............................A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.L .CHROME~1.EXE..R......CW.VoY.M...........................).c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............c......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:56:51 2023, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2689
                                                                                                                                                                                                                                                                      Entropy (8bit):4.0005304477146275
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:8kdoToVH7idAKZdA1404eh7sFiZUkmgqeh7s2y+BX:8nErIn0y
                                                                                                                                                                                                                                                                      MD5:B25BBC19B54F9E4A5DD258EA35EAE0E6
                                                                                                                                                                                                                                                                      SHA1:23189E0931A8BC5F07F693A24DF764D98911174D
                                                                                                                                                                                                                                                                      SHA-256:ACB6D1565EFF2DF8E7976FB8712EE303CB8E634D5DF1A3BC05A013DEE573D899
                                                                                                                                                                                                                                                                      SHA-512:0DFA85C3A32924D0244BBBAF99EAE8DED7D6CD4F3EB9296D87CCCC562E487F0B3BABC8AF961D5E196751A9BB819F9DEE3F6C8F54EA1FEF8828A8C6F369F59C03
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:L..................F.@.. ...$+.,.....<}.i.....v'&... w......................1....P.O. .:i.....+00.../C:\.....................1.....EW.I..PROGRA~1..t......O.IoY.M....B...............J.....\...P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VoY.M....L.....................p+j.G.o.o.g.l.e.....T.1.....EW.F..Chrome..>......CW.VoY.M....M......................O..C.h.r.o.m.e.....`.1.....EW.F..APPLIC~1..H......CW.VoY.M.............................A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.L .CHROME~1.EXE..R......CW.VEW.F...........................).c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............c......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Nov 15 08:45:30 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2677
                                                                                                                                                                                                                                                                      Entropy (8bit):3.988741020099988
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:8udoToNH7idAKZdA1p4ehDiZUkwqehMy+R:8REJ5uy
                                                                                                                                                                                                                                                                      MD5:97D1E037AE2B5E17B7E64AFB23DEACD7
                                                                                                                                                                                                                                                                      SHA1:3FB79D09B8B7EE9772DED7027C075CA9319F9618
                                                                                                                                                                                                                                                                      SHA-256:384CED88953AB1D9F710E72599C3A456FEB69A66F8F70FD61EC8A3F244E0A236
                                                                                                                                                                                                                                                                      SHA-512:ECBEA888C3BB4D8E3346FA7EB3446B70332E6FAA9989110D85B052B13152FE4CD3349BBB9AEC21AA438C188CD96B0E6CF4D6DD3499392DA706D090B2B5AEB07E
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:L..................F.@.. ...$+.,....b...C7....v'&... w......................1....P.O. .:i.....+00.../C:\.....................1.....EW.I..PROGRA~1..t......O.IoY.M....B...............J.....\...P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VoY.M....L.....................p+j.G.o.o.g.l.e.....T.1.....EW.F..Chrome..>......CW.VoY.M....M......................O..C.h.r.o.m.e.....`.1.....EW.F..APPLIC~1..H......CW.VoY.M.............................A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.L .CHROME~1.EXE..R......CW.VoY.M...........................).c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............c......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Nov 15 08:45:30 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2677
                                                                                                                                                                                                                                                                      Entropy (8bit):3.9770489961530555
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:80doToNH7idAKZdA1X4ehBiZUk1W1qehCy+C:8XE3b9iy
                                                                                                                                                                                                                                                                      MD5:196953C627B35AC3BAB0CD188E5C973A
                                                                                                                                                                                                                                                                      SHA1:3D12FC77858C7E9DF8069EDA0FD2E272EE37C5A0
                                                                                                                                                                                                                                                                      SHA-256:0A44616B78E641B0FB74D49786258A76A26C778826DC5B1BC987E70343EBCB96
                                                                                                                                                                                                                                                                      SHA-512:C694D95C151E685FC63A0CC0B8CDF55546DC4CBEDD4D8D61B0D1FA903244EA7D7DAD0C67235CC87054743F0139C71EE124BC24E17C07BB0254A4CCB7CC965580
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:L..................F.@.. ...$+.,....@/..C7....v'&... w......................1....P.O. .:i.....+00.../C:\.....................1.....EW.I..PROGRA~1..t......O.IoY.M....B...............J.....\...P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VoY.M....L.....................p+j.G.o.o.g.l.e.....T.1.....EW.F..Chrome..>......CW.VoY.M....M......................O..C.h.r.o.m.e.....`.1.....EW.F..APPLIC~1..H......CW.VoY.M.............................A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.L .CHROME~1.EXE..R......CW.VoY.M...........................).c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............c......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Nov 15 08:45:30 2024, atime=Wed Sep 27 08:36:55 2023, length=1210144, window=hide
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):2679
                                                                                                                                                                                                                                                                      Entropy (8bit):3.9829382002312683
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:8+doToNH7idAKZdA1duTc4ehOuTbbiZUk5OjqehOuTb0y+yT+:8BEwTcJTbxWOvTb0y7T
                                                                                                                                                                                                                                                                      MD5:77D892D60DC9444C8CAB775EA91BEBF4
                                                                                                                                                                                                                                                                      SHA1:9BD082A2F2272FEBD126A9BE4A5E19C208838B7A
                                                                                                                                                                                                                                                                      SHA-256:202A9758137B4C3955843CE5FDB527A088C0FFEBF7D275149CF9BFE79EFC3185
                                                                                                                                                                                                                                                                      SHA-512:8632E28FAE3787D1BFAF60F2BC211EB7175B62574B927887F6320133CC90BE48D1FC620968455F65382CD080A43FD56D0528EAAB4A00028CCEF194BBD8777CD2
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:L..................F.@.. ...$+.,....km..C7....v'&... w......................1....P.O. .:i.....+00.../C:\.....................1.....EW.I..PROGRA~1..t......O.IoY.M....B...............J.....\...P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VoY.M....L.....................p+j.G.o.o.g.l.e.....T.1.....EW.F..Chrome..>......CW.VoY.M....M......................O..C.h.r.o.m.e.....`.1.....EW.F..APPLIC~1..H......CW.VoY.M.............................A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.L .CHROME~1.EXE..R......CW.VoY.M...........................).c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............c......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):389
                                                                                                                                                                                                                                                                      Entropy (8bit):5.657490888095573
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:YKWSg99rrt+8Vmb1MQYHKKBqLXbe08sS27nwb:YKWfrrthMb1NScXdpzU
                                                                                                                                                                                                                                                                      MD5:599157BB390BF8B8F888C819C8393191
                                                                                                                                                                                                                                                                      SHA1:9F782A17347539613DCD0AE77ED90674EB7DD5E1
                                                                                                                                                                                                                                                                      SHA-256:A6EF9EB9CF45307C979EC6FC483F30B7AC67207998E9CFB0DD4164EC70995EC2
                                                                                                                                                                                                                                                                      SHA-512:114AA8B3681E4171529A70B67A8F199184839120ADA83F686FE3293084CF376C5C4354B42D7B2D2BADA0DAEBCB74973AB36DEA5729A9589D57AFD8206ABB3FB3
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"os_crypt":{"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADoAZWMG7P4Rq4Ga1w+azKiAAAAAAIAAAAAABBmAAAAAQAAIAAAAGm/SuyxYxipPna6jesK4k0Ofd/SF7zEmFejLQh1w2gXAAAAAA6AAAAAAgAAIAAAAHUsuR7Y3h6HdVob3C5IRk/Rp6VUevil7VkRDaBkj+HQMAAAAGzLBlsBh/EZgn+HyxZZfSJ7rnR7dgYCoMsfWwz/5q60L3Gvb3AacigEc9Xe0c7sE0AAAACQ6S0Nl3yA4W+HjHPli86vhWJ9K4WGObmj8emK/57ljxi8XBiFE5TKS+i7vZYiC7OiTUoFOY04fcCF459LPV1C"}}
                                                                                                                                                                                                                                                                      Process:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      File Type:JSON data
                                                                                                                                                                                                                                                                      Category:dropped
                                                                                                                                                                                                                                                                      Size (bytes):389
                                                                                                                                                                                                                                                                      Entropy (8bit):5.657490888095573
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:12:YKWSg99rrt+8Vmb1MQYHKKBqLXbe08sS27nwb:YKWfrrthMb1NScXdpzU
                                                                                                                                                                                                                                                                      MD5:599157BB390BF8B8F888C819C8393191
                                                                                                                                                                                                                                                                      SHA1:9F782A17347539613DCD0AE77ED90674EB7DD5E1
                                                                                                                                                                                                                                                                      SHA-256:A6EF9EB9CF45307C979EC6FC483F30B7AC67207998E9CFB0DD4164EC70995EC2
                                                                                                                                                                                                                                                                      SHA-512:114AA8B3681E4171529A70B67A8F199184839120ADA83F686FE3293084CF376C5C4354B42D7B2D2BADA0DAEBCB74973AB36DEA5729A9589D57AFD8206ABB3FB3
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      Preview:{"os_crypt":{"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAADoAZWMG7P4Rq4Ga1w+azKiAAAAAAIAAAAAABBmAAAAAQAAIAAAAGm/SuyxYxipPna6jesK4k0Ofd/SF7zEmFejLQh1w2gXAAAAAA6AAAAAAgAAIAAAAHUsuR7Y3h6HdVob3C5IRk/Rp6VUevil7VkRDaBkj+HQMAAAAGzLBlsBh/EZgn+HyxZZfSJ7rnR7dgYCoMsfWwz/5q60L3Gvb3AacigEc9Xe0c7sE0AAAACQ6S0Nl3yA4W+HjHPli86vhWJ9K4WGObmj8emK/57ljxi8XBiFE5TKS+i7vZYiC7OiTUoFOY04fcCF459LPV1C"}}
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with very long lines (2307)
                                                                                                                                                                                                                                                                      Category:downloaded
                                                                                                                                                                                                                                                                      Size (bytes):2312
                                                                                                                                                                                                                                                                      Entropy (8bit):5.87012044661849
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:48:tygKlgZ01iDMV+UpZy3L8ri61wazKSCbz7Jp7CNLYVtPKGTuSEqmQffffo:tyrlio9Zy3LWWaz7mz7J5C9YHPfcQffY
                                                                                                                                                                                                                                                                      MD5:AC900F130C44C6765A8267603A510080
                                                                                                                                                                                                                                                                      SHA1:75BA789DD541952BD2D9130EE9F785D4C20165BB
                                                                                                                                                                                                                                                                      SHA-256:5D3C6F7B2951E90C47BC0D2A7B7A6E1D72041164AFCDD2BB7BBA883417695B3F
                                                                                                                                                                                                                                                                      SHA-512:C5AD8BD2BAAA63108F20022D2F9EDD9441B9B3478CE63CDC82A35740EE9956F20DEE0C0CE32909505D48183DB429B5CCE8089BBC78BACEC6E4D51EC93D547404
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      URL:https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=20&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw
                                                                                                                                                                                                                                                                      Preview:)]}'.["",["stardew valley patch update","philadelphia phillies","emilia perez netflix","fbi investigation in portland ct","tropical storm hurricane sara","aurora borealis northern lights forecast","burger king fried pickle fries","my chemical romance black parade tour"],["","","","","","","",""],[],{"google:clientdata":{"bpc":false,"tlw":false},"google:groupsinfo":"ChgIkk4SEwoRVHJlbmRpbmcgc2VhcmNoZXM\u003d","google:suggestdetail":[{"zl":10002},{"google:entityinfo":"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
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text
                                                                                                                                                                                                                                                                      Category:downloaded
                                                                                                                                                                                                                                                                      Size (bytes):29
                                                                                                                                                                                                                                                                      Entropy (8bit):3.9353986674667634
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3:VQAOx/1n:VQAOd1n
                                                                                                                                                                                                                                                                      MD5:6FED308183D5DFC421602548615204AF
                                                                                                                                                                                                                                                                      SHA1:0A3F484AAA41A60970BA92A9AC13523A1D79B4D5
                                                                                                                                                                                                                                                                      SHA-256:4B8288C468BCFFF9B23B2A5FF38B58087CD8A6263315899DD3E249A3F7D4AB2D
                                                                                                                                                                                                                                                                      SHA-512:A2F7627379F24FEC8DC2C472A9200F6736147172D36A77D71C7C1916C0F8BDD843E36E70D43B5DC5FAABAE8FDD01DD088D389D8AE56ED1F591101F09135D02F5
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      URL:https://www.google.com/async/newtab_promos
                                                                                                                                                                                                                                                                      Preview:)]}'.{"update":{"promos":{}}}
                                                                                                                                                                                                                                                                      Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      File Type:ASCII text, with very long lines (65531)
                                                                                                                                                                                                                                                                      Category:downloaded
                                                                                                                                                                                                                                                                      Size (bytes):133042
                                                                                                                                                                                                                                                                      Entropy (8bit):5.434831794584402
                                                                                                                                                                                                                                                                      Encrypted:false
                                                                                                                                                                                                                                                                      SSDEEP:3072:fXkPdsBJT7bKwkztS6STFSz1nrmRSnXYK02i6o:fYdUW5c5Sz1nKRSnoK08o
                                                                                                                                                                                                                                                                      MD5:6404990D097A7171127FAB1B74E789B8
                                                                                                                                                                                                                                                                      SHA1:3C329EB44469BCB28BDDCDD81BC5E07D61CFA1F3
                                                                                                                                                                                                                                                                      SHA-256:FBAD240895528970919CB42E0FBA83B3E8D779994416CEBB14E5A3B57AD91C07
                                                                                                                                                                                                                                                                      SHA-512:FE625EE39FFD69A0C29BF07F2D2BD33B9D1D06FF333B27C423A26976689C8283F09847EBC92D844165529C0ED44C70EFCCB4E6E9D7FC34E8937BCB5A222676E4
                                                                                                                                                                                                                                                                      Malicious:false
                                                                                                                                                                                                                                                                      URL:https://www.google.com/async/newtab_ogb?hl=en-US&async=fixed:0
                                                                                                                                                                                                                                                                      Preview:)]}'.{"update":{"language_code":"en-US","ogb":{"html":{"private_do_not_access_or_else_safe_html_wrapped_value":"\u003cheader class\u003d\"gb_Ea gb_2d gb_Qe gb_qd\" id\u003d\"gb\" role\u003d\"banner\" style\u003d\"background-color:transparent\"\u003e\u003cdiv class\u003d\"gb_Pd\"\u003e\u003c\/div\u003e\u003cdiv class\u003d\"gb_kd gb_od gb_Fd gb_ld\"\u003e\u003cdiv class\u003d\"gb_wd gb_rd\"\u003e\u003cdiv class\u003d\"gb_Jc gb_Q\" aria-expanded\u003d\"false\" aria-label\u003d\"Main menu\" role\u003d\"button\" tabindex\u003d\"0\"\u003e\u003csvg focusable\u003d\"false\" viewbox\u003d\"0 0 24 24\"\u003e\u003cpath d\u003d\"M3 18h18v-2H3v2zm0-5h18v-2H3v2zm0-7v2h18V6H3z\"\u003e\u003c\/path\u003e\u003c\/svg\u003e\u003c\/div\u003e\u003cdiv class\u003d\"gb_Jc gb_Mc gb_Q\" aria-label\u003d\"Go back\" title\u003d\"Go back\" role\u003d\"button\" tabindex\u003d\"0\"\u003e\u003csvg focusable\u003d\"false\" viewbox\u003d\"0 0 24 24\"\u003e\u003cpath d\u003d\"M20 11H7.83l5.59-5.59L12 4l-8 8 8 8 1.41-1.
                                                                                                                                                                                                                                                                      File type:PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
                                                                                                                                                                                                                                                                      Entropy (8bit):7.999983986254452
                                                                                                                                                                                                                                                                      TrID:
                                                                                                                                                                                                                                                                      • Win32 Executable (generic) a (10002005/4) 99.96%
                                                                                                                                                                                                                                                                      • Generic Win/DOS Executable (2004/3) 0.02%
                                                                                                                                                                                                                                                                      • DOS Executable Generic (2002/1) 0.02%
                                                                                                                                                                                                                                                                      • Autodesk FLIC Image File (extensions: flc, fli, cel) (7/3) 0.00%
                                                                                                                                                                                                                                                                      File name:ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      File size:86'431'523 bytes
                                                                                                                                                                                                                                                                      MD5:140cfcf356cc2da4d739c1cababbe7b4
                                                                                                                                                                                                                                                                      SHA1:d40acf2d6ec434aea3f9a5cc510efa093b793180
                                                                                                                                                                                                                                                                      SHA256:1c2eb5275c7212c7e578deef9f8b305a6623ef2d92f49f2eb9d517801bff0c02
                                                                                                                                                                                                                                                                      SHA512:3beb1f67f91760856257d49038320bcfd352e1a1570422e60430d67da858ef0c2b6873c07297f55ddb8a253e560974d93cb3ab237f500baa733950cad3d8bc3f
                                                                                                                                                                                                                                                                      SSDEEP:1572864:qDJ39Kk9MTMh5/pCy5sbB8ceyIS7nqYdd6hIEhSmn6nlN/fFj:qWk9MT2/Uyyb/vP7nMhJnUXfN
                                                                                                                                                                                                                                                                      TLSH:57183348F20A5B69D213B9F1FBB4B4B5C9D0B2847CD3D0F26B642A86991CB117F524CB
                                                                                                                                                                                                                                                                      File Content Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........1...Pf..Pf..Pf.*_9..Pf..Pg.LPf.*_;..Pf..sV..Pf..V`..Pf.Rich.Pf.........................PE..L......\.................h...8...@.
                                                                                                                                                                                                                                                                      Icon Hash:0771ccf8d84d2907
                                                                                                                                                                                                                                                                      Entrypoint:0x40338f
                                                                                                                                                                                                                                                                      Entrypoint Section:.text
                                                                                                                                                                                                                                                                      Digitally signed:false
                                                                                                                                                                                                                                                                      Imagebase:0x400000
                                                                                                                                                                                                                                                                      Subsystem:windows gui
                                                                                                                                                                                                                                                                      Image File Characteristics:RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
                                                                                                                                                                                                                                                                      DLL Characteristics:DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
                                                                                                                                                                                                                                                                      Time Stamp:0x5C157F86 [Sat Dec 15 22:26:14 2018 UTC]
                                                                                                                                                                                                                                                                      TLS Callbacks:
                                                                                                                                                                                                                                                                      CLR (.Net) Version:
                                                                                                                                                                                                                                                                      OS Version Major:4
                                                                                                                                                                                                                                                                      OS Version Minor:0
                                                                                                                                                                                                                                                                      File Version Major:4
                                                                                                                                                                                                                                                                      File Version Minor:0
                                                                                                                                                                                                                                                                      Subsystem Version Major:4
                                                                                                                                                                                                                                                                      Subsystem Version Minor:0
                                                                                                                                                                                                                                                                      Import Hash:b34f154ec913d2d2c435cbd644e91687
                                                                                                                                                                                                                                                                      Instruction
                                                                                                                                                                                                                                                                      sub esp, 000002D4h
                                                                                                                                                                                                                                                                      push ebx
                                                                                                                                                                                                                                                                      push esi
                                                                                                                                                                                                                                                                      push edi
                                                                                                                                                                                                                                                                      push 00000020h
                                                                                                                                                                                                                                                                      pop edi
                                                                                                                                                                                                                                                                      xor ebx, ebx
                                                                                                                                                                                                                                                                      push 00008001h
                                                                                                                                                                                                                                                                      mov dword ptr [esp+14h], ebx
                                                                                                                                                                                                                                                                      mov dword ptr [esp+10h], 0040A2E0h
                                                                                                                                                                                                                                                                      mov dword ptr [esp+1Ch], ebx
                                                                                                                                                                                                                                                                      call dword ptr [004080A8h]
                                                                                                                                                                                                                                                                      call dword ptr [004080A4h]
                                                                                                                                                                                                                                                                      and eax, BFFFFFFFh
                                                                                                                                                                                                                                                                      cmp ax, 00000006h
                                                                                                                                                                                                                                                                      mov dword ptr [0047AEECh], eax
                                                                                                                                                                                                                                                                      je 00007FB9F873BDF3h
                                                                                                                                                                                                                                                                      push ebx
                                                                                                                                                                                                                                                                      call 00007FB9F873F0A5h
                                                                                                                                                                                                                                                                      cmp eax, ebx
                                                                                                                                                                                                                                                                      je 00007FB9F873BDE9h
                                                                                                                                                                                                                                                                      push 00000C00h
                                                                                                                                                                                                                                                                      call eax
                                                                                                                                                                                                                                                                      mov esi, 004082B0h
                                                                                                                                                                                                                                                                      push esi
                                                                                                                                                                                                                                                                      call 00007FB9F873F01Fh
                                                                                                                                                                                                                                                                      push esi
                                                                                                                                                                                                                                                                      call dword ptr [00408150h]
                                                                                                                                                                                                                                                                      lea esi, dword ptr [esi+eax+01h]
                                                                                                                                                                                                                                                                      cmp byte ptr [esi], 00000000h
                                                                                                                                                                                                                                                                      jne 00007FB9F873BDCCh
                                                                                                                                                                                                                                                                      push 0000000Ah
                                                                                                                                                                                                                                                                      call 00007FB9F873F078h
                                                                                                                                                                                                                                                                      push 00000008h
                                                                                                                                                                                                                                                                      call 00007FB9F873F071h
                                                                                                                                                                                                                                                                      push 00000006h
                                                                                                                                                                                                                                                                      mov dword ptr [0047AEE4h], eax
                                                                                                                                                                                                                                                                      call 00007FB9F873F065h
                                                                                                                                                                                                                                                                      cmp eax, ebx
                                                                                                                                                                                                                                                                      je 00007FB9F873BDF1h
                                                                                                                                                                                                                                                                      push 0000001Eh
                                                                                                                                                                                                                                                                      call eax
                                                                                                                                                                                                                                                                      test eax, eax
                                                                                                                                                                                                                                                                      je 00007FB9F873BDE9h
                                                                                                                                                                                                                                                                      or byte ptr [0047AEEFh], 00000040h
                                                                                                                                                                                                                                                                      push ebp
                                                                                                                                                                                                                                                                      call dword ptr [00408044h]
                                                                                                                                                                                                                                                                      push ebx
                                                                                                                                                                                                                                                                      call dword ptr [004082A0h]
                                                                                                                                                                                                                                                                      mov dword ptr [0047AFB8h], eax
                                                                                                                                                                                                                                                                      push ebx
                                                                                                                                                                                                                                                                      lea eax, dword ptr [esp+34h]
                                                                                                                                                                                                                                                                      push 000002B4h
                                                                                                                                                                                                                                                                      push eax
                                                                                                                                                                                                                                                                      push ebx
                                                                                                                                                                                                                                                                      push 00440208h
                                                                                                                                                                                                                                                                      call dword ptr [00408188h]
                                                                                                                                                                                                                                                                      push 0040A2C8h
                                                                                                                                                                                                                                                                      Programming Language:
                                                                                                                                                                                                                                                                      • [EXP] VC++ 6.0 SP5 build 8804
                                                                                                                                                                                                                                                                      NameVirtual AddressVirtual Size Is in Section
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_EXPORT0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_IMPORT0x86100xa0.rdata
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_RESOURCE0x19f0000x5970.rsrc
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_EXCEPTION0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_SECURITY0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_BASERELOC0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_DEBUG0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_COPYRIGHT0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_GLOBALPTR0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_TLS0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_IAT0x80000x2b0.rdata
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR0x00x0
                                                                                                                                                                                                                                                                      IMAGE_DIRECTORY_ENTRY_RESERVED0x00x0
                                                                                                                                                                                                                                                                      NameVirtual AddressVirtual SizeRaw SizeMD5Xored PEZLIB ComplexityFile TypeEntropyCharacteristics
                                                                                                                                                                                                                                                                      .text0x10000x66270x68007618d4c0cd8bb67ea9595b4266b3a91fFalse0.6646259014423077data6.450282348506287IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
                                                                                                                                                                                                                                                                      .rdata0x80000x14a20x1600eecac1fed9cc6b447d50940d178404d8False0.4405184659090909data5.025178929113415IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ
                                                                                                                                                                                                                                                                      .data0xa0000x70ff80x600db8f31a08a2242d80c29e1f9500c6527False0.5182291666666666data4.037117731448378IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
                                                                                                                                                                                                                                                                      .ndata0x7b0000x1240000x0d41d8cd98f00b204e9800998ecf8427eFalse0empty0.0IMAGE_SCN_CNT_UNINITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
                                                                                                                                                                                                                                                                      .rsrc0x19f0000x59700x5a00c0bbe6e0c3ab15aa4e0b896fa7f7ef89False0.49518229166666666data5.454346267886394IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ
                                                                                                                                                                                                                                                                      NameRVASizeTypeLanguageCountryZLIB Complexity
                                                                                                                                                                                                                                                                      RT_ICON0x19f5c80x10a8Device independent bitmap graphic, 32 x 64 x 32, image size 4224EnglishUnited States0.7213883677298312
                                                                                                                                                                                                                                                                      RT_ICON0x1a06700xea8Device independent bitmap graphic, 48 x 96 x 8, image size 2688, 256 important colorsEnglishUnited States0.6751066098081023
                                                                                                                                                                                                                                                                      RT_ICON0x1a15180x8a8Device independent bitmap graphic, 32 x 64 x 8, image size 1152, 256 important colorsEnglishUnited States0.7851985559566786
                                                                                                                                                                                                                                                                      RT_ICON0x1a1dc00x568Device independent bitmap graphic, 16 x 32 x 8, image size 320, 256 important colorsEnglishUnited States0.6560693641618497
                                                                                                                                                                                                                                                                      RT_ICON0x1a23280x468Device independent bitmap graphic, 16 x 32 x 32, image size 1088EnglishUnited States0.8031914893617021
                                                                                                                                                                                                                                                                      RT_ICON0x1a27900x2e8Device independent bitmap graphic, 32 x 64 x 4, image size 640EnglishUnited States0.3118279569892473
                                                                                                                                                                                                                                                                      RT_ICON0x1a2a780x128Device independent bitmap graphic, 16 x 32 x 4, image size 192EnglishUnited States0.36824324324324326
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a2ba00x202dataEnglishUnited States0.4085603112840467
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a2da80xf8dataEnglishUnited States0.6290322580645161
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a2ea00xeedataEnglishUnited States0.6260504201680672
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a2f900x1fadataEnglishUnited States0.40118577075098816
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a31900xf0dataEnglishUnited States0.6666666666666666
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a32800xe6dataEnglishUnited States0.6565217391304348
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a33680x1eedataEnglishUnited States0.38866396761133604
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a35580xe4dataEnglishUnited States0.6447368421052632
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a36400xdadataEnglishUnited States0.6422018348623854
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a37200x1eedataEnglishUnited States0.3866396761133603
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a39100xe4dataEnglishUnited States0.6359649122807017
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a39f80xdadataEnglishUnited States0.6376146788990825
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a3ad80x1f2dataEnglishUnited States0.39759036144578314
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a3cd00xe8dataEnglishUnited States0.6508620689655172
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a3db80xdedataEnglishUnited States0.6486486486486487
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a3e980x202dataEnglishUnited States0.42217898832684825
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a40a00xf8dataEnglishUnited States0.6653225806451613
                                                                                                                                                                                                                                                                      RT_DIALOG0x1a41980xeedataEnglishUnited States0.6512605042016807
                                                                                                                                                                                                                                                                      RT_GROUP_ICON0x1a42880x68dataEnglishUnited States0.6634615384615384
                                                                                                                                                                                                                                                                      RT_VERSION0x1a42f00x254dataEnglishUnited States0.47818791946308725
                                                                                                                                                                                                                                                                      RT_MANIFEST0x1a45480x423XML 1.0 document, ASCII text, with very long lines (1059), with no line terminatorsEnglishUnited States0.5127478753541076
                                                                                                                                                                                                                                                                      DLLImport
                                                                                                                                                                                                                                                                      KERNEL32.dllSetEnvironmentVariableW, SetFileAttributesW, Sleep, GetTickCount, GetFileSize, GetModuleFileNameW, GetCurrentProcess, CopyFileW, SetCurrentDirectoryW, GetFileAttributesW, GetWindowsDirectoryW, GetTempPathW, GetCommandLineW, GetVersion, SetErrorMode, lstrlenW, lstrcpynW, GetDiskFreeSpaceW, ExitProcess, GetShortPathNameW, CreateThread, GetLastError, CreateDirectoryW, CreateProcessW, RemoveDirectoryW, lstrcmpiA, CreateFileW, GetTempFileNameW, WriteFile, lstrcpyA, MoveFileExW, lstrcatW, GetSystemDirectoryW, GetProcAddress, GetModuleHandleA, GetExitCodeProcess, WaitForSingleObject, lstrcmpiW, MoveFileW, GetFullPathNameW, SetFileTime, SearchPathW, CompareFileTime, lstrcmpW, CloseHandle, ExpandEnvironmentStringsW, GlobalFree, GlobalLock, GlobalUnlock, GlobalAlloc, FindFirstFileW, FindNextFileW, DeleteFileW, SetFilePointer, ReadFile, FindClose, lstrlenA, MulDiv, MultiByteToWideChar, WideCharToMultiByte, GetPrivateProfileStringW, WritePrivateProfileStringW, FreeLibrary, LoadLibraryExW, GetModuleHandleW
                                                                                                                                                                                                                                                                      USER32.dllGetSystemMenu, SetClassLongW, EnableMenuItem, IsWindowEnabled, SetWindowPos, GetSysColor, GetWindowLongW, SetCursor, LoadCursorW, CheckDlgButton, GetMessagePos, LoadBitmapW, CallWindowProcW, IsWindowVisible, CloseClipboard, SetClipboardData, EmptyClipboard, OpenClipboard, ScreenToClient, GetWindowRect, GetDlgItem, GetSystemMetrics, SetDlgItemTextW, GetDlgItemTextW, MessageBoxIndirectW, CharPrevW, CharNextA, wsprintfA, DispatchMessageW, PeekMessageW, ReleaseDC, EnableWindow, InvalidateRect, SendMessageW, DefWindowProcW, BeginPaint, GetClientRect, FillRect, DrawTextW, EndDialog, RegisterClassW, SystemParametersInfoW, CreateWindowExW, GetClassInfoW, DialogBoxParamW, CharNextW, ExitWindowsEx, DestroyWindow, GetDC, SetTimer, SetWindowTextW, LoadImageW, SetForegroundWindow, ShowWindow, IsWindow, SetWindowLongW, FindWindowExW, TrackPopupMenu, AppendMenuW, CreatePopupMenu, EndPaint, CreateDialogParamW, SendMessageTimeoutW, wsprintfW, PostQuitMessage
                                                                                                                                                                                                                                                                      GDI32.dllSelectObject, SetBkMode, CreateFontIndirectW, SetTextColor, DeleteObject, GetDeviceCaps, CreateBrushIndirect, SetBkColor
                                                                                                                                                                                                                                                                      SHELL32.dllSHGetSpecialFolderLocation, ShellExecuteExW, SHGetPathFromIDListW, SHBrowseForFolderW, SHGetFileInfoW, SHFileOperationW
                                                                                                                                                                                                                                                                      ADVAPI32.dllAdjustTokenPrivileges, RegCreateKeyExW, RegOpenKeyExW, SetFileSecurityW, OpenProcessToken, LookupPrivilegeValueW, RegEnumValueW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegSetValueExW, RegQueryValueExW, RegEnumKeyW
                                                                                                                                                                                                                                                                      COMCTL32.dllImageList_Create, ImageList_AddMasked, ImageList_Destroy
                                                                                                                                                                                                                                                                      ole32.dllOleUninitialize, OleInitialize, CoTaskMemFree, CoCreateInstance
                                                                                                                                                                                                                                                                      Language of compilation systemCountry where language is spokenMap
                                                                                                                                                                                                                                                                      EnglishUnited States
                                                                                                                                                                                                                                                                      TimestampSource PortDest PortSource IPDest IP
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:46.396714926 CET49675443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:46.396826029 CET49676443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:46.678152084 CET49674443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:50.459342957 CET49677443192.168.2.920.189.173.11
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:56.006103992 CET49675443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:56.006113052 CET49676443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:56.287349939 CET49674443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:58.077567101 CET4434970823.206.229.209192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:44:58.077671051 CET49708443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:05.639683008 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:05.639731884 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:05.639802933 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:05.641660929 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:05.641676903 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:06.474474907 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:06.474580050 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:06.574179888 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:06.574239016 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:06.574723005 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:06.615459919 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.496984005 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.539328098 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763077021 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763107061 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763118029 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763134003 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763156891 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763180017 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763220072 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763237953 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763262033 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763832092 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763886929 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.763895035 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.764882088 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:07.764928102 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:08.437443972 CET49711443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:08.437478065 CET4434971120.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:23.191049099 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:23.191096067 CET4434971572.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:23.195050001 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:23.291043997 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:23.291069031 CET4434971572.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.127476931 CET4434971572.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.128485918 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.128506899 CET4434971572.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.130851984 CET4434971572.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.130914927 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.143703938 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.143819094 CET4434971572.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.144150019 CET4434971572.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.144243002 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.144417048 CET49715443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.184745073 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.184792042 CET4434971672.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.184859037 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.223241091 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:24.223262072 CET4434971672.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.046005011 CET4434971672.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.046438932 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.046464920 CET4434971672.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.047486067 CET4434971672.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.047550917 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.048688889 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.048727989 CET4434971672.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.048844099 CET4434971672.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.048860073 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.048903942 CET49716443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.050523043 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.050570965 CET4434971772.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.050637007 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.051065922 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.051085949 CET4434971772.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.871539116 CET4434971772.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.873120070 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.873162985 CET4434971772.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.874056101 CET4434971772.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.874140978 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.874859095 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.874907017 CET4434971772.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.875010014 CET4434971772.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.875081062 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.875081062 CET49717443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.930802107 CET49718443192.168.2.9108.181.20.35
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.930847883 CET44349718108.181.20.35192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.931102037 CET49718443192.168.2.9108.181.20.35
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.931240082 CET49718443192.168.2.9108.181.20.35
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.931246042 CET44349718108.181.20.35192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.638634920 CET44349718108.181.20.35192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.639112949 CET49718443192.168.2.9108.181.20.35
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.639137030 CET44349718108.181.20.35192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.640167952 CET44349718108.181.20.35192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.640247107 CET49718443192.168.2.9108.181.20.35
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.641804934 CET49718443192.168.2.9108.181.20.35
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.641846895 CET44349718108.181.20.35192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:27.641915083 CET49718443192.168.2.9108.181.20.35
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.156097889 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.156135082 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.159121037 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.159447908 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.159461975 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.331974983 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.332025051 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.335191965 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.336482048 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.336508036 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.029012918 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.029062986 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.029133081 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.029681921 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.029692888 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.043021917 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.043375969 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.043401003 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.044424057 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.045913935 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.046299934 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.046299934 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.046313047 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.046370983 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.094043970 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.094072104 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.105477095 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.105528116 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.105585098 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.105815887 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.105827093 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.142273903 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.184667110 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.187047005 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.187069893 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.188206911 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.188262939 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.189191103 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.189191103 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.189243078 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.233151913 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.233176947 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.282341003 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.315898895 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.315988064 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.316149950 CET44349723142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.316189051 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.316189051 CET49723443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.332921982 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.332976103 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.333034039 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.333051920 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.377015114 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.377031088 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.378287077 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.378523111 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.378750086 CET44349721142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.378803015 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.378803968 CET49721443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.904376030 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.904679060 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.904705048 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.905909061 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.905975103 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.906364918 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.906428099 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.906495094 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.951165915 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.951329947 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.960717916 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.960736990 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.961199045 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.961220980 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.962403059 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.962462902 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.962750912 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.962812901 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.962881088 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.003333092 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.006886959 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.006936073 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.006967068 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.060332060 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222613096 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222667933 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222695112 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222723007 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222738028 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222748995 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222763062 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222763062 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222820997 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.222832918 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.227746010 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.231700897 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.231766939 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.231774092 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.267380953 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.267399073 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.280889034 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.280962944 CET44349725142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.281009912 CET49725443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.283251047 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.283262014 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.327668905 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.341152906 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.341214895 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.341295958 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.341301918 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.352921963 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.352988958 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.352993965 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.357248068 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.357322931 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.357328892 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.366688013 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.366745949 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.366750956 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.419713020 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.419742107 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.459777117 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.459834099 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.459948063 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.459974051 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.460395098 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.471293926 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.475862980 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.475943089 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.475951910 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.475977898 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.476207018 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.485243082 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.517184973 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.517302990 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.517343998 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.517374992 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.517744064 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.578263998 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.578455925 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.578552961 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.578584909 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.591598034 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.591996908 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.592006922 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.597795010 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.598491907 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.598500013 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.603885889 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.604125977 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.604135990 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.644299030 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.644309044 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.682321072 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.682742119 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.682764053 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.697319984 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.698187113 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.698195934 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.710622072 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.711019993 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.711025953 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.716559887 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.717276096 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.717297077 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.722603083 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.722636938 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.722682953 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.722728968 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.722728968 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.722738028 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.770684004 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.800992012 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.815922022 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.815993071 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.816173077 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.816198111 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.816586971 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.829096079 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.835602045 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.839221954 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.839235067 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841339111 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841378927 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841412067 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841440916 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841443062 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841455936 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841470003 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.841573954 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.919431925 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.934706926 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.934783936 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.934787035 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.934808016 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.935122967 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.947688103 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.947829962 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.948097944 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.948112965 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960117102 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960154057 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960182905 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960189104 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960201025 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960251093 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960282087 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960357904 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960364103 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960370064 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:31.960431099 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.037933111 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.053832054 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.053935051 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.053946972 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.053971052 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.054078102 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.067260027 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079205036 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079242945 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079267025 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079277992 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079288960 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079346895 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079355955 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079390049 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079399109 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.079404116 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.082041979 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.082047939 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.123971939 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.156825066 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.157037020 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.157511950 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.157540083 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.171842098 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.175381899 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.175395966 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.185154915 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.187122107 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.187130928 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.197392941 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.197571993 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.197603941 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.199064970 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.244851112 CET49724443192.168.2.9142.250.186.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:32.244883060 CET44349724142.250.186.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.398108006 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.398163080 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.398225069 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.398905993 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.398926020 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.987868071 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.987914085 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.988092899 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.006885052 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.050935984 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.050951004 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.052537918 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.052640915 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.055731058 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.055747986 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.086004019 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.086225033 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.086796999 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.086817026 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.163116932 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.196166039 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.196228981 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.196491003 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.196855068 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.196871996 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.214864969 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.214946985 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.215029001 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.215630054 CET49728443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.215652943 CET44349728162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.613657951 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.613709927 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.614126921 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.614994049 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.615010977 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.798202038 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.798645973 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.798676014 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.801862001 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.801937103 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.802351952 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.802423000 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.802545071 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.802555084 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.930258036 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.930429935 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.930496931 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.930537939 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.961257935 CET49736443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:34.961277008 CET44349736162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.127810955 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.128201008 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.128209114 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.129885912 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.130084991 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.132373095 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.132466078 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.132834911 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.132847071 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.275302887 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.367613077 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.475045919 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.477013111 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.477082968 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.478058100 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.628477097 CET49729443192.168.2.994.245.104.56
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.628510952 CET4434972994.245.104.56192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.684386015 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.684456110 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.875703096 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.875724077 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.876095057 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.878025055 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.878072023 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.878101110 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.245923996 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.245933056 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.245970964 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.245995998 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.246014118 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.246028900 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.251429081 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.251444101 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.251652002 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.251697063 CET4434973740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.251737118 CET49737443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.576658010 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.576703072 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.576822042 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.577325106 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.577334881 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.630096912 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.630273104 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.643451929 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.643466949 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.643732071 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.644431114 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.644431114 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:37.644452095 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.029305935 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.029340982 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.029392958 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.029402971 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.029419899 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.029454947 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.031117916 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.031133890 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.031279087 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.031311035 CET4434974240.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.031358004 CET49742443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.097047091 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.097100973 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.097237110 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.097414017 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.097428083 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.641032934 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.641088009 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.641429901 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.641441107 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.641469955 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.641495943 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.642096043 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.642111063 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.642225981 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.642236948 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.799734116 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.799772978 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.800007105 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.821187973 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.821209908 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.151329041 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.157493114 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.157520056 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.159145117 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.159152985 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.159389019 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.159400940 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.161351919 CET49752443192.168.2.918.244.18.38
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.161376953 CET4434975218.244.18.38192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.161627054 CET49752443192.168.2.918.244.18.38
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.162069082 CET49752443192.168.2.918.244.18.38
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.162082911 CET4434975218.244.18.38192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.246336937 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.246800900 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.246820927 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.247826099 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.247904062 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.250529051 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.250629902 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.250900030 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.250906944 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.277976990 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.278274059 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.278301001 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.279381037 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.279449940 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.281394958 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.281524897 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.281663895 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.281671047 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.374039888 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.374207973 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.380845070 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.380913973 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.381063938 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.381552935 CET49748443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.381578922 CET44349748162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.412671089 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.412744999 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.412803888 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.414177895 CET49747443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.414200068 CET44349747172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.448127985 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.485224962 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.485253096 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.486581087 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.487050056 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.490020037 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.490097046 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.491050959 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.491069078 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.563988924 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.569004059 CET49762443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.569048882 CET44349762162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.569190025 CET49762443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.569560051 CET49762443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.569571018 CET44349762162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.626127005 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.626204967 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.626260042 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.626775026 CET49749443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.626792908 CET44349749162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.809348106 CET49763443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.809393883 CET44349763172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.809510946 CET49763443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.809743881 CET49764443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.809782982 CET44349764172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.809828043 CET49764443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.810275078 CET49763443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.810293913 CET44349763172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.810431957 CET49764443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.810445070 CET44349764172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.874735117 CET49765443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.874784946 CET44349765172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.874861956 CET49765443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.875554085 CET49766443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.875598907 CET44349766172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.875768900 CET49765443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.875785112 CET44349765172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.875793934 CET49766443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.876369953 CET49766443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.876382113 CET44349766172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.924840927 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.924868107 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.924896002 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.924952984 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.924973011 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.925638914 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.925651073 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.925730944 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.925770998 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.925805092 CET4434974540.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.925856113 CET49745443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.956722021 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.956770897 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.956855059 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.957031012 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.957041979 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.995244980 CET4434975218.244.18.38192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.995474100 CET49752443192.168.2.918.244.18.38
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.995487928 CET4434975218.244.18.38192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.996484995 CET4434975218.244.18.38192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.996551991 CET49752443192.168.2.918.244.18.38
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.001410961 CET49763443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.001506090 CET49764443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.001575947 CET49765443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.001643896 CET49766443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.002017975 CET49752443192.168.2.918.244.18.38
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.002059937 CET4434975218.244.18.38192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.002109051 CET49752443192.168.2.918.244.18.38
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003115892 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003149986 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003247976 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003451109 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003494024 CET49762443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003494978 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003854036 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.003990889 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.004003048 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.004071951 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.005089045 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.005098104 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.005259037 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.005273104 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.005552053 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.005558968 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.043327093 CET44349765172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.043334007 CET44349766172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.043334007 CET44349763172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.043364048 CET44349764172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.047323942 CET44349762162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.165946007 CET44349762162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.166019917 CET49762443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220319033 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220365047 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220465899 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220490932 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220558882 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220628023 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220705986 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220743895 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.220968008 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.221704006 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.221719027 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.221838951 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.221869946 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.221993923 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.222008944 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.243830919 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.243860006 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.243992090 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.244285107 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.244293928 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.514483929 CET44349765172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.514595032 CET49765443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.514611959 CET44349765172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.514662981 CET49765443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.521255970 CET44349763172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.521321058 CET49763443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.525513887 CET44349764172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.525590897 CET49764443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.536432981 CET44349766172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.536494970 CET49766443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.619213104 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.619591951 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.619609118 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.619972944 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.621227026 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.621339083 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.621473074 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.624927044 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.625714064 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.625741959 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.626164913 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.626450062 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.626508951 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.626579046 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.626735926 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.626893044 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.626902103 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.627228022 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.628635883 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.628699064 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.628839016 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.663337946 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.665373087 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.667336941 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.671334028 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.748616934 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.748698950 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.748923063 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.749428034 CET49769443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.749449015 CET44349769162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.756232977 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.756308079 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.756365061 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.756560087 CET49768443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.756577969 CET44349768162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.757846117 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.757930040 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.758013964 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.758093119 CET49770443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.758100033 CET44349770162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.822946072 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.823942900 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.823976994 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.823978901 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.825005054 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.825059891 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.833405972 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.842348099 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.842361927 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.842716932 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.842740059 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.843488932 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.843545914 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.843925953 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.843993902 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.846801043 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.846936941 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847009897 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847089052 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847140074 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847217083 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847404003 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847425938 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847522020 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847536087 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847568989 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.847580910 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.922086954 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.922842026 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.922852039 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.974697113 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.974996090 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.975018024 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.976106882 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.976183891 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.978028059 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.978094101 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.978621960 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.978627920 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.001106977 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.003047943 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.003068924 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.003534079 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.003542900 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.003765106 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.003774881 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.030308962 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.105252028 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106292963 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106302977 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106316090 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106324911 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106362104 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106381893 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106396914 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106415987 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.106437922 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.117062092 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.117096901 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.117106915 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.117125034 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.117141008 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.117153883 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.119050026 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.119050980 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.119075060 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.119350910 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.140969992 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.140999079 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141005993 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141030073 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141041994 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141052008 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141093969 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141144991 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141171932 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.141200066 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.142127991 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.142203093 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.142213106 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143465042 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143492937 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143501043 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143517971 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143532991 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143539906 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143572092 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143646002 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143686056 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.143712044 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.144478083 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.144551992 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.144566059 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.160352945 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.160366058 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.161833048 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.161859035 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.188430071 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.188474894 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.204018116 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263216019 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263231039 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263248920 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263257027 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263293028 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263358116 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263391018 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.263413906 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.300833941 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.300844908 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.300879955 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.300906897 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.300962925 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.301012993 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.301038027 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.303102970 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.309921026 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.309942007 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.309962034 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.309971094 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.310141087 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.310141087 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.310177088 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.311176062 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.312447071 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.351123095 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.351157904 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.351336956 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.351336956 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.351377964 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.372389078 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.372454882 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.372584105 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.372601986 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.372805119 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.378305912 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.378314018 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.378351927 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.378391027 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.378437042 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.378453970 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.378513098 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.380628109 CET49777443192.168.2.9152.195.19.97
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.380656004 CET44349777152.195.19.97192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.393471956 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.445445061 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.445445061 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.445477009 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.445877075 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.445966005 CET4434976740.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.446983099 CET49767443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468199968 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468224049 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468260050 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468293905 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468306065 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468374968 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468383074 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.468416929 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.495596886 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.495626926 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.495692015 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.495727062 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.495750904 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.495774031 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500214100 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500251055 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500296116 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500329018 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500339031 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500368118 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500382900 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500406027 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.500425100 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502572060 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502624035 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502639055 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502651930 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502664089 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502682924 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502705097 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502713919 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.502751112 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.528006077 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.528043985 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.528100967 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.528351068 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.528363943 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.584491968 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.584517002 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.584582090 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.584599972 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.584635019 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.584836006 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.612668991 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.612698078 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.612763882 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.612798929 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.612821102 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.612844944 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.621629000 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.621666908 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.621712923 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.621728897 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.621757984 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.660335064 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.660377979 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.660593987 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.660900116 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.660912037 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.674273014 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.680984974 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.681037903 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.681102991 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.681314945 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.681324959 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.701798916 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.701831102 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.701879025 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.701903105 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.701920986 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.701944113 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730076075 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730115891 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730150938 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730185986 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730206966 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730206966 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730240107 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730271101 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730601072 CET49772443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.730618954 CET4434977223.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740797043 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740808964 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740838051 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740869045 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740871906 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740910053 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740927935 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.740952969 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.818216085 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.818244934 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.818289042 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.818303108 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.818351984 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.831238031 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.831280947 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.831343889 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.831548929 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.831558943 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.858617067 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.858644962 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.858700037 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.858735085 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.858753920 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.858776093 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.934609890 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.934643030 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.934726000 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.934739113 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.934743881 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.934786081 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.935363054 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.935487032 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.935496092 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.977685928 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.977709055 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.977761984 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.977785110 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.977807045 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.977823973 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.978246927 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.978291035 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.982347012 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.026218891 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.026313066 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.026386976 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.026669979 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.026705980 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.052058935 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.052077055 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.052124977 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.052134991 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.052195072 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.052212000 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.052254915 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.054306984 CET49785443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.054351091 CET4434978523.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.054415941 CET49785443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.054645061 CET49785443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.054656982 CET4434978523.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.095185041 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.095276117 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.095294952 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.097131968 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.097161055 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.097198963 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.097214937 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.097248077 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.097258091 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.097263098 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.136387110 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.142435074 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.142508030 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.142513990 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.142543077 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.142576933 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.151592970 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.151861906 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.151931047 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.152353048 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.152368069 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.152441025 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.152465105 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.152530909 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.153080940 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.155446053 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.155544996 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.155672073 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.155680895 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169528961 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169562101 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169609070 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169610023 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169636965 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169671059 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169687033 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169729948 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.169739008 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.182760954 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.198512077 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.210315943 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.217168093 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.217181921 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.217246056 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.217266083 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.272315025 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.280596972 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.280647039 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.280675888 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.280694962 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.280705929 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.280719995 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.280751944 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.281238079 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.281263113 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.281275988 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.281289101 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.281330109 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.281563997 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285563946 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285578012 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285618067 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285640001 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285657883 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285672903 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285685062 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.285712957 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.323231936 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.323251009 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336285114 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336297035 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336325884 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336335897 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336363077 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336385012 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336401939 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.336443901 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.338016987 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.338025093 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.338076115 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.338100910 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.338107109 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.364003897 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.369554996 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.369844913 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.369868040 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.370417118 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376224995 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376251936 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376291037 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376302958 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376343966 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376360893 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376527071 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376648903 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376722097 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376735926 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.376780987 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.381911993 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397428036 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397501945 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397536993 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397568941 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397597075 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397600889 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397617102 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397627115 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.397660017 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.398276091 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.398468018 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.398710012 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.398721933 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.445759058 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.445827961 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.445854902 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.445874929 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.445931911 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.445938110 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.451395988 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.451425076 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455688000 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455702066 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455734015 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455748081 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455771923 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455801964 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455828905 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.455845118 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.457448006 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.457458973 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.457532883 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.457542896 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.497626066 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.497632027 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.498017073 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514518023 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514602900 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514632940 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514662981 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514689922 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514714956 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514748096 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.514790058 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.515258074 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519511938 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519529104 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519562006 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519603014 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519603968 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519623041 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519659042 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519692898 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.540491104 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.556436062 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.556478977 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.556505919 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.556505919 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.556535006 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.556550980 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.562732935 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.562776089 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.562822104 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.562834024 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.562879086 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.570430994 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.570516109 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.570631027 CET49782443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.570650101 CET4434978220.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.575259924 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.575272083 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.575287104 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.575306892 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.575331926 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.575344086 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.575391054 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.576718092 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.576725960 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.576772928 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.576780081 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.600806952 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.601049900 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.601075888 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.602093935 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.602160931 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.603275061 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.603343010 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.603503942 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.608625889 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.624219894 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.631324053 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.631402016 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.631429911 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.631457090 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.631503105 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.631513119 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.632224083 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.632251024 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.632276058 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.632282019 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.632323027 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.636722088 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.636746883 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.636833906 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.636846066 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.636915922 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.647336006 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.654566050 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.654597998 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.664792061 CET4434978523.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.665065050 CET49785443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.665092945 CET4434978523.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.665451050 CET4434978523.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.665838957 CET49785443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.665905952 CET4434978523.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.673084021 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.673145056 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.673216105 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.673243999 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.694559097 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.694572926 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.694591045 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.694597960 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.694637060 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.694649935 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.694690943 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.696186066 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.696193933 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.696254969 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.696265936 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.700970888 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.716279984 CET49785443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.716284037 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.718437910 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.724380970 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.724380970 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.724406958 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.724412918 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.724431992 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.724442005 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.747250080 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748326063 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748390913 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748425007 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748454094 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748456955 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748491049 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748492002 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748579979 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748608112 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748661041 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748672962 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748934031 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748990059 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.748996019 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.749068022 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.752568007 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.752595901 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.752813101 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.752813101 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.752842903 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.755332947 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.756004095 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.756239891 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.756273985 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.757342100 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.757416010 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.757762909 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.757838964 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.757936954 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.790056944 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.790102959 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.790179014 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.790209055 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.795866966 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.795898914 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.796328068 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.796328068 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.796351910 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.797499895 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.799330950 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.808856964 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.808886051 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.814915895 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.814948082 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.814992905 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.815006018 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.815011978 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.815077066 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.815090895 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.815346003 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.816469908 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.816502094 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.816560984 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.816570044 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.839287996 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.854595900 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860199928 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860219002 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860229015 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860260963 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860268116 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860275984 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860302925 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860326052 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860352993 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860373020 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860486984 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860513926 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860521078 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860549927 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860569954 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.860584021 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.865612984 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.865667105 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.865695953 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.865725040 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.865734100 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.865762949 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.865786076 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.866095066 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.866122961 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.866169930 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.866178036 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.867121935 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.867130041 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.870333910 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.870362043 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.871018887 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.871037006 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.871047974 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.871805906 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.906982899 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.907016993 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.907063961 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.907085896 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.907152891 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.913223982 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.913249016 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.913345098 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.913345098 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.913372993 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.913970947 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.914822102 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.933671951 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.933687925 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.933702946 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.933764935 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.933818102 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935776949 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935791016 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935806990 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935812950 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935859919 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935870886 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935885906 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.935909986 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982105970 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982162952 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982189894 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982213020 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982273102 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982301950 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982388020 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982567072 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982582092 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982609034 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982615948 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982640982 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982647896 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982655048 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982660055 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982662916 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982677937 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982709885 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.982774973 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.983856916 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.984358072 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.984364986 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.986469030 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.986494064 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.986848116 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.986866951 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.988276005 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.025170088 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.025204897 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.025235891 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.025252104 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.025290966 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.030482054 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.030505896 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.031047106 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.031065941 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.031117916 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.053461075 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.053474903 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.053541899 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.053555965 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.055180073 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.055200100 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.055262089 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.055269957 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.055905104 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.055968046 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.055982113 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095356941 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095376968 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095439911 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095473051 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095499992 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095515013 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095921993 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095928907 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.095953941 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.096093893 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.096122980 CET4434978140.126.31.73192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.096191883 CET49781443192.168.2.940.126.31.73
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.098687887 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.098778009 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.098808050 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.098867893 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.098891973 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.099097967 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.099191904 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.099564075 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.099591970 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.099725962 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.099733114 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.099778891 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.100661993 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.103874922 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.103902102 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.104207993 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.104207993 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.104222059 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.104334116 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.106020927 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.106048107 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.106127977 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.106154919 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.106479883 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.107912064 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.116655111 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.116700888 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.117830038 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.118002892 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.118019104 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141047001 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141091108 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141120911 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141140938 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141148090 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141165972 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141185999 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141210079 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.141216040 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.147330046 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.147358894 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.147454023 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.147454023 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.147465944 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.149266005 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.174870014 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.174901962 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.174948931 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.174959898 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.174989939 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.175004959 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.175012112 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.175076008 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.175133944 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.175199032 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.175206900 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186527967 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186554909 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186564922 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186575890 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186592102 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186603069 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186631918 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186671019 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186700106 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186707020 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.186724901 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.215883970 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.215944052 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.215969086 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.215990067 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.216044903 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.216067076 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.216128111 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.216171026 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.216330051 CET49780443192.168.2.9142.250.115.132
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.216341972 CET44349780142.250.115.132192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.216936111 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.219644070 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.220526934 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.220542908 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.229999065 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230026007 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230078936 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230087042 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230099916 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230115891 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230139971 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230163097 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.230249882 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.231412888 CET49783443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.231431961 CET4434978313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.260164976 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.263673067 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.263705015 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.263814926 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.263814926 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.263825893 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.264409065 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.265441895 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.265453100 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.267339945 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292629957 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292644978 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292664051 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292682886 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292709112 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292725086 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292761087 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.292778969 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294241905 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294298887 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294307947 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294842005 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294858932 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294899940 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294909000 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294925928 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294943094 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.294980049 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.295082092 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.297621012 CET49771443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.297640085 CET4434977123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.303369999 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.303383112 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.303404093 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.303448915 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.303488016 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.303507090 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.307113886 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.337187052 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.337215900 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.337280989 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.337286949 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.338283062 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.380345106 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.380465984 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.380477905 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.381433964 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.381449938 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.381640911 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.381649017 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.421425104 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.421447992 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.421529055 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.421608925 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.421647072 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.421648979 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.421672106 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.454509020 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.454638004 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.454638004 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.454653978 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.497268915 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.497298956 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.497419119 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.497420073 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.497440100 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.497997046 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.498105049 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.498115063 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.538321972 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.538367987 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.538412094 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.538485050 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.538527012 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.538762093 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.545883894 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571521044 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571557045 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571661949 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571661949 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571676970 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571716070 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571753025 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.571785927 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.613688946 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.613818884 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.613831043 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.614908934 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.614926100 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.614980936 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.614995003 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.615048885 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.655095100 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.655116081 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.655201912 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.655270100 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.655345917 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.658471107 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.687907934 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.689507008 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.689527988 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.730786085 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.730812073 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.730856895 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.730874062 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.730907917 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.731451988 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.731504917 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.731514931 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.771867037 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.771889925 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.771948099 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.771989107 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.772025108 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.772192001 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.781692982 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.789362907 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.804887056 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.804899931 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.804949999 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.804981947 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.804999113 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.805010080 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.805027008 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.805047989 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.805181980 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.805232048 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.805241108 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.829009056 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.829029083 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.829534054 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.829987049 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.830049038 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.835092068 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.835112095 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.835123062 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.847893000 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.847912073 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.847953081 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.847966909 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.848000050 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.848690987 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.848735094 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.848747015 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.888714075 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.888751984 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.888820887 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.888859987 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.888880968 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.889190912 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.896502972 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922071934 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922091961 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922120094 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922142029 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922157049 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922177076 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922189951 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.922218084 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.929397106 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.929419041 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.929471016 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.929506063 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.929528952 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.933125019 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.964518070 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.964638948 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.964694977 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965200901 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965245962 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965272903 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965281010 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965315104 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965699911 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965771914 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:43.965780973 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.007724047 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.038969994 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.038991928 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.039203882 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.039223909 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.039271116 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.045908928 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.045938015 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.046037912 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.046072960 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.046143055 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.081099033 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.081281900 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.081293106 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082123995 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082142115 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082176924 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082182884 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082211018 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082539082 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082591057 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.082597017 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123734951 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123759985 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123769045 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123780012 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123811007 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123847008 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123866081 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123886108 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.123908043 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.131119013 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.157013893 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.157035112 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.157098055 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.157108068 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.157144070 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.163397074 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.163418055 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.163481951 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.163501978 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.163525105 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.163542032 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.199193001 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.199268103 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.199289083 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200162888 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200180054 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200213909 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200222015 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200247049 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200592041 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200648069 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.200655937 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.243222952 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.243247032 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.243371010 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.243386984 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.243534088 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.250622988 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.273721933 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.273739100 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.273797989 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.273808002 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.273859978 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.279853106 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.279874086 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.279942989 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.279977083 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.279998064 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.281630039 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.315896034 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.315962076 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.315970898 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.316744089 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.316759109 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.316802979 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.316807985 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.316852093 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.317276955 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.317337990 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.317343950 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.317379951 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.321873903 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.321902990 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.321947098 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.321957111 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.322000027 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.322021008 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.331578016 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.332604885 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.359323978 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.359344959 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.359391928 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.359406948 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.359443903 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.389323950 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.389343977 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.389395952 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.389405966 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.389434099 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.389451027 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.396833897 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.396859884 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.396898031 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.396960020 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.396975040 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.397105932 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.428493977 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.431689978 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.431746006 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.431759119 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432281017 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432295084 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432329893 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432336092 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432380915 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432668924 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432722092 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432727098 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.432773113 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.441093922 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.441154003 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.476243019 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.476272106 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.476310968 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.476317883 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.476349115 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.476366043 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.505924940 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.505944014 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.506006956 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.506014109 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.506056070 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.506190062 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.506239891 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.506246090 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.511473894 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.512690067 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.512710094 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.512753963 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.512787104 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.512808084 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.512829065 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.548774004 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.548782110 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.548858881 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.548866987 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.548906088 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549160957 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549211979 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549218893 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549813032 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549827099 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549860954 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549865961 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.549895048 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590301037 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590318918 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590377092 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590393066 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590405941 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590426922 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590445995 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590485096 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.590497017 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.593391895 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.593416929 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.593620062 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.593628883 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.593664885 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.630692959 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.630714893 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.630778074 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.630865097 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.630917072 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.630917072 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.639565945 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.664351940 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.664366007 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.664397955 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.664426088 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.664439917 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.664467096 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.664484024 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.665680885 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.665738106 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.665744066 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.666218042 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.666234970 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.666254997 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.666260004 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.666299105 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.666874886 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.667027950 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.667035103 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.710069895 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.710093021 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.710131884 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.710149050 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.710189104 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.710189104 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.717998028 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739748001 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739773989 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739875078 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739875078 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739892006 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739918947 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739972115 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739972115 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.739978075 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.741122007 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.746629953 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.746654034 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.746723890 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.746758938 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.746810913 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.782545090 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.782569885 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.782651901 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.782653093 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.782664061 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.782795906 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.783267975 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.783330917 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.783335924 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.784023046 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.784038067 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.786047935 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.786056995 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.789439917 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.789462090 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.789510012 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.789544106 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.789575100 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.789589882 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.823575020 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.823641062 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.823652029 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.826641083 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.826668978 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.826709032 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.826725960 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.826769114 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.826769114 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.856663942 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.856692076 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.856750011 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.856760979 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.857095957 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.860601902 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.860644102 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.860671043 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.860682011 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.860726118 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.860726118 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.861206055 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.861243010 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.861280918 CET4434978920.25.227.174192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.861325026 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.861325026 CET49789443192.168.2.920.25.227.174
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.863501072 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.863535881 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.863569975 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.863580942 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.863610029 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.863627911 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.864156008 CET49784443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.864176035 CET4434978413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.898885965 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899008036 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899038076 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899674892 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899694920 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899720907 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899739981 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899744034 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899770975 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899813890 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.899828911 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.900067091 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.900074005 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.900732994 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.900764942 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.900834084 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.900834084 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.900841951 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.953526020 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.973184109 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.973206043 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.975342989 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.975362062 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.977504015 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.977560043 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.977952957 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.978364944 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:44.978379011 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.015849113 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026545048 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026563883 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026608944 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026618958 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026633978 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026644945 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026665926 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026695013 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026695013 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026840925 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026855946 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026887894 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026887894 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026896000 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026940107 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026940107 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.026968002 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.027333021 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.027342081 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.057419062 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.057446957 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.057490110 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.057506084 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.058945894 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.090528965 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.091048002 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.091065884 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.091217995 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.133836031 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.133845091 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.133934021 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.133999109 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.133999109 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134015083 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134579897 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134596109 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134634972 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134635925 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134641886 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134699106 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134699106 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134704113 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.134716988 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.139048100 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.139055967 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.173916101 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.173955917 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.173993111 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.174005985 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.174503088 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.206789970 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.206897974 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.206916094 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.249078989 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250329018 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250345945 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250390053 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250420094 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250423908 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250423908 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250436068 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250448942 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250449896 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250498056 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250507116 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250524998 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.250564098 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251178026 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251197100 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251254082 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251259089 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251297951 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251297951 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251569033 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251636982 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.251641989 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.252371073 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.252388000 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.252561092 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.252567053 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.293462038 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.293519020 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.293601990 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294034958 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294075012 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294141054 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294361115 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294373989 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294420958 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294562101 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294572115 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.294635057 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295053959 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295080900 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295109034 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295124054 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295428038 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295439959 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295548916 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295561075 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295753002 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295753002 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295783043 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295799017 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.295808077 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.300677061 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.323810101 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.323894978 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.323909044 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.365230083 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.365257978 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.365328074 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.365328074 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.365343094 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367460012 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367532969 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367542982 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367647886 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367664099 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367841959 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367849112 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367861032 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367916107 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.367924929 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368339062 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368357897 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368426085 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368426085 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368432999 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368900061 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368963003 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.368969917 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.421152115 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.440612078 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.440644026 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.440743923 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.440743923 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.440752983 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.440808058 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.482033014 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.482168913 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.482180119 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484371901 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484416008 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484478951 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484489918 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484504938 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484563112 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484635115 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.484642029 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485107899 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485148907 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485179901 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485188961 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485255957 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485305071 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485394955 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.485402107 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.524579048 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.524641037 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.524667978 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.524693012 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.524776936 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.557118893 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.557204008 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.557214975 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.598789930 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.598818064 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.598897934 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.598897934 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.598912001 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.600895882 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601001024 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601011992 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601381063 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601394892 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601464033 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601475000 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601490021 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601608038 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601658106 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.601664066 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602060080 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602077961 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602139950 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602148056 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602169991 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602408886 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602462053 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.602468014 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.654743910 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674299002 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674361944 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674390078 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674407005 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674427986 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674474001 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674479008 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674508095 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674550056 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674607992 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.674612999 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.708101988 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.708138943 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.708216906 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.708704948 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.708723068 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.709570885 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.709801912 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.709815979 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.710171938 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.710450888 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.710508108 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.710845947 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.717813969 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.717873096 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.717895985 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.717915058 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.717952013 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718003988 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718064070 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718070030 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718103886 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718415976 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718461990 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718486071 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718492031 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718518019 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718533993 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718578100 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718638897 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718645096 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718859911 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.718914986 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.719877958 CET49773443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.719896078 CET4434977323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.751328945 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.840150118 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.840223074 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.840266943 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.840284109 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.840370893 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.840413094 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.845015049 CET49791443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.845030069 CET4434979113.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.845597029 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.845628023 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.845710993 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.846369982 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:45.846384048 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.039053917 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.039309978 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.039333105 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.039967060 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040113926 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040148020 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040178061 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040211916 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040308952 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040324926 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040389061 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040399075 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040788889 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040796995 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.040843964 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041172981 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041241884 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041429996 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041482925 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041510105 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041601896 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041645050 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041697025 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.041924000 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042022943 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042036057 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042277098 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042341948 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042350054 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042373896 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042386055 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042509079 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042517900 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042619944 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042629004 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042718887 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.042723894 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.043554068 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.043610096 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.043885946 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.043942928 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.043992996 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.043998957 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.087330103 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.092637062 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.092658997 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.092663050 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.092860937 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.169353008 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.169373035 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.169426918 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.169435024 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.169527054 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.169648886 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.170958042 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.171040058 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.171104908 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.171113968 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.171159983 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.172880888 CET49796443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.172894955 CET4434979613.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.172923088 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.172972918 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173135042 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173141003 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173187971 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173398018 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173445940 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173583031 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173854113 CET49794443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.173872948 CET4434979413.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.174221039 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.174236059 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.177830935 CET49792443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.177836895 CET4434979213.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.190344095 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.190401077 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.190538883 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.190552950 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.190572023 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.190625906 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.191555023 CET49793443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.191570997 CET4434979313.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.439871073 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.439918995 CET4434980023.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.440009117 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.440216064 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.440224886 CET4434980023.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.472013950 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.472039938 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.472115993 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.472140074 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.472156048 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.472204924 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.473339081 CET49795443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.473365068 CET4434979513.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.528294086 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.528374910 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.530842066 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.530857086 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.531215906 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.535296917 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.576813936 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.577071905 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.577086926 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.577414989 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.578186035 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.578248024 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.578430891 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.579334021 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.619338989 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.718288898 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.718369007 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.718713999 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.747504950 CET49798443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.747528076 CET4434979813.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.806956053 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.806988001 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.807005882 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.807053089 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.807090998 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.807109118 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.807239056 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.808495045 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.808536053 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.808568954 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.808579922 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.808593035 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.810343981 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.810399055 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.819864035 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.819892883 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.819907904 CET49797443192.168.2.920.109.210.53
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.819912910 CET4434979720.109.210.53192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.916562080 CET49801443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.916604042 CET4434980172.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.916742086 CET49801443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.917042971 CET49801443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.917056084 CET4434980172.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.949615002 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.002480984 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.043203115 CET4434980023.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.087963104 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.088021040 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.088103056 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.088123083 CET4434980023.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.089385986 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.092048883 CET4434980023.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.092140913 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.135894060 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.158307076 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.158581972 CET4434980023.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.158797026 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.159017086 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.159255028 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.199335098 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.203147888 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.203174114 CET4434980023.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.248290062 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.294644117 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.294697046 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.294761896 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.294785023 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.294855118 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.294897079 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.350761890 CET49799443192.168.2.913.107.246.57
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.350785971 CET4434979913.107.246.57192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.748704910 CET4434980172.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.749171019 CET49801443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.749193907 CET4434980172.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.750797033 CET4434980172.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.750853062 CET49801443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.752273083 CET49801443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.752312899 CET4434980172.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.752361059 CET49801443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.767503023 CET49802443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.767538071 CET4434980272.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.767601013 CET49802443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.768498898 CET49802443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.768515110 CET4434980272.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.606579065 CET4434980272.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.609472036 CET49802443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.609487057 CET4434980272.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.610713005 CET4434980272.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.610819101 CET49802443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.611521959 CET49802443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.611588001 CET4434980272.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:48.611712933 CET49802443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.268141031 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.268205881 CET4434980372.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.268289089 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.268719912 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.268743992 CET4434980372.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.509752989 CET49785443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.509850025 CET49800443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.521689892 CET49708443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.521783113 CET49708443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.526828051 CET4434970823.206.229.209192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.526865959 CET4434970823.206.229.209192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.527882099 CET49804443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.527932882 CET4434980423.206.229.209192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.528397083 CET49804443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.528661966 CET49804443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.528681040 CET4434980423.206.229.209192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:50.802530050 CET49804443192.168.2.923.206.229.209
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.106756926 CET4434980372.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.107227087 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.107254028 CET4434980372.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.108326912 CET4434980372.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.108397007 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.110022068 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.110047102 CET4434980372.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.110156059 CET4434980372.145.3.21192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.110227108 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:51.110239983 CET49803443192.168.2.972.145.3.21
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:12.728688002 CET4434970413.107.246.45192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:12.729454994 CET4434970413.107.246.45192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:12.729520082 CET49704443192.168.2.913.107.246.45
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:12.750504017 CET49704443192.168.2.913.107.246.45
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:12.755517960 CET4434970413.107.246.45192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:29.222208977 CET49709443192.168.2.9184.28.90.27
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:29.228909969 CET44349709184.28.90.27192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:29.228997946 CET49709443192.168.2.9184.28.90.27
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:30.610600948 CET49710443192.168.2.9184.28.90.27
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:30.617563963 CET44349710184.28.90.27192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:46:30.617608070 CET49710443192.168.2.9184.28.90.27
                                                                                                                                                                                                                                                                      TimestampSource PortDest PortSource IPDest IP
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.916549921 CET5064853192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.928436041 CET53506481.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.064073086 CET53604071.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.142690897 CET5421253192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.143055916 CET5529853192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.155390024 CET53613371.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.155405045 CET53542121.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.155415058 CET53552981.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.386491060 CET53522051.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:30.865113974 CET138138192.168.2.9192.168.2.255
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.318558931 CET5483253192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.319010973 CET5969553192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.325603962 CET53548321.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.326100111 CET53596951.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.921143055 CET5886953192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.921355963 CET5885353192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.928400040 CET53588531.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.113909960 CET5863953192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.114146948 CET5840753192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.583503962 CET6075053192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.583648920 CET6515453192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.584280014 CET5270753192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.584639072 CET5871253192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.590369940 CET53651541.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.590393066 CET53607501.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.591214895 CET53527071.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.591640949 CET53587121.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.787631035 CET5337553192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.788304090 CET5366753192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.794409990 CET53533751.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.795141935 CET53536671.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.141495943 CET5660653192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.141735077 CET5374553192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.148350000 CET53566061.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.148502111 CET53537451.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.163090944 CET5536853192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.163278103 CET6367353192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.164014101 CET5449853192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.164148092 CET5702553192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.169934988 CET53636731.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.173727989 CET5246953192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.173858881 CET5306753192.168.2.91.1.1.1
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.181649923 CET53530671.1.1.1192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.488678932 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.808785915 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.000466108 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.081548929 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.081571102 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.081589937 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.081604958 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.082835913 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.084530115 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.084850073 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.085330963 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.092705965 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.208445072 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.208467007 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.208482981 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.208497047 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.208956003 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.209028006 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.209114075 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.210159063 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.218086004 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.218997955 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.219082117 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.219110966 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.219254017 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.219434023 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.219505072 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.242959976 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.243252039 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.312774897 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.332891941 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.359441042 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.629044056 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.629065037 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.629080057 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.629095078 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.629805088 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.631361008 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.631577015 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.762216091 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.762268066 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.762305021 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.762336969 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.762789965 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.762860060 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.894493103 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:40.923228025 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.400187016 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.400348902 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.525605917 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.526552916 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.526649952 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.526763916 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.526933908 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.527604103 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.659600973 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.678414106 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.680094004 CET44364519162.159.61.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.680459023 CET64519443192.168.2.9162.159.61.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.691922903 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.692035913 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.753037930 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.816910028 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.817908049 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.817991972 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.830444098 CET44358777172.64.41.3192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:41.830703974 CET58777443192.168.2.9172.64.41.3
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.053482056 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.357254028 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.357655048 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.357712984 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.357841015 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.357887983 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.361694098 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.362132072 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.375308037 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.375406981 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.375690937 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.498404026 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.498434067 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.498446941 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.498461008 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.498475075 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.498486996 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.499166965 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.499592066 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.502484083 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.502927065 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.503052950 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.503098965 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.503161907 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.503221989 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.503241062 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.503407955 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.503463984 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.510348082 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.510454893 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.510519028 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519568920 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519606113 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.519643068 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.520045996 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.520108938 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.524653912 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.530014992 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.530087948 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.531322002 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.534137964 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.538238049 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.539557934 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.541989088 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.542049885 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.543096066 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.547512054 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.547660112 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.550115108 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.554495096 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.554693937 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.558825016 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.562922001 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.563009024 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.563112020 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.570911884 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.570997953 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.571278095 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.577713013 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.577739000 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.578257084 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.583698988 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.583724976 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.583919048 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.583919048 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.587982893 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.595037937 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.595132113 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.595221043 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.597896099 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.599358082 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.602492094 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.607685089 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.607894897 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.607919931 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.611200094 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.611352921 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.617523909 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.618500948 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.618669987 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.621961117 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.628473043 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.628714085 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.632239103 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.637034893 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.637283087 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.640254974 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.642111063 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.642267942 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.647819042 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.673454046 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:42.766819000 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.102889061 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.116271973 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.116349936 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.128654003 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.226300001 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.229963064 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.229974031 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.232753038 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.241004944 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.241406918 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313282013 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313615084 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313657999 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313704967 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313775063 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313791037 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313802004 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313812017 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313822985 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313858032 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313868046 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313879013 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313975096 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313986063 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.313997984 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.314007998 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323685884 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323717117 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323735952 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323749065 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323760986 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323841095 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323852062 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323870897 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323883057 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.323894024 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.330972910 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331130981 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331288099 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331288099 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331403017 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331686974 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331752062 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331826925 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331878901 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331923962 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.331975937 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.332146883 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.332202911 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334594011 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334619045 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334630966 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334670067 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334724903 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334743977 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334754944 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334765911 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334796906 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334841013 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334865093 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334933043 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.334985018 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.335036993 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.335921049 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346333027 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346344948 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346357107 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346366882 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346378088 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346390963 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346401930 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346437931 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346448898 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.346461058 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.347328901 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.347453117 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.347486973 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.347539902 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358515978 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358570099 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358582020 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358602047 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358613014 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358676910 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358688116 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358700037 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358707905 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.358719110 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.363166094 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366110086 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366122007 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366133928 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366143942 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366163015 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366173029 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366184950 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366195917 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366206884 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366218090 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.366970062 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.367062092 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377132893 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377154112 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377166033 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377177000 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377224922 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377235889 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377245903 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377257109 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377306938 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.377346039 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.378159046 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.387280941 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.387330055 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.387415886 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.387979984 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.388010979 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.388310909 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.439460993 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456094027 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456151009 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456183910 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456195116 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456257105 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456401110 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456417084 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456428051 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456588030 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456598043 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456607103 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456617117 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456705093 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456720114 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456729889 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456738949 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456811905 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456823111 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456832886 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456842899 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.456942081 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.457107067 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.499391079 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.551388025 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.553334951 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.676774025 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681248903 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681262970 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681289911 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681301117 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681310892 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681432962 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681444883 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681456089 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681467056 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681478024 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681489944 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681507111 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681515932 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681524992 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.681535006 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.682204962 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.682429075 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.682568073 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.682611942 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.682720900 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.687185049 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.687196970 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.687217951 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.687299967 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.687309027 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.689256907 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.689352036 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.689383030 CET50561443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.724684954 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.729684114 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.729697943 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.729840994 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.730175018 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.731894016 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.733359098 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.734020948 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.819365025 CET4435056123.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.858989000 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.859009027 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.859020948 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.859030008 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.859071016 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.863913059 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.863924980 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:46.863934040 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.073107958 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.137479067 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.157459974 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.157608986 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.157932997 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.157932997 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.158042908 CET57823443192.168.2.923.221.22.207
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:47.317166090 CET4435782323.221.22.207192.168.2.9
                                                                                                                                                                                                                                                                      TimestampSource IPDest IPChecksumCodeType
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.160936117 CET192.168.2.91.1.1.1c298(Port unreachable)Destination Unreachable
                                                                                                                                                                                                                                                                      TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.916549921 CET192.168.2.91.1.1.10x32ebStandard query (0)catbox.moeA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.142690897 CET192.168.2.91.1.1.10x3258Standard query (0)www.google.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.143055916 CET192.168.2.91.1.1.10x1608Standard query (0)www.google.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.318558931 CET192.168.2.91.1.1.10xa964Standard query (0)chrome.cloudflare-dns.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.319010973 CET192.168.2.91.1.1.10x895fStandard query (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.921143055 CET192.168.2.91.1.1.10x282dStandard query (0)ntp.msn.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.921355963 CET192.168.2.91.1.1.10xc2e8Standard query (0)ntp.msn.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.113909960 CET192.168.2.91.1.1.10x5960Standard query (0)bzib.nelreports.netA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.114146948 CET192.168.2.91.1.1.10x6ca0Standard query (0)bzib.nelreports.net65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.583503962 CET192.168.2.91.1.1.10x998bStandard query (0)chrome.cloudflare-dns.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.583648920 CET192.168.2.91.1.1.10xdbb4Standard query (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.584280014 CET192.168.2.91.1.1.10xb186Standard query (0)chrome.cloudflare-dns.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.584639072 CET192.168.2.91.1.1.10xd85Standard query (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.787631035 CET192.168.2.91.1.1.10x9eebStandard query (0)chrome.cloudflare-dns.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.788304090 CET192.168.2.91.1.1.10x579aStandard query (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.141495943 CET192.168.2.91.1.1.10x8b30Standard query (0)sb.scorecardresearch.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.141735077 CET192.168.2.91.1.1.10xe177Standard query (0)sb.scorecardresearch.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.163090944 CET192.168.2.91.1.1.10x5a74Standard query (0)api.msn.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.163278103 CET192.168.2.91.1.1.10xf3b3Standard query (0)api.msn.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.164014101 CET192.168.2.91.1.1.10xccb9Standard query (0)assets.msn.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.164148092 CET192.168.2.91.1.1.10x47fStandard query (0)assets.msn.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.173727989 CET192.168.2.91.1.1.10xf09eStandard query (0)c.msn.comA (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.173858881 CET192.168.2.91.1.1.10x2723Standard query (0)c.msn.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:25.928436041 CET1.1.1.1192.168.2.90x32ebNo error (0)catbox.moe108.181.20.35A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.155405045 CET1.1.1.1192.168.2.90x3258No error (0)www.google.com142.250.186.132A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:29.155415058 CET1.1.1.1192.168.2.90x1608No error (0)www.google.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.325603962 CET1.1.1.1192.168.2.90xa964No error (0)chrome.cloudflare-dns.com162.159.61.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.325603962 CET1.1.1.1192.168.2.90xa964No error (0)chrome.cloudflare-dns.com172.64.41.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.326100111 CET1.1.1.1192.168.2.90x895fNo error (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.928400040 CET1.1.1.1192.168.2.90xc2e8No error (0)ntp.msn.comwww-msn-com.a-0003.a-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.928474903 CET1.1.1.1192.168.2.90x282dNo error (0)ntp.msn.comwww-msn-com.a-0003.a-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.929893970 CET1.1.1.1192.168.2.90x68ceNo error (0)bingadsedgeextension-prod-europe.azurewebsites.netssl.bingadsedgeextension-prod-europe.azurewebsites.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.930680990 CET1.1.1.1192.168.2.90xb2b8No error (0)bingadsedgeextension-prod-europe.azurewebsites.netssl.bingadsedgeextension-prod-europe.azurewebsites.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:33.930680990 CET1.1.1.1192.168.2.90xb2b8No error (0)ssl.bingadsedgeextension-prod-europe.azurewebsites.net94.245.104.56A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.121283054 CET1.1.1.1192.168.2.90x6ca0No error (0)bzib.nelreports.netbzib.nelreports.net.akamaized.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:35.121381998 CET1.1.1.1192.168.2.90x5960No error (0)bzib.nelreports.netbzib.nelreports.net.akamaized.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.782274008 CET1.1.1.1192.168.2.90xcd86No error (0)scdn1f005.wpc.ad629.nucdn.netsni1gl.wpc.nucdn.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.782274008 CET1.1.1.1192.168.2.90xcd86No error (0)sni1gl.wpc.nucdn.net152.199.21.175A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:36.782313108 CET1.1.1.1192.168.2.90x1098No error (0)scdn1f005.wpc.ad629.nucdn.netsni1gl.wpc.nucdn.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.590369940 CET1.1.1.1192.168.2.90xdbb4No error (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.590393066 CET1.1.1.1192.168.2.90x998bNo error (0)chrome.cloudflare-dns.com162.159.61.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.590393066 CET1.1.1.1192.168.2.90x998bNo error (0)chrome.cloudflare-dns.com172.64.41.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.591214895 CET1.1.1.1192.168.2.90xb186No error (0)chrome.cloudflare-dns.com172.64.41.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.591214895 CET1.1.1.1192.168.2.90xb186No error (0)chrome.cloudflare-dns.com162.159.61.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.591640949 CET1.1.1.1192.168.2.90xd85No error (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.794409990 CET1.1.1.1192.168.2.90x9eebNo error (0)chrome.cloudflare-dns.com162.159.61.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.794409990 CET1.1.1.1192.168.2.90x9eebNo error (0)chrome.cloudflare-dns.com172.64.41.3A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:38.795141935 CET1.1.1.1192.168.2.90x579aNo error (0)chrome.cloudflare-dns.com65IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.148350000 CET1.1.1.1192.168.2.90x8b30No error (0)sb.scorecardresearch.com18.244.18.38A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.148350000 CET1.1.1.1192.168.2.90x8b30No error (0)sb.scorecardresearch.com18.244.18.27A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.148350000 CET1.1.1.1192.168.2.90x8b30No error (0)sb.scorecardresearch.com18.244.18.32A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.148350000 CET1.1.1.1192.168.2.90x8b30No error (0)sb.scorecardresearch.com18.244.18.122A (IP address)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.169851065 CET1.1.1.1192.168.2.90x5a74No error (0)api.msn.comapi-msn-com.a-0003.a-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.169934988 CET1.1.1.1192.168.2.90xf3b3No error (0)api.msn.comapi-msn-com.a-0003.a-msedge.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.170660019 CET1.1.1.1192.168.2.90xccb9No error (0)assets.msn.comassets.msn.com.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.171253920 CET1.1.1.1192.168.2.90x47fNo error (0)assets.msn.comassets.msn.com.edgekey.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.180944920 CET1.1.1.1192.168.2.90xf09eNo error (0)c.msn.comc-msn-com-nsatc.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      Nov 15, 2024 10:45:39.181649923 CET1.1.1.1192.168.2.90x2723No error (0)c.msn.comc-msn-com-nsatc.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                                                                                                                                                                                                                                                                      • slscr.update.microsoft.com
                                                                                                                                                                                                                                                                      • www.google.com
                                                                                                                                                                                                                                                                      • chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      • api.edgeoffer.microsoft.com
                                                                                                                                                                                                                                                                      • login.live.com
                                                                                                                                                                                                                                                                      • https:
                                                                                                                                                                                                                                                                        • assets.msn.com
                                                                                                                                                                                                                                                                      • msedgeextensions.sf.tlu.dl.delivery.mp.microsoft.com
                                                                                                                                                                                                                                                                      • clients2.googleusercontent.com
                                                                                                                                                                                                                                                                      • data-edge.smartscreen.microsoft.com
                                                                                                                                                                                                                                                                      • edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      0192.168.2.94971120.109.210.53443
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:07 UTC306OUTGET /SLS/%7B522D76A4-93E1-47F8-B8CE-07C937AD1A1E%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=dMoBLy5pWN3hCbl&MD=pk6F5hZM HTTP/1.1
                                                                                                                                                                                                                                                                      Connection: Keep-Alive
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33
                                                                                                                                                                                                                                                                      Host: slscr.update.microsoft.com
                                                                                                                                                                                                                                                                      2024-11-15 09:45:07 UTC560INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Cache-Control: no-cache
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Content-Type: application/octet-stream
                                                                                                                                                                                                                                                                      Expires: -1
                                                                                                                                                                                                                                                                      Last-Modified: Mon, 01 Jan 0001 00:00:00 GMT
                                                                                                                                                                                                                                                                      ETag: "XAopazV00XDWnJCwkmEWRv6JkbjRA9QSSZ2+e/3MzEk=_2880"
                                                                                                                                                                                                                                                                      MS-CorrelationId: 6aae409e-1222-43e7-bd93-3cb95c9ef851
                                                                                                                                                                                                                                                                      MS-RequestId: f493b1cf-8a95-45bf-8dff-5746ac40d446
                                                                                                                                                                                                                                                                      MS-CV: Vwiv6trHc0C/nIB3.0
                                                                                                                                                                                                                                                                      X-Microsoft-SLSClientCache: 2880
                                                                                                                                                                                                                                                                      Content-Disposition: attachment; filename=environment.cab
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:06 GMT
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Length: 24490
                                                                                                                                                                                                                                                                      2024-11-15 09:45:07 UTC15824INData Raw: 4d 53 43 46 00 00 00 00 92 1e 00 00 00 00 00 00 44 00 00 00 00 00 00 00 03 01 01 00 01 00 04 00 23 d0 00 00 14 00 00 00 00 00 10 00 92 1e 00 00 18 41 00 00 00 00 00 00 00 00 00 00 64 00 00 00 01 00 01 00 e6 42 00 00 00 00 00 00 00 00 00 00 00 00 80 00 65 6e 76 69 72 6f 6e 6d 65 6e 74 2e 63 61 62 00 78 cf 8d 5c 26 1e e6 42 43 4b ed 5c 07 54 13 db d6 4e a3 f7 2e d5 d0 3b 4c 42 af 4a 57 10 e9 20 bd 77 21 94 80 88 08 24 2a 02 02 d2 55 10 a4 a8 88 97 22 8a 0a d2 11 04 95 ae d2 8b 20 28 0a 88 20 45 05 f4 9f 80 05 bd ed dd f7 ff 77 dd f7 bf 65 d6 4a 66 ce 99 33 67 4e d9 7b 7f fb db 7b 56 f4 4d 34 b4 21 e0 a7 03 0a d9 fc 68 6e 1d 20 70 28 14 02 85 20 20 ad 61 10 08 e3 66 0d ed 66 9b 1d 6a 90 af 1f 17 f0 4b 68 35 01 83 6c fb 44 42 5c 7d 83 3d 03 30 be 3e ae be 58
                                                                                                                                                                                                                                                                      Data Ascii: MSCFD#AdBenvironment.cabx\&BCK\TN.;LBJW w!$*U" ( EweJf3gN{{VM4!hn p( affjKh5lDB\}=0>X
                                                                                                                                                                                                                                                                      2024-11-15 09:45:07 UTC8666INData Raw: 04 01 31 2f 30 2d 30 0a 02 05 00 e1 2b 8a 50 02 01 00 30 0a 02 01 00 02 02 12 fe 02 01 ff 30 07 02 01 00 02 02 11 e6 30 0a 02 05 00 e1 2c db d0 02 01 00 30 36 06 0a 2b 06 01 04 01 84 59 0a 04 02 31 28 30 26 30 0c 06 0a 2b 06 01 04 01 84 59 0a 03 02 a0 0a 30 08 02 01 00 02 03 07 a1 20 a1 0a 30 08 02 01 00 02 03 01 86 a0 30 0d 06 09 2a 86 48 86 f7 0d 01 01 05 05 00 03 81 81 00 0c d9 08 df 48 94 57 65 3e ad e7 f2 17 9c 1f ca 3d 4d 6c cd 51 e1 ed 9c 17 a5 52 35 0f fd de 4b bd 22 92 c5 69 e5 d7 9f 29 23 72 40 7a ca 55 9d 8d 11 ad d5 54 00 bb 53 b4 87 7b 72 84 da 2d f6 e3 2c 4f 7e ba 1a 58 88 6e d6 b9 6d 16 ae 85 5b b5 c2 81 a8 e0 ee 0a 9c 60 51 3a 7b e4 61 f8 c3 e4 38 bd 7d 28 17 d6 79 f0 c8 58 c6 ef 1f f7 88 65 b1 ea 0a c0 df f7 ee 5c 23 c2 27 fd 98 63 08 31
                                                                                                                                                                                                                                                                      Data Ascii: 1/0-0+P000,06+Y1(0&0+Y0 00*HHWe>=MlQR5K"i)#r@zUTS{r-,O~Xnm[`Q:{a8}(yXe\#'c1


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      1192.168.2.949721142.250.186.1324435644C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC603OUTGET /complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=20&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw HTTP/1.1
                                                                                                                                                                                                                                                                      Host: www.google.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      X-Client-Data: CIu2yQEIo7bJAQipncoBCNT9ygEIlKHLAQiFoM0BCNy9zQEIucrNAQip0c0BCInTzQEIqdXNAQjJ1s0BCPTWzQEIqNjNAQj5wNQVGOmYzQEY642lFw==
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC1266INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:30 GMT
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Expires: -1
                                                                                                                                                                                                                                                                      Cache-Control: no-cache, must-revalidate
                                                                                                                                                                                                                                                                      Content-Type: text/javascript; charset=UTF-8
                                                                                                                                                                                                                                                                      Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                      Content-Security-Policy: object-src 'none';base-uri 'self';script-src 'nonce-NlBFdLflKT6IaD9MoSrMLg' 'strict-dynamic' 'report-sample' 'unsafe-eval' 'unsafe-inline' https: http:;report-uri https://csp.withgoogle.com/csp/gws/cdt1
                                                                                                                                                                                                                                                                      Cross-Origin-Opener-Policy: same-origin-allow-popups; report-to="gws"
                                                                                                                                                                                                                                                                      Report-To: {"group":"gws","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/gws/cdt1"}]}
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-Prefers-Color-Scheme
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Form-Factors
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Platform
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Platform-Version
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Full-Version
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Arch
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Model
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Bitness
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Full-Version-List
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-WoW64
                                                                                                                                                                                                                                                                      Permissions-Policy: unload=()
                                                                                                                                                                                                                                                                      Content-Disposition: attachment; filename="f.txt"
                                                                                                                                                                                                                                                                      Server: gws
                                                                                                                                                                                                                                                                      X-XSS-Protection: 0
                                                                                                                                                                                                                                                                      X-Frame-Options: SAMEORIGIN
                                                                                                                                                                                                                                                                      Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                                                                                                                                                                                                                                                      Accept-Ranges: none
                                                                                                                                                                                                                                                                      Vary: Accept-Encoding
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC112INData Raw: 39 30 38 0d 0a 29 5d 7d 27 0a 5b 22 22 2c 5b 22 73 74 61 72 64 65 77 20 76 61 6c 6c 65 79 20 70 61 74 63 68 20 75 70 64 61 74 65 22 2c 22 70 68 69 6c 61 64 65 6c 70 68 69 61 20 70 68 69 6c 6c 69 65 73 22 2c 22 65 6d 69 6c 69 61 20 70 65 72 65 7a 20 6e 65 74 66 6c 69 78 22 2c 22 66 62 69 20 69 6e 76 65 73 74 69 67 61 74 69 6f 6e 20 69
                                                                                                                                                                                                                                                                      Data Ascii: 908)]}'["",["stardew valley patch update","philadelphia phillies","emilia perez netflix","fbi investigation i
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC1378INData Raw: 6e 20 70 6f 72 74 6c 61 6e 64 20 63 74 22 2c 22 74 72 6f 70 69 63 61 6c 20 73 74 6f 72 6d 20 68 75 72 72 69 63 61 6e 65 20 73 61 72 61 22 2c 22 61 75 72 6f 72 61 20 62 6f 72 65 61 6c 69 73 20 6e 6f 72 74 68 65 72 6e 20 6c 69 67 68 74 73 20 66 6f 72 65 63 61 73 74 22 2c 22 62 75 72 67 65 72 20 6b 69 6e 67 20 66 72 69 65 64 20 70 69 63 6b 6c 65 20 66 72 69 65 73 22 2c 22 6d 79 20 63 68 65 6d 69 63 61 6c 20 72 6f 6d 61 6e 63 65 20 62 6c 61 63 6b 20 70 61 72 61 64 65 20 74 6f 75 72 22 5d 2c 5b 22 22 2c 22 22 2c 22 22 2c 22 22 2c 22 22 2c 22 22 2c 22 22 2c 22 22 5d 2c 5b 5d 2c 7b 22 67 6f 6f 67 6c 65 3a 63 6c 69 65 6e 74 64 61 74 61 22 3a 7b 22 62 70 63 22 3a 66 61 6c 73 65 2c 22 74 6c 77 22 3a 66 61 6c 73 65 7d 2c 22 67 6f 6f 67 6c 65 3a 67 72 6f 75 70 73 69
                                                                                                                                                                                                                                                                      Data Ascii: n portland ct","tropical storm hurricane sara","aurora borealis northern lights forecast","burger king fried pickle fries","my chemical romance black parade tour"],["","","","","","","",""],[],{"google:clientdata":{"bpc":false,"tlw":false},"google:groupsi
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC829INData Raw: 72 52 79 74 44 65 44 4e 6f 62 47 4e 6e 55 46 42 47 4d 54 51 34 52 46 4a 32 51 6e 5a 7a 55 57 6c 6e 59 6a 6c 6d 59 57 74 6f 55 46 46 59 4f 45 56 57 64 6d 70 59 51 57 46 53 4f 57 31 4f 64 30 68 34 61 6d 78 6c 51 6d 52 6e 55 46 45 72 55 6a 68 30 59 30 56 45 61 58 5a 59 56 79 39 6e 52 69 39 42 4c 33 64 6d 5a 30 6c 49 4f 45 64 42 53 7a 42 53 59 6b 46 48 51 57 5a 31 54 47 56 42 52 45 4a 51 59 6b 4a 7a 51 55 6c 49 4f 45 64 46 54 32 46 61 54 31 4a 36 64 31 51 77 52 7a 6c 6f 5a 47 4a 45 4e 47 31 49 4e 43 39 36 59 6a 64 4e 52 6b 68 36 4d 57 31 46 4e 32 35 4f 63 32 78 36 52 33 5a 49 55 48 4a 70 61 57 30 79 4f 48 64 6f 64 6c 4e 36 63 44 52 33 65 6c 6c 34 63 54 68 42 51 31 67 79 55 48 5a 74 4e 30 78 59 4e 6a 46 71 4f 54 46 59 53 6e 4e 72 4e 6a 68 79 64 58 4a 4d 61 56
                                                                                                                                                                                                                                                                      Data Ascii: rRytDeDNobGNnUFBGMTQ4RFJ2QnZzUWlnYjlmYWtoUFFYOEVWdmpYQWFSOW1Od0h4amxlQmRnUFErUjh0Y0VEaXZYVy9nRi9BL3dmZ0lIOEdBSzBSYkFHQWZ1TGVBREJQYkJzQUlIOEdFT2FaT1J6d1QwRzloZGJENG1INC96YjdNRkh6MW1FN25Oc2x6R3ZIUHJpaW0yOHdodlN6cDR3ell4cThBQ1gyUHZtN0xYNjFqOTFYSnNrNjhydXJMaV
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC5INData Raw: 30 0d 0a 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: 0


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      2192.168.2.949723142.250.186.1324435644C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC353OUTGET /async/ddljson?async=ntp:2 HTTP/1.1
                                                                                                                                                                                                                                                                      Host: www.google.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-US,en;q=0.9


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      3192.168.2.949724142.250.186.1324435644C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC506OUTGET /async/newtab_ogb?hl=en-US&async=fixed:0 HTTP/1.1
                                                                                                                                                                                                                                                                      Host: www.google.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      X-Client-Data: CIu2yQEIo7bJAQipncoBCNT9ygEIlKHLAQiFoM0BCNy9zQEIucrNAQip0c0BCInTzQEIqdXNAQjJ1s0BCPTWzQEIqNjNAQj5wNQVGOmYzQEY642lFw==
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1018INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Version: 695623535
                                                                                                                                                                                                                                                                      Content-Type: application/json; charset=UTF-8
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                      Cross-Origin-Opener-Policy: same-origin-allow-popups; report-to="gws"
                                                                                                                                                                                                                                                                      Report-To: {"group":"gws","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/gws/none"}]}
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-Prefers-Color-Scheme
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Form-Factors
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Platform
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Platform-Version
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Full-Version
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Arch
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Model
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Bitness
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Full-Version-List
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-WoW64
                                                                                                                                                                                                                                                                      Permissions-Policy: unload=()
                                                                                                                                                                                                                                                                      Content-Disposition: attachment; filename="f.txt"
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:31 GMT
                                                                                                                                                                                                                                                                      Server: gws
                                                                                                                                                                                                                                                                      X-XSS-Protection: 0
                                                                                                                                                                                                                                                                      X-Frame-Options: SAMEORIGIN
                                                                                                                                                                                                                                                                      Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                                                                                                                                                                                                                                                      Accept-Ranges: none
                                                                                                                                                                                                                                                                      Vary: Accept-Encoding
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC360INData Raw: 32 33 34 63 0d 0a 29 5d 7d 27 0a 7b 22 75 70 64 61 74 65 22 3a 7b 22 6c 61 6e 67 75 61 67 65 5f 63 6f 64 65 22 3a 22 65 6e 2d 55 53 22 2c 22 6f 67 62 22 3a 7b 22 68 74 6d 6c 22 3a 7b 22 70 72 69 76 61 74 65 5f 64 6f 5f 6e 6f 74 5f 61 63 63 65 73 73 5f 6f 72 5f 65 6c 73 65 5f 73 61 66 65 5f 68 74 6d 6c 5f 77 72 61 70 70 65 64 5f 76 61 6c 75 65 22 3a 22 5c 75 30 30 33 63 68 65 61 64 65 72 20 63 6c 61 73 73 5c 75 30 30 33 64 5c 22 67 62 5f 45 61 20 67 62 5f 32 64 20 67 62 5f 51 65 20 67 62 5f 71 64 5c 22 20 69 64 5c 75 30 30 33 64 5c 22 67 62 5c 22 20 72 6f 6c 65 5c 75 30 30 33 64 5c 22 62 61 6e 6e 65 72 5c 22 20 73 74 79 6c 65 5c 75 30 30 33 64 5c 22 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 74 72 61 6e 73 70 61 72 65 6e 74 5c 22 5c 75 30 30 33 65
                                                                                                                                                                                                                                                                      Data Ascii: 234c)]}'{"update":{"language_code":"en-US","ogb":{"html":{"private_do_not_access_or_else_safe_html_wrapped_value":"\u003cheader class\u003d\"gb_Ea gb_2d gb_Qe gb_qd\" id\u003d\"gb\" role\u003d\"banner\" style\u003d\"background-color:transparent\"\u003e
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1378INData Raw: 33 65 5c 75 30 30 33 63 64 69 76 20 63 6c 61 73 73 5c 75 30 30 33 64 5c 22 67 62 5f 77 64 20 67 62 5f 72 64 5c 22 5c 75 30 30 33 65 5c 75 30 30 33 63 64 69 76 20 63 6c 61 73 73 5c 75 30 30 33 64 5c 22 67 62 5f 4a 63 20 67 62 5f 51 5c 22 20 61 72 69 61 2d 65 78 70 61 6e 64 65 64 5c 75 30 30 33 64 5c 22 66 61 6c 73 65 5c 22 20 61 72 69 61 2d 6c 61 62 65 6c 5c 75 30 30 33 64 5c 22 4d 61 69 6e 20 6d 65 6e 75 5c 22 20 72 6f 6c 65 5c 75 30 30 33 64 5c 22 62 75 74 74 6f 6e 5c 22 20 74 61 62 69 6e 64 65 78 5c 75 30 30 33 64 5c 22 30 5c 22 5c 75 30 30 33 65 5c 75 30 30 33 63 73 76 67 20 66 6f 63 75 73 61 62 6c 65 5c 75 30 30 33 64 5c 22 66 61 6c 73 65 5c 22 20 76 69 65 77 62 6f 78 5c 75 30 30 33 64 5c 22 30 20 30 20 32 34 20 32 34 5c 22 5c 75 30 30 33 65 5c 75 30
                                                                                                                                                                                                                                                                      Data Ascii: 3e\u003cdiv class\u003d\"gb_wd gb_rd\"\u003e\u003cdiv class\u003d\"gb_Jc gb_Q\" aria-expanded\u003d\"false\" aria-label\u003d\"Main menu\" role\u003d\"button\" tabindex\u003d\"0\"\u003e\u003csvg focusable\u003d\"false\" viewbox\u003d\"0 0 24 24\"\u003e\u0
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1378INData Raw: 75 30 30 33 65 5c 75 30 30 33 63 5c 2f 64 69 76 5c 75 30 30 33 65 5c 75 30 30 33 63 64 69 76 20 63 6c 61 73 73 5c 75 30 30 33 64 5c 22 67 62 5f 77 64 20 67 62 5f 38 63 20 67 62 5f 39 63 5c 22 5c 75 30 30 33 65 5c 75 30 30 33 63 73 70 61 6e 20 63 6c 61 73 73 5c 75 30 30 33 64 5c 22 67 62 5f 75 64 5c 22 20 61 72 69 61 2d 6c 65 76 65 6c 5c 75 30 30 33 64 5c 22 31 5c 22 20 72 6f 6c 65 5c 75 30 30 33 64 5c 22 68 65 61 64 69 6e 67 5c 22 5c 75 30 30 33 65 20 5c 75 30 30 33 63 5c 2f 73 70 61 6e 5c 75 30 30 33 65 5c 75 30 30 33 63 64 69 76 20 63 6c 61 73 73 5c 75 30 30 33 64 5c 22 67 62 5f 61 64 5c 22 5c 75 30 30 33 65 20 5c 75 30 30 33 63 5c 2f 64 69 76 5c 75 30 30 33 65 5c 75 30 30 33 63 5c 2f 64 69 76 5c 75 30 30 33 65 5c 75 30 30 33 63 5c 2f 64 69 76 5c 75 30
                                                                                                                                                                                                                                                                      Data Ascii: u003e\u003c\/div\u003e\u003cdiv class\u003d\"gb_wd gb_8c gb_9c\"\u003e\u003cspan class\u003d\"gb_ud\" aria-level\u003d\"1\" role\u003d\"heading\"\u003e \u003c\/span\u003e\u003cdiv class\u003d\"gb_ad\"\u003e \u003c\/div\u003e\u003c\/div\u003e\u003c\/div\u0
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1378INData Raw: 69 6e 64 65 78 5c 75 30 30 33 64 5c 22 30 5c 22 5c 75 30 30 33 65 20 5c 75 30 30 33 63 73 76 67 20 63 6c 61 73 73 5c 75 30 30 33 64 5c 22 67 62 5f 44 5c 22 20 66 6f 63 75 73 61 62 6c 65 5c 75 30 30 33 64 5c 22 66 61 6c 73 65 5c 22 20 68 65 69 67 68 74 5c 75 30 30 33 64 5c 22 32 34 70 78 5c 22 20 76 69 65 77 42 6f 78 5c 75 30 30 33 64 5c 22 30 20 2d 39 36 30 20 39 36 30 20 39 36 30 5c 22 20 77 69 64 74 68 5c 75 30 30 33 64 5c 22 32 34 70 78 5c 22 5c 75 30 30 33 65 20 5c 75 30 30 33 63 70 61 74 68 20 64 5c 75 30 30 33 64 5c 22 4d 32 30 39 2d 31 32 30 71 2d 34 32 20 30 2d 37 30 2e 35 2d 32 38 2e 35 54 31 31 30 2d 32 31 37 71 30 2d 31 34 20 33 2d 32 35 2e 35 74 39 2d 32 31 2e 35 6c 32 32 38 2d 33 34 31 71 31 30 2d 31 34 20 31 35 2d 33 31 74 35 2d 33 34 76 2d
                                                                                                                                                                                                                                                                      Data Ascii: index\u003d\"0\"\u003e \u003csvg class\u003d\"gb_D\" focusable\u003d\"false\" height\u003d\"24px\" viewBox\u003d\"0 -960 960 960\" width\u003d\"24px\"\u003e \u003cpath d\u003d\"M209-120q-42 0-70.5-28.5T110-217q0-14 3-25.5t9-21.5l228-341q10-14 15-31t5-34v-
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1378INData Raw: 2c 2d 32 73 2d 30 2e 39 2c 2d 32 20 2d 32 2c 2d 32 20 2d 32 2c 30 2e 39 20 2d 32 2c 32 20 30 2e 39 2c 32 20 32 2c 32 7a 4d 31 32 2c 31 34 63 31 2e 31 2c 30 20 32 2c 2d 30 2e 39 20 32 2c 2d 32 73 2d 30 2e 39 2c 2d 32 20 2d 32 2c 2d 32 20 2d 32 2c 30 2e 39 20 2d 32 2c 32 20 30 2e 39 2c 32 20 32 2c 32 7a 4d 31 36 2c 36 63 30 2c 31 2e 31 20 30 2e 39 2c 32 20 32 2c 32 73 32 2c 2d 30 2e 39 20 32 2c 2d 32 20 2d 30 2e 39 2c 2d 32 20 2d 32 2c 2d 32 20 2d 32 2c 30 2e 39 20 2d 32 2c 32 7a 4d 31 32 2c 38 63 31 2e 31 2c 30 20 32 2c 2d 30 2e 39 20 32 2c 2d 32 73 2d 30 2e 39 2c 2d 32 20 2d 32 2c 2d 32 20 2d 32 2c 30 2e 39 20 2d 32 2c 32 20 30 2e 39 2c 32 20 32 2c 32 7a 4d 31 38 2c 31 34 63 31 2e 31 2c 30 20 32 2c 2d 30 2e 39 20 32 2c 2d 32 73 2d 30 2e 39 2c 2d 32 20 2d
                                                                                                                                                                                                                                                                      Data Ascii: ,-2s-0.9,-2 -2,-2 -2,0.9 -2,2 0.9,2 2,2zM12,14c1.1,0 2,-0.9 2,-2s-0.9,-2 -2,-2 -2,0.9 -2,2 0.9,2 2,2zM16,6c0,1.1 0.9,2 2,2s2,-0.9 2,-2 -0.9,-2 -2,-2 -2,0.9 -2,2zM12,8c1.1,0 2,-0.9 2,-2s-0.9,-2 -2,-2 -2,0.9 -2,2 0.9,2 2,2zM18,14c1.1,0 2,-0.9 2,-2s-0.9,-2 -
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1378INData Raw: 31 22 2c 22 6c 65 66 74 5f 70 72 6f 64 75 63 74 5f 63 6f 6e 74 72 6f 6c 2d 6c 61 62 65 6c 32 22 5d 2c 22 6d 65 6e 75 5f 70 6c 61 63 65 68 6f 6c 64 65 72 5f 6c 61 62 65 6c 22 3a 22 6d 65 6e 75 2d 63 6f 6e 74 65 6e 74 22 2c 22 6d 65 74 61 64 61 74 61 22 3a 7b 22 62 61 72 5f 68 65 69 67 68 74 22 3a 36 30 2c 22 65 78 70 65 72 69 6d 65 6e 74 5f 69 64 22 3a 5b 33 37 30 30 33 31 37 2c 33 37 30 31 33 38 34 5d 2c 22 69 73 5f 62 61 63 6b 75 70 5f 62 61 72 22 3a 66 61 6c 73 65 7d 2c 22 70 61 67 65 5f 68 6f 6f 6b 73 22 3a 7b 22 61 66 74 65 72 5f 62 61 72 5f 73 63 72 69 70 74 22 3a 7b 22 70 72 69 76 61 74 65 5f 64 6f 5f 6e 6f 74 5f 61 63 63 65 73 73 5f 6f 72 5f 65 6c 73 65 5f 73 61 66 65 5f 73 63 72 69 70 74 5f 77 72 61 70 70 65 64 5f 76 61 6c 75 65 22 3a 22 74 68 69
                                                                                                                                                                                                                                                                      Data Ascii: 1","left_product_control-label2"],"menu_placeholder_label":"menu-content","metadata":{"bar_height":60,"experiment_id":[3700317,3701384],"is_backup_bar":false},"page_hooks":{"after_bar_script":{"private_do_not_access_or_else_safe_script_wrapped_value":"thi
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1378INData Raw: 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 29 7b 63 6f 6e 73 74 20 62 5c 75 30 30 33 64 61 2e 6c 65 6e 67 74 68 3b 69 66 28 62 5c 75 30 30 33 65 30 29 7b 63 6f 6e 73 74 20 63 5c 75 30 30 33 64 41 72 72 61 79 28 62 29 3b 66 6f 72 28 6c 65 74 20 64 5c 75 30 30 33 64 30 3b 64 5c 75 30 30 33 63 62 3b 64 2b 2b 29 63 5b 64 5d 5c 75 30 30 33 64 61 5b 64 5d 3b 72 65 74 75 72 6e 20 63 7d 72 65 74 75 72 6e 5b 5d 7d 3b 4c 64 5c 75 30 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 29 7b 72 65 74 75 72 6e 20 6e 65 77 20 5f 2e 4b 64 28 62 5c 75 30 30 33 64 5c 75 30 30 33 65 62 2e 73 75 62 73 74 72 28 30 2c 61 2e 6c 65 6e 67 74 68 2b 31 29 2e 74 6f 4c 6f 77 65 72 43 61 73 65 28 29 5c 75 30 30 33 64 5c 75 30 30 33 64 5c 75 30 30 33 64 61 2b 5c 22 3a 5c 22 29 7d 3b 5f 2e 4d 64 5c 75
                                                                                                                                                                                                                                                                      Data Ascii: 03dfunction(a){const b\u003da.length;if(b\u003e0){const c\u003dArray(b);for(let d\u003d0;d\u003cb;d++)c[d]\u003da[d];return c}return[]};Ld\u003dfunction(a){return new _.Kd(b\u003d\u003eb.substr(0,a.length+1).toLowerCase()\u003d\u003d\u003da+\":\")};_.Md\u
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC416INData Raw: 61 74 65 53 63 72 69 70 74 55 52 4c 28 61 29 3a 61 29 7d 3b 5f 2e 24 64 5c 75 30 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 29 7b 69 66 28 61 20 69 6e 73 74 61 6e 63 65 6f 66 20 5f 2e 59 64 29 72 65 74 75 72 6e 20 61 2e 69 3b 74 68 72 6f 77 20 45 72 72 6f 72 28 5c 22 46 5c 22 29 3b 7d 3b 5f 2e 62 65 5c 75 30 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 29 7b 69 66 28 61 65 2e 74 65 73 74 28 61 29 29 72 65 74 75 72 6e 20 61 7d 3b 5f 2e 63 65 5c 75 30 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 29 7b 69 66 28 61 20 69 6e 73 74 61 6e 63 65 6f 66 20 5f 2e 4e 64 29 69 66 28 61 20 69 6e 73 74 61 6e 63 65 6f 66 20 5f 2e 4e 64 29 61 5c 75 30 30 33 64 61 2e 69 3b 65 6c 73 65 20 74 68 72 6f 77 20 45 72 72 6f 72 28 5c 22 46 5c 22 29 3b 65 6c 73 65 20 61 5c 75 30 30 33 64 5f 2e 62
                                                                                                                                                                                                                                                                      Data Ascii: ateScriptURL(a):a)};_.$d\u003dfunction(a){if(a instanceof _.Yd)return a.i;throw Error(\"F\");};_.be\u003dfunction(a){if(ae.test(a))return a};_.ce\u003dfunction(a){if(a instanceof _.Nd)if(a instanceof _.Nd)a\u003da.i;else throw Error(\"F\");else a\u003d_.b
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC438INData Raw: 31 61 66 0d 0a 28 63 2c 60 24 7b 61 7d 5b 6e 6f 6e 63 65 5d 60 29 3b 72 65 74 75 72 6e 20 62 5c 75 30 30 33 64 5c 75 30 30 33 64 6e 75 6c 6c 3f 5c 22 5c 22 3a 62 2e 6e 6f 6e 63 65 7c 7c 62 2e 67 65 74 41 74 74 72 69 62 75 74 65 28 5c 22 6e 6f 6e 63 65 5c 22 29 7c 7c 5c 22 5c 22 7d 3b 5c 6e 5f 2e 65 65 5c 75 30 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 29 7b 76 61 72 20 62 5c 75 30 30 33 64 5f 2e 50 61 28 61 29 3b 72 65 74 75 72 6e 20 62 5c 75 30 30 33 64 5c 75 30 30 33 64 5c 22 61 72 72 61 79 5c 22 7c 7c 62 5c 75 30 30 33 64 5c 75 30 30 33 64 5c 22 6f 62 6a 65 63 74 5c 22 5c 75 30 30 32 36 5c 75 30 30 32 36 74 79 70 65 6f 66 20 61 2e 6c 65 6e 67 74 68 5c 75 30 30 33 64 5c 75 30 30 33 64 5c 22 6e 75 6d 62 65 72 5c 22 7d 3b 5f 2e 66 65 5c 75 30 30 33 64 66 75
                                                                                                                                                                                                                                                                      Data Ascii: 1af(c,`${a}[nonce]`);return b\u003d\u003dnull?\"\":b.nonce||b.getAttribute(\"nonce\")||\"\"};\n_.ee\u003dfunction(a){var b\u003d_.Pa(a);return b\u003d\u003d\"array\"||b\u003d\u003d\"object\"\u0026\u0026typeof a.length\u003d\u003d\"number\"};_.fe\u003dfu
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC1378INData Raw: 38 30 30 30 0d 0a 29 7b 72 65 74 75 72 6e 20 5f 2e 76 62 28 5f 2e 67 65 28 61 2c 62 29 2c 63 29 7d 3b 5f 2e 68 65 5c 75 30 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 2c 62 2c 63 5c 75 30 30 33 64 30 29 7b 72 65 74 75 72 6e 20 5f 2e 76 62 28 5f 2e 53 28 61 2c 62 29 2c 63 29 7d 3b 5f 2e 6a 65 5c 75 30 30 33 64 66 75 6e 63 74 69 6f 6e 28 61 2c 62 29 7b 72 65 74 75 72 6e 20 61 2e 6c 61 73 74 49 6e 64 65 78 4f 66 28 62 2c 30 29 5c 75 30 30 33 64 5c 75 30 30 33 64 30 7d 3b 55 64 5c 75 30 30 33 64 5f 2e 4d 64 3b 5f 2e 59 64 5c 75 30 30 33 64 63 6c 61 73 73 7b 63 6f 6e 73 74 72 75 63 74 6f 72 28 61 29 7b 74 68 69 73 2e 69 5c 75 30 30 33 64 61 7d 74 6f 53 74 72 69 6e 67 28 29 7b 72 65 74 75 72 6e 20 74 68 69 73 2e 69 2b 5c 22 5c 22 7d 7d 3b 61 65 5c 75 30 30 33 64 2f
                                                                                                                                                                                                                                                                      Data Ascii: 8000){return _.vb(_.ge(a,b),c)};_.he\u003dfunction(a,b,c\u003d0){return _.vb(_.S(a,b),c)};_.je\u003dfunction(a,b){return a.lastIndexOf(b,0)\u003d\u003d0};Ud\u003d_.Md;_.Yd\u003dclass{constructor(a){this.i\u003da}toString(){return this.i+\"\"}};ae\u003d/


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      4192.168.2.949725142.250.186.1324435644C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:30 UTC353OUTGET /async/newtab_promos HTTP/1.1
                                                                                                                                                                                                                                                                      Host: www.google.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: cross-site
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-US,en;q=0.9
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC933INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Version: 695623535
                                                                                                                                                                                                                                                                      Content-Type: application/json; charset=UTF-8
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Cross-Origin-Opener-Policy: same-origin-allow-popups; report-to="gws"
                                                                                                                                                                                                                                                                      Report-To: {"group":"gws","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/gws/none"}]}
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Form-Factors
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Platform
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Platform-Version
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Full-Version
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Arch
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Model
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Bitness
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-Full-Version-List
                                                                                                                                                                                                                                                                      Accept-CH: Sec-CH-UA-WoW64
                                                                                                                                                                                                                                                                      Permissions-Policy: unload=()
                                                                                                                                                                                                                                                                      Content-Disposition: attachment; filename="f.txt"
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:31 GMT
                                                                                                                                                                                                                                                                      Server: gws
                                                                                                                                                                                                                                                                      X-XSS-Protection: 0
                                                                                                                                                                                                                                                                      X-Frame-Options: SAMEORIGIN
                                                                                                                                                                                                                                                                      Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                                                                                                                                                                                                                                                      Accept-Ranges: none
                                                                                                                                                                                                                                                                      Vary: Accept-Encoding
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC35INData Raw: 31 64 0d 0a 29 5d 7d 27 0a 7b 22 75 70 64 61 74 65 22 3a 7b 22 70 72 6f 6d 6f 73 22 3a 7b 7d 7d 7d 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: 1d)]}'{"update":{"promos":{}}}
                                                                                                                                                                                                                                                                      2024-11-15 09:45:31 UTC5INData Raw: 30 0d 0a 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: 0


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      5192.168.2.949728162.159.61.34437008C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom)TP
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:34 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f2468f66b71-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 89 00 04 8e fa 73 5e 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcoms^)


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      6192.168.2.949736162.159.61.34437008C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom)TP
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:34 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f28df9a2cda-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:34 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 5e 00 04 8e fa 71 5e 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom^q^)


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      7192.168.2.94972994.245.104.564438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:35 UTC428OUTGET /edgeoffer/pb/experiments?appId=edge-extensions&country=CH HTTP/1.1
                                                                                                                                                                                                                                                                      Host: api.edgeoffer.microsoft.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:35 UTC584INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Content-Length: 0
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Type: application/x-protobuf; charset=utf-8
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:34 GMT
                                                                                                                                                                                                                                                                      Server: Microsoft-IIS/10.0
                                                                                                                                                                                                                                                                      Set-Cookie: ARRAffinity=08d2043fe0eddf6a1a4774ef0097be85709acca5523117bc62455fbc08a48784;Path=/;HttpOnly;Secure;Domain=api.edgeoffer.microsoft.com
                                                                                                                                                                                                                                                                      Set-Cookie: ARRAffinitySameSite=08d2043fe0eddf6a1a4774ef0097be85709acca5523117bc62455fbc08a48784;Path=/;HttpOnly;SameSite=None;Secure;Domain=api.edgeoffer.microsoft.com
                                                                                                                                                                                                                                                                      Request-Context: appId=cid-v1:48af8e22-9427-456d-9a55-67a1e42a1bd9
                                                                                                                                                                                                                                                                      X-Powered-By: ASP.NET


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      8192.168.2.94973740.126.31.73443
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:35 UTC422OUTPOST /RST2.srf HTTP/1.0
                                                                                                                                                                                                                                                                      Connection: Keep-Alive
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 10.0; Win64; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729; IDCRL 24.10.0.19045.0.0; IDCRL-cfg 16.000.29743.00; App svchost.exe, 10.0.19041.1806, {DF60E2DF-88AD-4526-AE21-83D130EF0F68})
                                                                                                                                                                                                                                                                      Content-Length: 3592
                                                                                                                                                                                                                                                                      Host: login.live.com
                                                                                                                                                                                                                                                                      2024-11-15 09:45:35 UTC3592OUTData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 3f 3e 3c 73 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 70 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 50 61 73 73 70 6f 72 74 2f 53 6f 61 70 53 65 72 76 69 63 65 73 2f 50 50 43 52 4c 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="UTF-8"?><s:Envelope xmlns:s="http://www.w3.org/2003/05/soap-envelope" xmlns:ps="http://schemas.microsoft.com/Passport/SoapServices/PPCRL" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1
                                                                                                                                                                                                                                                                      2024-11-15 09:45:36 UTC569INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml; charset=utf-8
                                                                                                                                                                                                                                                                      Expires: Fri, 15 Nov 2024 09:44:36 GMT
                                                                                                                                                                                                                                                                      P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                      Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                      x-ms-route-info: C540_SN1
                                                                                                                                                                                                                                                                      x-ms-request-id: ac736d43-e17f-471b-8516-c8968c883447
                                                                                                                                                                                                                                                                      PPServer: PPV: 30 H: SN1PEPF0002F0B4 V: 0
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                      X-XSS-Protection: 1; mode=block
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:35 GMT
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Length: 11392
                                                                                                                                                                                                                                                                      2024-11-15 09:45:36 UTC11392INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 20 3f 3e 3c 53 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 53 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31 2e 30 2e 78 73 64 22 20 78 6d 6c 6e 73 3a 77 73 75 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="utf-8" ?><S:Envelope xmlns:S="http://www.w3.org/2003/05/soap-envelope" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      9192.168.2.94974240.126.31.73443
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:37 UTC422OUTPOST /RST2.srf HTTP/1.0
                                                                                                                                                                                                                                                                      Connection: Keep-Alive
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 10.0; Win64; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729; IDCRL 24.10.0.19045.0.0; IDCRL-cfg 16.000.29743.00; App svchost.exe, 10.0.19041.1806, {DF60E2DF-88AD-4526-AE21-83D130EF0F68})
                                                                                                                                                                                                                                                                      Content-Length: 4775
                                                                                                                                                                                                                                                                      Host: login.live.com
                                                                                                                                                                                                                                                                      2024-11-15 09:45:37 UTC4775OUTData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 3f 3e 3c 73 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 70 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 50 61 73 73 70 6f 72 74 2f 53 6f 61 70 53 65 72 76 69 63 65 73 2f 50 50 43 52 4c 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="UTF-8"?><s:Envelope xmlns:s="http://www.w3.org/2003/05/soap-envelope" xmlns:ps="http://schemas.microsoft.com/Passport/SoapServices/PPCRL" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1
                                                                                                                                                                                                                                                                      2024-11-15 09:45:38 UTC569INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml; charset=utf-8
                                                                                                                                                                                                                                                                      Expires: Fri, 15 Nov 2024 09:44:37 GMT
                                                                                                                                                                                                                                                                      P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                      Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                      x-ms-route-info: C540_BAY
                                                                                                                                                                                                                                                                      x-ms-request-id: 64874a5f-e4ef-4827-9c38-0d892ada9c13
                                                                                                                                                                                                                                                                      PPServer: PPV: 30 H: PH1PEPF0001B813 V: 0
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                      X-XSS-Protection: 1; mode=block
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:37 GMT
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Length: 11412
                                                                                                                                                                                                                                                                      2024-11-15 09:45:38 UTC11412INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 20 3f 3e 3c 53 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 53 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31 2e 30 2e 78 73 64 22 20 78 6d 6c 6e 73 3a 77 73 75 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="utf-8" ?><S:Envelope xmlns:S="http://www.w3.org/2003/05/soap-envelope" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      10192.168.2.94974540.126.31.73443
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC422OUTPOST /RST2.srf HTTP/1.0
                                                                                                                                                                                                                                                                      Connection: Keep-Alive
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 10.0; Win64; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729; IDCRL 24.10.0.19045.0.0; IDCRL-cfg 16.000.29743.00; App svchost.exe, 10.0.19041.1806, {DF60E2DF-88AD-4526-AE21-83D130EF0F68})
                                                                                                                                                                                                                                                                      Content-Length: 4775
                                                                                                                                                                                                                                                                      Host: login.live.com
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC4775OUTData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 3f 3e 3c 73 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 70 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 50 61 73 73 70 6f 72 74 2f 53 6f 61 70 53 65 72 76 69 63 65 73 2f 50 50 43 52 4c 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="UTF-8"?><s:Envelope xmlns:s="http://www.w3.org/2003/05/soap-envelope" xmlns:ps="http://schemas.microsoft.com/Passport/SoapServices/PPCRL" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC569INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml; charset=utf-8
                                                                                                                                                                                                                                                                      Expires: Fri, 15 Nov 2024 09:44:39 GMT
                                                                                                                                                                                                                                                                      P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                      Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                      x-ms-route-info: C540_SN1
                                                                                                                                                                                                                                                                      x-ms-request-id: 5a12fcc4-a7d0-4796-a548-250bbbcc6dcc
                                                                                                                                                                                                                                                                      PPServer: PPV: 30 H: SN1PEPF00040149 V: 0
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                      X-XSS-Protection: 1; mode=block
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:39 GMT
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Length: 11412
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC11412INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 20 3f 3e 3c 53 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 53 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31 2e 30 2e 78 73 64 22 20 78 6d 6c 6e 73 3a 77 73 75 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="utf-8" ?><S:Envelope xmlns:S="http://www.w3.org/2003/05/soap-envelope" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      11192.168.2.949748162.159.61.34438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom)TP
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:39 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f44a81b2e18-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 93 00 04 8e fa 71 5e 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcomq^)


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      12192.168.2.949747172.64.41.34438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom)TP
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:39 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f44efb8e9a9-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 01 1a 00 04 8e fb ba 5e 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom^)


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      13192.168.2.949749162.159.61.34438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom)TP
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:39 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f463831e836-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:39 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 b8 00 04 8e fa 71 5e 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcomq^)


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      14192.168.2.949769162.159.61.34438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 04 65 64 67 65 09 6d 69 63 72 6f 73 6f 66 74 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 51 00 0c 00 4d 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: edgemicrosoftcom)QM
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:40 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f4d38d5e702-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC468INData Raw: 00 00 81 80 00 01 00 04 00 00 00 01 04 65 64 67 65 09 6d 69 63 72 6f 73 6f 66 74 03 63 6f 6d 00 00 01 00 01 c0 0c 00 05 00 01 00 00 0d e1 00 2d 12 65 64 67 65 2d 6d 69 63 72 6f 73 6f 66 74 2d 63 6f 6d 0b 64 75 61 6c 2d 61 2d 30 30 33 36 08 61 2d 6d 73 65 64 67 65 03 6e 65 74 00 c0 30 00 05 00 01 00 00 00 0d 00 02 c0 43 c0 43 00 01 00 01 00 00 00 0d 00 04 cc 4f c5 ef c0 43 00 01 00 01 00 00 00 0d 00 04 0d 6b 15 ef 00 00 29 04 d0 00 00 00 00 01 3e 00 0c 01 3a 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: edgemicrosoftcom-edge-microsoft-comdual-a-0036a-msedgenet0CCOCk)>:


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      15192.168.2.949768162.159.61.34438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 04 65 64 67 65 09 6d 69 63 72 6f 73 6f 66 74 03 63 6f 6d 00 00 41 00 01 00 00 29 10 00 00 00 00 00 00 51 00 0c 00 4d 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: edgemicrosoftcomA)QM
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:40 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f4d4f982e57-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 01 00 01 04 65 64 67 65 09 6d 69 63 72 6f 73 6f 66 74 03 63 6f 6d 00 00 41 00 01 c0 0c 00 05 00 01 00 00 0d 95 00 2d 12 65 64 67 65 2d 6d 69 63 72 6f 73 6f 66 74 2d 63 6f 6d 0b 64 75 61 6c 2d 61 2d 30 30 33 36 08 61 2d 6d 73 65 64 67 65 03 6e 65 74 00 c0 4f 00 06 00 01 00 00 00 75 00 23 03 6e 73 31 c0 4f 06 6d 73 6e 68 73 74 c0 11 78 2b 22 e5 00 00 07 08 00 00 03 84 00 24 ea 00 00 00 00 f0 00 00 29 04 d0 00 00 00 00 01 3d 00 0c 01 39 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: edgemicrosoftcomA-edge-microsoft-comdual-a-0036a-msedgenetOu#ns1Omsnhstx+"$)=9


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      16192.168.2.949770162.159.61.34438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC245OUTPOST /dns-query HTTP/1.1
                                                                                                                                                                                                                                                                      Host: chrome.cloudflare-dns.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 128
                                                                                                                                                                                                                                                                      Accept: application/dns-message
                                                                                                                                                                                                                                                                      Accept-Language: *
                                                                                                                                                                                                                                                                      User-Agent: Chrome
                                                                                                                                                                                                                                                                      Accept-Encoding: identity
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC128OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom)TP
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC247INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Server: cloudflare
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:40 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/dns-message
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: *
                                                                                                                                                                                                                                                                      Content-Length: 468
                                                                                                                                                                                                                                                                      CF-RAY: 8e2e4f4d4a9de591-DFW
                                                                                                                                                                                                                                                                      alt-svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC468INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 01 2a 00 04 8e fa 71 5e 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                                                                                                                                                      Data Ascii: wwwgstaticcom*q^)


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      17192.168.2.94977223.221.22.2074438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC627OUTGET /bundles/v1/edgeChromium/latest/vendors.7e27cca6027b8d6697cb.js HTTP/1.1
                                                                                                                                                                                                                                                                      Host: assets.msn.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      sec-ch-ua: "Microsoft Edge";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                                                                                                                                                                                                                                                      Origin: https://ntp.msn.com
                                                                                                                                                                                                                                                                      sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: same-site
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: script
                                                                                                                                                                                                                                                                      Referer: https://ntp.msn.com/
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC1234INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Content-Type: application/javascript
                                                                                                                                                                                                                                                                      Content-MD5: 2o3TH2IeNXyf9OP87xu6FA==
                                                                                                                                                                                                                                                                      Last-Modified: Fri, 01 Nov 2024 23:26:25 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DCFACC9A8414C2
                                                                                                                                                                                                                                                                      Server: Windows-Azure-Blob/1.0 Microsoft-HTTPAPI/2.0
                                                                                                                                                                                                                                                                      x-ms-request-id: 4e9cf586-501e-004a-2ac0-2f51e0000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:40 GMT
                                                                                                                                                                                                                                                                      Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Connection: Transfer-Encoding
                                                                                                                                                                                                                                                                      Alt-Svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      Akamai-Request-BC: [a=23.221.23.207,b=83593312,c=g,n=US_TX_DALLAS,o=20940]
                                                                                                                                                                                                                                                                      Server-Timing: clientrtt; dur=0, clienttt; dur=1, origin; dur=0, cdntime; dur=1, wpo;dur=0,1s;dur=0
                                                                                                                                                                                                                                                                      Akamai-Cache-Status: Hit from child
                                                                                                                                                                                                                                                                      Akamai-Server-IP: 23.221.23.207
                                                                                                                                                                                                                                                                      Akamai-Request-ID: 4fb8860
                                                                                                                                                                                                                                                                      Access-Control-Allow-Credentials: true
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: https://ntp.msn.com
                                                                                                                                                                                                                                                                      report-to: {"group":"network-errors","max_age":604800,"endpoints":[{"url":"https://deff.nelreports.net/api/report?cat=msn"}]}
                                                                                                                                                                                                                                                                      nel: {"report_to":"network-errors","max_age":604800,"success_fraction":0.001,"failure_fraction":0.1}
                                                                                                                                                                                                                                                                      Cache-Control: public, no-transform, max-age=31535892
                                                                                                                                                                                                                                                                      Timing-Allow-Origin: *
                                                                                                                                                                                                                                                                      Akamai-GRN: 0.cf17dd17.1731663940.4fb8860
                                                                                                                                                                                                                                                                      Vary: Origin
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC15150INData Raw: 30 30 30 30 36 30 30 30 0d 0a 2f 2a 21 20 46 6f 72 20 6c 69 63 65 6e 73 65 20 69 6e 66 6f 72 6d 61 74 69 6f 6e 20 70 6c 65 61 73 65 20 73 65 65 20 76 65 6e 64 6f 72 73 2e 37 65 32 37 63 63 61 36 30 32 37 62 38 64 36 36 39 37 63 62 2e 6a 73 2e 4c 49 43 45 4e 53 45 2e 74 78 74 20 2a 2f 0a 28 73 65 6c 66 2e 65 64 67 65 43 68 72 6f 6d 69 75 6d 57 65 62 70 61 63 6b 43 68 75 6e 6b 73 3d 73 65 6c 66 2e 65 64 67 65 43 68 72 6f 6d 69 75 6d 57 65 62 70 61 63 6b 43 68 75 6e 6b 73 7c 7c 5b 5d 29 2e 70 75 73 68 28 5b 5b 22 76 65 6e 64 6f 72 73 22 5d 2c 7b 37 33 30 34 30 3a 66 75 6e 63 74 69 6f 6e 28 74 29 7b 66 75 6e 63 74 69 6f 6e 20 65 28 29 7b 7d 74 2e 65 78 70 6f 72 74 73 3d 65 2c 74 2e 65 78 70 6f 72 74 73 2e 48 74 74 70 73 41 67 65 6e 74 3d 65 7d 2c 31 33 30 31
                                                                                                                                                                                                                                                                      Data Ascii: 00006000/*! For license information please see vendors.7e27cca6027b8d6697cb.js.LICENSE.txt */(self.edgeChromiumWebpackChunks=self.edgeChromiumWebpackChunks||[]).push([["vendors"],{73040:function(t){function e(){}t.exports=e,t.exports.HttpsAgent=e},1301
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC9438INData Raw: 2c 65 29 7b 76 61 72 20 6e 3d 6e 65 77 20 52 65 67 45 78 70 28 22 5e 28 3f 3a 28 5c 5c 64 7b 34 7d 7c 5b 2b 2d 5d 5c 5c 64 7b 22 2b 28 34 2b 65 29 2b 22 7d 29 7c 28 5c 5c 64 7b 32 7d 7c 5b 2b 2d 5d 5c 5c 64 7b 22 2b 28 32 2b 65 29 2b 22 7d 29 24 29 22 29 2c 72 3d 74 2e 6d 61 74 63 68 28 6e 29 3b 69 66 28 21 72 29 72 65 74 75 72 6e 7b 79 65 61 72 3a 4e 61 4e 2c 72 65 73 74 44 61 74 65 53 74 72 69 6e 67 3a 22 22 7d 3b 76 61 72 20 69 3d 72 5b 31 5d 3f 70 61 72 73 65 49 6e 74 28 72 5b 31 5d 29 3a 6e 75 6c 6c 2c 6f 3d 72 5b 32 5d 3f 70 61 72 73 65 49 6e 74 28 72 5b 32 5d 29 3a 6e 75 6c 6c 3b 72 65 74 75 72 6e 7b 79 65 61 72 3a 6e 75 6c 6c 3d 3d 3d 6f 3f 69 3a 31 30 30 2a 6f 2c 72 65 73 74 44 61 74 65 53 74 72 69 6e 67 3a 74 2e 73 6c 69 63 65 28 28 72 5b 31 5d
                                                                                                                                                                                                                                                                      Data Ascii: ,e){var n=new RegExp("^(?:(\\d{4}|[+-]\\d{"+(4+e)+"})|(\\d{2}|[+-]\\d{"+(2+e)+"})$)"),r=t.match(n);if(!r)return{year:NaN,restDateString:""};var i=r[1]?parseInt(r[1]):null,o=r[2]?parseInt(r[2]):null;return{year:null===o?i:100*o,restDateString:t.slice((r[1]
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 36 30 30 30 0d 0a 75 78 2f 22 29 7d 2c 61 3d 66 75 6e 63 74 69 6f 6e 28 74 2c 65 29 7b 72 65 74 75 72 6e 20 4f 62 6a 65 63 74 2e 6b 65 79 73 28 74 29 2e 66 6f 72 45 61 63 68 28 28 66 75 6e 63 74 69 6f 6e 28 6e 29 7b 72 65 74 75 72 6e 20 65 5b 6e 5d 3d 74 5b 6e 5d 7d 29 29 7d 2c 73 3d 66 75 6e 63 74 69 6f 6e 28 74 2c 65 29 7b 76 61 72 20 6e 3d 66 75 6e 63 74 69 6f 6e 20 6e 28 72 29 7b 69 66 28 65 28 72 29 29 7b 76 61 72 20 69 3d 74 28 72 29 3b 72 65 74 75 72 6e 20 61 28 74 2c 6e 29 2c 69 7d 72 65 74 75 72 6e 7b 7d 7d 3b 72 65 74 75 72 6e 20 61 28 74 2c 6e 29 2c 6e 7d 2c 66 3d 22 52 4f 4f 54 22 2c 6c 3d 22 4e 41 4d 45 53 50 41 43 45 5f 52 4f 4f 54 22 2c 76 3d 22 43 48 49 4c 44 22 2c 64 3d 66 75 6e 63 74 69 6f 6e 28 74 29 7b 72 65 74 75 72 6e 20
                                                                                                                                                                                                                                                                      Data Ascii: 00006000ux/")},a=function(t,e){return Object.keys(t).forEach((function(n){return e[n]=t[n]}))},s=function(t,e){var n=function n(r){if(e(r)){var i=t(r);return a(t,n),i}return{}};return a(t,n),n},f="ROOT",l="NAMESPACE_ROOT",v="CHILD",d=function(t){return
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC8204INData Raw: 65 3d 6c 5b 74 2e 63 68 61 72 41 74 28 6f 2b 2b 29 5d 3c 3c 31 38 7c 6c 5b 74 2e 63 68 61 72 41 74 28 6f 2b 2b 29 5d 3c 3c 31 32 7c 28 6e 3d 6c 5b 74 2e 63 68 61 72 41 74 28 6f 2b 2b 29 5d 29 3c 3c 36 7c 28 72 3d 6c 5b 74 2e 63 68 61 72 41 74 28 6f 2b 2b 29 5d 29 2c 69 2b 3d 36 34 3d 3d 3d 6e 3f 64 28 65 3e 3e 31 36 26 32 35 35 29 3a 36 34 3d 3d 3d 72 3f 64 28 65 3e 3e 31 36 26 32 35 35 2c 65 3e 3e 38 26 32 35 35 29 3a 64 28 65 3e 3e 31 36 26 32 35 35 2c 65 3e 3e 38 26 32 35 35 2c 32 35 35 26 65 29 3b 72 65 74 75 72 6e 20 69 7d 2c 4e 3d 6f 3f 74 3d 3e 61 74 6f 62 28 67 28 74 29 29 3a 63 3f 74 3d 3e 42 75 66 66 65 72 2e 66 72 6f 6d 28 74 2c 22 62 61 73 65 36 34 22 29 2e 74 6f 53 74 72 69 6e 67 28 22 62 69 6e 61 72 79 22 29 3a 4c 2c 44 3d 63 3f 74 3d 3e 70
                                                                                                                                                                                                                                                                      Data Ascii: e=l[t.charAt(o++)]<<18|l[t.charAt(o++)]<<12|(n=l[t.charAt(o++)])<<6|(r=l[t.charAt(o++)]),i+=64===n?d(e>>16&255):64===r?d(e>>16&255,e>>8&255):d(e>>16&255,e>>8&255,255&e);return i},N=o?t=>atob(g(t)):c?t=>Buffer.from(t,"base64").toString("binary"):L,D=c?t=>p
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC2479INData Raw: 30 30 30 30 30 39 41 33 0d 0a 72 63 65 2c 45 2e 65 78 65 63 28 74 29 29 3b 72 65 74 75 72 6e 20 65 2e 6c 61 73 74 49 6e 64 65 78 3d 74 2e 6c 61 73 74 49 6e 64 65 78 2c 65 7d 2c 78 3d 6e 28 35 36 31 33 37 29 2c 5f 3d 78 2e 5a 3f 78 2e 5a 2e 70 72 6f 74 6f 74 79 70 65 3a 76 6f 69 64 20 30 2c 53 3d 5f 3f 5f 2e 76 61 6c 75 65 4f 66 3a 76 6f 69 64 20 30 3b 76 61 72 20 54 3d 66 75 6e 63 74 69 6f 6e 28 74 29 7b 72 65 74 75 72 6e 20 53 3f 4f 62 6a 65 63 74 28 53 2e 63 61 6c 6c 28 74 29 29 3a 7b 7d 7d 2c 4c 3d 6e 28 39 37 35 35 38 29 3b 76 61 72 20 4e 3d 66 75 6e 63 74 69 6f 6e 28 74 2c 65 2c 6e 29 7b 76 61 72 20 72 3d 74 2e 63 6f 6e 73 74 72 75 63 74 6f 72 3b 73 77 69 74 63 68 28 65 29 7b 63 61 73 65 22 5b 6f 62 6a 65 63 74 20 41 72 72 61 79 42 75 66 66 65 72 5d
                                                                                                                                                                                                                                                                      Data Ascii: 000009A3rce,E.exec(t));return e.lastIndex=t.lastIndex,e},x=n(56137),_=x.Z?x.Z.prototype:void 0,S=_?_.valueOf:void 0;var T=function(t){return S?Object(S.call(t)):{}},L=n(97558);var N=function(t,e,n){var r=t.constructor;switch(e){case"[object ArrayBuffer]
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 3d 6e 28 37 31 31 35 35 29 3b 65 2e 5a 3d 66 75 6e 63 74 69 6f 6e 28 74 2c 65 2c 6e 2c 73 29 7b 76 61 72 20 66 3d 2d 31 2c 6c 3d 69 2e 5a 2c 76 3d 21 30 2c 64 3d 74 2e 6c 65 6e 67 74 68 2c 70 3d 5b 5d 2c 68 3d 65 2e 6c 65 6e 67 74 68 3b 69 66 28 21 64 29 72 65 74 75 72 6e 20 70 3b 6e 26 26 28 65 3d 28 30 2c 75 2e 5a 29 28 65 2c 28 30 2c 63 2e 5a 29 28 6e 29 29 29 2c 73 3f 28 6c 3d 6f 2e 5a 2c 76 3d 21 31 29 3a 65 2e 6c 65 6e 67 74 68 3e 3d 32 30 30 26 26 28 6c 3d 61 2e 5a 2c 76 3d 21 31 2c 65 3d 6e 65 77 20 72 2e 5a 28 65 29 29 3b 74 3a 66 6f 72 28 3b 2b 2b 66 3c 64 3b 29 7b 76 61 72 20 67 3d 74 5b 66 5d 2c 5a 3d 6e 75 6c 6c 3d 3d 6e 3f 67 3a 6e 28 67 29 3b 69 66 28 67 3d 73 7c 7c 30 21 3d 3d 67 3f 67 3a 30 2c 76 26 26 5a 3d
                                                                                                                                                                                                                                                                      Data Ascii: 00004000=n(71155);e.Z=function(t,e,n,s){var f=-1,l=i.Z,v=!0,d=t.length,p=[],h=e.length;if(!d)return p;n&&(e=(0,u.Z)(e,(0,c.Z)(n))),s?(l=o.Z,v=!1):e.length>=200&&(l=a.Z,v=!1,e=new r.Z(e));t:for(;++f<d;){var g=t[f],Z=null==n?g:n(g);if(g=s||0!==g?g:0,v&&Z=
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC12INData Raw: 6e 3a 64 65 6c 65 74 65 20 74 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: n:delete t
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 5b 63 5d 29 2c 69 7d 7d 2c 38 37 33 33 39 3a 66 75 6e 63 74 69 6f 6e 28 74 2c 65 2c 6e 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 76 61 72 20 72 3d 6e 28 38 30 33 32 33 29 2c 69 3d 6e 28 33 36 31 32 29 2c 6f 3d 4f 62 6a 65 63 74 2e 70 72 6f 74 6f 74 79 70 65 2e 70 72 6f 70 65 72 74 79 49 73 45 6e 75 6d 65 72 61 62 6c 65 2c 75 3d 4f 62 6a 65 63 74 2e 67 65 74 4f 77 6e 50 72 6f 70 65 72 74 79 53 79 6d 62 6f 6c 73 2c 63 3d 75 3f 66 75 6e 63 74 69 6f 6e 28 74 29 7b 72 65 74 75 72 6e 20 6e 75 6c 6c 3d 3d 74 3f 5b 5d 3a 28 74 3d 4f 62 6a 65 63 74 28 74 29 2c 28 30 2c 72 2e 5a 29 28 75 28 74 29 2c 28 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 20 6f 2e 63 61 6c 6c 28 74 2c 65 29 7d 29 29 29 7d 3a 69 2e 5a 3b 65 2e 5a 3d
                                                                                                                                                                                                                                                                      Data Ascii: 00004000[c]),i}},87339:function(t,e,n){"use strict";var r=n(80323),i=n(3612),o=Object.prototype.propertyIsEnumerable,u=Object.getOwnPropertySymbols,c=u?function(t){return null==t?[]:(t=Object(t),(0,r.Z)(u(t),(function(e){return o.call(t,e)})))}:i.Z;e.Z=
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC12INData Raw: 3d 3d 74 79 70 65 6f 66 20 74 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: ==typeof t
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC15599INData Raw: 30 30 30 30 33 43 45 33 0d 0a 7d 7d 2c 34 34 31 39 39 3a 66 75 6e 63 74 69 6f 6e 28 74 2c 65 2c 6e 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 76 61 72 20 72 3d 6e 28 34 38 35 31 30 29 2c 69 3d 6e 28 31 32 35 34 35 29 2c 6f 3d 6e 28 32 35 31 39 37 29 2c 75 3d 46 75 6e 63 74 69 6f 6e 2e 70 72 6f 74 6f 74 79 70 65 2c 63 3d 4f 62 6a 65 63 74 2e 70 72 6f 74 6f 74 79 70 65 2c 61 3d 75 2e 74 6f 53 74 72 69 6e 67 2c 73 3d 63 2e 68 61 73 4f 77 6e 50 72 6f 70 65 72 74 79 2c 66 3d 61 2e 63 61 6c 6c 28 4f 62 6a 65 63 74 29 3b 65 2e 5a 3d 66 75 6e 63 74 69 6f 6e 28 74 29 7b 69 66 28 21 28 30 2c 6f 2e 5a 29 28 74 29 7c 7c 22 5b 6f 62 6a 65 63 74 20 4f 62 6a 65 63 74 5d 22 21 3d 28 30 2c 72 2e 5a 29 28 74 29 29 72 65 74 75 72 6e 21 31 3b 76 61 72 20 65 3d 28 30 2c 69
                                                                                                                                                                                                                                                                      Data Ascii: 00003CE3}},44199:function(t,e,n){"use strict";var r=n(48510),i=n(12545),o=n(25197),u=Function.prototype,c=Object.prototype,a=u.toString,s=c.hasOwnProperty,f=a.call(Object);e.Z=function(t){if(!(0,o.Z)(t)||"[object Object]"!=(0,r.Z)(t))return!1;var e=(0,i


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      18192.168.2.94977123.221.22.2074438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC629OUTGET /bundles/v1/edgeChromium/latest/microsoft.48132e5427deb971ee28.js HTTP/1.1
                                                                                                                                                                                                                                                                      Host: assets.msn.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      sec-ch-ua: "Microsoft Edge";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                                                                                                                                                                                                                                                      Origin: https://ntp.msn.com
                                                                                                                                                                                                                                                                      sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: same-site
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: script
                                                                                                                                                                                                                                                                      Referer: https://ntp.msn.com/
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC1234INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Content-Type: application/javascript
                                                                                                                                                                                                                                                                      Content-MD5: HCbv7Xblg3hSGHB1/o489Q==
                                                                                                                                                                                                                                                                      Last-Modified: Fri, 01 Nov 2024 23:26:31 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DCFACC9E0B3EBD
                                                                                                                                                                                                                                                                      Server: Windows-Azure-Blob/1.0 Microsoft-HTTPAPI/2.0
                                                                                                                                                                                                                                                                      x-ms-request-id: eef5d9cd-e01e-00c5-73b5-2c9198000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:40 GMT
                                                                                                                                                                                                                                                                      Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Connection: Transfer-Encoding
                                                                                                                                                                                                                                                                      Alt-Svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      Akamai-Request-BC: [a=23.221.23.207,b=83593330,c=g,n=US_TX_DALLAS,o=20940]
                                                                                                                                                                                                                                                                      Server-Timing: clientrtt; dur=0, clienttt; dur=1, origin; dur=0, cdntime; dur=1, wpo;dur=0,1s;dur=0
                                                                                                                                                                                                                                                                      Akamai-Cache-Status: Hit from child
                                                                                                                                                                                                                                                                      Akamai-Server-IP: 23.221.23.207
                                                                                                                                                                                                                                                                      Akamai-Request-ID: 4fb8872
                                                                                                                                                                                                                                                                      Access-Control-Allow-Credentials: true
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: https://ntp.msn.com
                                                                                                                                                                                                                                                                      report-to: {"group":"network-errors","max_age":604800,"endpoints":[{"url":"https://deff.nelreports.net/api/report?cat=msn"}]}
                                                                                                                                                                                                                                                                      nel: {"report_to":"network-errors","max_age":604800,"success_fraction":0.001,"failure_fraction":0.1}
                                                                                                                                                                                                                                                                      Cache-Control: public, no-transform, max-age=31535892
                                                                                                                                                                                                                                                                      Timing-Allow-Origin: *
                                                                                                                                                                                                                                                                      Akamai-GRN: 0.cf17dd17.1731663940.4fb8872
                                                                                                                                                                                                                                                                      Vary: Origin
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC15150INData Raw: 30 30 30 30 36 30 30 30 0d 0a 2f 2a 21 20 46 6f 72 20 6c 69 63 65 6e 73 65 20 69 6e 66 6f 72 6d 61 74 69 6f 6e 20 70 6c 65 61 73 65 20 73 65 65 20 6d 69 63 72 6f 73 6f 66 74 2e 34 38 31 33 32 65 35 34 32 37 64 65 62 39 37 31 65 65 32 38 2e 6a 73 2e 4c 49 43 45 4e 53 45 2e 74 78 74 20 2a 2f 0a 28 73 65 6c 66 2e 65 64 67 65 43 68 72 6f 6d 69 75 6d 57 65 62 70 61 63 6b 43 68 75 6e 6b 73 3d 73 65 6c 66 2e 65 64 67 65 43 68 72 6f 6d 69 75 6d 57 65 62 70 61 63 6b 43 68 75 6e 6b 73 7c 7c 5b 5d 29 2e 70 75 73 68 28 5b 5b 22 6d 69 63 72 6f 73 6f 66 74 22 5d 2c 7b 36 33 31 36 35 3a 66 75 6e 63 74 69 6f 6e 28 74 2c 65 2c 6e 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 6e 2e 64 28 65 2c 7b 5a 3a 66 75 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 20 41 7d 7d 29 3b 76
                                                                                                                                                                                                                                                                      Data Ascii: 00006000/*! For license information please see microsoft.48132e5427deb971ee28.js.LICENSE.txt */(self.edgeChromiumWebpackChunks=self.edgeChromiumWebpackChunks||[]).push([["microsoft"],{63165:function(t,e,n){"use strict";n.d(e,{Z:function(){return A}});v
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC9438INData Raw: 24 2c 6f 2e 48 44 2c 6f 2e 68 6a 2c 6f 2e 6a 6e 2c 6f 2e 6d 66 2c 6f 2e 6b 4a 2c 6f 2e 4b 6e 2c 6f 2e 6e 64 2c 72 2e 4d 46 2c 6f 2e 59 36 2c 72 2e 63 70 2c 73 2e 70 37 2c 73 2e 55 59 2c 6f 2e 6c 5f 2c 6c 2e 63 39 2c 6c 2e 49 62 2c 6f 2e 49 64 2c 6f 2e 72 57 2c 6f 2e 59 6d 2c 6f 2e 6f 38 2c 6f 2e 6c 65 2c 6f 2e 6e 72 2c 6f 2e 6d 66 2c 6f 2e 4b 6e 2c 6f 2e 4a 5f 2c 6f 2e 6b 4a 2c 6f 2e 56 5a 2c 6f 2e 48 44 2c 6f 2e 68 6a 2c 6f 2e 6a 6e 2c 6f 2e 59 36 2c 6f 2e 74 4f 2c 6f 2e 55 41 2c 6f 2e 4d 72 2c 6f 2e 58 7a 2c 6f 2e 6e 64 2c 64 2e 70 75 2c 6f 2e 46 59 2c 6f 2e 6c 5f 2c 6c 2e 49 62 2c 6f 2e 6d 36 2c 72 2e 77 31 2c 61 2e 47 57 2c 61 2e 4a 6a 2c 75 2e 70 5a 2c 75 2e 61 7a 2c 75 2e 5f 6c 2c 75 2e 43 4e 2c 75 2e 46 36 2c 61 2e 44 4f 3b 66 75 6e 63 74 69 6f 6e
                                                                                                                                                                                                                                                                      Data Ascii: $,o.HD,o.hj,o.jn,o.mf,o.kJ,o.Kn,o.nd,r.MF,o.Y6,r.cp,s.p7,s.UY,o.l_,l.c9,l.Ib,o.Id,o.rW,o.Ym,o.o8,o.le,o.nr,o.mf,o.Kn,o.J_,o.kJ,o.VZ,o.HD,o.hj,o.jn,o.Y6,o.tO,o.UA,o.Mr,o.Xz,o.nd,d.pu,o.FY,o.l_,l.Ib,o.m6,r.w1,a.GW,a.Jj,u.pZ,u.az,u._l,u.CN,u.F6,a.DO;function
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 33 39 38 0d 0a 65 5b 72 2e 4d 57 5d 28 61 29 2c 31 3d 3d 3d 65 3f 74 5b 63 2e 79 73 5d 28 73 29 3a 74 5b 63 2e 63 4c 5d 28 73 29 7d 7d 7d 66 75 6e 63 74 69 6f 6e 20 76 28 74 2c 6e 29 7b 76 61 72 20 69 3d 28 30 2c 6f 2e 6a 29 28 65 7c 7c 7b 7d 29 3b 69 26 26 69 5b 72 2e 6d 63 5d 26 26 69 5b 72 2e 6d 63 5d 28 74 2c 6e 29 7d 21 66 75 6e 63 74 69 6f 6e 28 74 29 7b 6e 3d 28 30 2c 61 2e 76 34 29 28 74 2e 6c 6f 67 67 69 6e 67 4c 65 76 65 6c 43 6f 6e 73 6f 6c 65 2c 30 29 2c 6c 3d 28 30 2c 61 2e 76 34 29 28 74 2e 6c 6f 67 67 69 6e 67 4c 65 76 65 6c 54 65 6c 65 6d 65 74 72 79 2c 31 29 2c 68 3d 28 30 2c 61 2e 76 34 29 28 74 2e 6d 61 78 4d 65 73 73 61 67 65 4c 69 6d 69 74 2c 32 35 29 2c 66 3d 28 30 2c 61 2e 76 34 29 28 74 5b 72 2e 46 72 5d 2c 21 31 29
                                                                                                                                                                                                                                                                      Data Ascii: 00004398e[r.MW](a),1===e?t[c.ys](s):t[c.cL](s)}}}function v(t,n){var i=(0,o.j)(e||{});i&&i[r.mc]&&i[r.mc](t,n)}!function(t){n=(0,a.v4)(t.loggingLevelConsole,0),l=(0,a.v4)(t.loggingLevelTelemetry,1),h=(0,a.v4)(t.maxMessageLimit,25),f=(0,a.v4)(t[r.Fr],!1)
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC932INData Raw: 75 6e 63 74 69 6f 6e 28 74 29 7b 76 61 72 20 65 3d 6f 2e 5f 6e 65 78 74 28 29 3b 72 65 74 75 72 6e 20 65 26 26 65 2e 75 6e 6c 6f 61 64 28 61 2c 74 29 2c 21 65 7d 2c 61 5b 69 2e 7a 56 5d 3d 66 75 6e 63 74 69 6f 6e 28 74 2c 6e 29 7b 72 65 74 75 72 6e 20 76 6f 69 64 20 30 3d 3d 3d 74 26 26 28 74 3d 6e 75 6c 6c 29 2c 28 30 2c 73 2e 6b 4a 29 28 74 29 26 26 28 74 3d 62 28 74 2c 72 2c 65 2c 6e 29 29 2c 76 28 74 7c 7c 61 5b 69 2e 57 32 5d 28 29 2c 65 2c 6e 29 7d 2c 61 7d 66 75 6e 63 74 69 6f 6e 20 6d 28 74 2c 65 2c 6e 29 7b 76 61 72 20 72 3d 65 5b 69 2e 54 43 5d 7c 7c 7b 7d 2c 6f 3d 70 28 74 2c 72 2c 65 2c 6e 29 2e 63 74 78 3b 72 65 74 75 72 6e 20 6f 5b 69 2e 75 4c 5d 3d 66 75 6e 63 74 69 6f 6e 28 74 29 7b 72 65 74 75 72 6e 20 6f 2e 69 74 65 72 61 74 65 28 28 66
                                                                                                                                                                                                                                                                      Data Ascii: unction(t){var e=o._next();return e&&e.unload(a,t),!e},a[i.zV]=function(t,n){return void 0===t&&(t=null),(0,s.kJ)(t)&&(t=b(t,r,e,n)),v(t||a[i.W2](),e,n)},a}function m(t,e,n){var r=e[i.TC]||{},o=p(t,r,e,n).ctx;return o[i.uL]=function(t){return o.iterate((f
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 64 5d 3b 72 65 74 75 72 6e 20 6d 7c 7c 28 6d 3d 65 5b 64 5d 3d 7b 7d 29 2c 65 2e 73 65 74 4e 65 78 74 28 76 29 2c 74 26 26 28 30 2c 63 2e 4c 6d 29 28 65 5b 61 2e 6f 56 5d 28 29 2c 28 66 75 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 20 67 2b 22 3a 22 2b 73 7d 29 2c 28 66 75 6e 63 74 69 6f 6e 28 29 7b 6d 5b 70 5d 3d 21 30 3b 74 72 79 7b 76 61 72 20 74 3d 76 3f 76 2e 5f 69 64 3a 61 2e 71 53 3b 74 26 26 28 6d 5b 74 5d 3d 21 31 29 2c 66 3d 6e 28 65 29 7d 63 61 74 63 68 28 74 29 7b 76 61 72 20 63 3d 21 76 7c 7c 6d 5b 76 2e 5f 69 64 5d 3b 63 26 26 28 66 3d 21 30 29 2c 76 26 26 63 7c 7c 28 30 2c 72 2e 6b 50 29 28 65 5b 69 2e 6d 63 5d 28 29 2c 31 2c 37 33 2c 22 50 6c 75 67 69 6e 20 5b 22 2b 67 2b 22 5d 20 66 61 69 6c 65 64 20 64 75
                                                                                                                                                                                                                                                                      Data Ascii: 00004000d];return m||(m=e[d]={}),e.setNext(v),t&&(0,c.Lm)(e[a.oV](),(function(){return g+":"+s}),(function(){m[p]=!0;try{var t=v?v._id:a.qS;t&&(m[t]=!1),f=n(e)}catch(t){var c=!v||m[v._id];c&&(f=!0),v&&c||(0,r.kP)(e[i.mc](),1,73,"Plugin ["+g+"] failed du
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC12INData Raw: 54 79 70 65 5d 3b 21 76 74 28 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: Type];!vt(
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 65 2e 73 65 6e 64 54 79 70 65 29 26 26 65 2e 69 73 42 65 61 63 6f 6e 26 26 32 3d 3d 3d 65 2e 73 65 6e 64 52 65 61 73 6f 6e 26 26 28 67 3d 70 5b 32 5d 7c 7c 70 5b 33 5d 7c 7c 67 29 3b 76 61 72 20 76 3d 64 74 3b 28 65 2e 69 73 42 65 61 63 6f 6e 7c 7c 33 3d 3d 3d 67 2e 5f 74 72 61 6e 73 70 6f 72 74 29 26 26 28 76 3d 21 31 29 3b 76 61 72 20 6d 3d 6b 74 28 65 2c 76 29 3b 76 3d 76 7c 7c 6d 2e 75 73 65 48 64 72 73 3b 76 61 72 20 62 3d 28 30 2c 63 2e 68 4b 29 28 29 3b 28 30 2c 6f 2e 4c 6d 29 28 79 2c 28 66 75 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 22 48 74 74 70 4d 61 6e 61 67 65 72 3a 5f 64 6f 50 61 79 6c 6f 61 64 53 65 6e 64 22 7d 29 2c 28 66 75 6e 63 74 69 6f 6e 28 29 7b 66 6f 72 28 76 61 72 20 70 3d 30 3b 70 3c 65 2e 62 61
                                                                                                                                                                                                                                                                      Data Ascii: 00004000e.sendType)&&e.isBeacon&&2===e.sendReason&&(g=p[2]||p[3]||g);var v=dt;(e.isBeacon||3===g._transport)&&(v=!1);var m=kt(e,v);v=v||m.useHdrs;var b=(0,c.hK)();(0,o.Lm)(y,(function(){return"HttpManager:_doPayloadSend"}),(function(){for(var p=0;p<e.ba
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC12INData Raw: 22 7c 22 29 3b 69 2e 6c 65 6e 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: "|");i.len
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC11402INData Raw: 30 30 30 30 32 43 37 45 0d 0a 67 74 68 3e 30 26 26 6e 2e 73 65 74 49 64 28 69 5b 30 5d 29 3b 74 72 79 7b 69 66 28 69 2e 6c 65 6e 67 74 68 3e 31 29 7b 76 61 72 20 72 3d 2b 69 5b 31 5d 3b 6e 2e 61 63 71 75 69 73 69 74 69 6f 6e 44 61 74 65 3d 2b 6e 65 77 20 44 61 74 65 28 72 29 2c 6e 2e 61 63 71 75 69 73 69 74 69 6f 6e 44 61 74 65 3d 6e 2e 61 63 71 75 69 73 69 74 69 6f 6e 44 61 74 65 3e 30 3f 6e 2e 61 63 71 75 69 73 69 74 69 6f 6e 44 61 74 65 3a 30 7d 69 66 28 69 2e 6c 65 6e 67 74 68 3e 32 29 7b 76 61 72 20 6f 3d 2b 69 5b 32 5d 3b 6e 2e 72 65 6e 65 77 61 6c 44 61 74 65 3d 2b 6e 65 77 20 44 61 74 65 28 6f 29 2c 6e 2e 72 65 6e 65 77 61 6c 44 61 74 65 3d 6e 2e 72 65 6e 65 77 61 6c 44 61 74 65 3e 30 3f 6e 2e 72 65 6e 65 77 61 6c 44 61 74 65 3a 30 7d 7d 63 61 74
                                                                                                                                                                                                                                                                      Data Ascii: 00002C7Egth>0&&n.setId(i[0]);try{if(i.length>1){var r=+i[1];n.acquisitionDate=+new Date(r),n.acquisitionDate=n.acquisitionDate>0?n.acquisitionDate:0}if(i.length>2){var o=+i[2];n.renewalDate=+new Date(o),n.renewalDate=n.renewalDate>0?n.renewalDate:0}}cat
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 67 65 74 55 73 65 72 43 6f 6e 73 65 6e 74 44 65 74 61 69 6c 73 28 29 2c 6e 5b 34 5d 3d 69 2e 67 65 74 55 73 65 72 43 6f 6e 73 65 6e 74 28 29 2c 6e 29 2c 66 29 7d 2c 74 2e 61 70 70 6c 79 4f 73 43 6f 6e 74 65 78 74 3d 66 75 6e 63 74 69 6f 6e 28 65 29 7b 76 61 72 20 6e 2c 69 3d 74 2e 6f 73 3b 71 74 28 35 2c 65 2c 46 2c 28 28 6e 3d 7b 7d 29 5b 30 5d 3d 69 2e 6e 61 6d 65 2c 6e 5b 31 5d 3d 69 2e 76 65 72 2c 6e 29 2c 66 29 7d 2c 74 2e 61 70 70 6c 79 53 64 6b 43 6f 6e 74 65 78 74 3d 66 75 6e 63 74 69 6f 6e 28 74 29 7b 76 61 72 20 65 3b 71 74 28 36 2c 74 2c 42 2c 28 28 65 3d 7b 7d 29 5b 32 5d 3d 72 2e 69 6e 73 74 61 6c 6c 49 64 2c 65 5b 31 5d 3d 72 2e 67 65 74 53 65 71 75 65 6e 63 65 49 64 28 29 2c 65 5b 33 5d 3d 72 2e 65 70 6f 63 68
                                                                                                                                                                                                                                                                      Data Ascii: 00004000getUserConsentDetails(),n[4]=i.getUserConsent(),n),f)},t.applyOsContext=function(e){var n,i=t.os;qt(5,e,F,((n={})[0]=i.name,n[1]=i.ver,n),f)},t.applySdkContext=function(t){var e;qt(6,t,B,((e={})[2]=r.installId,e[1]=r.getSequenceId(),e[3]=r.epoch


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      19192.168.2.94977323.221.22.2074438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC626OUTGET /bundles/v1/edgeChromium/latest/common.c694729adaeead0f8ae0.js HTTP/1.1
                                                                                                                                                                                                                                                                      Host: assets.msn.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      sec-ch-ua: "Microsoft Edge";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                                                                                                                                                                                                                                                                      Origin: https://ntp.msn.com
                                                                                                                                                                                                                                                                      sec-ch-ua-mobile: ?0
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      sec-ch-ua-platform: "Windows"
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: same-site
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: script
                                                                                                                                                                                                                                                                      Referer: https://ntp.msn.com/
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC1235INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Content-Type: application/javascript
                                                                                                                                                                                                                                                                      Content-MD5: 7AQ8NhyM59Pn6p29wTsHuA==
                                                                                                                                                                                                                                                                      Last-Modified: Thu, 14 Nov 2024 20:43:39 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DD04ED04D689A8
                                                                                                                                                                                                                                                                      Server: Windows-Azure-Blob/1.0 Microsoft-HTTPAPI/2.0
                                                                                                                                                                                                                                                                      x-ms-request-id: 8bf18c84-801e-006a-66d5-366355000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:40 GMT
                                                                                                                                                                                                                                                                      Transfer-Encoding: chunked
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Connection: Transfer-Encoding
                                                                                                                                                                                                                                                                      Alt-Svc: h3=":443"; ma=86400
                                                                                                                                                                                                                                                                      Akamai-Request-BC: [a=23.221.23.196,b=146919081,c=g,n=US_TX_DALLAS,o=20940]
                                                                                                                                                                                                                                                                      Server-Timing: clientrtt; dur=0, clienttt; dur=0, origin; dur=0, cdntime; dur=0, wpo;dur=0,1s;dur=0
                                                                                                                                                                                                                                                                      Akamai-Cache-Status: Hit from child
                                                                                                                                                                                                                                                                      Akamai-Server-IP: 23.221.23.196
                                                                                                                                                                                                                                                                      Akamai-Request-ID: 8c1cea9
                                                                                                                                                                                                                                                                      Access-Control-Allow-Credentials: true
                                                                                                                                                                                                                                                                      Access-Control-Allow-Origin: https://ntp.msn.com
                                                                                                                                                                                                                                                                      report-to: {"group":"network-errors","max_age":604800,"endpoints":[{"url":"https://deff.nelreports.net/api/report?cat=msn"}]}
                                                                                                                                                                                                                                                                      nel: {"report_to":"network-errors","max_age":604800,"success_fraction":0.001,"failure_fraction":0.1}
                                                                                                                                                                                                                                                                      Cache-Control: public, no-transform, max-age=31535892
                                                                                                                                                                                                                                                                      Timing-Allow-Origin: *
                                                                                                                                                                                                                                                                      Akamai-GRN: 0.c417dd17.1731663940.8c1cea9
                                                                                                                                                                                                                                                                      Vary: Origin
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC15149INData Raw: 30 30 30 30 36 30 30 30 0d 0a 28 73 65 6c 66 2e 65 64 67 65 43 68 72 6f 6d 69 75 6d 57 65 62 70 61 63 6b 43 68 75 6e 6b 73 3d 73 65 6c 66 2e 65 64 67 65 43 68 72 6f 6d 69 75 6d 57 65 62 70 61 63 6b 43 68 75 6e 6b 73 7c 7c 5b 5d 29 2e 70 75 73 68 28 5b 5b 22 63 6f 6d 6d 6f 6e 22 5d 2c 7b 33 36 37 37 37 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 2c 6e 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 6e 2e 64 28 74 2c 7b 46 76 3a 66 75 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 20 72 7d 2c 67 51 3a 66 75 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 20 69 7d 7d 29 3b 63 6f 6e 73 74 20 69 3d 22 73 65 6c 65 63 74 65 64 4e 61 76 49 74 65 6d 43 6c 69 63 6b 65 64 22 3b 63 6c 61 73 73 20 72 7b 63 6f 6e 73 74 72 75 63 74 6f 72 28 29 7b 74 68 69 73 2e 73 75 70 70 6f 72 74
                                                                                                                                                                                                                                                                      Data Ascii: 00006000(self.edgeChromiumWebpackChunks=self.edgeChromiumWebpackChunks||[]).push([["common"],{36777:function(e,t,n){"use strict";n.d(t,{Fv:function(){return r},gQ:function(){return i}});const i="selectedNavItemClicked";class r{constructor(){this.support
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC9439INData Raw: 44 61 72 6b 47 6c 65 61 6d 55 72 6c 3a 74 68 69 73 2e 62 61 63 6b 67 72 6f 75 6e 64 49 6d 61 67 65 57 43 2e 73 73 72 42 61 63 6b 67 72 6f 75 6e 64 4d 65 74 61 64 61 74 61 2e 64 61 72 6b 2c 4c 69 67 68 74 47 6c 65 61 6d 55 72 6c 3a 74 68 69 73 2e 62 61 63 6b 67 72 6f 75 6e 64 49 6d 61 67 65 57 43 2e 73 73 72 42 61 63 6b 67 72 6f 75 6e 64 4d 65 74 61 64 61 74 61 2e 6c 69 67 68 74 7d 3a 74 68 69 73 2e 62 61 63 6b 67 72 6f 75 6e 64 49 6d 61 67 65 57 43 2e 65 76 65 6e 74 47 6c 65 61 6d 3b 72 65 74 75 72 6e 20 74 3f 74 68 69 73 2e 64 61 72 6b 4d 6f 64 65 51 75 65 72 79 2e 6d 61 74 63 68 65 73 3f 74 2e 44 61 72 6b 47 6c 65 61 6d 55 72 6c 3a 74 2e 4c 69 67 68 74 47 6c 65 61 6d 55 72 6c 3a 6e 75 6c 6c 7d 67 65 74 49 6d 61 67 65 55 52 4c 28 65 29 7b 76 61 72 20 74
                                                                                                                                                                                                                                                                      Data Ascii: DarkGleamUrl:this.backgroundImageWC.ssrBackgroundMetadata.dark,LightGleamUrl:this.backgroundImageWC.ssrBackgroundMetadata.light}:this.backgroundImageWC.eventGleam;return t?this.darkModeQuery.matches?t.DarkGleamUrl:t.LightGleamUrl:null}getImageURL(e){var t
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 36 30 30 30 0d 0a 3d 74 68 69 73 2e 63 68 72 6f 6d 69 75 6d 50 61 67 65 53 65 74 74 69 6e 67 73 53 74 61 74 65 2e 63 75 72 72 65 6e 74 4c 61 79 6f 75 74 26 26 28 30 2c 72 65 2e 49 39 29 28 29 29 7b 74 68 69 73 2e 63 75 72 72 65 6e 74 50 72 6f 76 69 64 65 72 3d 22 4e 6f 42 61 63 6b 67 72 6f 75 6e 64 22 2c 77 69 6e 64 6f 77 2e 64 69 73 70 61 74 63 68 45 76 65 6e 74 28 6e 65 77 20 43 75 73 74 6f 6d 45 76 65 6e 74 28 22 4c 6f 77 45 6e 64 44 65 76 69 63 65 42 6b 67 64 22 2c 7b 64 65 74 61 69 6c 3a 7b 69 73 4c 6f 77 45 6e 64 44 65 76 69 63 65 3a 21 30 7d 7d 29 29 3b 62 72 65 61 6b 7d 69 66 28 77 69 6e 64 6f 77 2e 64 69 73 70 61 74 63 68 45 76 65 6e 74 28 6e 65 77 20 43 75 73 74 6f 6d 45 76 65 6e 74 28 22 4c 6f 77 45 6e 64 44 65 76 69 63 65 42 6b 67
                                                                                                                                                                                                                                                                      Data Ascii: 00006000=this.chromiumPageSettingsState.currentLayout&&(0,re.I9)()){this.currentProvider="NoBackground",window.dispatchEvent(new CustomEvent("LowEndDeviceBkgd",{detail:{isLowEndDevice:!0}}));break}if(window.dispatchEvent(new CustomEvent("LowEndDeviceBkg
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC8204INData Raw: 76 6f 69 64 28 30 2c 6f 2e 48 29 28 72 2e 43 67 53 2c 22 54 65 6c 65 6d 65 74 72 79 20 6f 62 6a 65 63 74 20 69 73 20 75 6e 64 65 66 69 6e 65 64 20 66 6f 72 20 62 65 73 70 6f 6b 65 20 61 64 73 20 75 70 64 61 74 65 22 29 3b 74 68 69 73 2e 74 65 6c 65 6d 65 74 72 79 54 61 67 73 2e 6d 61 72 71 75 65 65 41 64 44 69 73 6d 69 73 73 42 75 74 74 6f 6e 3d 74 68 69 73 2e 74 65 6c 65 6d 65 74 72 79 4f 62 6a 65 63 74 2e 61 64 64 4f 72 55 70 64 61 74 65 43 68 69 6c 64 28 7b 6e 61 6d 65 3a 22 4d 61 72 71 75 65 65 41 64 44 69 73 6d 69 73 73 42 75 74 74 6f 6e 22 2c 62 65 68 61 76 69 6f 72 3a 54 2e 77 75 2e 48 69 64 65 2c 63 6f 6e 74 65 6e 74 3a 7b 68 65 61 64 6c 69 6e 65 3a 6e 75 6c 6c 3d 3d 3d 28 65 3d 74 68 69 73 2e 6d 61 72 71 75 65 65 41 64 29 7c 7c 76 6f 69 64 20 30
                                                                                                                                                                                                                                                                      Data Ascii: void(0,o.H)(r.CgS,"Telemetry object is undefined for bespoke ads update");this.telemetryTags.marqueeAdDismissButton=this.telemetryObject.addOrUpdateChild({name:"MarqueeAdDismissButton",behavior:T.wu.Hide,content:{headline:null===(e=this.marqueeAd)||void 0
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 29 3f 74 68 69 73 2e 63 61 6e 52 65 6e 64 65 72 4e 6f 6e 53 73 72 45 6c 65 6d 65 6e 74 73 3d 21 74 68 69 73 2e 69 73 53 53 52 52 65 6e 64 65 72 65 64 3a 74 68 69 73 2e 63 61 6e 52 65 6e 64 65 72 4e 6f 6e 53 73 72 45 6c 65 6d 65 6e 74 73 3d 21 31 2c 74 68 69 73 2e 63 6f 6e 66 69 67 2e 65 6e 61 62 6c 65 45 76 65 6e 74 47 6c 65 61 6d 49 6d 61 67 65 26 26 28 74 68 69 73 2e 65 76 65 6e 74 47 6c 65 61 6d 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 74 72 79 7b 76 61 72 20 65 3b 63 6f 6e 73 74 20 74 3d 64 65 2e 6b 2e 67 65 74 57 70 6f 54 72 65 61 74 6d 65 6e 74 73 57 69 74 68 54 79 70 65 28 63 65 2e 5f 68 2e 65 76 65 6e 74 47 6c 65 61 6d 2c 21 30 29 2c 6e 3d 6e 75 6c 6c 3d 3d 3d 28 65 3d 74 5b 30 5d 29 7c 7c 76 6f 69 64 20 30 3d 3d 3d 65 3f
                                                                                                                                                                                                                                                                      Data Ascii: 00004000)?this.canRenderNonSsrElements=!this.isSSRRendered:this.canRenderNonSsrElements=!1,this.config.enableEventGleamImage&&(this.eventGleam=function(){try{var e;const t=de.k.getWpoTreatmentsWithType(ce._h.eventGleam,!0),n=null===(e=t[0])||void 0===e?
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC12INData Raw: 6d 43 61 72 64 50 72 6f 70 65 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: mCardPrope
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 72 74 69 65 73 28 29 2c 74 68 69 73 2e 76 69 64 65 6f 50 72 6f 76 69 64 65 72 2e 69 73 50 6c 61 79 69 6e 67 3d 21 31 2c 74 68 69 73 2e 69 73 4c 6f 61 64 43 6f 6d 70 6c 65 74 65 3d 21 31 29 2c 74 68 69 73 2e 75 70 64 61 74 65 50 72 6f 70 65 72 74 69 65 73 28 29 7d 61 73 79 6e 63 20 6f 6e 43 6c 69 63 6b 5f 4d 61 72 71 75 65 65 41 64 43 54 41 42 75 74 74 6f 6e 28 29 7b 61 77 61 69 74 20 74 68 69 73 2e 6f 6e 43 6c 69 63 6b 5f 4d 61 72 71 75 65 65 41 64 28 74 68 69 73 2e 72 65 66 5f 6d 61 72 71 75 65 65 41 64 43 54 41 42 75 74 74 6f 6e 29 7d 61 73 79 6e 63 20 6f 6e 43 6c 69 63 6b 5f 4d 61 72 71 75 65 65 41 64 53 70 6f 6e 73 6f 72 4c 6f 67 6f 28 29 7b 61 77 61 69 74 20 74 68 69 73 2e 6f 6e 43 6c 69 63 6b 5f 4d 61 72 71 75 65 65 41
                                                                                                                                                                                                                                                                      Data Ascii: 00004000rties(),this.videoProvider.isPlaying=!1,this.isLoadComplete=!1),this.updateProperties()}async onClick_MarqueeAdCTAButton(){await this.onClick_MarqueeAd(this.ref_marqueeAdCTAButton)}async onClick_MarqueeAdSponsorLogo(){await this.onClick_MarqueeA
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC12INData Raw: 6f 6e 65 3b 7a 2d 69 6e 64 65 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: one;z-inde
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC16384INData Raw: 30 30 30 30 34 30 30 30 0d 0a 78 3a 32 39 32 7d 2e 68 6f 74 53 70 6f 74 43 6c 69 63 6b 61 62 6c 65 7b 63 75 72 73 6f 72 3a 70 6f 69 6e 74 65 72 20 21 69 6d 70 6f 72 74 61 6e 74 7d 2e 68 6f 74 53 70 6f 74 43 6f 6e 74 61 69 6e 65 72 7b 6f 70 61 63 69 74 79 3a 31 3b 74 72 61 6e 73 69 74 69 6f 6e 3a 6f 70 61 63 69 74 79 20 30 2e 32 73 7d 2e 68 6f 74 53 70 6f 74 43 6f 6e 74 61 69 6e 65 72 5f 68 69 64 65 7b 6f 70 61 63 69 74 79 3a 30 3b 74 72 61 6e 73 69 74 69 6f 6e 3a 6f 70 61 63 69 74 79 20 30 2e 32 73 7d 2e 68 6f 74 53 70 6f 74 52 65 6e 64 65 72 52 65 67 69 6f 6e 7b 6f 70 61 63 69 74 79 3a 31 3b 70 6f 73 69 74 69 6f 6e 3a 61 62 73 6f 6c 75 74 65 7d 2e 68 6f 74 53 70 6f 74 53 70 6f 74 7b 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 72 67 62 61 28 30 2c
                                                                                                                                                                                                                                                                      Data Ascii: 00004000x:292}.hotSpotClickable{cursor:pointer !important}.hotSpotContainer{opacity:1;transition:opacity 0.2s}.hotSpotContainer_hide{opacity:0;transition:opacity 0.2s}.hotSpotRenderRegion{opacity:1;position:absolute}.hotSpotSpot{background-color:rgba(0,
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC12INData Raw: 74 69 6f 6e 73 3d 74 68 69 73 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: tions=this


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      20192.168.2.949777152.195.19.974438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC616OUTGET /filestreamingservice/files/bdc392b9-6b81-4aaa-b3ee-2fffd9562edb?P1=1732268736&P2=404&P3=2&P4=l0WNFg%2fORbVyHUvDJDy2D9I7r9BIf7WmK%2fgyCQxPkXuGW6EnxkTtuDbbymPmSFhOMtHITQCeip9AykKsI1SxAw%3d%3d HTTP/1.1
                                                                                                                                                                                                                                                                      Host: msedgeextensions.sf.tlu.dl.delivery.mp.microsoft.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      MS-CV: r5dl83tnQZmPWtOnUFvCA1
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC633INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      Age: 11590472
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=17280000
                                                                                                                                                                                                                                                                      Content-Type: application/x-chrome-extension
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:41 GMT
                                                                                                                                                                                                                                                                      Etag: "Gv3jDkaZdFLRHkoq2781zOehQE8="
                                                                                                                                                                                                                                                                      Last-Modified: Wed, 24 Jan 2024 00:25:37 GMT
                                                                                                                                                                                                                                                                      MS-CorrelationId: 5880bbaa-f139-48dd-942e-a0adb04a9f4c
                                                                                                                                                                                                                                                                      MS-CV: Grb0Lx3ldaAxoNaTt1rCGY.0
                                                                                                                                                                                                                                                                      MS-RequestId: 803a6f2d-d0c7-4dfc-9472-668c4d649ec3
                                                                                                                                                                                                                                                                      Server: ECAcc (dac/9C9C)
                                                                                                                                                                                                                                                                      X-AspNet-Version: 4.0.30319
                                                                                                                                                                                                                                                                      X-AspNetMvc-Version: 5.3
                                                                                                                                                                                                                                                                      X-Cache: HIT
                                                                                                                                                                                                                                                                      X-CCC: US
                                                                                                                                                                                                                                                                      X-CID: 11
                                                                                                                                                                                                                                                                      X-Powered-By: ASP.NET
                                                                                                                                                                                                                                                                      X-Powered-By: ARR/3.0
                                                                                                                                                                                                                                                                      X-Powered-By: ASP.NET
                                                                                                                                                                                                                                                                      Content-Length: 11185
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC11185INData Raw: 43 72 32 34 03 00 00 00 1d 05 00 00 12 ac 04 0a a6 02 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 bb 4e a9 d8 c8 e8 cb ac 89 0d 45 23 09 ef 07 9e ab ed 9a 39 65 ef 75 ea 71 bc a5 c4 56 59 59 ef 8c 08 40 04 2b ed 43 d0 dc 6b a7 4f 88 b9 62 4b d3 60 94 de 36 ee 47 92 ab 25 8a 1e cc 0d fa 33 5a 12 19 8e 65 20 5f fd 36 15 d6 13 1e 46 ae 8b 31 70 18 f1 a8 4b 1d 5a ff de 0e 83 8e 11 b2 2f 20 ed 33 88 cb fb 4f 54 94 9e 60 00 d3 bc 30 ab c0 d7 59 8b b0 96 46 54 fc f0 34 33 1c 74 68 d6 79 f9 0c 8c 7d 8a 91 98 ca 70 c6 4c 0f 1b c8 32 53 b9 26 69 cc 60 09 8d 6f ec f9 a6 66 8d 6f 48 81 0e 05 8a f1 97 4e b8 c3 94 3a b3 f7 69 6a 54 89 33 da 9e 46 7b d1 30 bb 2c cc 66 3f 27 66 e3 43 51 74 3b 62 5f 22 50 63 08 e5 20
                                                                                                                                                                                                                                                                      Data Ascii: Cr240"0*H0NE#9euqVYY@+CkObK`6G%3Ze _6F1pKZ/ 3OT`0YFT43thy}pL2S&i`ofoHN:ijT3F{0,f?'fCQt;b_"Pc


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      21192.168.2.94976740.126.31.73443
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC422OUTPOST /RST2.srf HTTP/1.0
                                                                                                                                                                                                                                                                      Connection: Keep-Alive
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 10.0; Win64; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729; IDCRL 24.10.0.19045.0.0; IDCRL-cfg 16.000.29743.00; App svchost.exe, 10.0.19041.1806, {DF60E2DF-88AD-4526-AE21-83D130EF0F68})
                                                                                                                                                                                                                                                                      Content-Length: 4742
                                                                                                                                                                                                                                                                      Host: login.live.com
                                                                                                                                                                                                                                                                      2024-11-15 09:45:40 UTC4742OUTData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 3f 3e 3c 73 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 70 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 50 61 73 73 70 6f 72 74 2f 53 6f 61 70 53 65 72 76 69 63 65 73 2f 50 50 43 52 4c 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="UTF-8"?><s:Envelope xmlns:s="http://www.w3.org/2003/05/soap-envelope" xmlns:ps="http://schemas.microsoft.com/Passport/SoapServices/PPCRL" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC569INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml; charset=utf-8
                                                                                                                                                                                                                                                                      Expires: Fri, 15 Nov 2024 09:44:41 GMT
                                                                                                                                                                                                                                                                      P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                      Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                      x-ms-route-info: C540_SN1
                                                                                                                                                                                                                                                                      x-ms-request-id: fa083002-267d-4cc9-be6e-bcf8f334a714
                                                                                                                                                                                                                                                                      PPServer: PPV: 30 H: SN1PEPF0002F970 V: 0
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                      X-XSS-Protection: 1; mode=block
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:40 GMT
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Length: 10197
                                                                                                                                                                                                                                                                      2024-11-15 09:45:41 UTC10197INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 20 3f 3e 3c 53 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 53 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31 2e 30 2e 78 73 64 22 20 78 6d 6c 6e 73 3a 77 73 75 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="utf-8" ?><S:Envelope xmlns:S="http://www.w3.org/2003/05/soap-envelope" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      22192.168.2.949780142.250.115.1324438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC594OUTGET /crx/blobs/AW50ZFuKxXfmS97pgdN117JdnzteDOW0nOxXPbIMSOJi_zMXlj_Y84pRZgGX1_WSw7i6yKhrqpdS319KewJbpE_4ZxBd62lsUferdiEuq7Yg9JR92C5gtrLldrMl4JgnY0IAxlKa5RR9kAwB758lMbnQOIDqR06lx1aH/GHBMNNJOOEKPMOECNNNILNNBDLOLHKHI_1_83_1_0.crx HTTP/1.1
                                                                                                                                                                                                                                                                      Host: clients2.googleusercontent.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC573INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      Content-Length: 135771
                                                                                                                                                                                                                                                                      X-GUploader-UploadID: AFiumC5nJrWaDfzyz2RRRuxiTBF6e_y5f2t3uXzceGRQePoZZKU6YOu2wWiKFusD5HIU_gQXC-sYEXDJEg
                                                                                                                                                                                                                                                                      X-Goog-Hash: crc32c=5YFIVw==
                                                                                                                                                                                                                                                                      Server: UploadServer
                                                                                                                                                                                                                                                                      Date: Thu, 14 Nov 2024 18:15:18 GMT
                                                                                                                                                                                                                                                                      Expires: Fri, 14 Nov 2025 18:15:18 GMT
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=31536000
                                                                                                                                                                                                                                                                      Last-Modified: Tue, 22 Oct 2024 20:33:19 GMT
                                                                                                                                                                                                                                                                      ETag: a1239f8c_b608f476_b1045d58_830b10c8_3ed9cb2d
                                                                                                                                                                                                                                                                      Content-Type: application/x-chrome-extension
                                                                                                                                                                                                                                                                      Age: 55824
                                                                                                                                                                                                                                                                      Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC805INData Raw: 43 72 32 34 03 00 00 00 e2 15 00 00 12 ac 04 0a a6 02 30 82 01 22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 9c 5e d1 18 b0 31 22 89 f4 fd 77 8d 67 83 0b 74 fd c3 32 4a 0e 47 31 00 29 58 34 b1 bf 3d 26 90 3f 5b 6a 2c 4c 7a fd d5 6a b0 75 cf 65 5b 49 85 71 2a 42 61 2f 58 dd ee dc 50 c1 68 fc cd 84 4c 04 88 b9 99 dc 32 25 33 5f 6f f4 ae b5 ad 19 0d d4 b8 48 f7 29 27 b9 3d d6 95 65 f8 ac c8 9c 3f 15 e6 ef 1f 08 ab 11 6a e1 a9 c8 33 55 48 fd 7c bf 58 8c 4d 06 e3 97 75 cc c2 9c 73 5b a6 2a f2 ea 3f 24 f3 9c db 8a 05 9f 46 25 11 1d 18 b4 49 08 19 94 80 29 08 f2 2c 2d c0 2f 90 65 35 29 a6 66 83 e7 4f e4 b2 71 14 5e ff 90 92 01 8d d3 bf ca a0 d0 39 a0 08 28 e3 d2 5f d5 70 68 32 fe 10 5e d5 59 42 50 58 66 5f 38 cc 0b 08
                                                                                                                                                                                                                                                                      Data Ascii: Cr240"0*H0^1"wgt2JG1)X4=&?[j,Lzjue[Iq*Ba/XPhL2%3_oH)'=e?j3UH|XMus[*?$F%I),-/e5)fOq^9(_ph2^YBPXf_8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: aa 54 89 36 c1 f8 f2 5a f7 ba 97 f1 3f fe f5 43 56 d7 f2 f3 3c 8c e7 4b ff e3 ef 3f c6 cf aa aa f3 6b fd 97 a1 fa fc cb e9 ac aa 1f 7f fd 71 3d bf f7 95 fc 59 5e fa b1 ea c7 1f 7f ff d7 8f 21 7f a8 4b 2e f5 e7 ab 47 d8 14 a6 6d 08 6e 1b a9 59 d7 a5 59 ab f2 b1 7f e2 d6 f5 9c 75 d3 57 66 8e a7 d2 54 4f 22 d9 3f a1 dd 8b 8d ce f7 b3 f0 55 2f 52 64 ec 9b cb 59 7f be 8e 1a 6a ee bf ff de a9 ab 48 a3 f3 51 8d bf ec 7b b7 96 fe fb f9 78 de 4f 51 f3 7e 2b 7d bb ff fe 4c d9 39 5f 12 3a 97 2c 45 97 ef ef 0b 13 71 f1 30 26 ce df 1f 49 3b 62 c4 e0 48 bb b1 11 3e ea f2 8e 02 39 b3 7d 09 42 84 80 d8 92 2e 7c e4 41 b8 a9 7c 61 8b 47 e8 1c 82 eb b9 f4 a1 91 6f f7 4f 7b e5 5c 0b 13 d5 85 cf e6 83 09 bb 83 09 54 69 a1 5a 98 fa ba 1b e6 c2 dc 9c 0f db f0 51 98 ce ef f3 fc
                                                                                                                                                                                                                                                                      Data Ascii: T6Z?CV<K?kq=Y^!K.GmnYYuWfTO"?U/RdYjHQ{xOQ~+}L9_:,Eq0&I;bH>9}B.|A|aGoO{\TiZQ
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: 88 1b 77 cc 06 18 f9 d1 78 a4 43 22 82 21 af 78 ed e5 3b 17 31 63 f2 12 16 6f 58 13 8a ac 6b 1f 08 96 b6 8e 59 b4 c8 5e 7b ff 95 e3 e3 6c 66 93 48 75 bd 57 d8 44 86 61 51 06 73 e9 21 bf d8 c1 38 0f 10 8e 94 67 c9 ae de 62 0f 6a 0d 08 71 f9 00 01 36 e4 d7 e2 f8 fd 7e ad e7 de 90 39 1c a3 5e 29 61 4c ee 81 a2 7b 44 c7 8e 2a b9 2d 76 d2 4b 76 32 2c a9 88 31 c0 6e d9 6b 8d a6 5a 8f 18 9d a2 60 79 ed cb ff 87 06 97 0d 1e 32 a3 56 32 10 9f b9 a9 d2 c4 8b 46 12 b8 5e dc 88 5e 98 61 86 3b 1d 0a 96 7b 16 9e c8 68 27 de 4a 05 5d 6c ca cd 72 ee c9 b5 fc 47 ed 73 37 d8 17 1e 9a eb 56 7a a1 49 00 ec 50 20 44 6e 0c 07 32 6b 0d f0 31 8f 82 17 33 36 ef 77 16 e0 38 a3 78 57 75 ef f7 45 fe d6 da dc 1b 3c a4 60 9b 5a c3 ab 54 de 7c 84 75 4b 00 a2 d8 aa 43 dd 63 24 a2 05 b3
                                                                                                                                                                                                                                                                      Data Ascii: wxC"!x;1coXkY^{lfHuWDaQs!8gbjq6~9^)aL{D*-vKv2,1nkZ`y2V2F^^a;{h'J]lrGs7VzIP Dn2k136w8xWuE<`ZT|uKCc$
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: ec 3c 53 7b bd 2b 0d f6 8f 48 d5 27 4c 9d 21 67 cf 13 d5 fd 28 ef 16 fb ab 5b b1 72 6f 45 f7 8a 4f da b3 e7 94 c8 03 e1 ba 8f ea 98 8d ad 70 5b 75 d3 db 31 31 1e 65 20 3f 73 03 a7 8c c0 5d 02 07 98 cf a2 15 9d ee 3b 96 d8 5b 6e bd d6 e7 1c e9 c6 a6 3c ec 04 df 03 02 d8 07 6a 07 4f 70 bb e6 0d 44 84 8e 31 f6 ed 1b e9 6a c5 3d 68 26 0c d9 55 07 3f b0 8e cd 25 f6 a5 bf 92 bd 1a 68 de 40 51 36 ee b9 e4 ce 81 50 6c c6 16 de 88 4e bc 66 c4 fd 22 da f5 e3 d6 a9 11 77 1e cc c8 00 69 9f 41 62 95 20 df bd 2c b1 bf 6b be 5b ba 52 77 ca c0 9b 04 7c b7 44 3b 68 e6 61 cf 76 78 4c 3a 74 24 9e d6 21 da de bf f7 1b 89 3f 5c 33 4b 7c e7 5f 9b f5 e1 23 f2 f7 8f ff 83 bf 91 02 97 ae 8d 7f 06 9c bd 4c 5d 83 7b e3 6b 6c 38 41 a1 10 8f 67 d6 26 30 9e 29 6c 6d ce c7 a7 68 e7 66
                                                                                                                                                                                                                                                                      Data Ascii: <S{+H'L!g([roEOp[u11e ?s];[n<jOpD1j=h&U?%h@Q6PlNf"wiAb ,k[Rw|D;havxL:t$!?\3K|_#L]{kl8Ag&0)lmhf
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: 73 be d1 73 8f fe f4 bd 21 33 d5 4d 7a 30 92 e6 a0 73 01 69 4f 6c e7 64 e7 06 c4 1f cd ca 43 29 99 d5 a9 e4 d2 27 1d 24 47 c6 70 b9 db 83 b8 ff e3 7b 43 fd 1c bd 60 8e 2a b8 9e 3b 74 be 19 0c 65 10 ff b7 71 9b 03 75 c2 bc 05 66 42 30 d4 bd 44 4c 1f e0 98 f8 e0 5e 51 d6 09 16 ee 62 8a 41 64 da 7a 3d 5a 33 a2 f1 1d 19 2a c9 80 f3 07 8d 29 4d f6 90 9d 6a f4 d8 56 61 85 9f 3a ce 4e 59 a7 6e a9 e5 ea 31 ff db f8 7b 43 fb aa 2b b5 c2 4c a8 10 57 3e 9d 12 73 e0 51 5f ef a3 40 64 48 ab 09 6b 6a 14 35 a1 2f 83 cb 26 d1 e4 cb 9d b8 cb 6e d2 3d 1d 90 fa 7e 9d 1e 6b cc d2 f8 7b 2e c6 37 f3 df 63 e9 ba ef fe 7d de f2 f4 a7 e7 2c 7f fb ee 20 7d 36 a6 a6 6a 7f 3b 2b 59 eb 18 b5 6f b9 8e 0b c1 c7 7b c1 1d 95 99 f6 ad e8 d4 b5 e8 6c ed 3f a7 af c2 af 3f 73 bf 3d ff ef 77
                                                                                                                                                                                                                                                                      Data Ascii: ss!3Mz0siOldC)'$Gp{C`*;tequfB0DL^QbAdz=Z3*)MjVa:NYn1{C+LW>sQ_@dHkj5/&n=~k{.7c}, }6j;+Yo{l??s=w
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: 03 04 14 00 08 08 08 00 00 00 21 00 00 00 00 00 00 00 00 00 00 00 00 00 19 00 2d 00 5f 6c 6f 63 61 6c 65 73 2f 73 76 2f 6d 65 73 73 61 67 65 73 2e 6a 73 6f 6e 55 54 05 00 01 50 03 fc 66 0a 00 20 00 00 00 00 00 01 00 18 00 00 08 b1 f4 0b 14 db 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 8d 52 3d 6f dc 30 0c dd fb 2b 08 cf 46 70 fd 1c b2 05 08 d0 a1 45 53 a4 59 02 64 61 4e b4 23 48 a6 04 8a 72 72 08 f2 df 4b 9d 7d 08 ce e8 d0 45 03 45 be f7 f8 1e 5f bb bd 10 2a 31 3d 77 97 af dd 44 a5 e0 48 dd 65 f7 e7 c7 d5 ef 2b f8 75 7f 77 d7 bd f5 1d bd e4 88 8c ea 13 a7 61 88 9e c9 f9 82 8f 91 dc f9 d4 75 85 87 ba db d1 17 81 b5 ef 02 6e 26 70 15 66 1f 23 20 cf cb 37 3b 84 ef 29 8d 91 e0 3a 85 3a 11 2b 54 45 06 cf 4a c2 a4 35 e7 90 72 36 84 b1 3f 42 0e df 72 66
                                                                                                                                                                                                                                                                      Data Ascii: !-_locales/sv/messages.jsonUTPf R=o0+FpESYdaN#HrrK}EE_*1=wDHe+uwaun&pf# 7;)::+TEJ5r6?Brf
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: d6 92 10 e8 84 d6 9a 4c 28 b9 28 68 15 81 3d 3a d0 47 7f 87 f5 aa c5 a0 2c 48 96 b4 9f 93 24 bf 74 ca 3b a4 a0 f9 6a e6 a1 cc 40 81 91 19 30 5d a1 39 7e 39 01 48 39 a0 4f 22 d8 2a e1 e0 08 be e7 cf 6d 6c b8 0b be c9 03 07 28 7d 6a dc e2 3f 42 98 78 2d d6 a1 b1 19 12 f8 68 b4 04 85 9d 97 35 1c 1b 0c 16 5f 55 b4 c5 fe ea 43 28 83 0e 40 08 bf 0d 79 16 7a c3 cf 26 b0 46 00 0e 4b 9e 50 f8 ed 3b 0e 8c 5d 3c 0b 64 ca 72 2e 90 41 1f b1 d4 e7 ed 22 33 dd 46 8d 4d 1a 99 c7 e4 99 3c 21 86 b1 e4 d2 54 27 cf df ef 91 4e 01 0d 30 81 96 55 96 37 4e 3d d0 01 5c b2 ca 55 80 04 ec aa e2 2a 73 90 6b ac 51 58 5b 6a 0a 34 8b b4 b7 4f b0 0d b9 c6 2c a1 85 38 3d c9 71 2f 07 ef 6d df 60 8f b9 82 8c 87 80 43 e8 d4 88 fe 62 9f b4 94 b9 d7 66 ac 7c 82 88 1d 51 d1 f9 61 37 fe 39 d8
                                                                                                                                                                                                                                                                      Data Ascii: L((h=:G,H$t;j@0]9~9H9O"*ml(}j?Bx-h5_UC(@yz&FKP;]<dr.A"3FM<!T'N0U7N=\U*skQX[j4O,8=q/m`Cbf|Qa79
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: ad c4 ca 60 aa 12 70 5b 7b 7a c3 30 ec 7c ed 63 70 f3 2d c2 2b 61 1b 8f d7 00 1b e0 cd 2b ef 78 f7 a3 67 c0 39 32 a9 1f 80 6c 66 17 97 d6 80 80 69 32 ab bf c3 f0 d2 d1 02 c6 d1 d1 ca 7f 28 f3 d3 05 cf d7 e6 67 96 67 73 39 3b dd 9e 5f c5 2e 08 52 5b 60 e6 23 e4 24 80 17 de cf 8c 32 61 22 26 18 40 81 51 37 1a 3d e4 69 36 45 18 6c 38 96 b1 f8 bc 04 25 63 8c 69 6f 0b 8e 93 22 11 da 2b e2 2e dd 3c 66 df 7d 3c c4 05 36 71 e2 c9 b8 a6 7e 66 b3 9b 73 21 3a a7 95 67 38 d4 83 89 c3 d7 91 64 de c5 5b 01 f5 ff a5 13 58 78 d8 a8 54 25 22 24 d8 16 40 cd 81 70 5e c5 3b d8 dd 55 72 b8 9e d6 48 15 06 41 57 68 5b e8 27 30 b1 82 0f e8 09 d8 f8 24 0d ae 73 05 91 20 6f 32 84 0d f0 82 95 ca 25 80 50 f5 46 fa 49 1e 46 5e 38 4e d2 28 ef db ce 9f 18 54 a7 c3 53 4b c7 26 a2 ba e4
                                                                                                                                                                                                                                                                      Data Ascii: `p[{z0|cp-+a+xg92lfi2(ggs9;_.R[`#$2a"&@Q7=i6El8%cio"+.<f}<6q~fs!:g8d[XxT%"$@p^;UrHAWh['0$s o2%PFIF^8N(TSK&
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: 58 0d 04 41 31 f1 f1 a8 15 a1 54 1e 5a 8d 72 3d e2 47 40 31 01 b6 e2 e3 20 ba 53 87 b9 64 39 96 a9 1f 50 8d c3 df 89 4f 3c 44 83 14 ce e2 33 f3 a3 46 d1 e2 45 58 a7 2c f7 48 0a 04 81 50 14 d0 11 86 4d 66 e7 ff be d5 aa ce 18 47 ec d9 2c f8 22 13 e5 35 27 b7 b0 97 2a bf 2c 0b d7 07 48 d7 30 c9 86 93 1f b0 17 3e b8 b1 bc a7 01 17 51 9c 66 55 50 9a b0 bb 80 25 f5 6f 33 e1 cf d4 9d 1c 93 ba 54 72 a7 e2 f6 75 97 90 fe 6f d2 46 10 67 11 75 4c 7e d0 94 af e3 4d 5d b4 38 17 ad 83 c4 09 26 df 24 fb 10 6d 5d e5 56 f8 11 0d 2d bb f3 2c 35 9d 43 aa d3 dc cc 21 ae 95 db 49 63 90 e8 bb b5 a2 31 68 28 4f c1 46 84 c4 ae 85 65 77 6e 1d 5c 72 28 c5 cb d9 9f 0c 82 36 6a 85 c3 0c cb 86 67 50 98 fd a8 5e 6f c5 03 8b 54 f3 c2 30 f0 94 72 6d 96 45 e2 75 68 b3 3c 02 83 6b 79 2f
                                                                                                                                                                                                                                                                      Data Ascii: XA1TZr=G@1 Sd9PO<D3FEX,HPMfG,"5'*,H0>QfUP%o3TruoFguL~M]8&$m]V-,5C!Ic1h(OFewn\r(6jgP^oT0rmEuh<ky/
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC1378INData Raw: 14 0d 73 e2 64 7e de 02 18 e4 0f c3 f4 76 5f 5c be dd ce 6f 88 69 ac e4 50 fa ee 07 ab c8 a0 8b 52 e9 bb 55 6b fa 9f c6 22 3c 29 b7 da 31 d5 9e ae 5a b0 94 e9 7c 5c e7 66 a1 94 56 e8 81 c0 57 d2 a5 5b 41 6a 0e 92 60 dd 9b c4 c3 77 12 c5 dc 29 96 c5 76 0c 56 10 bf 85 d3 7f df 78 05 8d e2 78 fc 2e d0 e2 68 c5 5e ba e2 78 a2 f7 ae 74 a2 c9 5d 23 c5 a1 dd 77 87 05 87 09 52 cb 31 68 27 3d 4b 9d 65 b2 de 77 fd b1 ff 96 4d 3f 5e 60 b9 1e 38 a4 9e c8 b0 ea d5 db 24 51 55 05 52 b6 f2 27 f0 e4 fd 6c 75 91 a7 7f 43 1e 77 ee c0 54 0b 56 cd 31 4f 5e ee ea 9b de 9a b3 38 11 b7 da d9 f9 e5 0f 50 4b 07 08 fd 45 55 f9 17 02 00 00 f3 0a 00 00 50 4b 03 04 14 00 08 08 08 00 00 00 21 00 00 00 00 00 00 00 00 00 00 00 00 00 19 00 2d 00 5f 6c 6f 63 61 6c 65 73 2f 6d 6e 2f 6d 65
                                                                                                                                                                                                                                                                      Data Ascii: sd~v_\oiPRUk"<)1Z|\fVW[Aj`w)vVxx.h^xt]#wR1h'=KewM?^`8$QUR'luCwTV1O^8PKEUPK!-_locales/mn/me


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      23192.168.2.94978220.25.227.1744438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC723OUTPOST /api/browser/edge/data/bloomfilter/x/3 HTTP/1.1
                                                                                                                                                                                                                                                                      Host: data-edge.smartscreen.microsoft.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 746
                                                                                                                                                                                                                                                                      Accept: application/octet-stream;application/x-patch-bsdiff;
                                                                                                                                                                                                                                                                      Authorization: SmartScreenHash eyJhdXRoSWQiOiI0MWE0MzhiYy0xMjQ5LTQzZDMtYTI2ZC02OWNkNjJjMDgzMTciLCAia2V5IjoiNVZCLzA1c3dVSmxJRm9BWU9VblcvUT09IiwgImhhc2giOiJCVTNFaDZpeHF6VT0ifQ==
                                                                                                                                                                                                                                                                      Content-Type: application/json; charset=utf-8
                                                                                                                                                                                                                                                                      If-None-Match: "636976985063396749.rel.v2"
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC746OUTData Raw: 7b 22 69 64 65 6e 74 69 74 79 22 3a 7b 22 75 73 65 72 22 3a 7b 22 6c 6f 63 61 6c 65 22 3a 22 65 6e 2d 47 42 22 7d 2c 22 64 65 76 69 63 65 22 3a 7b 22 69 64 22 3a 6e 75 6c 6c 2c 22 63 75 73 74 6f 6d 49 64 22 3a 6e 75 6c 6c 2c 22 6f 6e 6c 69 6e 65 49 64 54 69 63 6b 65 74 22 3a 6e 75 6c 6c 2c 22 66 61 6d 69 6c 79 22 3a 33 2c 22 6c 6f 63 61 6c 65 22 3a 22 65 6e 2d 47 42 22 2c 22 6f 73 56 65 72 73 69 6f 6e 22 3a 22 31 30 2e 30 2e 31 39 30 34 35 2e 32 30 30 36 2e 76 62 5f 72 65 6c 65 61 73 65 22 2c 22 62 72 6f 77 73 65 72 22 3a 7b 22 69 6e 74 65 72 6e 65 74 5f 65 78 70 6c 6f 72 65 72 22 3a 22 39 2e 31 31 2e 31 39 30 34 31 2e 30 22 7d 2c 22 6e 65 74 4a 6f 69 6e 53 74 61 74 75 73 22 3a 32 2c 22 65 6e 74 65 72 70 72 69 73 65 22 3a 7b 7d 2c 22 63 6c 6f 75 64 53 6b
                                                                                                                                                                                                                                                                      Data Ascii: {"identity":{"user":{"locale":"en-GB"},"device":{"id":null,"customId":null,"onlineIdTicket":null,"family":3,"locale":"en-GB","osVersion":"10.0.19045.2006.vb_release","browser":{"internet_explorer":"9.11.19041.0"},"netJoinStatus":2,"enterprise":{},"cloudSk
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC248INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:42 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/octet-stream
                                                                                                                                                                                                                                                                      Content-Length: 57
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Server: Kestrel
                                                                                                                                                                                                                                                                      ETag: "638343870221005468"
                                                                                                                                                                                                                                                                      Request-Context: appId=cid-v1:46ea1a4d-29cb-4e7e-a1ff-735721467fe3
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC57INData Raw: 39 00 00 00 0a 00 00 00 6d 75 72 6d 75 72 33 00 0d 00 00 00 e7 00 00 00 0c 00 00 00 2c 4d f0 68 e4 05 e3 5a 14 87 bb 38 10 5c e2 c4 94 3c 26 4c 69 f1 48 99 f4 5b b2 3f 6d
                                                                                                                                                                                                                                                                      Data Ascii: 9murmur3,MhZ8\<&LiH[?m


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      24192.168.2.94978313.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC711OUTGET /assets/domains_config_gz/2.8.76/asset?assetgroup=EntityExtractionDomainsConfig HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Edge-Asset-Group: EntityExtractionDomainsConfig
                                                                                                                                                                                                                                                                      Sec-Mesh-Client-Edge-Version: 117.0.2045.47
                                                                                                                                                                                                                                                                      Sec-Mesh-Client-Edge-Channel: stable
                                                                                                                                                                                                                                                                      Sec-Mesh-Client-OS: Windows
                                                                                                                                                                                                                                                                      Sec-Mesh-Client-OS-Version: 10.0.19045
                                                                                                                                                                                                                                                                      Sec-Mesh-Client-Arch: x86_64
                                                                                                                                                                                                                                                                      Sec-Mesh-Client-WebView: 0
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC583INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:42 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/octet-stream
                                                                                                                                                                                                                                                                      Content-Length: 70207
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Encoding: gzip
                                                                                                                                                                                                                                                                      Last-Modified: Thu, 07 Nov 2024 20:03:34 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DCFF6742E8F24C
                                                                                                                                                                                                                                                                      x-ms-request-id: c90133e2-901e-0026-4f2a-37f3b3000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094542Z-164f84587bfdx9djhC1DFW956g000000016g000000007qx0
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 69316365
                                                                                                                                                                                                                                                                      X-Cache: TCP_HIT
                                                                                                                                                                                                                                                                      X-Cache-Info: L1_T2
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC15801INData Raw: 1f 8b 08 08 16 1d 2d 67 02 ff 61 73 73 65 74 00 ec bd 0b 97 db 36 b2 30 f8 57 b2 b9 33 b3 dd 89 d5 d6 5b dd d9 cd fa f4 d3 f1 f8 39 6d 3b 19 db f1 d5 01 49 48 a2 45 91 0c 1f 6a ab c3 be bf 7d 0b 05 80 00 08 50 52 db ce 77 ef b7 67 67 9c 16 09 14 0a 40 a1 50 a8 2a 14 c0 3f bf f7 93 78 16 ce bf ff e9 bb 3f bf 2f 92 25 8d a7 51 b8 0a 0b 78 ef 8d bb dd 07 df 7d 9f 92 39 9d fa 65 91 cc 66 90 38 1c f4 59 62 40 67 a4 8c 8a 69 94 f8 24 a2 d3 15 49 11 81 c7 f0 c0 df 0e 3c 00 94 97 e3 6b de f1 08 7b a5 11 7b a5 51 67 9e e1 6b 8c af 71 a7 cc f1 15 81 69 de 59 7d c6 d7 02 5f 8b 0e a5 ec d5 c7 5c 3f ef f8 b7 ec 35 20 ec 35 20 9d 60 89 af 14 5f 69 27 40 e0 19 e6 ce 48 27 c4 8a 66 21 be 86 1d 78 60 af 19 be 66 9d 19 e6 2e b0 ec 82 76 c2 08 5f 31 77 91 75 16 3c b7 c4 d7
                                                                                                                                                                                                                                                                      Data Ascii: -gasset60W3[9m;IHEj}PRwgg@P*?x?/%Qx}9ef8Yb@gi$I<k{{QgkqiY}_\?5 5 `_i'@H'f!x`f.v_1wu<
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC16384INData Raw: 4a b0 09 cb 82 45 ac c5 f3 e8 07 bb 82 71 ba da 2a 0b c7 62 2c 30 96 c2 52 09 74 65 c0 2a 8a c3 88 95 9c 7c 3e a9 79 09 d4 fa 9a 9f 30 4a 49 28 2b d7 97 ff 7a 7b f9 fa cd f4 c9 05 68 2b 37 9c c1 08 01 cb 2f 28 f3 02 34 de 08 0c a6 34 da 38 c6 ec 48 27 33 28 96 9f 45 d9 4f 9f 12 f7 54 d2 47 a6 39 87 08 81 e9 6d 4f c1 43 97 10 bf ad 59 55 67 39 13 fe 1e 05 67 65 16 87 6c 9b f5 cb 90 60 eb 3d ea 25 09 33 8b f9 4a fb 10 ef 11 3b 7c e8 61 60 14 a0 60 b9 7c 16 e7 69 54 b1 c3 22 c0 e0 29 df c2 05 4c 8f bc f0 67 5e 04 75 33 51 9a b7 e1 61 1a 61 48 f5 c3 30 f7 62 91 d5 a8 34 39 2a 97 ff 2d f5 aa c1 c2 6c 78 e0 35 33 d1 42 b3 75 c4 be 3b f4 d0 68 83 51 a7 81 2d a0 ff 0d 5d 10 62 ed 7f 55 a5 99 9f 25 2b 2f a4 4d 09 21 65 43 c7 04 cf 93 19 f3 c1 d0 b6 e9 14 38 59 31
                                                                                                                                                                                                                                                                      Data Ascii: JEq*b,0Rte*|>y0JI(+z{h+7/(448H'3(EOTG9mOCYUg9gel`=%3J;|a``|iT")Lg^u3QaaH0b49*-lx53Bu;hQ-]bU%+/M!eC8Y1
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: 2f 4d 35 19 b9 3f d5 c1 f4 52 a7 67 b3 99 ff bc b7 c2 8e 7c d3 4d 9a a5 bf dc f0 20 15 b1 bc 1f 82 9a 8d 98 a7 af db 80 6b 74 e7 ab 7c e6 18 7d 9a 2b 3e 34 2d 1a e7 c0 d5 e8 b4 a0 0e d4 7d 19 bb 69 52 58 a2 33 32 78 db 4b 2d cd 54 dd d2 2b 9c a0 29 69 1a ba 4a ee 0a 4d 33 5a 7b a7 1a 83 5f f3 f7 fe 2c 2f 84 3b 39 d0 56 82 ef 75 a4 f3 69 57 af 58 09 8c 2a 1d 24 b9 4e 6b cf 63 d0 74 99 e3 02 0f 26 7f 1a 86 a9 a8 69 fa 5a d8 25 83 c1 ea f8 fd 12 62 16 86 38 17 5a 19 6f 13 03 00 e6 6a 07 a4 40 be bb 20 de a6 de bf d1 06 75 32 1f c3 4f 67 41 ad 31 bd b0 9c ee 44 47 33 2a 92 9c d3 f6 35 64 a9 b1 d3 f6 b1 c7 a7 b4 80 af ea c1 2a 6c dd 81 a0 0b 67 ca d2 b2 11 7c 8d dc 39 47 56 d1 bd 08 e8 ec 3e 4f c9 56 d6 7a d3 9a 56 4d 17 50 41 9b 17 9b 37 36 da 2e 7c a4 ba 63
                                                                                                                                                                                                                                                                      Data Ascii: /M5?Rg|M kt|}+>4-}iRX32xK-T+)iJM3Z{_,/;9VuiWX*$Nkct&iZ%b8Zoj@ u2OgA1DG3*5d*lg|9GV>OVzVMPA76.|c
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: 99 dc 5a 2e 69 cf 52 41 9e 48 c8 71 d7 39 94 dd f7 b6 3f 2a 48 d1 b5 2e 37 a4 97 5f 43 54 c9 8d d7 76 7a 14 e4 6f 3b 80 f7 6a 61 e8 6f 47 e9 2d cb 60 84 66 2b c0 b9 77 09 1b c0 32 5c aa 6c 0e 25 81 ed a0 5e 61 25 37 6f 3c a5 bc 1f 04 1a dd b1 04 1d c9 73 16 3a 58 a8 69 4d 12 c1 5e e9 66 5f 14 6c e4 9e d4 61 25 e1 2f c3 fc b8 ed df 80 5d 2b 3a 5b 4c 56 c9 72 1f 59 1d 6a 72 0b d2 b0 4c 8e d5 67 db 16 79 41 90 65 4f 4b 68 63 f6 d1 e5 db b6 6a 18 e6 ca 5f 04 79 2e 71 69 5d 0e 19 cc d9 f6 58 27 58 af 1c 18 04 f1 98 d2 bf 15 1e 37 ce e0 1e 88 54 83 3c 82 f8 a8 05 5f b0 1b 3f 2f 02 8f 31 a4 e9 1d ed 45 e6 e4 85 e6 b9 66 4c fd cd 8d e4 58 f7 79 73 8b 47 40 25 b6 0d 7f 78 ff a8 fe e7 7d 69 4a fc 00 c7 b0 37 a9 44 f0 40 1e e8 bd 41 8a b4 0a 5d 5a 2c 0e 60 f7 fb 81
                                                                                                                                                                                                                                                                      Data Ascii: Z.iRAHq9?*H.7_CTvzo;jaoG-`f+w2\l%^a%7o<s:XiM^f_la%/]+:[LVrYjrLgyAeOKhcj_y.qi]X'X7T<_?/1EfLXysG@%x}iJ7D@A]Z,`
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC5254INData Raw: 29 50 5f 50 34 9a d3 9a 2a 83 ab 27 93 58 c5 2b d2 9c af 2b 4e 0f 79 ac a9 56 57 20 b1 61 ca d2 f5 ed 38 df 10 b9 60 88 4c 48 ac b1 cd 10 b5 8f 76 49 19 f2 b6 d5 54 1d d1 9c b1 20 7a d3 64 f7 91 a2 0c 4d 73 6d e0 da be ee e6 87 03 9f 5e f7 4f 98 9c 12 cd 88 68 4c 2e b1 48 00 60 c3 31 74 31 8d 87 b4 32 56 02 4f bf e1 a9 3b c0 40 d6 24 8e 10 55 c7 c3 e7 8c f3 78 28 78 d3 94 de b0 5a 4d 22 eb 28 5c 22 00 98 8e 15 1a f8 ab ac 54 f4 5d 80 d0 a5 aa 6e 87 83 fd d6 f1 b0 c0 82 f7 f4 5e ef 2f 2b b8 62 a2 13 a1 4d ae 60 cf 59 3c b1 b1 f4 40 4d 41 74 7c ac 2c 5a 9e ef f4 d2 81 6d 69 e1 d3 8b 73 2c 84 2c 06 37 fd 72 38 10 a5 b2 13 51 f1 a0 a2 06 7d 3f 89 8f 72 35 a0 58 a0 46 79 2f b7 1f cc 57 92 ec c8 b4 b5 f2 5c 65 e7 30 5a 93 e3 b1 8e 5f f5 91 44 87 44 19 1d 59 83
                                                                                                                                                                                                                                                                      Data Ascii: )P_P4*'X++NyVW a8`LHvIT zdMsm^OhL.H`1t12VO;@$Ux(xZM"(\"T]n^/+bM`Y<@MAt|,Zmis,,7r8Q}?r5XFy/W\e0Z_DDY


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      25192.168.2.94978140.126.31.73443
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC422OUTPOST /RST2.srf HTTP/1.0
                                                                                                                                                                                                                                                                      Connection: Keep-Alive
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 10.0; Win64; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729; IDCRL 24.10.0.19045.0.0; IDCRL-cfg 16.000.29743.00; App svchost.exe, 10.0.19041.1806, {DF60E2DF-88AD-4526-AE21-83D130EF0F68})
                                                                                                                                                                                                                                                                      Content-Length: 4742
                                                                                                                                                                                                                                                                      Host: login.live.com
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC4742OUTData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 55 54 46 2d 38 22 3f 3e 3c 73 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 70 73 3d 22 68 74 74 70 3a 2f 2f 73 63 68 65 6d 61 73 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 50 61 73 73 70 6f 72 74 2f 53 6f 61 70 53 65 72 76 69 63 65 73 2f 50 50 43 52 4c 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="UTF-8"?><s:Envelope xmlns:s="http://www.w3.org/2003/05/soap-envelope" xmlns:ps="http://schemas.microsoft.com/Passport/SoapServices/PPCRL" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC569INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Cache-Control: no-store, no-cache
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Content-Type: application/soap+xml; charset=utf-8
                                                                                                                                                                                                                                                                      Expires: Fri, 15 Nov 2024 09:44:42 GMT
                                                                                                                                                                                                                                                                      P3P: CP="DSP CUR OTPi IND OTRi ONL FIN"
                                                                                                                                                                                                                                                                      Referrer-Policy: strict-origin-when-cross-origin
                                                                                                                                                                                                                                                                      x-ms-route-info: C540_BAY
                                                                                                                                                                                                                                                                      x-ms-request-id: 745df80f-ec37-4274-a1d6-bad36c1c65ef
                                                                                                                                                                                                                                                                      PPServer: PPV: 30 H: PH1PEPF00011F00 V: 0
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Strict-Transport-Security: max-age=31536000
                                                                                                                                                                                                                                                                      X-XSS-Protection: 1; mode=block
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:42 GMT
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Length: 10197
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC10197INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 20 3f 3e 3c 53 3a 45 6e 76 65 6c 6f 70 65 20 78 6d 6c 6e 73 3a 53 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 33 2f 30 35 2f 73 6f 61 70 2d 65 6e 76 65 6c 6f 70 65 22 20 78 6d 6c 6e 73 3a 77 73 73 65 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30 34 30 31 2d 77 73 73 2d 77 73 73 65 63 75 72 69 74 79 2d 73 65 63 65 78 74 2d 31 2e 30 2e 78 73 64 22 20 78 6d 6c 6e 73 3a 77 73 75 3d 22 68 74 74 70 3a 2f 2f 64 6f 63 73 2e 6f 61 73 69 73 2d 6f 70 65 6e 2e 6f 72 67 2f 77 73 73 2f 32 30 30 34 2f 30 31 2f 6f 61 73 69 73 2d 32 30 30
                                                                                                                                                                                                                                                                      Data Ascii: <?xml version="1.0" encoding="utf-8" ?><S:Envelope xmlns:S="http://www.w3.org/2003/05/soap-envelope" xmlns:wsse="http://docs.oasis-open.org/wss/2004/01/oasis-200401-wss-wssecurity-secext-1.0.xsd" xmlns:wsu="http://docs.oasis-open.org/wss/2004/01/oasis-200


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      26192.168.2.94978413.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:42 UTC470OUTGET /assets/edge_hub_apps_manifest_gz/4.7.107/asset?assetgroup=Shoreline HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Edge-Asset-Group: Shoreline
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC591INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:42 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/octet-stream
                                                                                                                                                                                                                                                                      Content-Length: 306698
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Encoding: gzip
                                                                                                                                                                                                                                                                      Last-Modified: Tue, 10 Oct 2023 17:24:31 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBC9B5C40EBFF4
                                                                                                                                                                                                                                                                      x-ms-request-id: 3435f083-f01e-005b-4fa6-366f7b000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094542Z-164f84587bf2rt9xhC1DFW8drg000000011000000000194v
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 69316365
                                                                                                                                                                                                                                                                      X-Cache-Info: L2_T2
                                                                                                                                                                                                                                                                      X-Cache: TCP_REMOTE_HIT
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC15793INData Raw: 1f 8b 08 08 cf 88 25 65 02 ff 61 73 73 65 74 00 ec 7d 69 93 db 46 92 e8 5f a9 f0 97 fd e0 96 05 10 00 09 4c c4 8b 17 2d f9 92 6d f9 92 6d 8d fd 66 43 51 00 0a 24 9a 20 40 e1 60 ab 7b 76 fe fb ab cc 2c 10 09 82 07 c8 a6 bc 9e 8d 0d 5b 68 b0 8e bc eb 44 55 e6 3f 3f 59 c9 3c 4d 54 55 bf db a8 b2 4a 8b fc 93 bf 89 4f dc cf ac cf ac 4f 6e c4 27 8b 26 7c 27 d7 eb 4a 27 fe bf 7f 7e 92 c6 90 19 c5 ee d4 f7 65 f0 4c f9 be ff cc f5 95 7c 26 63 df 7e 36 9b da 81 13 7b d3 d0 0e 15 d4 cd e5 4a 41 f9 77 ef 5e bf f9 ea 1d fc 7a f7 0e d2 19 1e fb 33 fd df 0c 12 63 55 45 65 ba ae 4d 06 d5 61 89 54 75 a9 1e 20 f7 f5 ab 57 2f 5e dd dd 7e ff 62 be 7c bf 58 a6 5f 05 f7 d6 8b db 9f be f8 f2 f6 f6 87 97 b7 3f f9 b7 90 ff 72 fe ad 7e ff e2 76 9d 58 77 ee 57 8b 1f de ff 14 f9 fe
                                                                                                                                                                                                                                                                      Data Ascii: %easset}iF_L-mmfCQ$ @`{v,[hDU??Y<MTUJOOn'&|'J'~eL|&c~6{JAw^z3cUEeMaTu W/^~b|X_?r~vXwW
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: ad e2 24 9f 8b e5 22 a5 38 7d a8 02 c7 0a 04 ba b8 75 26 ce 55 c2 08 bf 5c 90 e7 68 0d 8c 7c 07 bb 14 ee 07 cf ac 5b ca 81 54 5b 25 f6 36 51 93 15 e8 c2 2b 22 50 fc 52 36 6d 55 35 59 19 67 e4 56 be d8 2d df fd 8c 1c b1 48 e9 85 d8 d5 6f a1 88 16 05 b8 ea d5 42 20 2f c6 fa c5 ab 21 ae b4 7e 71 4c 7c 69 3b da be 2c c4 3c 45 31 58 f6 5a d0 75 29 2d 10 91 2f b6 81 a8 f1 77 27 4d cb 46 c3 d1 f2 cb e7 17 7d 3c d0 6a 30 b1 ed 19 11 24 85 30 ed b3 77 98 0a a3 d3 4d 8a a4 58 a6 1a 92 6f 39 a0 66 5b a9 58 c4 f8 d7 db 13 a4 38 9f 53 18 72 e3 d6 58 c9 9c 2a 85 f1 21 3d 9d 12 35 51 d6 f4 74 9e 6e f9 3a 6f 4c fc e5 2c 53 f9 7a 94 a9 7c 50 ab 8e d8 56 01 86 95 11 92 ce 4d 82 a9 12 26 c6 7f 9c 55 b4 0d eb a8 c4 4f 75 f1 df 12 7e 7b 85 2d 18 bd 99 6f 4d 95 18 8d 35 7f b9
                                                                                                                                                                                                                                                                      Data Ascii: $"8}u&U\h|[T[%6Q+"PR6mU5YgV-HoB /!~qL|i;,<E1XZu)-/w'MF}<j0$0wMXo9f[X8SrX*!=5Qtn:oL,Sz|PVM&UOu~{-oM5
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: e1 d5 35 3b 8a 08 94 56 c6 75 11 82 12 e0 b7 2c 9c d4 28 cd 82 09 ad 54 24 d2 ae 26 b9 4f 37 c4 67 1e 9d 6b d1 e4 03 44 91 0f c7 24 3e 9c a5 f8 80 ce e1 c3 bd 55 1f 7c 0d 7d f0 d6 f4 e1 f6 6d f9 6c 42 78 a7 7a 8f cf 80 2a 42 b1 ca af 46 95 01 06 85 53 be 7a 50 c8 12 ce 7e 7c 44 29 29 63 83 14 66 50 e5 69 9e ba 94 a2 14 a9 44 53 56 22 78 06 d0 d3 7d 25 3d 51 7e fc 63 e8 77 69 11 9c 24 cb 92 42 e9 e0 d4 ac cc c6 c2 0a 92 55 72 f4 61 88 91 31 1f 4c 69 b4 9b 0f a5 64 32 91 6a 99 5a 87 05 9b b8 18 4d b6 69 0c 05 60 46 80 c2 34 75 85 d5 88 cf a4 31 10 78 28 99 44 01 7e 6d 51 37 26 3d f1 aa c8 64 77 98 90 c3 4a 88 b9 d5 8c 73 bc 9b 5c 69 65 23 a6 fb 16 9b 26 25 05 ac fc cc 1e 87 56 e3 bd 7f 86 8d d9 de 4d 93 29 aa 7c fe d1 06 5b da c5 90 55 b0 c9 33 35 1b d9 51
                                                                                                                                                                                                                                                                      Data Ascii: 5;Vu,(T$&O7gkD$>U|}mlBxz*BFSzP~|D))cfPiDSV"x}%=Q~cwi$BUra1Lid2jZMi`F4u1x(D~mQ7&=dwJs\ie#&%VM)|[U35Q
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: 08 7f 2e 10 03 ae dd 15 3e 36 a4 6a 67 7e 2a 42 7f 7e 14 be 1b ef d2 39 b9 d3 a0 0f a6 db fd c0 cf 6a 73 b5 e6 a0 67 39 bd 50 cf ce e5 f5 33 b4 5b f6 96 18 f6 1d 3d 5b 1c 62 ee 08 9c b4 27 31 5c bf 95 0d 07 a0 cf bc bf ec e9 f3 e3 25 7d d1 cd 7e e8 fe 69 3f 94 32 74 6d 41 40 30 f4 9d 21 ef 18 ab 09 e0 e5 30 bf 56 97 43 99 8d fb 5c b1 3a 15 2a 0c 9d 5f c9 d3 47 70 60 b0 6e 17 9c 16 bc 33 94 8f dc 87 1c 2e 65 5f 80 b0 c7 e2 bb 6a f4 3b c8 60 00 83 b2 83 02 16 e1 3f 69 68 e4 62 45 17 99 ba 9d 9d b7 00 7d 2a 5a 5f 88 af 8b 22 5d 84 79 61 b8 38 c9 2f d4 62 3c 2f ee 0a 38 04 98 69 d8 af 45 cf 43 a8 9b 3e 6e dd 69 b8 01 0b 4d c5 2a d4 d8 5d 7a b1 5f 94 d0 5d 79 e7 c9 87 c6 d5 b9 5d 89 1b 44 f3 5a 14 67 85 e9 1a ef c2 74 b9 63 86 3e c2 71 a7 08 94 eb 44 58 ad 1a
                                                                                                                                                                                                                                                                      Data Ascii: .>6jg~*B~9jsg9P3[=[b'1\%}~i?2tmA@0!0VC\:*_Gp`n3.e_j;`?ihbE}*Z_"]ya8/b</8iEC>niM*]z_]y]DZgtc>qDX
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: 39 ff c5 fe 5f 5b 93 e5 2e b7 93 a4 b3 90 c2 6b ad 8a 70 f5 34 6b b8 40 3f ab 6c ff 6b b9 2f c1 49 79 7f 7f fe e2 4d 8e 52 97 9f 5c d2 a4 d2 9b 7f 21 19 ca ff db 31 e3 e4 f2 51 b8 7c 74 b3 4c aa e5 59 09 49 a3 cf 51 d6 87 a5 4c 6d 23 e7 30 3b 3e ce a2 ff dd d2 a2 4d 1f 0e 14 fd d7 52 7f fd 1c ea cf 13 55 dc a3 6d 85 4b 4e 63 b4 12 03 65 33 26 36 bd 72 f4 19 04 1a d9 86 f6 84 1c dd 9e ee 21 e8 65 4d aa 2f f0 f8 0a fb d1 85 1e 53 4d 3f 5f a5 fc d4 0d f8 28 79 f7 b1 c1 a5 fc 51 df bc 30 df bf cb 6f cb 2a 09 d7 1f 99 f4 19 6a 7e d9 a5 f8 7e 7b c5 59 31 55 b2 99 9f 7d 02 06 e8 6e c6 98 ec a9 7c 3f 2a 1d 34 e5 bd 0a 8f e7 88 3e 74 c3 0b e7 6b 10 2c 4f 53 5d 7c 86 e2 09 77 99 7d ee 02 3a 9d f3 a7 29 a2 13 79 ee 15 d2 a7 37 fd 67 b6 f7 67 33 72 df b2 23 59 ef 55
                                                                                                                                                                                                                                                                      Data Ascii: 9_[.kp4k@?lk/IyMR\!1Q|tLYIQLm#0;>MRUmKNce3&6r!eM/SM?_(yQ0o*j~~{Y1U}n|?*4>tk,OS]|w}:)y7gg3r#YU
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: 47 4d 2f 62 63 2e b6 df 26 b7 09 e8 f5 8c 1d c0 e5 f5 0e 81 86 cd d1 7b 9c 8b 16 07 4d 31 65 8e 49 77 c3 9c 0b 06 79 cd 66 e0 72 84 3b 54 b9 74 ef 35 53 7d 3b 8c b0 a9 fd 1b 50 a9 de 74 45 72 7e 1b f0 2a c4 ee 75 56 a9 f1 4f 0b e2 ef 4c 0e 04 e6 c1 13 43 d1 a3 91 83 19 d3 3d c4 08 0f b5 d5 e1 f0 41 7b 02 cf 94 80 35 8c 5f 5f 02 90 85 fa 86 bb ab e1 02 93 a8 c3 01 b8 10 ce 1a 84 70 ba 2a 74 48 e2 74 7c 83 87 f5 42 38 70 15 c2 ce 65 08 08 86 a0 47 21 98 5b b8 58 62 21 c8 96 0d 6c 09 61 e7 32 c4 b3 5e a1 8d a0 20 7d 39 b0 28 5c c6 6d 21 84 b7 80 4c dc 70 c4 2e c4 f3 19 21 9c 8e d6 1f 96 d8 f4 9d 32 40 37 a4 47 84 1e d1 c7 65 89 5f 63 82 1d d4 5a 86 2d e5 f8 15 59 45 61 ea 67 ab 2d d9 61 85 e3 91 0f 94 e7 67 25 02 3d 4f 28 55 ad 17 c6 a0 29 6a 5d 21 2a cd 7e
                                                                                                                                                                                                                                                                      Data Ascii: GM/bc.&{M1eIwyfr;Tt5S};PtEr~*uVOLC=A{5__p*tHt|B8peG![Xb!la2^ }9(\m!Lp.!2@7Ge_cZ-YEag-ag%=O(U)j]!*~
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: 40 0c f9 6c a9 df 35 c0 77 d7 f0 0b 75 ef b4 4f 20 01 c9 6e d7 8b d6 eb 26 ee 09 6d 06 c3 c0 20 42 f6 62 01 a8 b8 2e 41 68 d5 3e af 78 77 09 5e a1 a8 7e 3d bf 65 90 da ff 6d 58 c3 e3 86 29 f6 22 00 98 2a 9c 68 97 65 63 ac 5c ad 09 2b 23 82 8f 3f 2b 34 4c 1f 01 76 0d 06 ed 44 0f a9 a0 b1 63 30 c2 0d f2 ad 15 f9 9d a6 73 4a 64 c6 38 b2 91 d1 0a 38 ec f1 61 a5 51 a1 65 d6 96 da 34 5b b9 be df 70 92 06 98 c1 37 67 b8 7a fd 34 cd 5e 44 c0 aa b0 27 6e 0c f2 e2 f9 5e 7c 0a 17 b4 b4 16 73 66 52 b2 05 40 56 84 20 c3 90 88 0a 5a 8e f1 3d 96 59 b7 5f a7 63 31 3c 17 3a a9 04 30 4b 80 0e 09 8b 60 e1 5d df da 55 e1 6d 20 56 de 3a 5a 4e 4e 36 25 71 5c 12 7e f1 93 97 31 94 a1 29 89 f2 0a 40 a9 02 bf 55 03 2f 98 74 5f 78 73 cb c5 29 4c e9 ad ef d3 e0 e9 ec 15 b9 9a 03 cf
                                                                                                                                                                                                                                                                      Data Ascii: @l5wuO n&m Bb.Ah>xw^~=emX)"*hec\+#?+4LvDc0sJd88aQe4[p7gz4^D'n^|sfR@V Z=Y_c1<:0K`]Um V:ZNN6%q\~1)@U/t_xs)L
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC16384INData Raw: 62 f3 19 53 9f c9 ea 8f 67 d5 e8 e4 34 eb e6 2c b7 a9 5c 69 a3 75 af d9 ba f6 11 ea 58 64 70 1a 03 5a 75 5c b5 f2 6d d4 e3 16 ed 7d 0a 76 94 c1 8e a7 30 9e 08 64 07 27 9d 18 c0 52 7d e4 67 ff 5d dd ba 83 b1 dc 5d 98 95 9f fd f7 4f 5a 26 c7 8a 7a a4 2b 67 ea ac d1 ee 4b f3 ee 5b 7c 55 87 5f ce 64 5a d1 d6 85 f4 9d 84 43 1d a5 d1 4e 33 c2 52 b6 ac ef d9 7f de 15 61 44 a2 b6 4f fe 03 39 27 95 29 d1 71 16 47 ff 7e 40 2f ff 09 6e 49 c5 ba 2c 58 72 fd b4 fc 2b 2f d4 a3 80 7f e2 4e fd ca 3b f8 f4 09 87 9a 38 33 24 7f 45 a2 7e d3 4f 4e 87 8c cb 8b 02 7f df 7f ff 57 75 a1 22 3d 51 a9 78 41 7d 1b c5 f8 9b d0 7f 72 fc 7d ff 85 6a 70 ab 5e dc aa 41 ca 56 bd b0 55 00 76 02 c7 a0 ea 57 7d b2 c3 fb 0a b5 58 bd 1f ab f6 63 d5 ec bd 82 b3 c7 5f d5 89 ed 15 3f f6 0a e5 7d
                                                                                                                                                                                                                                                                      Data Ascii: bSg4,\iuXdpZu\m}v0d'R}g]]OZ&z+gK[|U_dZCN3RaDO9')qG~@/nI,Xr+/N;83$E~ONWu"=QxA}r}jp^AVUvW}Xc_?}
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 02 6c b4 ac 03 81 46 c8 b1 0e c3 45 a4 cf 34 82 9b a9 e1 c3 b1 e1 46 87 99 95 55 9a b4 be 3b 59 b1 6b f9 9e 4a 6a 38 c3 9d 71 93 60 68 53 6d 70 93 f4 d8 cb 92 d6 1c 64 0c 55 29 d1 f7 86 61 3a 23 da d5 06 e4 b2 85 18 31 bb 0e 46 71 38 52 33 8f 24 f5 9e 43 1a 6d 32 5a be 90 91 0a d3 47 69 32 eb 74 ec 30 03 b3 0a 2f 45 60 14 c3 56 8c 9b d3 2c f6 4c cc 87 6e 54 d0 da 28 ed 5d 8d 3a 4d 4a aa f1 2e 74 2f 9f 56 e9 a4 49 86 4c 15 33 4f 70 79 ad 9c 27 57 fe 5f f1 b5 af dc 2b a5 7e 6a ff d6 06 bc 0c 5d f6 df fe e1 b9 f2 44 21 e0 ef 42 ef 50 c9 9d 6d c4 b7 e0 a2 c1 1c b4 2f 36 29 c7 0d cd c5 5f 01 b2 80 f3 b0 10 3b 89 01 c5 9d d8 7c 07 2e 18 db 27 d6 4f f2 63 9c b0 f6 f2 ae c9 8b 6c b2 c4 37 76 c1 ad 55 68 26 ab 9f 6e 0d f6 97 8b d0 7b ae f0 47 ed 5d 9f e5 af 8e d0
                                                                                                                                                                                                                                                                      Data Ascii: lFE4FU;YkJj8q`hSmpdU)a:#1Fq8R3$Cm2ZGi2t0/E`V,LnT(]:MJ.t/VIL3Opy'W_+~j]D!BPm/6)_;|.'Ocl7vUh&n{G]
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 89 67 91 52 ea 51 9c 94 22 1e 7d b0 6a 95 14 85 b6 9f 56 47 3e e9 1b d3 5f a5 ac 50 c3 87 e4 2f 7d 48 49 98 d9 64 0e 08 ef 71 ff 50 b9 f3 86 37 4a 22 88 52 55 4a 91 92 53 0e 3c c2 3f 65 33 a3 28 fd 5a 9a 2e 91 76 ec f5 34 94 dc 1a 84 a2 be c1 0e 7a 8b 67 39 3e 58 c7 23 2c 7e 30 2a a9 04 8f 00 e5 ea b9 90 8e 19 22 31 4f 88 ac 1a 1f 76 bd 44 ab b4 23 ff 6a 0e 16 d3 4b 19 b1 5f 46 1a 8c 28 02 0b 82 4d 75 9f bc a7 ab d3 c0 ac 12 2c 1a e1 ca 61 62 a5 73 bf 90 ea 26 30 cc b6 60 ae a5 03 4b 60 ea 7c b9 bf 27 e4 0d 14 35 5a 3a 2d d3 09 b2 1d da a4 23 ee 1b c6 42 eb 6f 46 58 98 31 2d 33 81 d2 c7 b9 ea 4a e4 45 53 f8 1b 85 d6 9a f9 1c dd e5 4a cf 08 96 59 af e8 ce 28 b3 02 0e 0d ee 14 62 4a 58 2a 40 44 d3 12 5b 39 93 33 26 50 17 82 cc e2 88 1a 71 ab dd fe 3c 12 6a
                                                                                                                                                                                                                                                                      Data Ascii: gRQ"}jVG>_P/}HIdqP7J"RUJS<?e3(Z.v4zg9>X#,~0*"1OvD#jK_F(Mu,abs&0`K`|'5Z:-#BoFX1-3JESJY(bJX*@D[93&Pq<j


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      27192.168.2.94978920.25.227.1744438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC699OUTPOST /api/browser/edge/data/settings/3 HTTP/1.1
                                                                                                                                                                                                                                                                      Host: data-edge.smartscreen.microsoft.com
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Content-Length: 1093
                                                                                                                                                                                                                                                                      Accept: application/octet-stream;application/x-patch-bsdiff;
                                                                                                                                                                                                                                                                      Authorization: SmartScreenHash eyJhdXRoSWQiOiI0MWE0MzhiYy0xMjQ5LTQzZDMtYTI2ZC02OWNkNjJjMDgzMTciLCAia2V5Ijoib0YrVC9ZMExHQmQrbzNBK21YWDRKdz09IiwgImhhc2giOiJHdityY3dzU2NPST0ifQ==
                                                                                                                                                                                                                                                                      Content-Type: application/json; charset=utf-8
                                                                                                                                                                                                                                                                      If-None-Match: "2.0-0"
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      2024-11-15 09:45:43 UTC1093OUTData Raw: 7b 22 69 64 65 6e 74 69 74 79 22 3a 7b 22 75 73 65 72 22 3a 7b 22 6c 6f 63 61 6c 65 22 3a 22 65 6e 2d 47 42 22 7d 2c 22 64 65 76 69 63 65 22 3a 7b 22 69 64 22 3a 6e 75 6c 6c 2c 22 63 75 73 74 6f 6d 49 64 22 3a 6e 75 6c 6c 2c 22 6f 6e 6c 69 6e 65 49 64 54 69 63 6b 65 74 22 3a 22 74 3d 47 77 41 57 41 64 39 74 42 41 41 55 61 6e 50 58 4e 73 70 50 47 6c 43 51 4a 6d 46 67 65 2b 54 4b 36 55 38 36 57 57 55 4f 5a 67 41 41 45 46 79 76 4f 4b 4f 6d 74 48 6e 67 35 79 30 34 69 6f 46 48 4b 50 76 67 41 50 77 6f 51 52 7a 35 50 70 6b 6a 2f 50 39 33 32 71 44 77 55 6e 4c 39 2b 65 50 75 4e 67 74 4a 46 33 4a 4e 32 48 71 67 51 42 66 41 62 31 63 7a 2b 73 6a 50 6b 34 75 30 44 56 38 6d 77 47 73 58 73 6d 75 69 69 76 64 6b 56 47 31 54 50 45 41 4e 50 68 4f 76 69 30 77 37 4c 7a 56 36
                                                                                                                                                                                                                                                                      Data Ascii: {"identity":{"user":{"locale":"en-GB"},"device":{"id":null,"customId":null,"onlineIdTicket":"t=GwAWAd9tBAAUanPXNspPGlCQJmFge+TK6U86WWUOZgAAEFyvOKOmtHng5y04ioFHKPvgAPwoQRz5Ppkj/P932qDwUnL9+ePuNgtJF3JN2HqgQBfAb1cz+sjPk4u0DV8mwGsXsmuiivdkVG1TPEANPhOvi0w7LzV6
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC302INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:43 GMT
                                                                                                                                                                                                                                                                      Content-Type: application/octet-stream
                                                                                                                                                                                                                                                                      Content-Length: 130439
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Server: Kestrel
                                                                                                                                                                                                                                                                      ETag: "2.0-48b11410dc937a1723bf4c5ad33ecdb286d8ec69544241bc373f753e64b396c1"
                                                                                                                                                                                                                                                                      Request-Context: appId=cid-v1:46ea1a4d-29cb-4e7e-a1ff-735721467fe3
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16082INData Raw: 7b 0d 0a 20 20 22 67 65 6f 69 64 4d 61 70 73 22 3a 20 7b 0d 0a 20 20 20 20 22 61 75 22 3a 20 22 68 74 74 70 73 3a 2f 2f 61 75 73 74 72 61 6c 69 61 2e 73 6d 61 72 74 73 63 72 65 65 6e 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 22 2c 0d 0a 20 20 20 20 22 63 68 22 3a 20 22 68 74 74 70 73 3a 2f 2f 73 77 69 74 7a 65 72 6c 61 6e 64 2e 73 6d 61 72 74 73 63 72 65 65 6e 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 22 2c 0d 0a 20 20 20 20 22 65 75 22 3a 20 22 68 74 74 70 73 3a 2f 2f 65 75 72 6f 70 65 2e 73 6d 61 72 74 73 63 72 65 65 6e 2e 6d 69 63 72 6f 73 6f 66 74 2e 63 6f 6d 2f 22 2c 0d 0a 20 20 20 20 22 66 66 6c 34 22 3a 20 22 68 74 74 70 73 3a 2f 2f 75 6e 69 74 65 64 73 74 61 74 65 73 31 2e 73 73 2e 77 64 2e 6d 69 63 72 6f 73 6f 66 74 2e 75 73 2f 22 2c 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: { "geoidMaps": { "au": "https://australia.smartscreen.microsoft.com/", "ch": "https://switzerland.smartscreen.microsoft.com/", "eu": "https://europe.smartscreen.microsoft.com/", "ffl4": "https://unitedstates1.ss.wd.microsoft.us/",
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 30 39 63 34 37 36 32 37 62 63 35 33 33 62 35 39 32 34 61 30 35 35 61 30 34 62 63 34 63 33 33 65 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 39 2e 35 38 33 34 34 30 31 37 37 34 34 37 38 34 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 65 36 33 34 65 62 32 30 64 62 35 30 38 65 33 61 33 31 62 36 31 34 38 31 61 32 35 31 62 66 39 33 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 2d 30 2e 33 33 37 30 36 38 35 39 32 37 38 32 37 33 35 0d 0a 20 20 20 20 20 20 20 20 20 20 20
                                                                                                                                                                                                                                                                      Data Ascii: { "key": "09c47627bc533b5924a055a04bc4c33e", "value": 9.58344017744784 }, { "key": "e634eb20db508e3a31b61481a251bf93", "value": -0.337068592782735
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 30 37 37 37 34 37 33 33 30 39 35 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 31 32 62 62 65 66 63 30 35 64 35 31 34 32 65 37 65 62 36 38 36 66 61 64 38 64 65 61 39 32 31 31 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 2d 31 2e 30 35 37 31 37 37 35 33 31 31 38 30 39 34 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 63 65 35 66 62 38 64 66 31 32 35 61 34 37 32 31 64 31 64 66 33 32 38 62 63 36 66 32 64 64 65 61 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a
                                                                                                                                                                                                                                                                      Data Ascii: 07774733095 }, { "key": "12bbefc05d5142e7eb686fad8dea9211", "value": -1.05717753118094 }, { "key": "ce5fb8df125a4721d1df328bc6f2ddea", "value":
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 20 2d 31 2e 39 30 31 33 34 36 37 39 37 33 36 34 32 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 66 32 33 35 64 63 66 36 62 34 32 39 62 61 34 31 36 64 63 65 37 34 64 34 62 36 66 62 63 34 37 62 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 31 2e 32 36 30 31 38 31 31 38 35 36 30 38 38 34 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 63 38 66 31 37 64 37 34 30 33 61 63 35 66 66 32 38 39 36 61 37 31 33 61 37 31 37 35 65 64 31 39 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61
                                                                                                                                                                                                                                                                      Data Ascii: -1.9013467973642 }, { "key": "f235dcf6b429ba416dce74d4b6fbc47b", "value": 1.26018118560884 }, { "key": "c8f17d7403ac5ff2896a713a7175ed19", "va
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 36 62 64 32 65 65 33 36 63 30 33 66 36 66 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 35 2e 38 35 39 38 36 34 33 39 33 34 36 35 37 36 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 65 66 64 32 61 66 36 30 63 38 35 30 31 39 33 31 63 62 39 63 37 33 36 62 35 61 64 37 34 66 36 35 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 33 2e 39 35 36 39 39 35 33 35 33 36 34 30 30 33 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 32 63 38 34 38 35 34 38 64 34 36 30 63
                                                                                                                                                                                                                                                                      Data Ascii: 6bd2ee36c03f6f", "value": 5.85986439346576 }, { "key": "efd2af60c8501931cb9c736b5ad74f65", "value": 3.95699535364003 }, { "key": "2c848548d460c
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 20 22 6b 65 79 22 3a 20 22 65 31 36 38 36 30 37 38 64 31 62 36 30 64 33 35 31 64 61 35 61 38 37 35 34 33 61 32 61 36 36 33 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 37 2e 35 30 36 36 35 35 32 34 32 36 32 35 35 31 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 33 61 33 34 31 37 66 35 66 32 30 61 30 33 61 39 38 39 37 33 36 38 39 38 38 37 66 62 37 32 61 32 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 2d 31 2e 37 34 39 32 32 35 31 37 36 34 32 37 39 34 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20
                                                                                                                                                                                                                                                                      Data Ascii: "key": "e1686078d1b60d351da5a87543a2a663", "value": 7.50665524262551 }, { "key": "3a3417f5f20a03a98973689887fb72a2", "value": -1.74922517642794 }, {
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16384INData Raw: 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 62 30 64 61 32 37 35 35 32 30 39 31 38 65 32 33 64 64 36 31 35 65 32 61 37 34 37 35 32 38 66 31 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 2d 30 2e 39 37 36 31 34 30 37 39 32 39 31 35 33 37 33 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 63 66 61 62 31 62 61 38 63 36 37 63 37 63 38 33 38 64 62 39 38 64 36 36 36 66 30 32 61 31 33 32 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 2d 31 2e 31 31 37 38 37 35 38 36 30 34 35 30 39 34 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a
                                                                                                                                                                                                                                                                      Data Ascii: { "key": "b0da275520918e23dd615e2a747528f1", "value": -0.976140792915373 }, { "key": "cfab1ba8c67c7c838db98d666f02a132", "value": -1.11787586045094 },
                                                                                                                                                                                                                                                                      2024-11-15 09:45:44 UTC16053INData Raw: 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 64 65 39 35 62 34 33 62 63 65 65 62 34 62 39 39 38 61 65 64 34 61 65 64 35 63 65 66 31 61 65 37 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 2d 31 2e 30 33 33 31 39 35 35 36 37 30 31 31 37 37 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7d 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 6b 65 79 22 3a 20 22 61 64 64 65 63 34 32 36 39 33 32 65 37 31 33 32 33 37 30 30 61 66 61 31 39 31 31 66 38 66 31 63 22 2c 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 20 20 22 76 61 6c 75 65 22 3a 20 30 2e 31 36 30 39 38 34 33 32 38 39 38 35 39 32 34 0d
                                                                                                                                                                                                                                                                      Data Ascii: }, { "key": "de95b43bceeb4b998aed4aed5cef1ae7", "value": -1.03319556701177 }, { "key": "addec426932e71323700afa1911f8f1c", "value": 0.160984328985924


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      28192.168.2.94979113.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:45 UTC438OUTGET /assets/edge_hub_apps_action_center_maximal_light.png/1.2.1/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:45 UTC536INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:45 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 1579
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Fri, 03 Nov 2023 21:43:08 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBDCB5DE99522A
                                                                                                                                                                                                                                                                      x-ms-request-id: f596a16f-501e-005d-3318-379803000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094545Z-16547b76f7fwvr5dhC1DFW2c940000000mv0000000008evv
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 0
                                                                                                                                                                                                                                                                      X-Cache-Info: L1_T2
                                                                                                                                                                                                                                                                      X-Cache: TCP_HIT
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:45 UTC1579INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 05 c0 49 44 41 54 78 01 ed 58 4f 8b 5c 45 10 af 7a f3 66 66 15 c5 fd 00 42 66 f2 05 b2 22 c2 1e 54 d6 4f 90 15 c1 63 d8 e0 49 04 37 01 11 11 25 89 e0 d5 04 0f 1a f0 e0 e6 62 c4 cb 1e 44 50 21 b8 df 20 7b f0 4f 6e 1b 4f 8b 20 cc 7a 89 b3 ef 75 57 f9 ab ea 9e 37 cb 66 77 66 36 93 83 84 ad a4 d3 fd de eb 79 fd 7b bf fa 55 75 75 88 4e ed d4 9e 20 5b d9 dc ed 2d df de ed d1 63 34 a6 39 6c e5 fb c1 4a 54 39 2f 42 ab 22 d2 8b 91 54 a2 92 d4 91 63 90 6d 09 74 57 2a fd fc b7 77 9e df a6 47 b4 47 02 b8 f2 f3 60 29
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAaIDATxXO\EzffBf"TOcI7%bDP! {OnO zuW7fwf6y{UuuN [-c49lJT9/B"TcmtW*wGG`)


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      29192.168.2.94979213.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC431OUTGET /assets/edge_hub_apps_search_maximal_light.png/1.3.6/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC536INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:46 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 1966
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Fri, 03 Nov 2023 21:43:31 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBDCB5EC122A94
                                                                                                                                                                                                                                                                      x-ms-request-id: 848dde1d-101e-005a-5fa3-2c6e86000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094546Z-16547b76f7f7scqbhC1DFW0m5w0000000mu0000000006ybv
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 0
                                                                                                                                                                                                                                                                      X-Cache-Info: L1_T2
                                                                                                                                                                                                                                                                      X-Cache: TCP_HIT
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC1966INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 07 43 49 44 41 54 78 01 ed 97 5b 68 5c 75 1e c7 7f ff 73 f9 9f 49 d2 49 4f da 98 b4 6a d7 d9 c5 16 bc b0 4e c1 bd c8 6e d8 99 07 1f 74 1f 9a e0 2a 15 77 d7 06 0b 82 0f d5 3c 54 10 1f 3a 41 d0 2a 8a 2d 55 29 68 4d 14 1f 6a d3 92 3c 28 58 45 92 fa d0 0a 82 8e 48 14 6a 6b 53 d0 b4 21 4d e7 cc 64 6e 67 ce cd ef ef 64 4e 48 ed c5 74 d2 e8 4b 7f c3 9f ff b9 cd 39 9f f3 fd ff 6e 87 e8 ba 2d cd c4 62 2f 1c 1a 1a 4a 29 8a b2 c9 f3 bc 44 10 04 3c c8 71 1c 0b fb 59 8c af 71 6e a4 b7 b7 d7 a2 6b 6c bf 0a 38 3c 3c fc
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAaCIDATx[h\usIIOjNnt*w<T:A*-U)hMj<(XEHjkS!MdngdNHtK9n-b/J)D<qYqnkl8<<


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      30192.168.2.94979513.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC433OUTGET /assets/edge_hub_apps_shopping_maximal_light.png/1.4.0/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC523INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:46 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 1751
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Tue, 17 Oct 2023 00:34:33 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBCEA8D5AACC85
                                                                                                                                                                                                                                                                      x-ms-request-id: 3a8e668c-201e-0052-1143-3775f5000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094546Z-164f84587bf7jb9dhC1DFWkay400000000qg000000009yx7
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 69316365
                                                                                                                                                                                                                                                                      X-Cache: TCP_MISS
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC1751INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 06 6c 49 44 41 54 78 01 ed 98 4d 6c 54 55 14 c7 cf 9d ce b4 52 09 42 85 b8 40 ed f3 23 44 37 0a b8 32 71 01 71 a1 89 1b dc 08 3b ab 0b 64 87 b8 30 84 10 3a c3 c2 a5 1a 57 b8 52 16 26 6e 8c 10 3f 91 c5 a0 a2 21 0d d1 c6 18 63 34 9a 91 b8 c0 40 6c a1 ed cc 7b ef 7e 1c ff e7 de fb e6 4d 3f a0 1f d4 e8 a2 17 5e de eb ed 9b f7 7e f7 7f ce f9 9f 3b 25 5a 1b 6b e3 bf 1d 8a 56 71 d4 cf f2 2e 36 34 ca 44 bb d8 11 15 07 71 cf 19 ff 71 ad 08 3f 3b 4b 13 4e bb 3f 74 27 1f cf 3a d4 38 71 68 5d eb 5f 03 3c 76 86 9f c7
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAalIDATxMlTURB@#D72qq;d0:WR&n?!c4@l{~M?^~;%ZkVq.64Dqq?;KN?t':8qh]_<v


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      31192.168.2.94979413.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC433OUTGET /assets/edge_hub_apps_toolbox_maximal_light.png/1.5.13/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC543INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:46 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 1427
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Fri, 03 Nov 2023 21:43:36 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBDCB5EF021F8E
                                                                                                                                                                                                                                                                      x-ms-request-id: 06d50b8c-901e-0004-3418-379d85000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094546Z-164f84587bf5rpzqhC1DFWmra80000000140000000004ema
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 69316365
                                                                                                                                                                                                                                                                      X-Cache: TCP_HIT
                                                                                                                                                                                                                                                                      X-Cache-Info: L1_T2
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC1427INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 05 28 49 44 41 54 78 01 ed 57 cd 6b 24 45 14 7f af 67 86 c4 5d cd 8e 9b 05 d1 3d ec e8 1f 20 5e 3d 28 eb 41 04 41 44 10 3c 66 d1 53 92 d3 42 40 72 da 11 84 5c b3 7f 80 24 39 48 40 d4 8b 17 2f b2 e2 1f a0 1e 25 a7 01 11 16 17 35 1f f3 d1 dd d5 55 cf 57 df d5 d3 eb 4e 5a f0 22 53 a1 52 9d 57 5d ef fd de ef 7d 74 05 60 39 96 63 39 96 e3 3f 1d 08 ff 62 1c 1f 1f df e6 e5 9e 52 ea 15 5e fb bc 02 11 99 a9 9f f5 e4 41 52 4a 74 7b df f3 7a 77 7b 7b fb 67 68 39 5a 03 3c 3a 3a da 40 c4 43 0f ea 1f 56 3d 34 38 e2 89
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAa(IDATxWk$Eg]= ^=(AAD<fSB@r\$9H@/%5UWNZ"SRW]}t`9c9?bR^ARJt{zw{{gh9Z<::@CV=48


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      32192.168.2.94979613.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC430OUTGET /assets/edge_hub_apps_games_maximal_light.png/1.7.1/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC536INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:46 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 2008
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Tue, 10 Oct 2023 17:24:26 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBC9B5C0C17219
                                                                                                                                                                                                                                                                      x-ms-request-id: 20544f73-001e-0001-397c-3669fa000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094546Z-16547b76f7ffx24hhC1DFW9px400000000qg0000000052a4
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 0
                                                                                                                                                                                                                                                                      X-Cache-Info: L1_T2
                                                                                                                                                                                                                                                                      X-Cache: TCP_HIT
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC2008INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 07 6d 49 44 41 54 78 01 ed 98 bf 6f 14 47 14 c7 df ec 9d 11 48 48 5c aa 94 de 74 74 18 45 a9 59 24 0a d2 24 54 91 a0 f1 39 44 24 45 24 ec 32 0d be 28 05 44 14 98 2a e9 7c 96 50 e4 26 32 11 2d 02 47 91 02 4d 64 a3 08 25 92 a5 70 fc 05 18 ff 38 df ed af 97 ef 77 76 66 bd 36 07 67 9b 58 69 18 69 34 b3 b3 bb b3 9f fb ce 7b 6f de 9c c8 bb f2 76 c5 c8 21 95 bf 66 35 4c 33 59 8a 33 6d e0 33 53 1f 7e 69 66 38 fe 74 56 c7 b2 54 1e 26 a9 34 f2 4c a6 3e fa ba 18 ff e3 96 36 7b 89 cc 6e f5 45 92 2c 9b f8 b8 55 6f 73
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAamIDATxoGHH\ttEY$$T9D$E$2(D*|P&2-GMd%p8wvf6gXii4{ov!f5L3Y3m3S~if8tVT&4L>6{nE,Uos


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      33192.168.2.94979313.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC422OUTGET /assets/edge_hub_apps_M365_light.png/1.7.32/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC543INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:46 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 2229
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Wed, 25 Oct 2023 19:48:24 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBD59359A9E77B
                                                                                                                                                                                                                                                                      x-ms-request-id: 8254c623-901e-0069-7c1d-3737ab000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094546Z-16547b76f7fmbrhqhC1DFWkds80000000n20000000003cav
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 0
                                                                                                                                                                                                                                                                      X-Cache-Info: L2_T2
                                                                                                                                                                                                                                                                      X-Cache: TCP_REMOTE_HIT
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC2229INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 08 4a 49 44 41 54 78 01 ed 98 6d 88 5c 57 19 c7 9f e7 dc 7b 37 89 49 9a dd 6c 5e d6 96 c0 c4 36 a1 d5 2f 49 a1 92 22 ea 06 ac a4 41 21 05 41 2a e8 ee 16 a4 82 e0 26 62 a5 b5 92 99 f1 8b 2f 68 b3 fd 92 16 ad 64 fb 29 16 62 53 6d 68 17 15 b2 a2 ed 07 b1 6c a8 95 d6 97 74 36 a9 35 69 d2 90 dd 6d bb 9b 99 7b ce 79 fc 3f e7 dc d9 8d 99 24 b3 2f f9 d8 03 77 9e 7b ce dc b9 e7 77 ff cf cb 39 77 88 3e 6c 4b 6b 4c 37 a8 f5 ee 1d 2b a5 44 25 c2 47 9a d2 f8 c8 8f b6 8f d3 0d 68 4b 06 dc f1 8d df f7 ae cc ba cb 6c a8
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAaJIDATxm\W{7Il^6/I"A!A*&b/hd)bSmhlt65im{y?$/w{w9w>lKkL7+D%GhKl


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      34192.168.2.94979720.109.210.53443
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC306OUTGET /SLS/%7BE7A50285-D08D-499D-9FF8-180FDC2332BC%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=dMoBLy5pWN3hCbl&MD=pk6F5hZM HTTP/1.1
                                                                                                                                                                                                                                                                      Connection: Keep-Alive
                                                                                                                                                                                                                                                                      Accept: */*
                                                                                                                                                                                                                                                                      User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33
                                                                                                                                                                                                                                                                      Host: slscr.update.microsoft.com
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC560INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Cache-Control: no-cache
                                                                                                                                                                                                                                                                      Pragma: no-cache
                                                                                                                                                                                                                                                                      Content-Type: application/octet-stream
                                                                                                                                                                                                                                                                      Expires: -1
                                                                                                                                                                                                                                                                      Last-Modified: Mon, 01 Jan 0001 00:00:00 GMT
                                                                                                                                                                                                                                                                      ETag: "vic+p1MiJJ+/WMnK08jaWnCBGDfvkGRzPk9f8ZadQHg=_1440"
                                                                                                                                                                                                                                                                      MS-CorrelationId: 37d4e816-95c9-4903-9ad7-e251269bb868
                                                                                                                                                                                                                                                                      MS-RequestId: 4a5df166-8c4e-493a-9f8e-7280a175bc4a
                                                                                                                                                                                                                                                                      MS-CV: seiuBKAhm0q4QKwk.0
                                                                                                                                                                                                                                                                      X-Microsoft-SLSClientCache: 1440
                                                                                                                                                                                                                                                                      Content-Disposition: attachment; filename=environment.cab
                                                                                                                                                                                                                                                                      X-Content-Type-Options: nosniff
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:46 GMT
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Content-Length: 30005
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC15824INData Raw: 4d 53 43 46 00 00 00 00 8d 2b 00 00 00 00 00 00 44 00 00 00 00 00 00 00 03 01 01 00 01 00 04 00 5b 49 00 00 14 00 00 00 00 00 10 00 8d 2b 00 00 a8 49 00 00 00 00 00 00 00 00 00 00 64 00 00 00 01 00 01 00 72 4d 00 00 00 00 00 00 00 00 00 00 00 00 80 00 65 6e 76 69 72 6f 6e 6d 65 6e 74 2e 63 61 62 00 fe f6 51 be 21 2b 72 4d 43 4b ed 7c 05 58 54 eb da f6 14 43 49 37 0a 02 d2 b9 86 0e 41 52 a4 1b 24 a5 bb 43 24 44 18 94 90 92 52 41 3a 05 09 95 ee 54 b0 00 91 2e e9 12 10 04 11 c9 6f 10 b7 a2 67 9f bd cf 3e ff b7 ff b3 bf 73 ed e1 9a 99 f5 c6 7a d7 bb de f5 3e cf fd 3c f7 dc 17 4a 1a 52 e7 41 a8 97 1e 14 f4 e5 25 7d f4 05 82 82 c1 20 30 08 06 ba c3 05 02 11 7f a9 c1 ff d2 87 5c 1e f4 ed 65 8e 7a 1f f6 0a 40 03 1d 7b f9 83 2c 1c 2f db b8 3a 39 3a 58 38 ba 73 5e
                                                                                                                                                                                                                                                                      Data Ascii: MSCF+D[I+IdrMenvironment.cabQ!+rMCK|XTCI7AR$C$DRA:T.og>sz><JRA%} 0\ez@{,/:9:X8s^
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC14181INData Raw: 06 03 55 04 06 13 02 55 53 31 13 30 11 06 03 55 04 08 13 0a 57 61 73 68 69 6e 67 74 6f 6e 31 10 30 0e 06 03 55 04 07 13 07 52 65 64 6d 6f 6e 64 31 1e 30 1c 06 03 55 04 0a 13 15 4d 69 63 72 6f 73 6f 66 74 20 43 6f 72 70 6f 72 61 74 69 6f 6e 31 26 30 24 06 03 55 04 03 13 1d 4d 69 63 72 6f 73 6f 66 74 20 54 69 6d 65 2d 53 74 61 6d 70 20 50 43 41 20 32 30 31 30 30 1e 17 0d 32 33 31 30 31 32 31 39 30 37 32 35 5a 17 0d 32 35 30 31 31 30 31 39 30 37 32 35 5a 30 81 d2 31 0b 30 09 06 03 55 04 06 13 02 55 53 31 13 30 11 06 03 55 04 08 13 0a 57 61 73 68 69 6e 67 74 6f 6e 31 10 30 0e 06 03 55 04 07 13 07 52 65 64 6d 6f 6e 64 31 1e 30 1c 06 03 55 04 0a 13 15 4d 69 63 72 6f 73 6f 66 74 20 43 6f 72 70 6f 72 61 74 69 6f 6e 31 2d 30 2b 06 03 55 04 0b 13 24 4d 69 63 72 6f
                                                                                                                                                                                                                                                                      Data Ascii: UUS10UWashington10URedmond10UMicrosoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100231012190725Z250110190725Z010UUS10UWashington10URedmond10UMicrosoft Corporation1-0+U$Micro


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      35192.168.2.94979813.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC425OUTGET /assets/edge_hub_apps_outlook_light.png/1.9.10/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC543INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:46 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 1154
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Wed, 25 Oct 2023 19:48:30 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBD5935D5B3965
                                                                                                                                                                                                                                                                      x-ms-request-id: c8ab257f-901e-0026-141d-37f3b3000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094546Z-1866b5c5fbbqmbqjhC1DFWwgvc00000000mg00000000acu7
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 0
                                                                                                                                                                                                                                                                      X-Cache-Info: L2_T2
                                                                                                                                                                                                                                                                      X-Cache: TCP_REMOTE_HIT
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:46 UTC1154INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 04 17 49 44 41 54 78 01 ed 97 cf 6f db 64 18 c7 bf 76 6a ea 34 69 e3 26 4b d4 b4 30 d2 f1 ab 4c 9a 96 c1 6e ed a1 30 0e 5c 10 4c b0 d3 0e ed 05 c1 05 35 3d ec 00 97 66 ff 41 72 43 02 a9 1a bb 70 03 c4 0d 6d 62 48 4c e2 f7 3a 0a 62 17 56 6b ab d6 aa cd 1a 37 4d 66 c7 89 fd ee 7d 9d 25 6b 1b 27 b1 1b 57 bd e4 23 39 f1 ef 7e fa 3c ef f3 bc 6f 80 1e 3d 8e 16 ce e9 8d c2 87 3f 24 4d 42 7e 04 88 04 2f e1 20 13 82 ac f9 e5 db 19 bb cb 3c 1c 62 10 73 d1 73 39 06 41 82 03 b7 80 d9 6f 6c df ed 38 82 13 5f 6f 10 b8
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAaIDATxodvj4i&K0Ln0\L5=fArCpmbHL:bVk7Mf}%k'W#9~<o=?$MB~/ <bss9Aol8_o


                                                                                                                                                                                                                                                                      Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                                                                                                                                                                                                                                                                      36192.168.2.94979913.107.246.574438028C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      TimestampBytes transferredDirectionData
                                                                                                                                                                                                                                                                      2024-11-15 09:45:47 UTC431OUTGET /assets/edge_hub_apps_edrop_maximal_light.png/1.1.12/asset HTTP/1.1
                                                                                                                                                                                                                                                                      Host: edgeassetservice.azureedge.net
                                                                                                                                                                                                                                                                      Connection: keep-alive
                                                                                                                                                                                                                                                                      Sec-Fetch-Site: none
                                                                                                                                                                                                                                                                      Sec-Fetch-Mode: no-cors
                                                                                                                                                                                                                                                                      Sec-Fetch-Dest: empty
                                                                                                                                                                                                                                                                      User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36 Edg/117.0.2045.47
                                                                                                                                                                                                                                                                      Accept-Encoding: gzip, deflate, br
                                                                                                                                                                                                                                                                      Accept-Language: en-GB,en;q=0.9,en-US;q=0.8
                                                                                                                                                                                                                                                                      2024-11-15 09:45:47 UTC536INHTTP/1.1 200 OK
                                                                                                                                                                                                                                                                      Date: Fri, 15 Nov 2024 09:45:47 GMT
                                                                                                                                                                                                                                                                      Content-Type: image/png
                                                                                                                                                                                                                                                                      Content-Length: 1468
                                                                                                                                                                                                                                                                      Connection: close
                                                                                                                                                                                                                                                                      Last-Modified: Fri, 03 Nov 2023 21:43:14 GMT
                                                                                                                                                                                                                                                                      ETag: 0x8DBDCB5E23DFC43
                                                                                                                                                                                                                                                                      x-ms-request-id: 174c0071-f01e-003d-08a2-34dd21000000
                                                                                                                                                                                                                                                                      x-ms-version: 2009-09-19
                                                                                                                                                                                                                                                                      x-ms-lease-status: unlocked
                                                                                                                                                                                                                                                                      x-ms-blob-type: BlockBlob
                                                                                                                                                                                                                                                                      x-azure-ref: 20241115T094547Z-16547b76f7fffb7lhC1DFWdsxg00000001b000000000489d
                                                                                                                                                                                                                                                                      Cache-Control: public, max-age=604800
                                                                                                                                                                                                                                                                      x-fd-int-roxy-purgeid: 0
                                                                                                                                                                                                                                                                      X-Cache-Info: L1_T2
                                                                                                                                                                                                                                                                      X-Cache: TCP_HIT
                                                                                                                                                                                                                                                                      Accept-Ranges: bytes
                                                                                                                                                                                                                                                                      2024-11-15 09:45:47 UTC1468INData Raw: 89 50 4e 47 0d 0a 1a 0a 00 00 00 0d 49 48 44 52 00 00 00 28 00 00 00 28 08 06 00 00 00 8c fe b8 6d 00 00 00 09 70 48 59 73 00 00 16 25 00 00 16 25 01 49 52 24 f0 00 00 00 01 73 52 47 42 00 ae ce 1c e9 00 00 00 04 67 41 4d 41 00 00 b1 8f 0b fc 61 05 00 00 05 51 49 44 41 54 78 01 ed 97 4b 6c 54 55 18 c7 ff e7 4e 19 62 da e0 b0 a1 01 03 5c 82 51 7c 52 16 1a 6d 6b 42 57 c4 c7 c2 2e 8c 26 24 46 62 44 17 26 b4 04 62 5c a0 ad 1a 63 dc c8 82 85 89 26 b4 09 68 89 1a a7 18 79 24 1a c6 05 75 41 02 17 19 23 46 03 13 10 4a 35 c8 50 fa 9a b9 f7 9c cf ef 3c ee 74 a6 96 76 da a6 2b e6 4b 4f ef cc b9 e7 9e ef 77 ff df e3 de 01 6a 56 b3 9a d5 ec ce 36 81 45 b6 cd 67 28 85 89 89 14 22 f8 20 e9 4b 0f 29 41 22 25 3c ac 85 42 8a a4 f2 a9 a8 52 8d e1 c5 d4 d5 70 75 3e 49 de a6
                                                                                                                                                                                                                                                                      Data Ascii: PNGIHDR((mpHYs%%IR$sRGBgAMAaQIDATxKlTUNb\Q|RmkBW.&$FbD&b\c&hy$uA#FJ5P<tv+KOwjV6Eg(" K)A"%<BRpu>I


                                                                                                                                                                                                                                                                      Click to jump to process

                                                                                                                                                                                                                                                                      Click to jump to process

                                                                                                                                                                                                                                                                      Click to dive into process behavior distribution

                                                                                                                                                                                                                                                                      Click to jump to process

                                                                                                                                                                                                                                                                      Target ID:0
                                                                                                                                                                                                                                                                      Start time:04:44:50
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Users\user\Desktop\ArenaWarsSetup.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):true
                                                                                                                                                                                                                                                                      Commandline:"C:\Users\user\Desktop\ArenaWarsSetup.exe"
                                                                                                                                                                                                                                                                      Imagebase:0x400000
                                                                                                                                                                                                                                                                      File size:86'431'523 bytes
                                                                                                                                                                                                                                                                      MD5 hash:140CFCF356CC2DA4D739C1CABABBE7B4
                                                                                                                                                                                                                                                                      Has elevated privileges:true
                                                                                                                                                                                                                                                                      Has administrator privileges:true
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:low
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:2
                                                                                                                                                                                                                                                                      Start time:04:44:51
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\SysWOW64\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):true
                                                                                                                                                                                                                                                                      Commandline:cmd /c tasklist /FI "USERNAME eq %USERNAME%" /FI "IMAGENAME eq WarsArena.exe" | %SYSTEMROOT%\System32\find.exe "WarsArena.exe"
                                                                                                                                                                                                                                                                      Imagebase:0xc50000
                                                                                                                                                                                                                                                                      File size:236'544 bytes
                                                                                                                                                                                                                                                                      MD5 hash:D0FCE3AFA6AA1D58CE9FA336CC2B675B
                                                                                                                                                                                                                                                                      Has elevated privileges:true
                                                                                                                                                                                                                                                                      Has administrator privileges:true
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:high
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:3
                                                                                                                                                                                                                                                                      Start time:04:44:51
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:true
                                                                                                                                                                                                                                                                      Has administrator privileges:true
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:high
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:4
                                                                                                                                                                                                                                                                      Start time:04:44:52
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\SysWOW64\tasklist.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):true
                                                                                                                                                                                                                                                                      Commandline:tasklist /FI "USERNAME eq user" /FI "IMAGENAME eq WarsArena.exe"
                                                                                                                                                                                                                                                                      Imagebase:0xfa0000
                                                                                                                                                                                                                                                                      File size:79'360 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0A4448B31CE7F83CB7691A2657F330F1
                                                                                                                                                                                                                                                                      Has elevated privileges:true
                                                                                                                                                                                                                                                                      Has administrator privileges:true
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:high
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:5
                                                                                                                                                                                                                                                                      Start time:04:44:52
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\SysWOW64\find.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):true
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\System32\find.exe "WarsArena.exe"
                                                                                                                                                                                                                                                                      Imagebase:0xb70000
                                                                                                                                                                                                                                                                      File size:14'848 bytes
                                                                                                                                                                                                                                                                      MD5 hash:15B158BC998EEF74CFDD27C44978AEA0
                                                                                                                                                                                                                                                                      Has elevated privileges:true
                                                                                                                                                                                                                                                                      Has administrator privileges:true
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:moderate
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:7
                                                                                                                                                                                                                                                                      Start time:04:45:17
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff791380000
                                                                                                                                                                                                                                                                      File size:162'117'120 bytes
                                                                                                                                                                                                                                                                      MD5 hash:CE6BE7DBF1189F24B294ABDFA9C10CB7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Antivirus matches:
                                                                                                                                                                                                                                                                      • Detection: 3%, ReversingLabs
                                                                                                                                                                                                                                                                      Reputation:low
                                                                                                                                                                                                                                                                      Has exited:false

                                                                                                                                                                                                                                                                      Target ID:11
                                                                                                                                                                                                                                                                      Start time:04:45:21
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "wmic csproduct get uuid"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:high
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:12
                                                                                                                                                                                                                                                                      Start time:04:45:21
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:high
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:13
                                                                                                                                                                                                                                                                      Start time:04:45:21
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\wbem\WMIC.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:wmic csproduct get uuid
                                                                                                                                                                                                                                                                      Imagebase:0x7ff73df00000
                                                                                                                                                                                                                                                                      File size:576'000 bytes
                                                                                                                                                                                                                                                                      MD5 hash:C37F2F4F4B3CD128BDABCAEB2266A785
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:high
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:14
                                                                                                                                                                                                                                                                      Start time:04:45:24
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1816 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
                                                                                                                                                                                                                                                                      Imagebase:0x7ff791380000
                                                                                                                                                                                                                                                                      File size:162'117'120 bytes
                                                                                                                                                                                                                                                                      MD5 hash:CE6BE7DBF1189F24B294ABDFA9C10CB7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Reputation:low
                                                                                                                                                                                                                                                                      Has exited:false

                                                                                                                                                                                                                                                                      Target ID:15
                                                                                                                                                                                                                                                                      Start time:04:45:26
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --mojo-platform-channel-handle=2300 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
                                                                                                                                                                                                                                                                      Imagebase:0x7ff791380000
                                                                                                                                                                                                                                                                      File size:162'117'120 bytes
                                                                                                                                                                                                                                                                      MD5 hash:CE6BE7DBF1189F24B294ABDFA9C10CB7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:false

                                                                                                                                                                                                                                                                      Target ID:16
                                                                                                                                                                                                                                                                      Start time:04:45:27
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:/Program Files/Google/Chrome/Application/chrome.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b2cb0000
                                                                                                                                                                                                                                                                      File size:3'242'272 bytes
                                                                                                                                                                                                                                                                      MD5 hash:5BBFA6CBDF4C254EB368D534F9E23C92
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:17
                                                                                                                                                                                                                                                                      Start time:04:45:28
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2140 --field-trial-handle=1720,i,2144963780533695318,1306686769971395901,262144 /prefetch:8
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b2cb0000
                                                                                                                                                                                                                                                                      File size:3'242'272 bytes
                                                                                                                                                                                                                                                                      MD5 hash:5BBFA6CBDF4C254EB368D534F9E23C92
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:18
                                                                                                                                                                                                                                                                      Start time:04:45:31
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:/Program Files (x86)/Microsoft/Edge/Application/msedge.exe" --remote-debugging-port=9223 --profile-directory=Default --window-position=-2400,-2400
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6d8030000
                                                                                                                                                                                                                                                                      File size:4'210'216 bytes
                                                                                                                                                                                                                                                                      MD5 hash:69222B8101B0601CC6663F8381E7E00F
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:19
                                                                                                                                                                                                                                                                      Start time:04:45:32
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-GB --service-sandbox-type=none --mojo-platform-channel-handle=2212 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:3
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6d8030000
                                                                                                                                                                                                                                                                      File size:4'210'216 bytes
                                                                                                                                                                                                                                                                      MD5 hash:69222B8101B0601CC6663F8381E7E00F
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:25
                                                                                                                                                                                                                                                                      Start time:04:45:38
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-GB --service-sandbox-type=asset_store_service --mojo-platform-channel-handle=5288 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6d8030000
                                                                                                                                                                                                                                                                      File size:4'210'216 bytes
                                                                                                                                                                                                                                                                      MD5 hash:69222B8101B0601CC6663F8381E7E00F
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:26
                                                                                                                                                                                                                                                                      Start time:04:45:38
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=entity_extraction_service.mojom.Extractor --lang=en-GB --service-sandbox-type=entity_extraction --onnx-enabled-for-ee --mojo-platform-channel-handle=6576 --field-trial-handle=2180,i,7403640353940489335,12822321588178167060,262144 /prefetch:8
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6d8030000
                                                                                                                                                                                                                                                                      File size:4'210'216 bytes
                                                                                                                                                                                                                                                                      MD5 hash:69222B8101B0601CC6663F8381E7E00F
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:28
                                                                                                                                                                                                                                                                      Start time:04:45:46
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "tasklist"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:29
                                                                                                                                                                                                                                                                      Start time:04:45:46
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "tasklist"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:30
                                                                                                                                                                                                                                                                      Start time:04:45:46
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:31
                                                                                                                                                                                                                                                                      Start time:04:45:46
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:32
                                                                                                                                                                                                                                                                      Start time:04:45:46
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "tasklist"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:33
                                                                                                                                                                                                                                                                      Start time:04:45:46
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:34
                                                                                                                                                                                                                                                                      Start time:04:45:47
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\tasklist.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:tasklist
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6cec90000
                                                                                                                                                                                                                                                                      File size:106'496 bytes
                                                                                                                                                                                                                                                                      MD5 hash:D0A49A170E13D7F6AEBBEFED9DF88AAA
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:35
                                                                                                                                                                                                                                                                      Start time:04:45:47
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\tasklist.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:tasklist
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6cec90000
                                                                                                                                                                                                                                                                      File size:106'496 bytes
                                                                                                                                                                                                                                                                      MD5 hash:D0A49A170E13D7F6AEBBEFED9DF88AAA
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:36
                                                                                                                                                                                                                                                                      Start time:04:45:47
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\tasklist.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:tasklist
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6cec90000
                                                                                                                                                                                                                                                                      File size:106'496 bytes
                                                                                                                                                                                                                                                                      MD5 hash:D0A49A170E13D7F6AEBBEFED9DF88AAA
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:37
                                                                                                                                                                                                                                                                      Start time:04:45:47
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "tasklist"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:38
                                                                                                                                                                                                                                                                      Start time:04:45:47
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:39
                                                                                                                                                                                                                                                                      Start time:04:45:47
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\tasklist.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:tasklist
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6cec90000
                                                                                                                                                                                                                                                                      File size:106'496 bytes
                                                                                                                                                                                                                                                                      MD5 hash:D0A49A170E13D7F6AEBBEFED9DF88AAA
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:40
                                                                                                                                                                                                                                                                      Start time:04:45:48
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM EpicGamesLauncher.exe /F"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:41
                                                                                                                                                                                                                                                                      Start time:04:45:48
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:42
                                                                                                                                                                                                                                                                      Start time:04:45:48
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\taskkill.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:taskkill /IM EpicGamesLauncher.exe /F
                                                                                                                                                                                                                                                                      Imagebase:0x7ff728e50000
                                                                                                                                                                                                                                                                      File size:101'376 bytes
                                                                                                                                                                                                                                                                      MD5 hash:A599D3B2FAFBDE4C1A6D7D0F839451C7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:43
                                                                                                                                                                                                                                                                      Start time:04:45:48
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM javaw.exe /F"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:44
                                                                                                                                                                                                                                                                      Start time:04:45:48
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:45
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\taskkill.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:taskkill /IM javaw.exe /F
                                                                                                                                                                                                                                                                      Imagebase:0x7ff728e50000
                                                                                                                                                                                                                                                                      File size:101'376 bytes
                                                                                                                                                                                                                                                                      MD5 hash:A599D3B2FAFBDE4C1A6D7D0F839451C7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:46
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:47
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:48
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:49
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\taskkill.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:taskkill /f /im msedge.exe
                                                                                                                                                                                                                                                                      Imagebase:0x7ff728e50000
                                                                                                                                                                                                                                                                      File size:101'376 bytes
                                                                                                                                                                                                                                                                      MD5 hash:A599D3B2FAFBDE4C1A6D7D0F839451C7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:50
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:51
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:52
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:53
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\taskkill.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:taskkill /f /im msedge.exe
                                                                                                                                                                                                                                                                      Imagebase:0x7ff728e50000
                                                                                                                                                                                                                                                                      File size:101'376 bytes
                                                                                                                                                                                                                                                                      MD5 hash:A599D3B2FAFBDE4C1A6D7D0F839451C7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:54
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\taskkill.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:taskkill /f /im msedge.exe
                                                                                                                                                                                                                                                                      Imagebase:0x7ff728e50000
                                                                                                                                                                                                                                                                      File size:101'376 bytes
                                                                                                                                                                                                                                                                      MD5 hash:A599D3B2FAFBDE4C1A6D7D0F839451C7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:55
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "taskkill /IM Steam.exe /F"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:56
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:57
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\taskkill.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:taskkill /IM Steam.exe /F
                                                                                                                                                                                                                                                                      Imagebase:0x7ff728e50000
                                                                                                                                                                                                                                                                      File size:101'376 bytes
                                                                                                                                                                                                                                                                      MD5 hash:A599D3B2FAFBDE4C1A6D7D0F839451C7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:58
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\cmd.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\cmd.exe /d /s /c "taskkill /f /im msedge.exe"
                                                                                                                                                                                                                                                                      Imagebase:0x7ff6b9dc0000
                                                                                                                                                                                                                                                                      File size:289'792 bytes
                                                                                                                                                                                                                                                                      MD5 hash:8A2122E8162DBEF04694B9C3E0B6CDEE
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:59
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\conhost.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
                                                                                                                                                                                                                                                                      Imagebase:0x7ff70f010000
                                                                                                                                                                                                                                                                      File size:862'208 bytes
                                                                                                                                                                                                                                                                      MD5 hash:0D698AF330FD17BEE3BF90011D49251D
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:60
                                                                                                                                                                                                                                                                      Start time:04:45:49
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Windows\System32\taskkill.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:taskkill /f /im msedge.exe
                                                                                                                                                                                                                                                                      Imagebase:0x7ff728e50000
                                                                                                                                                                                                                                                                      File size:101'376 bytes
                                                                                                                                                                                                                                                                      MD5 hash:A599D3B2FAFBDE4C1A6D7D0F839451C7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      Target ID:63
                                                                                                                                                                                                                                                                      Start time:04:47:23
                                                                                                                                                                                                                                                                      Start date:15/11/2024
                                                                                                                                                                                                                                                                      Path:C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe
                                                                                                                                                                                                                                                                      Wow64 process (32bit):false
                                                                                                                                                                                                                                                                      Commandline:"C:\Users\user\AppData\Local\Programs\unrealgame\WarsArena.exe" --type=gpu-process --disable-gpu-sandbox --use-gl=disabled --gpu-vendor-id=5140 --gpu-device-id=140 --gpu-sub-system-id=0 --gpu-revision=0 --gpu-driver-version=10.0.19041.546 --user-data-dir="C:\Users\user\AppData\Roaming\unrealgame" --gpu-preferences=UAAAAAAAAADoAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAACQAAAAAAAAAAAAAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2604 --field-trial-handle=1840,i,9929463779413634809,13704323486948710207,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
                                                                                                                                                                                                                                                                      Imagebase:0x7ff791380000
                                                                                                                                                                                                                                                                      File size:162'117'120 bytes
                                                                                                                                                                                                                                                                      MD5 hash:CE6BE7DBF1189F24B294ABDFA9C10CB7
                                                                                                                                                                                                                                                                      Has elevated privileges:false
                                                                                                                                                                                                                                                                      Has administrator privileges:false
                                                                                                                                                                                                                                                                      Programmed in:C, C++ or other language
                                                                                                                                                                                                                                                                      Has exited:true

                                                                                                                                                                                                                                                                      No disassembly